{"id":290,"date":"2014-12-17T18:55:53","date_gmt":"2014-12-17T17:55:53","guid":{"rendered":"http:\/\/www.igaware.com\/blog\/?p=290"},"modified":"2015-04-09T09:23:32","modified_gmt":"2015-04-09T08:23:32","slug":"forget-pptp-ssl-is-the-secure-way-to-connect-to-the-igaware-linux-small-business-server","status":"publish","type":"post","link":"https:\/\/www.igaware.com\/blog\/forget-pptp-ssl-is-the-secure-way-to-connect-to-the-igaware-linux-small-business-server\/","title":{"rendered":"Forget PPTP &#8211; SSL is the secure way to connect to the #Igaware Linux Small Business Server"},"content":{"rendered":"<p>If you are using PPTP you should start using SSL instead.<\/p>\n<p>PPTP has never been particularly good. In fact it is very badly engineered; it&#8217;s stateless (equals problems) and insecure.<\/p>\n<p>SSL VPN overcomes these problems; it&#8217;s secure, reliable and easy to use. Setting it up on smart phones (Android\/iOS) and laptops (Win\/OS) is easy, with free client software available to download.<\/p>\n<p>SSL VPN is intended to provide secure site-to-site communications and secure communications for home workers and &#8220;road warriors&#8221;. You can use this facility to connect remote offices and home workers together as if they are on the same LAN. There is a free Windows SSL VPN client that&#8217;s a lot easier to set up, and far more efficient than the default Windows L2TP\/ IPSec client.The latest free Securepoint Windows VPN client can be downloaded from <a href=\"http:\/\/sourceforge.net\/projects\/securepoint\/files\/latest\/download?source=files\" target=\"_blank\"> Securepoint Site<\/a>. You can use this client software to connect to the SSL VPN server on the <a href=\"http:\/\/www.igaware.com\/products\/linux-small-business-server\">Igaware Linux Small Business Server<\/a>.<\/p>\n<p>There is also a MAC client called <a href=\"http:\/\/sourceforge.net\/projects\/tunnelblick\/\">Tunnelblick<\/a>.<\/p>\n<p>IPhone and IPad users can download the OpenVPN Connect client from the <a href=\"https:\/\/itunes.apple.com\/gb\/app\/openvpn-connect\/id590379981?mt=8\" target=\"_blank\">App Store<\/a><\/p>\n<p>Android users can download the OpenVPN Connect client from the <a href=\"https:\/\/play.google.com\/store\/apps\/details?id=net.openvpn.openvpn&amp;hl=en_GB\" target=\"_blank\">Google Play Store<\/a><\/p>\n<p><a href=\"http:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/vpn.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone  wp-image-291\" src=\"http:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/vpn.jpg\" alt=\"vpn\" width=\"403\" height=\"455\" srcset=\"https:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/vpn.jpg 746w, https:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/vpn-265x300.jpg 265w\" sizes=\"auto, (max-width: 403px) 100vw, 403px\" \/><\/a><\/p>\n<p>The <a href=\"http:\/\/www.igaware.com\/products\/linux-small-business-server\">Igaware Linux Small Business Server<\/a> fully supports SSL VPN, and is configured easily via the <a href=\"http:\/\/www.igaware.com\/products\/linux-small-business-server\">Igaware Linux Small Business Server<\/a> web interface under Network =&gt; VPN =&gt; SSL.<\/p>\n<p><a href=\"http:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/Screen-Shot-2014-12-17-at-17.26.05.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-293\" src=\"http:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/Screen-Shot-2014-12-17-at-17.26.05.png\" alt=\"Screen Shot 2014-12-17 at 17.26.05\" width=\"621\" height=\"362\" srcset=\"https:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/Screen-Shot-2014-12-17-at-17.26.05.png 621w, https:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/Screen-Shot-2014-12-17-at-17.26.05-300x174.png 300w\" sizes=\"auto, (max-width: 621px) 100vw, 621px\" \/><\/a><\/p>\n<p>The defaults above should be fine. The default subnet of 10.8.0.0 has been chosen to avoid clashes with subnets of public access points that &#8216;road warriors&#8217; may use to connect to the Internet. Once SSL has been enabled, go to Clients and configure (see below).<\/p>\n<p><a href=\"http:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/Screen-Shot-2014-12-17-at-17.32.42.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-294\" src=\"http:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/Screen-Shot-2014-12-17-at-17.32.42.png\" alt=\"Screen Shot 2014-12-17 at 17.32.42\" width=\"603\" height=\"595\" srcset=\"https:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/Screen-Shot-2014-12-17-at-17.32.42.png 603w, https:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/Screen-Shot-2014-12-17-at-17.32.42-300x296.png 300w\" sizes=\"auto, (max-width: 603px) 100vw, 603px\" \/><\/a><\/p>\n<p>Client name can be anything you like. Office, for example. The server address is the public IP\/hostname of your server. Once you&#8217;ve added the client, select the client you have created from the list of clients, and email the client config to yourself (or whoever). Note: If you are using a public access point in a hotel for example, you might want to tick &#8216;redirect all traffic through\u00a0 tunnel&#8217;,\u00a0 just to keep everything private.<\/p>\n<p><a href=\"http:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/Screen-Shot-SSL.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-297\" src=\"http:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/Screen-Shot-SSL.png\" alt=\"Screen Shot SSL\" width=\"597\" height=\"438\" srcset=\"https:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/Screen-Shot-SSL.png 597w, https:\/\/www.igaware.com\/blog\/wp-content\/uploads\/2014\/12\/Screen-Shot-SSL-300x220.png 300w\" sizes=\"auto, (max-width: 597px) 100vw, 597px\" \/><\/a><\/p>\n<p>Once you receive the client config on your client device, open it with your OpenVPN client and connect. Job done.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>If you are using PPTP you should start using SSL instead. PPTP has never been particularly good. In fact it is very badly engineered; it&#8217;s stateless (equals problems) and insecure. SSL VPN overcomes these problems; it&#8217;s secure, reliable and easy &hellip; <a href=\"https:\/\/www.igaware.com\/blog\/forget-pptp-ssl-is-the-secure-way-to-connect-to-the-igaware-linux-small-business-server\/\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":3,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"spay_email":"","footnotes":"","jetpack_publicize_message":"","jetpack_is_tweetstorm":false},"categories":[20,4,1],"tags":[],"class_list":["post-290","post","type-post","status-publish","format-standard","hentry","category-hidden-gems","category-linux-small-business-server","category-uncategorized"],"jetpack_featured_media_url":"","jetpack_publicize_connections":[],"jetpack_shortlink":"https:\/\/wp.me\/p3QVqI-4G","_links":{"self":[{"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/posts\/290","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/comments?post=290"}],"version-history":[{"count":6,"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/posts\/290\/revisions"}],"predecessor-version":[{"id":343,"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/posts\/290\/revisions\/343"}],"wp:attachment":[{"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/media?parent=290"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/categories?post=290"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.igaware.com\/blog\/wp-json\/wp\/v2\/tags?post=290"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}