VPN CLIENT USER S GUIDE
|
|
|
- Edmund Richardson
- 10 years ago
- Views:
Transcription
1 STONEGATE IPSEC VPN 5.1 VPN CLIENT USER S GUIDE V IRTUAL PRIVATE NETWORKS
2 Legal Information End-User License Agreement The use of the products described in these materials is subject to the then current end-user license agreement, which can be found at the Stonesoft website: Third Party Licenses The StoneGate software includes several open source or third-party software packages. The appropriate software licensing information for those products at the Stonesoft website: U.S. Government Acquisitions If Licensee is acquiring the Software, including accompanying documentation on behalf of the U.S. Government, the following provisions apply. If the Software is supplied to the Department of Defense ( DoD ), the Software is subject to Restricted Rights, as that term is defined in the DOD Supplement to the Federal Acquisition Regulations ( DFAR ) in paragraph (c) (1). If the Software is supplied to any unit or agency of the United States Government other than DOD, the Government s rights in the Software will be as defined in paragraph (c) (2) of the Federal Acquisition Regulations ( FAR ). Use, duplication, reproduction or disclosure by the Government is subject to such restrictions or successor provisions. Product Export Restrictions The products described in this document are subject to export control under the laws of Finland and the European Council Regulation (EC) N:o 1334/2000 of 22 June 2000 setting up a Community regime for the control of exports of dual-use items and technology (as amended). Thus, the export of this Stonesoft software in any manner is restricted and requires a license by the relevant authorities. General Terms and Conditions of Support and Maintenance Services The support and maintenance services for the products described in these materials are provided pursuant to the general terms for support and maintenance services and the related service description, which can be found at the Stonesoft website: Replacement Service The instructions for replacement service can be found at the Stonesoft website: Hardware Warranty The appliances described in these materials have a limited hardware warranty. The terms of the hardware warranty can be found at the Stonesoft website: Trademarks and Patents The products described in these materials are protected by one or more of the following European and US patents: European Patent Nos , , , , , , , , , , , , , and and US Patent Nos. 6,650,621; ; 6,885,633; 6,912,200; 6,996,573; 7,099,284; 7,127,739; 7,130,266; 7,130,305; 7,146,421; 7,162,737; 7,234,166; 7,260,843; 7,280,540; 7,302,480; 7,386,525; 7,406,534; and 7,461,401 and may be protected by other EU, US, or other patents, or pending applications. Stonesoft, the Stonesoft logo and StoneGate, are all trademarks or registered trademarks of Stonesoft Corporation. All other trademarks or registered trademarks are property of their respective owners. Disclaimer Although every precaution has been taken to prepare these materials, THESE MATERIALS ARE PROVIDED "AS-IS" and Stonesoft makes no warranty to the correctness of information and assumes no responsibility for errors, omissions, or resulting damages from the use of the information contained herein. All IP addresses in these materials were chosen at random and are used for illustrative purposes only. Copyright 2010 Stonesoft Corporation. All rights reserved. All specifications are subject to change. Revision: SGVPNCUG_
3 TABLE OF CONTENTS CHAPTER 1 Introduction How to Use This Guide Typographical Conventions Contact Information Technical Support Your Comments and Queries CHAPTER 2 Installing and Upgrading the VPN Client Installing the VPN Client Upgrading the VPN Client CHAPTER 3 Connecting to a New Gateway for the First Time 11 Getting Started With Connecting to Gateways.. 12 Viewing a List of Configured Gateways Connecting to a New Pre-Configured Gateway.. 13 Adding New Gateways Manually Checking the Gateway s Certificate Fingerprint. 15 CHAPTER 4 Using the VPN Client Overview to the VPN Client Connecting to Resources Connecting to a Gateway at Windows Logon.. 19 Connecting to a Gateway Manually Switching to an Alternative End-Point Authenticating Yourself Selecting the Authentication Method Authenticating with a User Name and Password Authenticating with a Certificate Authenticating with a Smartcard Closing the VPN Connection Turning the VPN Client off Activating/Deactivating Domain Logon Activating/Deactivating Retry With Different Settings CHAPTER 5 Monitoring VPN Connections Viewing the VPN Connection Status Viewing Details of an Active VPN Connection.. 28 Viewing a Configuration Downloaded From a Gateway CHAPTER 6 Managing Certificates Overview to Managing Certificates Using Internal Certificates Creating a Basic Certificate Request Importing a Signed Certificate Using External Certificates Importing a PKCS # 12 File Importing Separate Certificate and Private Key Files Changing the Certificate Passphrase Viewing Details of Certificates Changing User ID Type of a Certificate Deleting Certificates CHAPTER 7 Troubleshooting VPN Connections Solving Connectivity Problems Try Different Settings Automatically If the Connectivity Problems Dialog Is Displayed Changing the VPN Client s MTU Changing the VPN Client s MAC Address Collecting Diagnostics Information Table of Contents 3
4 4 Table of Contents
5 CHAPTER 1 INTRODUCTION Welcome to the StoneGate IPsec VPN client. This chapter describes how to use this Guide and provides contact details for Stonesoft. The following sections are included: How to Use This Guide (page 6) Contact Information (page 6) 5
6 How to Use This Guide This StoneGate IPsec VPN Client User s Guide describes step-by-step the use of the StoneGate IPsec VPN client for the end-users. If you are a StoneGate administrator, see the Online Help of the Management Client and the StoneGate IPsec VPN Client Administrator s Guide for information on setting up access for VPN clients and configuring the VPN client. Typographical Conventions The following ways to highlight special text are used throughout the guide: Table 1.1 Typographical Conventions Formatting VPN client text References, terms Command line User input Informative Uses Interface elements (such as menu options) and any other interaction with the user interface are in bold-face. Cross-references and first use of acronyms and terms are in italics. File names, directories, and text displayed on the screen are monospaced. Text you need to type is monospaced bold-face. Note Notes provide important information that may help you complete a task. Contact Information For street addresses, phone numbers, and general information about StoneGate and Stonesoft Corporation, visit our Web site at Technical Support If you experience technical problems with the VPN client, contact the network administrator responsible for the StoneGate system. Stonesoft technical support is available for StoneGate administrators based on a valid support contract. Your Comments and Queries We want to make our products suit your needs as well as possible. We are always pleased to receive any suggestions you may have for improvements. To comment on software and hardware products, [email protected]. To comment on the documentation, [email protected]. For queries and comments regarding other matters, [email protected]. 6 Chapter 1 Introduction
7 CHAPTER 2 INSTALLING AND UPGRADING THE VPN CLIENT This section explains how to install the StoneGate IPsec VPN client as a fresh installation or as an upgrade. If your StoneGate VPN client version is older than 4.2, you must uninstall the previous version before installing the new version. The following sections are included: Installing the VPN Client (page 8) Upgrading the VPN Client (page 10) 7
8 Installing the VPN Client This section explains how to install using the standard installer. However, you may not need to use this standard installer, because the administrator may have preconfigured the installation so that it does not require any input from you. To install the VPN client using the standard installer 1. Double-click the executable file your network administrator has supplied. The Welcome page of the Installation Wizard opens. 2. Click Next to continue. 2 You can click Cancel at any time to stop the installation Indicate that you accept the License Agreement and click Next to continue. 8 Chapter 2 Installing and Upgrading the VPN Client
9 (In Windows XP) Leave the Silently install drivers that have not been signed by Microsoft option selected to avoid having to manually confirm the installation of the required drivers Click Install to start the installation. Note You may see one or more confirmation messages from Windows during the installation. You must allow the installation of all drivers and components for the VPN client to work correctly. 5. When the installation is finished, click Finish to close the wizard. The installation is now complete. To complete the steps required to start using the VPN client, proceed to Connecting to a New Gateway for the First Time (page 11). Installing the VPN Client 9
10 Upgrading the VPN Client Note If the installed version of the StoneGate VPN client is earlier than 4.2, you must uninstall the previous version and perform a fresh installation of the new client. To upgrade StoneGate IPsec VPN client 1. Double-click the executable file your network administrator has supplied. A confirmation dialog opens. 2. Click Yes. The Welcome screen for the InstallShield Wizard opens. 3. Click Next to start the upgrade. 4. When the upgrade is finished, click Finish to close the wizard. 10 Chapter 2 Installing and Upgrading the VPN Client
