0% found this document useful (0 votes)
42 views30 pages

VPN Client Configuration Guide

This manual provides instructions for setting up a VPN connection on Windows 10, Mac OS Catalina, Linux, Android, and iOS. It includes steps such as adding a VPN connection, configuring security and network parameters, and troubleshooting common issues.

Translated by

ScribdTranslations
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
42 views30 pages

VPN Client Configuration Guide

This manual provides instructions for setting up a VPN connection on Windows 10, Mac OS Catalina, Linux, Android, and iOS. It includes steps such as adding a VPN connection, configuring security and network parameters, and troubleshooting common issues.

Translated by

ScribdTranslations
Copyright
© All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd

Configuration Manual

VPN RIS
VPN Client Configuration
SPMS Manuals

Index

1. VPN Configuration on Windows 10. 3


Automatic configuration through the executable.. 3
Manual configurationl .............................................................................................................. 7
1.2.1 Connection configuration. 7
1.2.2 Editing of records. 9
Connect a VPN.11
2. VPN Configuration Mac OS Catalina 10.15................................................................. 12
Add a VP connectionN ...................................................................................................12
Connect a VPN.14
3. VPN Configuration on Linux
Add a VP linkN ...................................................................................................16
Connect a VPN.21
4. Android VPN Configuration....................................................................................... 22
Manual configuration Android.22
5. Configure VPN connection on iPhone/iOS for users .......................... 25
Add a VP linkN ...................................................................................................25
6. Problem Solvings .28
The VPN connection is in the status 'Connecting to the VPN'-[Link]........................................................28

Server or application RIS address not accessible..29

2
VPN Client Configuration
SPMS Manuals

1. VPN Configuration on Windows 10


Automatic configuration through the executable

In order to enable the automatic installation of the VPN on the Windows 10 operating system, it is
necessary:

a) Download the executable from one of the following links:


[Link]
[Link]

b) Open the [Link], and execute the file present (VPN_RIS_v3.msi)

c) It is necessary to specify the password (Password: VPNRIS2021) in a way


to enable the execution of the program.

3
VPN Client Configuration
SPMS Manuals

d) After execution, a box will appear, similar to the one in the image above, in
you need to click on the box More Information.

e) Afterwards, you must select the option Run Anyway, as one can
check the image immediately above.

4
VPN Client Configuration
SPMS Manuals

f) Then, one must accept the terms of use by checking the box
selecting and choosing the option Install.

g) After the installation, you should select the option Finish

h) Finally, it is recommended to restart the machine, following the option above.


described

5
VPN Client Configuration
SPMS Manuals

Note: After restarting the machine, you must follow the steps described inConnect one
VPN.

6
VPN Client Configuration
SPMS Manuals

Manual configuration
a) Connection configuration
Before you can connect to the RIS VPN, it is necessary to create a VPN Connection on the Workstation.
The manual creation of a VPN Connection is carried out by following the instructions listed below:

a) Select the Start button and then select Settings > Rede and
Internet > VPN > Add a VPN connection.
b) When adding a VPN connection, do the following:

c) For VPN provider, choose Windows (built-in).


d) In the Connection Name box, enter the text: VPN-RIS. This is the name of the connection.
VPN that you have to look for when making the connection.

e) In the Server name or address box, enter the address: [Link]-


[Link]
f) For VPN Type, choose the type of VPN connection: L2TP/IPSec with pre-shared key
shared
g) In the Pre-shared key box, enter the text: VPN_SPMS

7
VPN Client Configuration
SPMS Manuals

h) For Session information type, choose the type of information of


session login (or credentials) to use: Username and password.
i) At this stage, it is not necessary to fill in the Username fields (optional)
or Password (optional), and for Cybersecurity reasons it is recommended to deactivate the
Option: Remember my input information, requiring to enter it.
VPN credentials every time the VPN connection starts.
j) Select Save.
k) For the VPN Connection to work properly, it is necessary to specify
additional settings. On the Settings page, select the option: Change
adapter options.
In the recently opened window, select the VPN Connection: VPN-RIS, and then,
select Properties with the right mouse button.

m) In the Security tab, enable the exclusive option Allow these protocols, and
Next, check if the option MS-CHAP v2 (Microsoft CHAP Version 2) is active.
n) In the network operation separator, select the item IPv4 Protocol
(TCP/IPv4), and select Properties.
o) In the new Properties window, select Advanced.
In the new Advanced window, disable the option Use default gateway on the network
remote, and disable the automatic metric option by filling in the text box
Interface metric with a value below 25, for situations where access
The Internet is provided via a network cable.
Note: For internet access via Wi-Fi, there is no need to change this option.

