Re: [WinMac] VPN and Mac/Windows Appleshare Network

From: Leonard Rosenthol (leonardr[at]lazerware.com)
Date: Tue Oct 31 2000 - 12:18:25 PST


At 10:46 AM -0800 10/31/00, Rick Kent wrote:
>We are trying to set up a VPN so we can connect to our main server
>from outside the office, but I am having trouble even finding
>information on how to do it because we have a Mac Appleshare IP 6.3
>server.

        The type of server you have doesn't matter - it's not your
problem(s) in choosing/setting up a VPN solution.

>We are running IPNetRouter on a separate Mac 8100, with dual
>ethernet ports and a DSL connection. (Currently we have a dynamic
>IP address, and yes I realize we will have to get a static IP
>address from the phone company when we set up the VPN.)

        Right - this is problem number one.

        You can not (easily) do VPN to a NAT'd network, UNLESS the
firewall, NAT and VPN solution are integrated. In that case, you can
setup port forwarding and such to address the problems.

        You first need to make some network topology choices first.

>Can anyone suggest a solution that would let us securely connect to
>our main server from remote locations across the internet?
>
        Problem number two is choosing a software (or hardware)
solution that will work with all your clients (ie. anyone who is
going to connect), regardless of hardware platform. I would
recommend that you stick with a standard, such as IPSec - but your
choice of solution for #1, may dictate #2, and you need to make sure
that it's a x-platform solution.

>(Without requiring a full time IT person.)

        You won't need a full time IT person, but you WILL need
someone with a VERY LARGE clue about networking, etc. VPN (and
firewalls, NAT, etc.) are not trivial - you need to understand a LOT
about how they work, and work together, to get this up and running -
and supported.

Leonard

-- 
----------------------------------------------------------------------------
                   You've got a SmartFriend in Pennsylvania
----------------------------------------------------------------------------
Leonard Rosenthol      			Internet:       leonardr@lazerware.com
					America Online: MACgician
Web Site: <http://www.lazerware.com/>
FTP Site: <ftp://ftp.lazerware.com/>
PGP Fingerprint: C76E 0497 C459 182D 0C6B  AB6B CA10 B4DF 8067 5E65

*** Windows-MacintoshOS Cooperation List *** FAQ: http://www.darryl.com/winmacfaq/ Archive: http://www.darryl.com/winmac/

To unsubscribe, send mail to winmac-unsubscribe@iffy.com



This archive was generated by hypermail 2b29 : Tue Oct 31 2000 - 12:21:36 PST