Configuring VPN

  
with Windows Server 2003

One requirement description

The unit project group uses VSS (visual source safe 6.0C and visual source safe 2005, corresponding to visual studio 2003 and visual studio2005) for source code in the LAN. Manage collaborative development. Generally, VSS works in the LAN (VSS 2005 can be used throughout the Internet via http, but it has not been used, I don't know if it works well, or I am used to LAN).

In the near stage, I am studying biztalk. After the unit has completed normal work, I will take some time to do the tutorial project of the tutorial in the biztalk document. I will also do some test projects. The project is being done, so it is necessary to connect the home machine with the unit's own machine and use VSS to manage the projects, so that the work done by the unit and the work done at home can be connected to each other.

The machine of the unit is a public network after routing through the local area network. It does not have a public network IP. The machine in the home is routed through the adsl Internet, and there is no public network IP. Just the unit has a public network server I can control, through this server can build a VPN virtual local area network, the unit I use the machine and the home machine are dialed into the VPN server, the two machines are in a virtual local area network Set the VSS database on the unit's machine, then share it, and the home machine accesses the shared VSS database through the virtual LAN.

2 Configure Windows 2003 VPN Server

The server is Windows2003. In 2003, the VPN service is called “Routing and Remote Access”. The system is installed by default, but it is not enabled.

Open “Route and Remote Access in the Administrative Tools'

Right-click on the listed local servers and select “Configure and Enable Routing and Remote Access”. Next

Here, since the server is a general server on the public network, not a server with routing function, it is a single network card, so select “Custom Configuration” here. Next step.

Here I choose "VPN Access", I only need the VPN function. Next, the configuration wizard is complete.

Click “Yes , start the service.

After seeing the VPN service started, & nbsp; routing and remote access & rdquo; interface

Start to configure the VPN server

Right click on the server, select “ ”, select the “IP” tab in the pop-up window, and select "Static address pool" in "IP address assignment".

Then click the “Add” button to set the IP address range. This IP range is the virtual IP address range inside the VPN LAN. Each server that dials into the VPN will be assigned a range. IP, which is accessed by this IP in the virtual local area network.

This is set to 10.240.60.1-10.240.60.10, a total of 10 IP, the default VPN server occupies the first IP, so 10.240.60.1 is actually the IP address of this VPN server in the virtual LAN.

At this point, the VPN service part is configured.

Three Add VPN Users

Each client needs to have an account to dial in to the VPN server. The default is Windows authentication, so you need to set each client to dial in to the VPN. A user and a fixed internal virtual IP for this user so that clients can access each other.

Add a user to the computer management in the management tool, here to add a chnking user as an example

Create a new user called "chnking", and then create a user. Attributes, make the corresponding settings in the "Dial In" tab, as shown in the figure:

The remote access permission is set to "Allow access" to allow this user to dial into the server via VPN.

Click "“ Assign Static IP Address" and set an IP address in the range of the static IP pool in the VPN server. Set here to 10.240.60.2

If there are multiple clients The end machine needs to access the VPN. Please create a new user for each client and set a virtual IP address. Each client uses the user assigned to it to dial in to the VPN, so that each client dials into the VPN each time. Will get the same IP. If the user is not set to "Assign Static IP Address", the client will randomly assign a range of IP to the client each time it dials into the VPN.

Four Configure Windows 2003 Client

The client can be Windows 2003 or Windows XP. The settings are almost the same. Here is the 2003 client settings.

Select Program - Attachment - Communication - New Connection Wizard, Start Connection Wizard

Select the second item here, "Connect to the network of my workplace", This option is used to connect to the VPN. Next step.

Select “Virtual Private Network Connection”, next step.

In the "connection name" window, fill in the connection name szbti, the next step.

You need to fill in the public IP address of the VPN server.

Next, complete the new connection.

After completion, you can see the newly created szbti connection under the virtual private network in the network connection of the control panel.

Right click on the szbti connection and select “Attributes” ;, in the pop-up window, click the "network” tab, then select <;internet protocol (tcp/ip)”, click the Properties button, and then click the “Advanced” button in the pop-up window, as shown in the figure, Remove the checkmark from the "Use default gateway on the remote network".

Copyright © Windows knowledge All Rights Reserved