8
VPN Client Configuration
SPMS Manuals

Select OK.
r) Select OK.

b) Record editing
a) For the VPN connection to work correctly, it is necessary to proceed to
additional settings in the Registry Editor, so it is suggested that they be
executed the instructions listed below:

b) Select the Start button, then search for the command regedit.
Note: The operations presented below must be carried out by personnel
qualified, with administrative privileges.
Note 2: Before performing this operation, it is wise to make a backup for the Editor.
of registration.

9
VPN Client Configuration
SPMS Manuals

c) In the recently opened window, the following steps must be taken:


d) In the File menu, then select Export and save the file in a location
Registration Type Data

HKLM:\SYSTEM\CurrentControlSet\Services\PolicyAgent\ DWORD 2 (Decimal)

Assume UDP Encapsulation Context On Send Rule

HKLM:\SYSTEM\CurrentControlSet\Services\Rasman\Parameters DWORD 1 (Decimal)

Allow L2TP Weak Crypto

HKLM:\SYSTEM\CurrentControlSet\Services\Rasman\Parameters DWORD 0 (Decimal)

ProhibitIpSec

sure.
e) Proceed to amend the records in accordance with the following table:
f) It must restart the workstation, and as soon as it starts, it is ready to
establish VPN connection.

10
VPN Client Configuration
SPMS Manuals

Turn on a VPN
When you have a VPN connection created, you will be ready to establish the connection.
a) On the far right of the taskbar, select the Network icon (or ).
b) Select the VPNVPN-RISe connection, then perform one of the following
procedures, according to what happens when selecting the VPN connection:
If the Connect button appears below the VPN connection, select Connect.
d) If the VPN section in Settings is open, select the VPN connection there and,
Next, select Call.
e) Enter the username and password (credentials) previously
provided.
f) When the connection is established, the word Connected will be displayed.
name of the VPN connection. To see if you are connected to the VPN while performing others
activities at the Workstation, select the Network icon (or) in
right end of the taskbar and check if the name of the VPN connection
presents the stateOn.

11
VPN Client Configuration
SPMS Manuals

2. VPN Configuration Mac OS Catalina 10.15


Add a VPN connection

Before you can connect to the RIS VPN, it is necessary to create a VPN Connection on the Workstation.
Manual creation of a VPN connection is done by following the instructions listed below:

a) On the Mac, select the Apple menu > System Preferences, and then
selecionarRede.

b) Select Additional list on the left, and do the following in the new window:
c) For Interface, choose VPN.
d) For VPN Type, choose L2TP via IPSec.
e) In the Service box, enter the text: VPN-RIS, and then select Create.

f) In the definitions of the newly created link, perform the following:


g) For Configuration, choose Default.
h) In the Server Address box, enter the address: [Link]-
[Link]
i) In the account box, enter the previously registered username.
provided.

12
VPN Client Configuration
SPMS Manuals

j) Select Authentication Definitions, do the following:


k) Select the exclusive optionPassword, in the text box, enter the
previously provided access password.
l) Select the exclusive option Shared secret and, in the text box, enter
VPN_SPMS
m) In the Group Name box, enter the text: DefaultRAGroup
n) Select OK

o) Enable the optionShow VPN status in the menu bar.


p) Select Advanced..., and perform the following:
Disable the option Send all traffic through VPN connection, in the tab
Options.
Select OK.

13
VPN Client Configuration
SPMS Manuals

s) Ready to establish connection.

Connect a VPN

When you have a VPN connection created, you will be ready to establish the connection.

a) Click on the VPN symbol in the top right corner and select the Connect option
VPN-RIS

b) Or alternatively, on the Mac, select the Apple menu Preferences of


System, then selectNetwork.

c) Select the VPN-RIS service from the list on the left.


d) Select Connect.

