• April 25, 2024, 07:05:33 AM
  • Welcome, Guest
Please login or register.

Login with username, password and session length
Advanced search  

News:

This Forum Beta is ONLY for registered owners of D-Link products in the USA for which we have created boards at this time.

Author Topic: VPN for all Lan  (Read 8548 times)

tecno13

  • Level 2 Member
  • **
  • Posts: 43
  • www.nsgroup.it
    • nsgroup.it
VPN for all Lan
« on: October 02, 2009, 01:03:10 AM »

have I followed to the letter the guide as bottom and do I succeed in connecting me to the server the question now it is the following I can share the whole lan from remote? How can I do?

PPTP Windows Client to DFL-210/800/1600 
This guide shows how to setup PPTP VPN tunnel between Windows built-in PPTP Client and the DFL-200, DFL-800, DFL-1600.

Firewall Setup

Step 1. Log into the Firewall by opening Internet Explorer and typing the LAN address of the Firewall. In our example we are using 192.168.1.1. Enter Username and Password which you specified during the initial setup of the Firewall.

Step 2. In the menu on the left side of the screen select Objects > Address Book > Interface Addresses. Under the InterfaceAddresses menu click on Add > IP4 Host/Network.
Under Name type 'PPTP-Server-IPAddress'.
Under IP Address enter 192.168.1.2 (This is the IP address that the PPTP Client will use as a gateway to the internal network. It can be any IP as soon as it is within the range of the addresses used on your private LAN and not conflicting with any IP addresses on your LAN).
Click on OK when done.

Step 3. Add another IP4 Host/Network.
Under Name enter 'PPTP-IP-Range'.
Under IP Address enter 192.168.2.100-192.168.2.254 (this is the range of IP addresses the PPTP VPN clients will get when they connect). Note that these addresses should be from a subnet different from the one used on your LAN or client's LAN. Click on OK when done.

Step 4. Go to User Authentication > Local User Databases. Click on Add > LocalUserDatabase.
Under Name type 'PPTPserver'. Click on OK.

Step 5. Click on the newly created database 'PPTPServer'.
Then click on Add > User.
Enter in a Username (this is the username the client will be using to connect via VPN), in our example we used D-LINK. Then enter a password and confirm it. Click on OK when done. You can add several users if necessary.

Step 6. Go to Interfaces > L2TP/PPTP Servers. Click on Add > L2TP/PPTP Server.
Under Name enter 'PPTP-tunnel'.
Under Inner IP Address select 'PPTP-Server-IPAddress' (this is the one created earlier in Step 2).
Under Tunnel Protocol select 'PPTP'.
Under Outer Interface Filter select 'WAN' (if your Firewall is set with PPPoE on the WAN port, select 'Any').
Under Server IP select 'WAN_IP' (if your Firewall is set with PPPoE on the WAN port, select 'Any' or 'ip_wan').

Click on the PPP Parameters tab.
Under IP Pool make sure the 'PPTP-IP-Range' option is selected (see Step 3). Click on OK.

Step 7. Go to User Authentication > User Authentication Rules. Click on Add > User Authentication Rule.
Under Name enter 'PPTP-Auth'.
Under Agent select 'PPP'.
Under Authentication Source select 'Local'.
Under Interface select 'PPTP-Tunnel'.
Under Originator IP select 'all-nets'.
Under Terminator IP select 'wan_ip' (if your Firewall is set with PPPoE on the WAN port, select 'All-nets' or 'ip_wan').

Click on the Log Settings tab and tick 'Enable logging'

Click on the Authentication Options tab. Under Local User DB select 'PPTPserver' (see Step 4). Click on OK when done.

Step 8. Go to Rules > IP Rules. Click on Add > IP Rule.
Under Name enter 'PPTP-ALLOW'.
Under Action select 'Allow'.
Under Services select 'all_servicess'.

Under Address Filter:
Set Source Interface to 'PPTP-Tunnel' and Source Network to 'PPTP-IP-Range'.
Set Destination Interface to 'LAN' and Destination Network to 'lannet'.

Click on Log Setting tab and enable logging.
Click on OK when done.

Step 9. Save the new configuration. In the top menu bar click on Configuration and select 'Save and Activate'. Click on OK to confirm the new settings activation. Wait 15 seconds for the Firewall to apply the new settings.