11 CHAPTER 3 CONNECTING TO A NEW GATEWAY FOR THE FIRST TIME Connecting to a gateway for the first time is a different process than connecting to the same gateway in subsequent daily use. If the gateway requires certificate authentication, you cannot connect to the gateway until you have a valid certificate. Your administrator should inform you if you need to take action to obtain a certificate. Instructions for certificate-related tasks can be found in Managing Certificates (page 31). The following sections are included: Getting Started With Connecting to Gateways (page 12) Viewing a List of Configured Gateways (page 12) Connecting to a New Pre-Configured Gateway (page 13) Adding New Gateways Manually (page 14) Checking the Gateway s Certificate Fingerprint (page 15) 11
12 Getting Started With Connecting to Gateways After the installation, you cannot connect to gateways and end-points until they are configured in the VPN client. Also, if the VPN client is configured to allow domain logon (through the Windows logon screen), only gateways you have connected to at least once are available on the logon screen. The administrator may have preconfigured the gateways for you so that you can connect to them just by selecting them on a list. Alternatively, the administrator may provide you with contact information for each gateway either in a file or just as an address that you can contact. What s Next? If you are unsure if the gateway that you want to connect to is configured, see Viewing a List of Configured Gateways (page 12). If you know the gateway that you want to connect to is configured, see Connecting to a New Pre-Configured Gateway (page 13). If you know the gateway information is not present, add the information as explained in Adding New Gateways Manually (page 14). Viewing a List of Configured Gateways To check which gateways are configured 1. Double-click the StoneGate IPsec VPN icon in the Notification area of the Windows Taskbar. The StoneGate IPsec VPN Properties dialog opens Switch to the Gateways tab. All configured gateways are listed in the table Chapter 3 Connecting to a New Gateway for the First Time
13 Connecting to a New Pre-Configured Gateway If the gateway requires certificate authentication, you need a valid certificate to connect. The administrator should inform you if you need to obtain a certificate (see Managing Certificates (page 31)). To connect to a new preconfigured Gateway 1. Right-click the StoneGate IPsec VPN icon in the Notification area of the Windows Taskbar to access the VPN client s menu To open the connection dialog, select one of the following from the menu: If there are no fully configured gateways yet, you can select Connect to New Gateway directly at the main level. Otherwise, select Select Gateway Connect to New Gateway Make sure Preconfigured Gateway is selected. If the setting is disabled, there are no preconfigured gateways that have not been contacted yet (add any new gateways manually as explained on the next page). 4. Select the preconfigured Gateway. 5. Select the End-Point to try if there are several. End-points usually correspond to different Internet connections at the office. 6. If you are allowed to authenticate using different methods, you can select the authentication method you want to use from the Authentication list. 7. Click OK. The User Authentication dialog opens. What s Next? Log in as explained in Authenticating Yourself (page 22). Connecting to a New Pre-Configured Gateway 13
14 Adding New Gateways Manually If the gateway requires certificate authentication, you need a valid certificate to connect. The administrator should inform you if you need to obtain a certificate (see Managing Certificates (page 31)). To manually connect to a gateway that is not preconfigured in your installation, you need the following information from your network administrator: One address for each gateway you need to connect to. Information on which credentials to use for authentication. The gateway s certificate fingerprint that allows you to verify the gateway s identity. To add a gateway by typing the address manually 1. Right-click the StoneGate IPsec VPN icon in the Notification area of the Windows Taskbar to access the VPN client s menu To open the connection dialog, select one of the following from the menu: If there are no fully configured gateways yet, you can select Connect to New Gateway directly at the main level. Otherwise, select Select Gateway Connect to New Gateway Select New Gateway. If there are no preconfigured gateways that have not been contacted, the setting is selected by default. 4. Enter the gateway s address in the Host Name field. 5. If you are allowed to authenticate using different methods, select the authentication method you want to use from the Authentication list. 6. Click OK. 7. If you authenticate with a certificate, you must now enter the Passphrase that you or your administrator have defined for this certificate. The New Gateway dialog opens prompting you to verify the identity of the gateway by checking its certificate fingerprint Chapter 3 Connecting to a New Gateway for the First Time
15 Checking the Gateway s Certificate Fingerprint When you connect to a new gateway for the first time, you must verify its identity. Note The Certificate Fingerprint is an important security feature that protects the confidentiality of your communications. An incorrect fingerprint may indicate a malicious attempt to spy on your communications. To check the Gateways Certificate Fingerprint 1. Compare the Subject Name and the Certificate Fingerprint to the information the administrator has provided 2. Proceed according to the result of the comparison: If there is a difference in the values, click Cancel and contact the administrator. If the values match, click OK. Note If the gateway s certificate changes, you may have to check the Certificate Fingerprint again at a later date. The administrator informs you if this is necessary and provides you with the information for checking the new Certificate Fingerprint. What s Next? If your authentication method is user name and password, you must now enter this information. See Authenticating Yourself (page 22). See the next chapter for more information on how to use the VPN client. Checking the Gateway s Certificate Fingerprint 15
16 16 Chapter 3 Connecting to a New Gateway for the First Time
17 CHAPTER 4 USING THE VPN CLIENT This chapter explains concepts and tasks related to the daily use of the StoneGate IPsec VPN client. The following sections are included: Overview to the VPN Client (page 18) Connecting to Resources (page 19) Authenticating Yourself (page 22) Closing the VPN Connection (page 24) Turning the VPN Client off (page 24) Activating/Deactivating Domain Logon (page 25) Activating/Deactivating Retry With Different Settings (page 26) 17
18 Overview to the VPN Client The StoneGate IPsec VPN client lets you access your organization s internal resources securely through the Internet. The VPN client establishes an encrypted connection to the StoneGate gateways that control access to your organization s internal resources, hiding the information you transfer from anyone who might intercept it in transit. The VPN client adds an icon to the Notification area in the Windows Taskbar. The color of the VPN client icon changes according to the status of the VPN client (see Monitoring VPN Connections (page 27) for more information). You can view the status as text when you hold the mouse pointer over the VPN client icon. Frequently needed commands are available in the menu that opens when you right-click the VPN client icon. The items change with the status of the VPN connection. More actions and status information. Use Connect/Disconnect to open and close a VPN. Reauthenticate when convenient (instead of waiting for the timeout). Shut down the VPN client. Select where you want to connect. Select end-point if the gateway has several. Disconnect the VPN and turn off automatic authentication prompts. More information and commands are available in the Properties dialog that opens through the command in the right-click menu or by double-clicking the VPN client icon. 18 Chapter 4 Using the VPN Client
19 Connecting to Resources You must authenticate yourself each time you connect with either user name and password, a certificate passphrase, or your smartcard. Usually, the administrator selects a single method that you can use, but in some cases you can select from alternative methods (see Selecting the Authentication Method (page 22)). As a further security measure, your authentication is valid for a specific period of time after which you need to reauthenticate. Reauthentication may also be required if the VPN connection is cut due to networking problems. There are three ways to establish a VPN: You may be able to log on to the VPN on the Windows logon screen. This way, the computer can connect all internal network resources (such as network drives) immediately when it starts up. See Connecting to a Gateway at Windows Logon below. You can manually connect your VPN client to a gateway and end-point of your choice. See Connecting to a Gateway Manually (page 21). When you are outside the office, the VPN client automatically prompts you to authenticate when you access a service or application that requires a VPN. See Authenticating Yourself (page 22). Connecting to a Gateway at Windows Logon Depending on the VPN client s settings, you may be able to open the VPN connection at the Windows logon screen before you log in to Windows. This way, network drives and other resources can be connected when you log in to Windows, avoiding error messages and delays that may sometimes occur if resources are not available. This feature is not available in Windows XP. The integrated logon feature (domain logon) can be disabled and enabled in the properties dialog of the VPN client (Advanced tab), see Activating/Deactivating Domain Logon (page 25). Note Only gateways that you have already previously contacted can be accessed through the logon screen as explained below. See Connecting to a New Gateway for the First Time (page 11). To open the VPN connection through the Windows Logon screen 1. In the Windows logon screen, select Switch User. Windows displays icons for all configured user accounts and previously contacted VPN Gateways. 1 Connecting to Resources 19
