Differences

This shows you the differences between two versions of the page.

vpn:easyclient [2010/11/22 11:07]
mats
vpn:easyclient [2010/11/22 12:31] (current)
mats
Line 14: Line 14:
You enable EasyClient on the IPSec Settings page, after clicking "Add" or "Edit/view" in the [[web_gui:vpn_page|IPSec - Overview]] page (or advanced users on the [[web_gui:vpn_connection#VPN client NAT mode (EasyClient)|VPN Connection Settings]] page). You enable EasyClient on the IPSec Settings page, after clicking "Add" or "Edit/view" in the [[web_gui:vpn_page|IPSec - Overview]] page (or advanced users on the [[web_gui:vpn_connection#VPN client NAT mode (EasyClient)|VPN Connection Settings]] page).
-A drawback using EasyClient is that while you can contact computers on the remote network, they cannot contact you. While this limitation is of no significance in most scenarios where you are a client connecting to a network, it still means you must disable EasyClient in connections there you are the server side, or in connections between equal parts. Also some applications not compatible with NAT might get problems working.+A drawback using EasyClient is that while you can contact computers on the remote network, they cannot contact you. While this limitation is of no significance in most scenarios where you are a client connecting to a network, it still means you must disable EasyClient in connections where you are the server side, or in connections between equal parts. Also some applications that are not compatible with NAT might get problems. [[wp>NAT]]
Therefore you are recommended to: Therefore you are recommended to:
-  * Enable EasyClient for connections there you are a client connecting to a server. +  * Enable EasyClient for connections where you are a client connecting to a server. 
-  * Disable EasyClient for connections there you are the server, or are equal to the other end +  * Disable EasyClient for connections where you are the server, or are equal to the other end 
-If the other end of the IPSec connection is other brand than Internet Gate then configure it as if it would connect to a single PC running IPSec software, thus: +\\ 
-  * if there is a local network subnet address field to be specified then leave it empty, or enter your client's global IP address, depending on brand. + 
-  * if there is a local network subnet mask field then leave it empty, or enter 255.255.255.255 depending on brand. +===== Configuring the remote end ===== 
-Consult that IPSec gateway's manual for how to configure it for use against single PC clients.+ 
 +If the other end of the IPSec connection is another brand than Internet Gate then configure it as if it would connect to a single PC running IPSec software, thus: 
 +  * if there is a local network subnet address field to be specified, then leave it empty, or enter your client's global IP address, depending on brand. 
 +  * if there is a local network subnet mask field, then leave it empty, or enter 255.255.255.255 depending on brand. 
vpn/easyclient.1290420428.txt.gz · Last modified: 2010/11/22 11:07 by mats
CC Attribution-Noncommercial-Share Alike 3.0 Unported
www.chimeric.de Valid CSS Driven by DokuWiki do yourself a favour and use a real browser - get firefox!! Recent changes RSS feed Valid XHTML 1.0