VPN: An Easy Software / Appliance Solution for Remote Access Robert Gulick, EdD DBA/Technology...

Preview:

Citation preview

VPN: An Easy Software / Appliance Solution forRemote AccessRobert Gulick, EdDDBA/Technology TrainerParma City School Districtgulickb@parmacityschools.org

This is not about…

• Heavy-duty tech topics– layer 2 frames over MPLS – BGP ("layer 3 VPNs") – PKI in IPsec– IKEv2 Mobility – Point-to-Point Tunneling

Protocol (PPTP)– Online file storage services

(www.xdrive.com or www.filesanywhere.com)

This is about how to…

• Access files on your school / office computer

• Remotely run software on your school computer

• Remotely maintain your school computer / server

Topics

• What is VPN

• What is Remote Access

• Software Solutions

• Subscription Solutions

• Hardware Solutions

• Questions to Consider

• Our Results

What is VPN?

• Virtual Private Network

• Technology that enables two computers to communicate privately using a public network

• Encrypted messages sent between computers via the Internet

What is Remote Access?

• Accessing network resources (data) from outside the network–May or may not be via a

VPN (could use RAS / modem)

• While at a conference you can access a file on your building server.

Vocabulary

• Host– The target computer; the

computer you wish to access or control

• Client– The computer you are

using to access the host

• Thin v. Rich Client

Software – Free

• Remote Desktop Connection–WindowsXP Pro to

WindowsXP Pro / Windows Server 2000+

– Need to configure the host computer to accept connections (security)

–Many options• Sound, speed,

remote printing

Software – Free

• Remote Desktop Connection– Pros• Good speed• Easy to setup

– Cons• External access

requires externalIP Address(each computer)• Only 1 client

per host at a time

Software – Free

• TightVNC (OpenSource)– www.tightvnc.com–Works on multiple

platforms and between multiple platforms

– Install VNC Server on host and VNC Viewer on client

– Handles filetransfers

Software – Free

• TightVNC (OpenSource)– Pros• Very good speed• Great for older or non Microsoft

systems

– Cons• External access requires

external IP Address• Support is limited

– user groups and pay support versions available www.vnc.com

Software – FreeDemonstration Time

Software - $

• Typically– Need 1 license on each

host and 1 license on each client

– User / password settings are maintained on each host

– Have more support options

Software - $

• PCAnywhere– http://www.pcanywhere.com/

• LapLink Gold– http://www.laplink.com/

• Anyplace Control– http://www.anyplace-control.com/

• Timbuktu– http://www.netopia.com/

Software - $

• Pros–More security option– Additional features

• Cons– Can be expensive for wide

installation– Require rich client to use– External access requires

external IP Address

Software – Subscription

• Typically– Pay by host + user

combination– Install an agent on each

host machine– Thin client (Web access

java applet)–Maintain user / passwords

at service Web site

Software – Subscription

• GoToMyPC– www.gotomypc.com

• LogMeIn– www.logmein.com

• PCNow (WebEx)– www.pcnow.com

Software – Subscription

• Pros– External access WITHOUT

external IP Address–Many security options– Integrated updates

• Cons– Can get expensive• Monthly / yearly rates

– Constantly generates outbound network traffic• Heartbeat

Hardware – VPN • Typically– 1U Linux server– Needs 1 external IP address

for up to 25+ concurrent users– SSL provided through vendor

under service agreement (including DNS)

–Web Interface for everything– Clientless access (java)– LDAP/Active Directory enabled

Hardware

• www.Aventail.com

• www.sonicwall.com

• www.aepnetworks.com

Hardware

• Pros– Simple to install– Thin VPN client means no

user installs

• Cons– Not every solution works

on all hardware / software– Another server to maintain

Our Results

• VPN Appliance (Hardware) by Enkoo– recently purchased by

SonicWall– 14 named users• Remote Desktop to 22

desktops and 29 servers• ‘Beam’ host to 23 server• 2 Intranet Web sites• 3 File shares

HardwareDemonstration

Questions to Consider

• What OS? (host / client)

• Is external access needed?– Can you get one or more

external IP Addresses?

• How many computers?

• How many users?

• How much use?

• What levels of security / support do you need?

Web Resources

• Search Terms– VPN

– VNC

– Remote Desktop Control

– SSL VPN Appliance

Web Resources• How Stuff Works – VPN• http://computer.howstuffworks.com/vpn.htm

• Site for comparing VPN appliances• http://www.networkworld.com/bg/2004/sslvpn/compare.jsp

• Great article on selecting / testing• http://www.networkworld.com/reviews/2004/0112revmain.html

• Introduction to OpenVPN• http://www.osnews.com/story.php?news_id=5803

Web Resources

• PCWorld – Review of Remote Desktop Services– http://Find.pcworld.com/51106

• PCWord – Review of Remote File Access Services– http://Find.pcworld.com/51196

The End

gulickb@parmacityschools.org

Copy of presentation at:

www.parmacityschools.org/presentations

Recommended