20 2. Select the gateway that you want to connect to. The logon screen for that gateway is displayed. If you do not see any VPN gateways even though you have successfully connected to a gateway previously, this feature is most likely turned off in your installation, see Activating/Deactivating Domain Logon (page 25). 2 If a VPN connection is already active, you can disconnect it here. 3. If the authentication method calls for user name and password, make a selection for the Use same credentials to log on to setting: If the same user name and password are valid for both the VPN access and the Windows account, select the option so that you are also logged in to Windows without having to provide the details again. If the Windows logon information is different from your VPN client credentials, make sure the option is deselected to avoid a Windows logon failure. Logon window for user name and password authentication Logon window for certificate authentication 3 4. Enter your credentials for the VPN connection. The VPN is established. Depending on the authentication method and the options selected, you will either need to log in to Windows or you are automatically logged in. After logging in to Windows, the VPN connection is active and you can use resources through the VPN as soon as the Windows desktop is loaded. Related Tasks Authenticating Yourself (page 22) Closing the VPN Connection (page 24) Monitoring VPN Connections (page 27) 4 20 Chapter 4 Using the VPN Client
21 Connecting to a Gateway Manually If you want to connect to a gateway that is not yet listed, you must add the gateway as described in Connecting to a New Gateway for the First Time (page 11). To connect again to the previously contacted gateway 1. Right-click the IPsec VPN icon Select Connect from the menu that opens. 3. Enter your credentials for the VPN connection (see Authenticating Yourself (page 22)). The VPN is established. To connect to a different gateway than you previously contacted 1. Right-click the IPsec VPN icon. 2. Select the correct gateway from the Select Gateway sub-menu. 3. Enter your credentials for the VPN connection (see Authenticating Yourself (page 22)). The VPN is established and the Gateway you selected is stored as your default connection. Switching to an Alternative End-Point Some gateways may be reached through several end-points. These usually correspond to different Internet connections at the office to which you are connecting. Selecting a different end-point may be useful when one of the Internet connections at the office you are connecting to is experiencing technical difficulties. To select an end-point 1. Right-click the IPsec VPN icon. 2. Select the correct end-point from the Connect to End-Point sub-menu. 3. Enter your credentials for the VPN connection (see Authenticating Yourself (page 22)). The VPN is established and the end-point you selected is stored as your default connection. Connecting to Resources 21
22 Authenticating Yourself You must authenticate yourself whenever you connect to a gateway with the VPN client. The authentication method depends on the gateway to which you connect. If you authenticate yourself to a gateway with a user name and a password, the VPN client asks you to reauthenticate yourself periodically. If a certificate or a smartcard is used, reauthentication is automatic. Related Tasks Selecting the Authentication Method (page 22) Authenticating with a User Name and Password (page 23) Authenticating with a Certificate (page 23) Authenticating with a Smartcard (page 23) Selecting the Authentication Method A gateway may allow you to select how you want to authenticate. In that case, you can select which authentication method is used as explained below. To select the authentication method 1. Double-click the StoneGate IPsec VPN icon in the Windows Taskbar. The StoneGate IPsec VPN Properties dialog opens Switch to the Gateways tab. All configured gateways are listed in the table Right-click the gateway for which you want to select the authentication method and select Authentication Username or Authentication Certificate [name used in certificate]. Smartcards contain certificates, so they are also listed as certificates. Note that all gateways may not accept all authentication methods. The selected authentication method is used the next time you authenticate yourself. 22 Chapter 4 Using the VPN Client
23 Authenticating with a User Name and Password The user name and password authentication dialog is displayed for any method that requires you to enter your user name manually. The password you enter can be fixed or, for example, a code generated by physical security token that you carry with you. The network administrator provides you the necessary details for logging in. Note You cannot change your password through the VPN client. Contact the network administrator if you need information for changing the password. Authenticating with a Certificate The certificate is protected with a passphrase. You have either defined the passphrase yourself or you should have received the passphrase from the administrator. Related Tasks Managing Certificates (page 31) Changing the Certificate Passphrase (page 42) Authenticating with a Smartcard If you have a smartcard, the VPN client uses the smartcard software installed on your computer to prompt you for your passphrase when authentication is needed. The dialog you see depends on the smartcard software installed on your computer. Authenticating Yourself 23
24 Closing the VPN Connection There is usually no need to close the VPN connection when you stop using it. An unused connection automatically times out after a while. You can still disconnect an active VPN manually at any time in the following ways: Select Disconnect from the right-click menu for the VPN client s icon in the Windows Taskbar. Click Disconnect on the Status tab in the VPN client s properties dialog. Right-click the active gateway on the Gateways tab in the VPN client s properties dialog and select Disconnect from the menu that opens. Click Disconnect in the Windows user switch screen (see Connecting to a Gateway at Windows Logon (page 19)). When you do one of the listed actions, the status of the VPN changes to No VPN connection. If you or some application on your computer tries to access a resource that requires a VPN, the authentication prompt appears; to avoid this from happening, turn off the VPN client as explained in Turning the VPN Client off (page 24). Turning the VPN Client off If necessary, you can disable the VPN client so that it does not prompt you for authentication automatically. This can be done in the following alternative ways: Right-click the VPN client s icon in the Windows Taskbar and select Disable VPN. Click Disable VPN on the Status tab in the VPN client s properties dialog. When the authentication prompt is automatically displayed, click the grey icon in the authentication dialog (illustrated below) to disable the VPN. Disable VPN client When you disable the VPN client, the status of the VPN changes to No VPN connection (VPN Disabled). You can connect the VPN manually following the usual procedure without specifically re-enabling the VPN client. You are not able to use any resource through the VPN before you connect manually. See Connecting to Resources (page 19). 24 Chapter 4 Using the VPN Client
25 Activating/Deactivating Domain Logon Domain logon allows you to open the VPN connection before you log in to Windows directly on the Windows logon screen. This way, network drives and other resources can be connected when you log in to Windows, avoiding error messages and delays that may sometimes occur if resources are not available. This feature is not available in Windows XP. To enable/disable domain logon 1. Double-click the StoneGate IPsec VPN icon in the Notification area of the Windows Taskbar. The StoneGate IPsec VPN Properties dialog opens Switch to the Advanced tab Select the Enable Secure Domain Logon option. 4. Click Apply to submit the change. 5. Click Close. By default, all Gateways you have contacted at least once are listed at Windows Logon when this feature is enabled. You can remove gateways from the logon screen by manually disabling the secure domain logon feature through each Gateway s right-click menu on the Gateways tab of the StoneGate IPsec VPN Properties dialog. See Connecting to a Gateway at Windows Logon (page 19) for information on how to use this feature. 5 Activating/Deactivating Domain Logon 25
26 Activating/Deactivating Retry With Different Settings Some locations may require different connection settings than the previous locations from which you have connected. To help you with some types of connection issues, the VPN client can try different options automatically if the VPN fails to establish. The automatic retry setting is disabled by default. To activate/deactivate automatic reconnect using different options 1. Double-click the StoneGate IPsec VPN icon in the Notification area of the Windows Taskbar. The StoneGate IPsec VPN Properties dialog opens Switch to the Advanced tab Deselect/select the Reconnect using different options after timeout setting. 4. Click Apply. 5. Click Close. 26 Chapter 4 Using the VPN Client
27 CHAPTER 5 MONITORING VPN CONNECTIONS This chapter explains how you can manage and monitor VPN connections when they are active. The following sections are included: Viewing the VPN Connection Status (page 28) Viewing Details of an Active VPN Connection (page 28) Viewing a Configuration Downloaded From a Gateway (page 29) 27