14
VPN Client Configuration
SPMS Manuals

15
VPN Client Configuration
SPMS Manuals

3. VPN Configuration on Linux


Add a VPN connection
a) Install the library
sudo apt-get update

sudo apt install libcurl4-openssl-dev libssl-dev

sudo apt install git intltool libtool network-manager-dev libnm-util-dev libnm-glib-dev


libnm-glib-vpn-dev libnm-gtk-dev libnm-dev libnma-dev ppp-dev libdbus-glib-1-dev
libsecret-1-dev libgtk-3-dev libglib2.0-dev xl2tpd strongswan libnss3-dev

sudo service xl2tpd stop


sudo systemctl disable xl2tpd

git clone[Link]
cd network-manager-l2tp
autoreconf -fi
intltoolize
here you must choose the configuration for your distribution (you should only use one)

Debian >= 10 and Ubuntu >= 18.04 (AMD64, i.e. x86-64) * version used in this tutorial

./configure \

--disable-static --prefix=/usr \

--sysconfdir=/etc --libdir=/usr/lib/x86_64-linux-gnu \

--libexecdir=/usr/lib/NetworkManager \

--localstatedir=/var \

--with-pppd-plugin-dir=/usr/lib/pppd/2.4.7

Fedora and Red Hat Enterprise Linux 8 (x86-64)

./configure \

--disable-static --prefix=/usr \

--sysconfdir=/etc --libdir=/usr/lib64 \

--localstatedir=/var \

--with-pppd-plugin-dir=/usr/lib64/pppd/2.4.7

16
VPN Client Configuration
SPMS Manuals

openSUSE (x86-64)

./configure \

--disable-static --prefix=/usr \

--sysconfdir=/etc --libdir=/usr/lib64 \

--libexecdir=/usr/lib \

--localstatedir=/var \

--with-pppd-plugin-dir=/usr/lib64/pppd/2.4.7

b) After the configuration, the following commands must be executed in the folder:
make

sudo make install

c) On Linux, select the icon Show Applications > Settings, and then
selectNetwork.

d) Select Additional list on the left, and do the following in the new window:

17
VPN Client Configuration
SPMS Manuals

e) Choose VPN > Layer 2 Tunneling Protocol (L2TP)


f) In the boxName, enter the text: VPN-RIS.
g) In the Gateway box, enter the address: [Link].
h) For Type of Authentication, choose Password.
i) In the boxes UsernamePassword, enter the username and password
of access previously provided.
j) Select IPSec Definitions..., and perform the following:
a. Check if the option is active Enable IPSec tunnel for L2TP server.
b. For Machine authentication type, choose Pre-shared Key.
In the Pre-shared Key box, enter the text: VPN_SPMS.
In the Remote ID box, enter the text: [Link].
In the boxAlgorithm of Phase 1, enter the text: 3des-sha1-modp1024!
f. In the box Algorithm of Phase 2, enter the text: aes128-sha1!
g. Select option Force UDP encapsulation.
h. Select OK.

18
VPN Client Configuration
SPMS Manuals

k) Select PPP Definitions..., and do the following:


a. Select only one authentication method MSCHAPv2.
b. Check if the option Use point-to-point encryption (MPPE) is
selected.
c. For Security, choose 128 bits (more secure).
d. Check if the option Allow BSD data compression is enabled.
selected.
e. Select if the 'Send PPP echo packets' option is checked.
f. Select OK.
l) Select the IPv4 settings separator.
m) For Method, choose Only automatic addresses (VPN)
In the DNS Server box, enter the addresses.[Link],
[Link], [Link], [Link].
o) Select Routes..., and perform the following:
a. Disable the option to Ignore automatically obtained routes
b. Disable the option Use this connection only for resources on this network
c. Select OK

19
VPN Client Configuration
SPMS Manuals

p) Select Save.
q) Check if there is only one gateway (route -n); if there is more than one, it will have to
remove the one that is extra (the one that is extra will be the one added after turning on)
the machine. After this verification, you can execute the following command to have
route for all networks in the RIS: sudo ip route add [Link]/8 dev ppp0

20
VPN Client Configuration
SPMS Manuals

Turn on a VPN

When you have a VPN connection created, you will be ready to establish the connection.

a) On Linux, select the Show Applications icon > Settings, and then,
selectNetwork.
b) Select the VPN-RIS service from the list on the left.
c) Select Connect.

