Pptpvpn
From Wiki of WFilter NG Firewall
(Difference between revisions)
Line 1: | Line 1: | ||
{{DISPLAYTITLE:PPTP Server}} | {{DISPLAYTITLE:PPTP Server}} | ||
== PPTP Server == | == PPTP Server == | ||
− | [[ | + | |
− | + | PPTP server can provide PPTP VPN service for external users to connect. | |
+ | * You can check VPN clients ip addresses and usernames in "Real-time Bandwidth". | ||
+ | * VPN users are not be applied by [[Access_Policy]]. | ||
+ | * Activity of VPN users won't be recorded by [[wfquery|Internet Usage]]. | ||
+ | |||
+ | == PPTP Settings == | ||
+ | Description of PPTP settings: | ||
+ | * IP Range: the ip addresses to be assigned to VPN clients. (Must be a LAN subnet) | ||
+ | * Auth Type | ||
+ | ** "Local Auth": authenticate with username and password of local accounts. This user shall enable "Web" access in [[Account|Local_Account]]. | ||
+ | ** "Remote Auth": send credentials to a remote radius server for authentication. For example, [[Enable_AD_Radius|Configure RADIUS Server Authentication for Active Directory]] | ||
+ | ** When both are enabled, we will do "local auth" first. If this user is not found in "local account", then check the remote radius sever. | ||
+ | * Protocols: supported auth protocols, which shall be consistence with VPN client settings. | ||
+ | |||
+ | [[File:faq_pptp001.png|650px]] | ||
== FAQ == | == FAQ == |
Revision as of 18:19, 24 December 2015
1 PPTP Server
PPTP server can provide PPTP VPN service for external users to connect.
- You can check VPN clients ip addresses and usernames in "Real-time Bandwidth".
- VPN users are not be applied by Access_Policy.
- Activity of VPN users won't be recorded by Internet Usage.
2 PPTP Settings
Description of PPTP settings:
- IP Range: the ip addresses to be assigned to VPN clients. (Must be a LAN subnet)
- Auth Type
- "Local Auth": authenticate with username and password of local accounts. This user shall enable "Web" access in Local_Account.
- "Remote Auth": send credentials to a remote radius server for authentication. For example, Configure RADIUS Server Authentication for Active Directory
- When both are enabled, we will do "local auth" first. If this user is not found in "local account", then check the remote radius sever.
- Protocols: supported auth protocols, which shall be consistence with VPN client settings.