28 Viewing the VPN Connection Status The VPN client icon in the Windows Taskbar and on the Status tab of the VPN client properties dialog shows the status of VPN connections using the following colors: Gray: VPN is disabled. Blue: No VPN connection. Green: VPN established. Alternating red and green: Connectivity problems. Red: Error. You can manage and monitor the VPN connections on the Status tab in the VPN client s Properties dialog. Name of the currently selected gateway. Progress of establishing a VPN. Status information. Details of the active VPN connection. Reauthentication is required at regular intervals. The timer shows how long it takes until the authentication dialog automatically pops up again. Viewing Details of an Active VPN Connection Detailed information on the established VPN connection is available. This information is mainly useful for advanced users and administrators, and interpreting the details requires knowledge about IPsec standards. To view details of a VPN connection 1. Double-click the IPsec VPN icon to open the StoneGate IPsec VPN properties Chapter 5 Monitoring VPN Connections
29 2. Click Details on the Status tab. The VPN Details dialog opens Check the settings used in the currently active VPN connection in the dialog that opens. IPsec-related terms are used as follows: IKE: settings for negotiation phase 1. IPsec: settings for negotiation phase Click Close when you are done. Viewing a Configuration Downloaded From a Gateway The VPN client receives many of its settings from the Gateway. When you connect to a gateway, the VPN client checks if there are previously downloaded settings from the gateway in question, and whether such settings are up-to-date. If necessary, a new configuration is downloaded, replacing the old configuration. To view a configuration 1. Double-click the IPsec VPN icon to open the StoneGate IPsec VPN properties. 1 Viewing a Configuration Downloaded From a Gateway 29
30 2. Switch to the Gateways tab Right-click a gateway you have previously connected to and select View Gateway Configuration. The settings that the client has downloaded from that gateway are displayed in a new dialog. 30 Chapter 5 Monitoring VPN Connections
31 CHAPTER 6 MANAGING CERTIFICATES This chapter explains how you can manage VPN client certificates. The following sections are included: Overview to Managing Certificates (page 32) Using Internal Certificates (page 32) Using External Certificates (page 37) Changing the Certificate Passphrase (page 42) Viewing Details of Certificates (page 44) Changing User ID Type of a Certificate (page 45) Deleting Certificates (page 46) 31
32 Overview to Managing Certificates The signed certificates that you have imported are listed on the Certificates tab. You can, for example, change the certificate key s passphrase. You can also view general information on the certificate(s) you use and the Certificate Authority that signed them. If you must create a new internal certificate request or import an internal certificate that an administrator has signed, see Using Internal Certificates (page 32). If you want to import a certificate created and signed outside StoneGate, see Using External Certificates (page 37). All certificates have a set period of use, typically of a few years. When the certificate expires, it can no longer be used, and you need to obtain a new certificate. You can view your installed certificate s expiration date in the VPN client, see Viewing Details of Certificates (page 44). Using Internal Certificates The administrator may have defined that your VPN connections require a client certificate on your machine. Follow these instructions if the administrator informs you that you must generate a certificate request in the VPN client and send it for signing to your network administrator. If the client certificate on your computer or the Certificate Authority that signed the client certificate has expired, repeat the same process to renew the certificate. Creating a Basic Certificate Request The following instructions describe how you can create a basic certificate request for an internal certificate in the VPN client. If the administrator informs you that you must create an advanced certificate request for an internal certificate, see the IPsec VPN Client Administrator s Guide for instructions. To create a basic certificate request for an internal certificate 1. Double-click the StoneGate IPsec VPN icon in the Windows Taskbar. The StoneGate IPsec VPN Properties dialog opens Chapter 6 Managing Certificates
33 2. Switch to the Certificates tab Click Create Certificate Request Leave Basic Mode selected and click Next. Using Internal Certificates 33
34 5. Enter the User Name. This must correspond to what is defined on the gateway. Contact the administrator if you are unsure of what to enter as the user name Enter a Passphrase. You can select this passphrase yourself. You must enter this passphrase whenever you authenticate yourself using the certificate. Note Passphrases should be at least eight characters long and contain a combination of numbers, letters, and special characters. Secure passphrases are never based on personal information such as names, birthdays, ID numbers, phone numbers, registration plate numbers, or any of the above written backwards. 7. Click Create Click Save. A standard Windows file save dialog opens. 9. Browse to the correct folder, enter a file name and click Save. Make sure that Certificate Requests (*.csr) is selected as the file type. 34 Chapter 6 Managing Certificates
35 10.Click Launch Default Windows Application to create a new message in your default application or click Finish to just close the window Send the certificate request (the.csr file that you just saved) to your network administrator for signing. When you get the signed internal certificate back, import it as described in Importing a Signed Certificate below. Importing a Signed Certificate Once the administrator has signed your certificate request for an internal certificate and sent it back to you, import the signed certificate in your VPN client. To import an internal certificate 1. Double-click the StoneGate IPsec VPN icon in the Windows Taskbar. The StoneGate IPsec VPN Properties dialog opens. 1 Using Internal Certificates 35
36 2. Switch to the Certificates tab Click Import Certificate Leave Internal Certificate selected and click Next. The Import Certificate Wizard opens. 36 Chapter 6 Managing Certificates
37 5. Click Select. A standard Windows file browser opens Browse to the correct folder, select the signed certificate and click Open. 7. Click Finish to close the wizard. The signed internal certificate is now listed on the Certificates tab with information about the certificate, such as its expiration date. Related Tasks Managing Certificates (page 31) Using External Certificates You can import a previously generated external certificate in the VPN client. There are two types of external certificates that you can import: you can either import the certificate and its private key as a single PKCS # 12 file or as two separate files. What s Next? Importing a PKCS # 12 File (page 37). Importing Separate Certificate and Private Key Files (page 40). Importing a PKCS # 12 File To import a PKCS # 12 file 1. Double-click the StoneGate IPsec VPN icon in the Windows Taskbar. The StoneGate IPsec VPN Properties dialog opens. 1 Using External Certificates 37
38 2. Switch to the Certificates tab Click Import Certificate. The Import Certificate Wizard opens. 4. Select External Certificate Leave PKCS # 12 File selected and click Next. 38 Chapter 6 Managing Certificates
39 6. Click Browse and select the PKCS # File to import Enter the password for the certificate file. 8. Enter a Passphrase for using this certificate in both fields provided. You can select this passphrase yourself. You must enter this passphrase whenever you authenticate yourself using the certificate. Note Passphrases should be at least eight characters long and contain a combination of numbers, letters, and special characters. Secure passphrases are never based on personal information such as names, birthdays, ID numbers, phone numbers, registration plate numbers, or any of the above written backwards. 9. Click Next. 10.Click Finish. 10 Using External Certificates 39
40 The signed certificate is now listed on the Certificates tab, which displays, among other information, the expiration date of the certificate. Related Tasks Managing Certificates (page 31) Importing Separate Certificate and Private Key Files To import separate certificate and private key files 1. Double-click the StoneGate IPsec VPN icon in the Windows Taskbar. The StoneGate IPsec VPN Properties dialog opens Switch to the Certificates tab Click Import Certificate. The Import Certificate Wizard opens. 40 Chapter 6 Managing Certificates
41 4. Select External Certificate Select Separate Certificate and Private Key Files and click Next. 6. Click Browse to select the certificate file and private key file to import Click Next. Using External Certificates 41
42 8. Click Finish. 8 The certificate is now listed on the Certificates tab, which displays, among other information, the expiration date of the certificate. Related Tasks Managing Certificates (page 31) Changing the Certificate Passphrase You must enter a passphrase every time the VPN client asks you to authenticate yourself using this certificate. You can change this passphrase through the VPN client. Note Passphrases should be at least eight characters long and contain a combination of numbers, letters, and special characters. Secure passphrases are never based on personal information such as names, birthdays, ID numbers, phone numbers, registration plate numbers, or any of the above written backwards. To change the key passphrase 1. Double-click the StoneGate IPsec VPN icon in the Windows Taskbar. The StoneGate IPsec VPN Properties dialog opens Chapter 6 Managing Certificates