21
VPN Client Configuration
SPMS Manuals

4. Android VPN Configuration


Manual configuration Android
a) On the smartphone, select the icon Settings. A new screen will open, in that
screen select Wi-Fi & Internet.

b) On the new screen, you will select the VPN option.

22
VPN Client Configuration
SPMS Manuals

c) After opening the new screen, proceed to create the new VPN connection. To do this
select the option

d) On the next screen, fill in the fields according to the following information:
In the boxName, enter the text: VPN-RIS
b. In the boxType, select the option: L2TP/IPSec PSK.
c. In the Server Address box, enter the text: [Link]-
[Link]
In the pre-shared IPSec key box, enter the text: VPN_SPMS
e. Select the boxShow Advanced Options
In the Routing Forwarding box, enter the text [Link]/8
In the Username and Password box, enter the credentials
received for the use of the VPN.

23
VPN Client Configuration
SPMS Manuals

e) After entering the previous fields, it can be verified that the VPN has been created.
according to the following image.

f) To make the connection, select the VPN-RIS option, created previously, and
SelectConnect. For cybersecurity reasons, it is recommended to disable the
option: Save account information, requiring input of the
VPN credentials whenever the VPN connection starts.

24
VPN Client Configuration
SPMS Manuals

5. Configure VPN connection on iPhone/iOS for users


Add a VPN connection
a) On the smartphone, select the Settings icon. A new screen will open, in that
select screen General.

b) In the new screen, select the VPN option.

25
VPN Client Configuration
SPMS Manuals

d) After opening the new screen, proceed to create the new VPN connection. To do this
select Add VPN configuration

e) On the next screen, fill in the fields according to the following information:
a. In the boxType, choose the option: L2TP
b. In the Description box, enter the text: VPN-RIS
In the Server box, enter the text: [Link]
d. In the Secret box, enter the text: VPN_SPMS
e. In the Account box and Password, Enter the credentials received to
the use of the VPN.
f. In the box Send all traffic, disable the option.

26
VPN Client Configuration
SPMS Manuals

g) After entering the previous fields, it can be verified that the VPN has been created,
according to the following image. To make the connection, select the VPN option.
RIS.

27
VPN Client Configuration
SPMS Manuals

6. Problem Solving

The VPN Connection is in the state "Connecting to [Link]..."

Step 1: Cancel and reconnect a VPN

Applicable solution: Windows 10


When the connection is held in the state "Connecting to [Link]", perform the
following steps:

SelectCancel, and repeat the instructions 'Turn on a VPN'

Step 2: Confirm that the changes have been applied in the Registry Editor

Applicable solution: Windows 10

Check if the Windows Registry Editor has been altered from point 7 of step Add a
VPN connection on Windows 10.

28
VPN Client Configuration
SPMS Manuals

Server or application RIS address not accessible

Step 1: Check if there is only one active VPN Connection


Applicable solution: Windows 10, macOS Catalina 10.15, Linux

a) Confirm that there is only one active VPN connection, since the addressing
IP used in the RIS VPN may conflict with the addressing used.
other VPNs, thus making it impossible to use the VPN.

Step 2: Check the metrics of the network adapter


Applicable solution: Windows 10

a) Select the Start button, then search for the command cmd
In the new window, enter the text: route print

c) Check if the Metric of the interface 10.200.x.x is lower than the Metric
from the local network interface. If a higher value is being presented, by
please review point 5b of the step Add a VPN connection in Windows 10.

Step 3: Check for address name resolution conflicts


Applicable solution: Windows 10, macOS Catalina 10.15, Linux

a) Confirm that there are no entries in the hosts file that are in conflict
with the resolution of names of servers or applications of the RIS.

Operating system Location


Windows 10 %windir%\System32\drivers\etc\hosts

29
VPN Client Configuration
SPMS Manuals

macOS Catalina 10.15 /private/etc/hosts

Linux /etc/hosts

b) The hosts file in a basic installation of Windows 10 should comply


with the following image:

Step 4: Check if there are no filters at the firewall or antivirus level


Applicable solution: Windows 10, macOS Catalina 10.15, Linux

a) Confirm that the applications installed locally on the Workstation do not have
they are blocking access to servers or RIS applications when they
found published with non-standard ports.

30

You might also like