Pptpvpn

From Wiki of WFilter NG Firewall
(Difference between revisions)
Jump to: navigation, search
(PPTP Settings)
 
(16 intermediate revisions by one user not shown)
Line 1: Line 1:
 
{{DISPLAYTITLE:PPTP Server}}
 
{{DISPLAYTITLE:PPTP Server}}
 
== PPTP Server ==
 
== PPTP Server ==
[[File:faq_pptp001.png]]
+
 
<p>勾选'''本地认证'''后,需要在本地账号模块中添加账号;勾选'''远程认证'''需要配置radius服务器相关信息,所以前提是存在一个radius服务器,请参考[[如何配置Radius服务器]]</p>
+
PPTP server can provide PPTP VPN service for external users to connect.
 +
* You can check VPN clients ip addresses and usernames in "Real-time Bandwidth".
 +
* VPN users are not be applied by [[Access_Policy]].
 +
* Activity of VPN users won't be recorded by [[wfquery|Internet Usage]].
 +
 
 +
== PPTP Settings ==
 +
Description of PPTP settings:
 +
* IP Range: the ip addresses to be assigned to VPN clients. (Must be a LAN subnet)
 +
* MPPE: when enabled, PPTP server will require 128bit MPPE stateless encryption.
 +
* Protocols: supported auth protocols, which shall be consistence with VPN client settings.
 +
* Authtype:
 +
** "Local Auth": authenticate with username and password of local accounts. Only "local users" with "VPN" priviledge have VPN access.
 +
** "Email Auth": send credentials to a pop/imap email server for authentication.
 +
** "Ldap Auth": send credentials to a ldap server for authentication.
 +
** "Radius Auth": send credentials to a remote radius server for authentication.
 +
** For "LDAP Auth" and "Email Auth", only "pap" protocol is supported.
 +
 
 +
[[File:faq_pptp001.png|900px]]
 +
 
 +
* If you want to assign static ip and limit bandwidth to PPTP clients, you need to setup "PPPoE Property" in "Accounts" settings.
 +
 
 +
[[File:faq_pptp002.png|600px]]
 +
 
 +
== Online Users ==
 +
 
 +
[[File:faq_pptp004.png|900px]]
 +
 
 +
You can click "online users" in PPTP to get a list of live PPTP clients, including IP address, RX & tx bandwidth... Move your mouse over the "kill" icon to terminate a session.
 +
 
 +
== Multiple Subnets ==
 +
PPTP clients can only belongs to one subnet. If your network has multiple subnets, you need to add route in client pc to access other subnets. For example, the server side has two subnets 192.168.10.x and 192.168.11.x. PPTP works in 192.168.10.x. To access another subnet, you need to execute below command in client:
 +
 
 +
<code>
 +
route add 192.168.11.0 mask 255.255.255.0 192.168.10.1
 +
</code>
  
 
== FAQ ==
 
== FAQ ==
 +
 +
[[Category:VPN]]

Latest revision as of 15:58, 5 July 2023

Contents

[edit] 1 PPTP Server

PPTP server can provide PPTP VPN service for external users to connect.

  • You can check VPN clients ip addresses and usernames in "Real-time Bandwidth".
  • VPN users are not be applied by Access_Policy.
  • Activity of VPN users won't be recorded by Internet Usage.

[edit] 2 PPTP Settings

Description of PPTP settings:

  • IP Range: the ip addresses to be assigned to VPN clients. (Must be a LAN subnet)
  • MPPE: when enabled, PPTP server will require 128bit MPPE stateless encryption.
  • Protocols: supported auth protocols, which shall be consistence with VPN client settings.
  • Authtype:
    • "Local Auth": authenticate with username and password of local accounts. Only "local users" with "VPN" priviledge have VPN access.
    • "Email Auth": send credentials to a pop/imap email server for authentication.
    • "Ldap Auth": send credentials to a ldap server for authentication.
    • "Radius Auth": send credentials to a remote radius server for authentication.
    • For "LDAP Auth" and "Email Auth", only "pap" protocol is supported.

Faq pptp001.png

  • If you want to assign static ip and limit bandwidth to PPTP clients, you need to setup "PPPoE Property" in "Accounts" settings.

Faq pptp002.png

[edit] 3 Online Users

Faq pptp004.png

You can click "online users" in PPTP to get a list of live PPTP clients, including IP address, RX & tx bandwidth... Move your mouse over the "kill" icon to terminate a session.

[edit] 4 Multiple Subnets

PPTP clients can only belongs to one subnet. If your network has multiple subnets, you need to add route in client pc to access other subnets. For example, the server side has two subnets 192.168.10.x and 192.168.11.x. PPTP works in 192.168.10.x. To access another subnet, you need to execute below command in client:

route add 192.168.11.0 mask 255.255.255.0 192.168.10.1

[edit] 5 FAQ

Personal tools
Namespaces

Variants
Actions
Navigation
Tools