43 2. Switch to the Certificates tab Right-click the certificate and select Change Key Passphrase from the menu. The Change Key Passphrase dialog opens. 4. Enter the current passphrase and the new passphrase in both fields provided, and click OK. Note If you leave the new passphrase fields empty, the private key of the certificate will not be encrypted. For security reasons, it is highly recommended that you enter a passphrase. Changing the Certificate Passphrase 43
44 Viewing Details of Certificates To view details of a user certificate 1. Double-click the StoneGate IPsec VPN icon in the Windows Taskbar. The StoneGate IPsec VPN Properties dialog opens Switch to the Certificates tab Right-click a certificate on the Certificates tab and select Details of User Certificate or Details of Issuer Certificate. The Windows Certificate dialog opens. 44 Chapter 6 Managing Certificates
45 4. Switch between the General, Details, and Certification Path tabs to view detailed information on the user certificate. Although this dialog provides tools for installing the user certificate in the Microsoft Certificates Store on your computer and the issuer certificate in the Trusted Root Certification Store, such tasks are not necessary for the operation of the VPN client. Note This dialog is a standard operating system dialog, not part of the StoneGate VPN client. If you would like more instructions for using this dialog, press F1 to view the context-specific Windows help on this dialog (or a short description of the selected control in Windows XP). Changing User ID Type of a Certificate Several user IDs may be available for each certificate. The administrator may ask you to change the user ID type for the certificate. Note The network administrator has defined your user ID and its type. Do not change the user ID type unless the network administrator specifically instructs you to do so. To change a certificate s user ID type 1. Double-click the StoneGate IPsec VPN icon in the Windows Taskbar. The StoneGate IPsec VPN Properties dialog opens. 1 Changing User ID Type of a Certificate 45
46 2. Switch to the Certificates tab Right-click the certificate for which you want to change the user ID type and select Certificate ID to Use , Certificate ID to Use Subject Name, Certificate ID to Use DNS Name, or Certificate ID to Use IP Address from the menu. The options available to you depend on which types of information are included in the certificate. Deleting Certificates Sometimes, a certificate may become unnecessary. In such cases, you can delete the obsolete certificate from the VPN client. To delete a certificate 1. Double-click the StoneGate IPsec VPN icon in the Windows Taskbar. The StoneGate IPsec VPN Properties dialog opens Chapter 6 Managing Certificates
47 2. Switch to the Certificates tab Right-click the certificate and select Delete Certificate. A confirmation dialog is shown. 4. Click Yes to permanently delete the certificate. Deleting Certificates 47
48 48 Chapter 6 Managing Certificates
49 CHAPTER 7 TROUBLESHOOTING VPN CONNECTIONS This chapter explains what you can do if you have problems with your VPN connections. The following sections are included: Solving Connectivity Problems (page 50) Collecting Diagnostics Information (page 53) 49
50 Solving Connectivity Problems Try Different Settings Automatically Some connectivity problems can be solved by changing the VPN clients settings slightly. You can make the VPN client automatically try different combinations of settings, see Activating/ Deactivating Retry With Different Settings (page 26). The automatic retry setting is particularly useful in dealing with network connections that severely restrict the allowed communications. In such situations, you are generally able to browse the Internet outside the VPN connection, but the VPN client is unable to connect to the gateway. If the Connectivity Problems Dialog Is Displayed If network connectivity problems occur when the VPN client has already established a VPN to a gateway, the Connectivity Problems dialog may be displayed. To troubleshoot network connectivity problems 1. Select one of the available options: Switch to the next end-point of the gateway: If the gateway has several end-points, the VPN client tries to establish a VPN by switching to the next end-point. This action helps if there are several Internet connections at the office you are connecting to and the link you were using is down. Reconnect to the end-point: The VPN client tries to establish a new connection to the currently selected end-point. This action helps if your connection to the gateway was cut because of a temporary problem at any point along the communications path. Continue with the current end-point as usual: The VPN client waits for the already established connection to the current end-point to become available. This action helps particularly with network problems related to your local environment, for example, if the network cable is removed and re-inserted. 2. Click OK. If the VPN client fails to establish a connection according to the selected option, wait until network connections become available again and then try to connect to the gateway manually as described in Connecting to Resources (page 19). 50 Chapter 7 Troubleshooting VPN Connections
51 Changing the VPN Client s MTU If you experience networking problems, your administrator may request you to adjust the MTU value of your VPN client installation. Background: Large chunks of data you send over networks are broken down into several smaller units (packets) for transfer. The MTU (maximum transmission unit) defines how large the network packets are when sent. A larger MTU is more efficient, but the packet size may have to be reduced if the packets are sent through a network or device that can not handle large packets. To change the MTU 1. Double-click the StoneGate IPsec VPN icon in the Notification area of the Windows Taskbar. The StoneGate IPsec VPN Properties dialog opens Switch to the Advanced tab Select the correct MTU from the list or type in the correct value according to the information you have received from the administrator. 4. Click Apply. 5. Click Close. 6. Restart the computer. 5 Solving Connectivity Problems 51
52 Changing the VPN Client s MAC Address If you experience networking problems, your administrator may request you to adjust the MAC address of your VPN client installation. Changing the MAC address requires Windows administrator privileges. Background: The MAC (media access control) address is a fixed identifier of a network device. The VPN client borrows the MAC address of a network card on your computer when it sends information. In some configurations, the MAC address picked up like this may not be unique between different users, causing intermittent connection problems when the same address is used for two different VPN connections at the same time. To change the MAC address 1. Double-click the StoneGate IPsec VPN icon in the Notification area of the Windows Taskbar. The StoneGate IPsec VPN Properties dialog opens Switch to the Advanced tab Click Select MAC Address. The MAC Address for Virtual IP Address dialog opens (Windows may display a security dialog before the dialog opens). 4. Select the correct value according to the information from the administrator. 5. Click Apply. 6. Click Close. 52 Chapter 7 Troubleshooting VPN Connections
53 Collecting Diagnostics Information Diagnostics information is meant for administrators. If you are experiencing connection problems with the VPN client, the administrator may ask you to collect and send in a file containing diagnostics information about your installation. To collect diagnostics 1. Double-click the StoneGate IPsec VPN icon in the Notification area of the Windows Taskbar. The StoneGate IPsec VPN Properties dialog opens Switch to the Diagnostics tab Click Collect Diagnostics. The Collect Diagnostics dialog opens and displays the progress of the data collection. 4. Wait while the information is gathered. You may see an additional dialog open when system information is gathered. Note Collecting the diagnostic data will take some time. Collecting Diagnostics Information 53
54 5 5. When the data collection finishes, click Save Diagnostics. The Save Diagnostics As dialog opens. 6. Choose the location where to save the file, enter a file name and click Save. 54 Chapter 7 Troubleshooting VPN Connections
55 StoneGate Guides Administrator s Guides - step-by-step instructions for configuring and managing the system. Installation Guides - step-by-step instructions for installing and upgrading the system. Reference Guides - system and feature descriptions with overviews to configuration tasks. User's Guides - step-by-step instructions for end-users. For more documentation, visit Stonesoft Corporation Itälahdenkatu 22 A FI Helsinki Finland Tel Fax Stonesoft Inc Crown Pointe Parkway Suite 900 Atlanta, GA USA Tel Fax Copyright 2010 Stonesoft Corporation. All rights reserved. All specifications are subject to change.
VPN CLIENT ADMINISTRATOR S GUIDE
STONEGATE IPSEC VPN 5.1 VPN CLIENT ADMINISTRATOR S GUIDE V IRTUAL PRIVATE NETWORKS Legal Information End-User License Agreement The use of the products described in these materials is subject to the then
SMC INSTALLATION GUIDE
STONEGATE 5.3 SMC INSTALLATION GUIDE S TONEGATE MANAGEMENT CENTER Legal Information End-User License Agreement The use of the products described in these materials is subject to the then current end-user
Global VPN Client Getting Started Guide
Global VPN Client Getting Started Guide 1 Notes, Cautions, and Warnings NOTE: A NOTE indicates important information that helps you make better use of your system. CAUTION: A CAUTION indicates potential
StoneGate Installation Guide
SMC FW IPS SSL VPN VPN StoneGate Installation Guide SOHO Firewalls Updated for StoneGate Management Center 5.0.0 Legal Information End-User License Agreement The use of the products described in these
WatchGuard Mobile User VPN Guide
WatchGuard Mobile User VPN Guide Mobile User VPN establishes a secure connection between an unsecured remote host and a protected network over an unsecured network using Internet Protocol Security (IPSec).