Windows PPTP Client Setup

To setup your remote client for PPTP VPN connection you can use Windows built-in PPTP client. We will use Windows XP as an example.
Go to Start > Control Panel > Network Connections. Click on Create New Connection. Follow the prompts in the New Connection Wizard:
Select the 'Connect to the network at my workplace' option. Click Next.
Select the 'Virtual Private Network connection' option. Click Next.
Give the connection a name, e.g. My PPTP Connection. Click Next.
Select 'Do not dial the initial connection option'. Click Next.

On the VPN Server Selection page under 'Host name or IP address' enter the public IP address that the remote VPN Firewall is getting from the ISP. If you have got a router or a modem with NAT in front of the VPN firewall, use the public IP address on the modem's WAN port. Note that the router/modem will need to support VPN passthrough.
Click Next.

Continue with the Connection Wizard and click on Finish when done.

To establish a VPN connection: make sure you have access to the Internet. Make sure the modem or the router you are using to connect to the Internet supports VPN passthrough. Make sure that the range of IP addresses (subnet) you are using on this LAN is different from the range used on remote LAN.
Double-click on the PPTP connection icon that you created earlier and enter the username and password as it was set in the VPN Firewall (see Step 5 of the Firewall Setup).
Click on Connect. After verifying username and password your computer should establish a PPTP connection.


Note that with its default settings a PPTP connection in Windows is used as remote gateway for all traffic. Hence you may lose the ability to browse the Internet sites when the PPTP connection is established. To avoid this problem do the following:
Open your PPTP connection dialog. Click on the Properties button. Select the Networking tab. Highlight the Internet Protocol (TCP/IP) and click on Properties. Then click on the Advanced... button. Deselect the 'Use default gateway on remote network' option. Click on OK in each window to apply the setting. Reconnect your PPTP connection.
 
Logged
Fotovoltaico a Grosseto

Fatman

  • Level 9 Member
  • ****
  • Posts: 1675
Re: VPN for all Lan
« Reply #1 on: October 02, 2009, 08:16:22 AM »

As long as you have IP Rules allowing the traffic you should be golden.
Logged
non progredi est regredi

tecno13

  • Level 2 Member
  • **
  • Posts: 43
  • www.nsgroup.it
    • nsgroup.it
Re: VPN for all Lan
« Reply #2 on: October 02, 2009, 10:35:15 AM »

I have not understood well what it intends
Logged
Fotovoltaico a Grosseto

Fatman

  • Level 9 Member
  • ****
  • Posts: 1675
Re: VPN for all Lan
« Reply #3 on: October 02, 2009, 10:49:35 AM »

Then why don't you call in and we will have a tech walk you through the steps.
Logged
non progredi est regredi

tecno13

  • Level 2 Member
  • **
  • Posts: 43
  • www.nsgroup.it
    • nsgroup.it
Re: VPN for all Lan
« Reply #4 on: October 03, 2009, 02:01:06 AM »

unfortunately my English is not very finished up and I would not like to have said wrong things, I have not understood yet 
excuse me
Logged
Fotovoltaico a Grosseto

tecno13

  • Level 2 Member
  • **
  • Posts: 43
  • www.nsgroup.it
    • nsgroup.it
Re: VPN for all Lan
« Reply #5 on: October 05, 2009, 12:42:32 AM »

 have tried to follow the indications on the site http://www.dlink.com/support/faq/default.aspx?question=dfl-800 to the voice as bottom How do I configure the PPTP Server, of my DFL-210/800/1600, for remote users?
but now he doesn't connect more and the logs are:
2009-10-05 11:23:51 Notice PPTP 2700019   pptp_tunnel_up iface=PPTP-tunnel remotegw=94.162.XXX.XXX 
2009-10-05 11:24:04 Notice PPTP 2700022   pptp_tunnel_closed iface=PPTP-tunnel remotegw=94.162.XXX.XXX
2009-10-05
12:24:46 Notice PPTP 2700008 pptp_session_closed iface=PPTP-tunnel remotegw=94.162.XXX.XXX callid=0 


 

 Do I help it doesn't work me that error I could have done?
« Last Edit: October 05, 2009, 04:40:13 AM by tecno13 »
Logged
Fotovoltaico a Grosseto

tecno13

  • Level 2 Member
  • **
  • Posts: 43
  • www.nsgroup.it
    • nsgroup.it
Re: VPN for all Lan
« Reply #6 on: October 05, 2009, 08:03:35 AM »

I have resolved the problem it was the client that didn't allow the full VPN
Logged
Fotovoltaico a Grosseto