
Chapter 4: Administration Introduction 37
The user must perform the following tasks to enable PPTP on the user’s workstation:
Make sure the workstation can access the SP manager by entering the SP manager’s public IP
address in a browser to try to bring up the Web Manager.
• If a network or host route is needed, create a route to the private subnet where the target device
resides or to the real or virtual IP address of the target device.
• Make sure a PPTP client is running on the user’s workstation.
• Configure a PPTP VPN connection profile with the following information obtained from the
SP manager administrator:
• PPTP server address = SP manager public IP address (203.1.2.3)
• Username = SP manager username
• Password = PPTP password
• Make the PPTP VPN connection.
• Enter the ifconfig or ipconfig command on the command line of the user’s workstation to
discover the IP address assigned to the SP manager’s end of the PPTP link.
• Enter the SP manager’s PPTP
-assigned address either in a browser or with ssh on the command
line to access the SP manager.
• Create a static route to inform the workstation that the target devices to be contacted are at the
other end of the point
-to-point link at the SP manager’s PPTP-assigned address.
• If multiple private subnets have been configured without a virtual network (DNAT), then
create a route for each subnet.
• Access the target device and enable native IP access.
CAUTION: Remind users to always disable native IP before closing the PPTP VPN connection to prevent other
users from potentially being able to obtain unauthorized and unauthenticated access to native IP features of the
target device.
Table 4.10 describes the values for configuring a PPTP profile.
See VPN on the MergePoint 5224/5240 SP Manager on page 33 for more information.
Table 4.10: Fields for Configuring a PPTP Profile
Field Purpose
PPTP local address pool Assign an IP address or range of addresses to be used whenever a user creates
a PPTP VPN connection to the
SP manager.
PPTP remote address pool Assign a remote IP address or range of addresses to be used whenever a user
creates a PPTP VPN connection to the
SP manager. Specify a pool of
addresses in the form 10.0.0.100-110.
Komentarze do niniejszej Instrukcji