STONEGATE IPSEC VPN 5.1 VPN CONSORTIUM INTEROPERABILITY PROFILE
STONEGATE IPSEC VPN 5.1 VPN CONSORTIUM INTEROPERABILITY PROFILE V IRTUAL PRIVATE NETWORKS C ONTENTS Introduction to the Scenarios... 3 Scenario 1: Gateway-to-Gateway With Pre-Shared Secrets... 3 Configuring
Endpoint Security VPN for Windows 32-bit/64-bit
Endpoint Security VPN for Windows 32-bit/64-bit E75.20 User Guide 13 September 2011 2011 Check Point Software Technologies Ltd. All rights reserved. This product and related documentation are protected
Citrix Access Gateway Plug-in for Windows User Guide
Citrix Access Gateway Plug-in for Windows User Guide Access Gateway 9.2, Enterprise Edition Copyright and Trademark Notice Use of the product documented in this guide is subject to your prior acceptance
FW-310. Appliance Installation Guide
FW-310 Appliance Installation Guide Legal Information End-User License Agreement The use of the products described in these materials is subject to the then current end-user license agreement, which can
F IREWALL/VPN INSTALLATION GUIDE
STONEGATE 5.1 F IREWALL/VPN INSTALLATION GUIDE F IREWALL V IRTUAL PRIVATE NETWORKS Legal Information End-User License Agreement The use of the products described in these materials is subject to the then
IBM Client Security Solutions. Client Security User's Guide
IBM Client Security Solutions Client Security User's Guide December 1999 1 Before using this information and the product it supports, be sure to read Appendix B - Notices and Trademarks, on page 22. First
VPNC Interoperability Profile
StoneGate Firewall/VPN 4.2 and StoneGate Management Center 4.2 VPNC Interoperability Profile For VPN Consortium Example Scenario 1 Introduction This document describes how to configure a StoneGate Firewall/VPN
McAfee SMC Installation Guide 5.7. Security Management Center
McAfee SMC Installation Guide 5.7 Security Management Center Legal Information The use of the products described in these materials is subject to the then current end-user license agreement, which can
Kerio VPN Client. User Guide. Kerio Technologies
Kerio VPN Client User Guide Kerio Technologies 2011 Kerio Technologies s.r.o. All rights reserved. This guide provides detailed description on Kerio VPN Client, version 7.1 for Windows. All additional
Using Microsoft Active Directory Server and IAS Authentication
StoneGate How-To Using Microsoft Active Directory Server and IAS Authentication StoneGate Firewall/VPN 3.0.7 and Management Center 4.1 Table of Contents Basic Scenario...page 3 Configuring a Windows 2003
Dial-up Installation for CWOPA Users (Windows Operating System)
Dial-up Installation for CWOPA Users (Windows Operating System) 1 Table of Contents Download and Install Digital Certificates... 3 Internet Explorer 8/9 Certificate Installation.3 Windows XP Instructions
Stonesoft Guide. 3G Modem Guide
Stonesoft Guide 3G Modem Guide Copyright 2013 Stonesoft Corporation. All rights reserved. All specifications are subject to change. Revision: Stonesoft_3G Modem_ 20130620 2 Introduction Thank you for choosing
STONEGATE 5.2 I NSTALLATION GUIDE I NTRUSION PREVENTION SYSTEM
STONEGATE 5.2 I NSTALLATION GUIDE I NTRUSION PREVENTION SYSTEM Legal Information End-User License Agreement The use of the products described in these materials is subject to the then current end-user
VeriSign PKI Client Government Edition v 1.5. VeriSign PKI Client Government. VeriSign PKI Client VeriSign, Inc. Government.
END USER S GUIDE VeriSign PKI Client Government Edition v 1.5 End User s Guide VeriSign PKI Client Government Version 1.5 Administrator s Guide VeriSign PKI Client VeriSign, Inc. Government Copyright 2010
HP Intelligent Management Center v7.1 Virtualization Monitor Administrator Guide
HP Intelligent Management Center v7.1 Virtualization Monitor Administrator Guide Abstract This guide describes the Virtualization Monitor (vmon), an add-on service module of the HP Intelligent Management
Getting Started - Client VPN
Getting Started - Client VPN Symantec Client VPN v9.0 This chapter includes the following topics: What is new in this release on page 2 System requirements on page 3 Documentation on page 3 Upgrading to
Aventail Connect Client with Smart Tunneling
Aventail Connect Client with Smart Tunneling User s Guide Windows v8.7.0 1996-2006 Aventail Corporation. All rights reserved. Aventail, Aventail Cache Control, Aventail Connect, Aventail Connect Mobile,
Sophos UTM. Remote Access via IPsec Configuring Remote Client
Sophos UTM Remote Access via IPsec Configuring Remote Client Product version: 9.300 Document date: Tuesday, October 14, 2014 The specifications and information in this document are subject to change without
DIGIPASS CertiID. Getting Started 3.1.0
DIGIPASS CertiID Getting Started 3.1.0 Disclaimer Disclaimer of Warranties and Limitations of Liabilities The Product is provided on an 'as is' basis, without any other warranties, or conditions, express
Operating System Installation Guide
Operating System Installation Guide This guide provides instructions on the following: Installing the Windows Server 2008 operating systems on page 1 Installing the Windows Small Business Server 2011 operating
ZENworks 11 Support Pack 4 Full Disk Encryption Agent Reference. May 2016
ZENworks 11 Support Pack 4 Full Disk Encryption Agent Reference May 2016 Legal Notice For information about legal notices, trademarks, disclaimers, warranties, export and other use restrictions, U.S. Government
How to connect to VUWiFi
Wireless Registration Instructions Windows XP How to connect to VUWiFi 1. The first step in setting up your wireless card for VUWiFi is to open your Network Connections window. You can find this by going
VERITAS Backup Exec TM 10.0 for Windows Servers
VERITAS Backup Exec TM 10.0 for Windows Servers Quick Installation Guide N134418 July 2004 Disclaimer The information contained in this publication is subject to change without notice. VERITAS Software
Stonesoft Firewall/VPN 5.4 Windows Server 2008 R2
Stonesoft Firewall/VPN 5.4 Windows Server 2008 R2 End-User Authentication Using Active Directory and Network Policy Server C ONTENTS Introduction to NPS Authentication with AD... 2 Registering the NPS
Enterprise Toolbar User s Guide. Revised March 2015
Revised March 2015 Copyright Notice Trademarks Copyright 2007 DSCI, LLC All rights reserved. Any technical documentation that is made available by DSCI, LLC is proprietary and confidential and is considered
RSA SecurID Software Token 3.0 for Windows Workstations Administrator s Guide
RSA SecurID Software Token 3.0 for Windows Workstations Administrator s Guide Contact Information See our Web sites for regional Customer Support telephone and fax numbers. RSA Security Inc. RSA Security
Server Installation Guide ZENworks Patch Management 6.4 SP2
Server Installation Guide ZENworks Patch Management 6.4 SP2 02_016N 6.4SP2 Server Installation Guide - 2 - Notices Version Information ZENworks Patch Management Server Installation Guide - ZENworks Patch
Installing and Configuring vcenter Multi-Hypervisor Manager
Installing and Configuring vcenter Multi-Hypervisor Manager vcenter Server 5.1 vcenter Multi-Hypervisor Manager 1.1 This document supports the version of each product listed and supports all subsequent
CA VPN Client. User Guide for Windows 1.0.2.2
CA VPN Client User Guide for Windows 1.0.2.2 This Documentation, which includes embedded help systems and electronically distributed materials, (hereinafter referred to as the Documentation ) is for your
CPEi 800/825 Series. User Manual. * Please see the Introduction Section
CPEi 800/825 Series User Manual * Please see the Introduction Section Contents Introduction...iii Chapter 1: CPEi 800/825 User Guide Overview... 1-1 Powerful Features in a Single Unit... 1-2 Front of the
NETWORK PRINT MONITOR User Guide
NETWORK PRINT MONITOR User Guide Legal Notes Unauthorized reproduction of all or part of this guide is prohibited. The information in this guide is subject to change without notice. We cannot be held liable
User Manual. Onsight Management Suite Version 5.1. Another Innovation by Librestream
User Manual Onsight Management Suite Version 5.1 Another Innovation by Librestream Doc #: 400075-06 May 2012 Information in this document is subject to change without notice. Reproduction in any manner
StoneGate SSL VPN Technical Note 2068. Adding Bundled Certificates
StoneGate SSL VPN Technical Note 2068 Adding Bundled Certificates Table of Contents Introduction................................... page 3 Overview..................................... page 3 Splitting
How To Use The Dll Sonicwall Global Vpn Client On A Pc Or Mac Or Ipsec Vpn On A Network With A Network Connection (Vpn) On A Laptop Or Ipse On A Ipsec Ipsec 2.5V
Global VPN Client 4.9 Administrator s Guide 1 Notes, Cautions, and Warnings NOTE: A NOTE indicates important information that helps you make better use of your system. CAUTION: A CAUTION indicates potential
Deploying Remote Desktop Connection Broker with High Availability Step-by-Step Guide
Deploying Remote Desktop Connection Broker with High Availability Step-by-Step Guide Microsoft Corporation Published: May 2010 Abstract This guide describes the steps for configuring Remote Desktop Connection
Kaspersky Password Manager USER GUIDE
Kaspersky Password Manager USER GUIDE Dear User! Thank you for choosing our product. We hope that this documentation helps you in your work and provides answers you may need. Any type of reproduction or
IBM Client Security Solutions. Password Manager Version 1.4 User s Guide
IBM Client Security Solutions Password Manager Version 1.4 User s Guide IBM Client Security Solutions Password Manager Version 1.4 User s Guide First Edition (October 2004) Copyright International Business
Inmagic ODBC Driver 8.00 Installation and Upgrade Notes
Inmagic ODBC Driver 8.00 Installation and Upgrade Notes Thank you for purchasing the Inmagic ODBC Driver for DB/Text. This document is for new and upgrade customers. Use the Inmagic ODBC Driver to develop
Diamond II v2.3 Service Pack 4 Installation Manual
Diamond II v2.3 Service Pack 4 Installation Manual P/N 460987001B ISS 26APR11 Copyright Disclaimer Trademarks and patents Intended use Software license agreement FCC compliance Certification and compliance
File and Printer Sharing with Microsoft Windows
Operating System File and Printer Sharing with Microsoft Windows Microsoft Corporation Published: November 2003 Abstract File and printer sharing in Microsoft Windows allows you to share the contents of
Trend Micro Incorporated reserves the right to make changes to this document and to the products described herein without notice.
Trend Micro Incorporated reserves the right to make changes to this document and to the products described herein without notice. Before installing and using the software, please review the readme files,
Verizon Remote Access User Guide
Version 17.12 Last Updated: August 2012 2012 Verizon. All Rights Reserved. The Verizon names and logos and all other names, logos, and slogans identifying Verizon s products and services are trademarks
Oracle Enterprise Manager. Description. Versions Supported
Oracle Enterprise Manager System Monitoring Plug-in Installation Guide for Microsoft Active Directory 10g Release 2 (10.2.0.2) B28044-02 June 2006 This document provides a brief description about the Oracle
Trend Micro Incorporated reserves the right to make changes to this document and to the products described herein without notice.
Trend Micro Incorporated reserves the right to make changes to this document and to the products described herein without notice. Before installing and using the software, please review the readme files,
Oracle Enterprise Single Sign-on Provisioning Gateway. Administrator Guide Release 10.1.4.1.0 E12613-01
Oracle Enterprise Single Sign-on Provisioning Gateway Administrator Guide Release 10.1.4.1.0 E12613-01 March 2009 Oracle Enterprise Single Sign-on Provisioning Gateway, Administrator Guide, Release 10.1.4.1.0
Creating client-server setup with multiple clients
Creating client-server setup with multiple clients Coffalyser.Net uses a SQL client server database model to store all project/experiment- related data. The client-server model has one main application
Corporate Telephony Toolbar User Guide
Corporate Telephony Toolbar User Guide 1 Table of Contents 1 Introduction...6 1.1 About Corporate Telephony Toolbar... 6 1.2 About This Guide... 6 1.3 Accessing The Toolbar... 6 1.4 First Time Login...
Administrator s Guide
Administrator s Guide Citrix Network Manager for MetaFrame XPe Version 1.0 Citrix Systems, Inc. Information in this document is subject to change without notice. Companies, names, and data used in examples
Global VPN Client Getting Started Guide
Global VPN Client Getting Started Guide PROTECTION AT THE SPEED OF BUSINESS Introduction The SonicWALL Global VPN Client creates a Virtual Private Network (VPN) connection between your computer and the
etoken Enterprise For: SSL SSL with etoken
etoken Enterprise For: SSL SSL with etoken System Requirements Windows 2000 Internet Explorer 5.0 and above Netscape 4.6 and above etoken R2 or Pro key Install etoken RTE Certificates from: (click on the
Software Installation Requirements
Software Installation Guide PrintIQ TM Software Installation Requirements Please use the following guide to ensure that you're meeting all requirements prior to installing the PrintIQ TM Xerox Device Agent
Legal Notes. Regarding Trademarks. 2012 KYOCERA Document Solutions Inc.
Legal Notes Unauthorized reproduction of all or part of this guide is prohibited. The information in this guide is subject to change without notice. We cannot be held liable for any problems arising from
Getting Started with MozyPro Online Backup Online Software from Time Warner Cable Business Class
Getting Started with MozyPro Online Backup Online Software from Time Warner Cable Business Class A Guide for Users MozyPro is an online backup service with an easy to use interface so you can start backing
ADMINISTRATOR S GUIDE
STONEGATE SSL VPN 1.4.3 ADMINISTRATOR S GUIDE V IRTUAL PRIVATE NETWORKS Legal Information End-User License Agreement The use of the products described in these materials is subject to the then current
RSA ACE/Agent 5.5 for Windows Installation and Administration Guide
RSA ACE/Agent 5.5 for Windows Installation and Administration Guide Contact Information See our Web sites for regional Customer Support telephone and fax numbers. RSA Security Inc. RSA Security Ireland
Dell SupportAssist Version 2.0 for Dell OpenManage Essentials Quick Start Guide
Dell SupportAssist Version 2.0 for Dell OpenManage Essentials Quick Start Guide Notes, Cautions, and Warnings NOTE: A NOTE indicates important information that helps you make better use of your computer.
McAfee Endpoint Encryption for PC 7.0
Migration Guide McAfee Endpoint Encryption for PC 7.0 For use with epolicy Orchestrator 4.6 Software COPYRIGHT Copyright 2012 McAfee, Inc. Do not copy without permission. TRADEMARK ATTRIBUTIONS McAfee,
DigiDelivery Client Quick Start
DigiDelivery Client Quick Start Installing the DigiDelivery Client To download and install the DigiDelivery client software: 1 Launch your Web browser and navigate to www.digidesign.com/digidelivery/clients.
Endpoint Security Client for Mac
Endpoint Security Client for Mac E80.60 User Guide 23 December 2014 Classification: [Protected] 2014 Check Point Software Technologies Ltd. All rights reserved. This product and related documentation are
Embarcadero Performance Center 2.7 Installation Guide
Embarcadero Performance Center 2.7 Installation Guide Copyright 1994-2009 Embarcadero Technologies, Inc. Embarcadero Technologies, Inc. 100 California Street, 12th Floor San Francisco, CA 94111 U.S.A.
Sage 200 Web Time & Expenses Guide
Sage 200 Web Time & Expenses Guide Sage (UK) Limited Copyright Statement Sage (UK) Limited, 2006. All rights reserved If this documentation includes advice or information relating to any matter other than
Intrusion Detection and Analysis for Active Response - Version 1.2. Installation Guide
Intrusion Detection and Analysis for Active Response - Version 1.2 Installation Guide Copyright 2001 2005 Stonesoft Corp. Stonesoft Corp. All rights reserved. No part of this book may be reproduced or
Hosting Users Guide 2011
Hosting Users Guide 2011 eofficemgr technology support for small business Celebrating a decade of providing innovative cloud computing services to small business. Table of Contents Overview... 3 Configure
026-1010 Rev 7 06-OCT-2011. Site Manager Installation Guide
026-1010 Rev 7 06-OCT-2011 Site Manager Installation Guide Retail Solutions 3240 Town Point Drive NW, Suite 100 Kennesaw, GA 30144, USA Phone: 770-425-2724 Fax: 770-425-9319 Table of Contents 1 SERVER
VERITAS Backup Exec 9.1 for Windows Servers Quick Installation Guide
VERITAS Backup Exec 9.1 for Windows Servers Quick Installation Guide N109548 Disclaimer The information contained in this publication is subject to change without notice. VERITAS Software Corporation makes
Sophos SafeGuard Native Device Encryption for Mac Administrator help. Product version: 7
Sophos SafeGuard Native Device Encryption for Mac Administrator help Product version: 7 Document date: December 2014 Contents 1 About SafeGuard Native Device Encryption for Mac...3 1.1 About this document...3
Moxa Device Manager 2.3 User s Manual
User s Manual Third Edition, March 2011 www.moxa.com/product 2011 Moxa Inc. All rights reserved. User s Manual The software described in this manual is furnished under a license agreement and may be used
MapInfo Professional 12.0 Licensing and Activation
MapInfo Professional 12.0 Asia Pacific/Australia: Phone: +61 2 9437 6255 [email protected] [email protected] www.pitneybowes.com.au/software Canada: Phone: 1 800 268 3282 [email protected]
Astaro Security Gateway V8. Remote Access via L2TP over IPSec Configuring ASG and Client
Astaro Security Gateway V8 Remote Access via L2TP over IPSec Configuring ASG and Client 1. Introduction This guide contains complementary information on the Administration Guide and the Online Help. If
Troubleshooting File and Printer Sharing in Microsoft Windows XP
Operating System Troubleshooting File and Printer Sharing in Microsoft Windows XP Microsoft Corporation Published: November 2003 Updated: August 2004 Abstract File and printer sharing for Microsoft Windows
2X ApplicationServer & LoadBalancer Manual
2X ApplicationServer & LoadBalancer Manual 2X ApplicationServer & LoadBalancer Contents 1 URL: www.2x.com E-mail: [email protected] Information in this document is subject to change without notice. Companies,
Computer Science and Engineering Windows Cisco VPN Client Installation and Setup Guide
Computer Science and Engineering Windows Cisco VPN Client Installation and Setup Guide This document will guide you through the installation of the Cisco VPN Client for Microsoft Windows XP and Vista.
ShoreTel Enterprise Contact Center Using Agent Toolbar
ShoreTel Enterprise Contact Center Using Agent Toolbar USER GUIDES RELEASE 7 Document and Software Copyrights Copyright 1998 2011 ShoreTel, Inc. All rights reserved. Printed in the United States of America.
vcenter Operations Manager for Horizon Supplement
vcenter Operations Manager for Horizon Supplement vcenter Operations Manager for Horizon 1.6 This document supports the version of each product listed and supports all subsequent versions until the document
F IREWALL/VPN INSTALLATION GUIDE
STONEGATE 5.3 F IREWALL/VPN INSTALLATION GUIDE F IREWALL V IRTUAL PRIVATE NETWORKS Legal Information End-User License Agreement The use of the products described in these materials is subject to the then
SonicWALL SSL VPN 3.5: Virtual Assist
SonicWALL SSL VPN 3.5: Virtual Assist Document Scope This document describes how to use the SonicWALL Virtual Assist add-on for SonicWALL SSL VPN security appliances. This document contains the following
STATISTICA VERSION 9 STATISTICA ENTERPRISE INSTALLATION INSTRUCTIONS FOR USE WITH TERMINAL SERVER
Notes: STATISTICA VERSION 9 STATISTICA ENTERPRISE INSTALLATION INSTRUCTIONS FOR USE WITH TERMINAL SERVER 1. These instructions focus on installation on Windows Terminal Server (WTS), but are applicable
3 Setting up Databases on a Microsoft SQL 7.0 Server
3 Setting up Databases on a Microsoft SQL 7.0 Server Overview of the Installation Process To set up GoldMine properly, you must follow a sequence of steps to install GoldMine s program files, and the other
safend a w a v e s y s t e m s c o m p a n y
safend a w a v e s y s t e m s c o m p a n y SAFEND Data Protection Suite Installation Guide Version 3.4.5 Important Notice This guide is delivered subject to the following conditions and restrictions:
WhatsUp Gold v16.2 Installation and Configuration Guide
WhatsUp Gold v16.2 Installation and Configuration Guide Contents Installing and Configuring Ipswitch WhatsUp Gold v16.2 using WhatsUp Setup Installing WhatsUp Gold using WhatsUp Setup... 1 Security guidelines
Global VPN Client Getting Started Guide
Global VPN Client Getting Started Guide PROTECTION AT THE SPEED OF BUSINESS Introduction The SonicWALL Global VPN Client creates a Virtual Private Network (VPN) connection between your computer and the
Assistant Enterprise. User Guide. www.lumosnetworks.com 3-27-08
Assistant Enterprise User Guide www.lumosnetworks.com 3-27-08 Assistant Enterprise (Toolbar) Guide Copyright Notice Trademarks Copyright 2007 BroadSoft, Inc. All rights reserved. Any technical documentation
Citrix Access Gateway Enterprise Edition Citrix Access Gateway Plugin for Windows User Guide. Citrix Access Gateway 9.0, Enterprise Edition
Citrix Access Gateway Enterprise Edition Citrix Access Gateway Plugin for Windows User Guide Citrix Access Gateway 9.0, Enterprise Edition Copyright and Trademark Notice Use of the product documented in
1.6 HOW-TO GUIDELINES
Version 1.6 HOW-TO GUIDELINES Setting Up a RADIUS Server Stonesoft Corp. Itälahdenkatu 22A, FIN-00210 Helsinki Finland Tel. +358 (9) 4767 11 Fax. +358 (9) 4767 1234 email: [email protected] Copyright
Installation Instruction STATISTICA. Concurrent Network License with Borrowing Domain Based Registration
Installation Instruction STATISTICA Concurrent Network License with Borrowing Domain Based Registration Notes: ❶ The installation of the Concurrent network version entails two parts: a) a server installation,
Contents. VPN Instructions. VPN Instructions... 1
VPN Instructions Contents VPN Instructions... 1 Download & Install Check Point VPN Software... 2 Connect to FPUA by VPN... 6 Connect to Your Computer... 8 Determine Your Machine Type... 10 Identify 32-bit
Symantec Enterprise Vault
Symantec Enterprise Vault Guide for Microsoft Outlook 2010/2013 Users 10.0 Light Outlook Add-In Symantec Enterprise Vault: Guide for Microsoft Outlook 2010/2013 Users The software described in this book
QUANTIFY INSTALLATION GUIDE
QUANTIFY INSTALLATION GUIDE Thank you for putting your trust in Avontus! This guide reviews the process of installing Quantify software. For Quantify system requirement information, please refer to the
VPN Overview. The path for wireless VPN users
VPN Overview The path for wireless VPN users First, the user's computer (the blue computer) connects to an access point in the uiuc-wireless-net network and is assigned an IP address in that range (172.21.0.0
Dell SonicWALL Aventail 10.6.5 Connect Tunnel User Guide
Dell SonicWALL Aventail 10.6.5 Connect Tunnel User Guide 1 Notes, Cautions, and Warnings NOTE: A NOTE indicates important information that helps you make better use of your system. CAUTION: A CAUTION indicates
Installing and Configuring vcloud Connector
Installing and Configuring vcloud Connector vcloud Connector 2.7.0 This document supports the version of each product listed and supports all subsequent versions until the document is replaced by a new
TestDirector. Microsoft Visual SourceSafe Version Control Add-in Guide Version 8.0
TestDirector Microsoft Visual SourceSafe Version Control Add-in Guide Version 8.0 TestDirector Microsoft Visual SourceSafe Version Control Add-in Guide, Version 8.0 This manual, and the accompanying software
8.7. NET SatisFAXtion Email Gateway Installation Guide. For NET SatisFAXtion 8.7. Contents
NET SatisFAXtion Email Gateway Installation Guide For NET SatisFAXtion 8.7 Contents Install Microsoft Virtual SMTP Server 2 XP and 2003 2 2008 and 2008 R2 2 Windows 7 2 Upgrade Path 2 Configure Microsoft
Release Notes for Version 1.5.207
Release Notes for Version 1.5.207 Created: March 9, 2015 Table of Contents What s New... 3 Fixes... 3 System Requirements... 3 Stonesoft Appliances... 3 Build Version... 4 Product Binary Checksums... 4
IPSec VPN Client Installation Guide. Version 4
IPSec VPN Client Installation Guide Version 4 Document version - 1.0-410003-25/10/2007 IMPORTANT NOTICE Elitecore has supplied this Information believing it to be accurate and reliable at the time of printing,
