Stay updated, sign up for our free newsletter to receive useful tips
Full Name EmailId
Implement DHCP Services If your network already has domain controller and DNS servers then you can configure the domain for DHCP services. This is achieved from the control panel. Choose 'add Windows components'.
Networking services provide a list
this list choose DHCP
DHCP is installed go to the administrative tools
ee for authorization within the DHCP console (right click on the server)
Select the new scope (range of IP addresses) option to run the new scope wizard (right click on the server's listing within the console).
need to enter the IP address range you are using
IP address of the router (Default Gateway)
IP Address of the DHCP server needs to be entered
Activate your scope option and you are finished with implementation of the DHCP service
Rate this Article
Excellent
Good
Average
Bad
Terrible
Current Rating
Enterprise Certificate Authority
This is the most confidential part of the setup. Knowledge of this can give a person access to the whole network and if the certificate authority server crashes then it can be devastating. Achieve this operation with the following steps.
Go to the certificate services of the windows component from the control panel
A warning message telling you that you will not be able to rename the machine or change its group membership after the certificates are installed will appear
Click yes in the next window
Choose 'Enterprise Root CA' as the certificate authority you want to install
While entering the common name for certificate authority you must select a validity period (1 or 2 years depending on your corporate security policy)
The default period for a certificate to be valid is 5years
Windows will generate the cryptographic keys and will ask you to give a location for the certificate database
Dependent on the performance and fault tolerance you can choose a different location or just go ahead with the default location
'Restart the IIS services' to install the necessary components.
Internet Authentication Service- Installation and Configuration
Users who enter the corporate network through VPN connection need to be authenticated. The internet authentication server is a member server in one of the domains. The installation of this service is achieved by adding windows components. You can access this from the control panel.
For configuration of IAS you need to select this option from the administrative tools
Registering the IAS server in the active Directory is the first step
For this right click on the Internet Authentication service(local) container
Select 'register server I active directory'
Complete the registration and right click on RADIUS client's container to enter new RADIUS clients by giving the IP address or the DNS name of the client machine
Click next and you will be asked for a shared secret (the encryption key used by RADIUS Server and the client
Set the client vendor option to RADIUS standard to finish the configuration process.
Remote Access Policy
To set up a remote access policy
The remote access policies container is to be right clicked to get the new remote access policy option
Select 'Typical policy for a common scenario' option
Enter 'VPN access' as the policy name and continue
Select the VPN option and continue to apply policy to users or groups
The next option will be the Authentication Methods screen on which select MS CHAPV2
The next screen will give you options of encryption, confirm the strongest encryption option and finish configuring the remote access policy.
VPN server configuration
This it to configure the VPN server with the RADIUS server, DHCP server and the Remote client
Open the server's networks connection folder. Go to administrative tools, select routing and remote access. Right click the VPN server console tree and launch “Routing and Remote Access' by enabling it to open the server wizard. After selection of Remote Access (Dial-up or VPN) mark the checkbox for VPN. This shows you the connections to the internet via VPN. Enable the 'Security' checkbox. Select 'automatically' and proceed to setup the server to work with a RADIUS server by entering the IP Address of the RADIUS server and the shared secret between the VPN server and the RADIUS server.
Associate the VPN server with the DHCP server by navigating through the console tree to the option 'IP routing - DHCP Relay Agent'. Right click on the DHCP Relay Agent and select properties. Now enter the IP Address of the DHCP server and click 'Add'.
This is done by creating a special security group for any user who is accessing the network over VPN connections.
This is done when configuring VPN connections
VPN Client Configuration
If you have a Windows XP based client then configure it by opening Network and Internet connections option from the control panel.
Select create a connection to the Network at your work place' and next select the VPN connection option.
Give the name of company of any name to describe your connection.
Next you will be asked for an external IP address. This IP address is the address of the connection that is connected to the VPN server.
Enter this and your VPN connection is ready.
Test the connection once it is ready by connecting to the server.
When you dial-up set the type of VPN to PPTP VPN.
There are variations in the VPN client connection due to various encryption and authentication technique. Only some have been outlined above.
VPN Hardware Setup
VPN routers are sold by many companies. Their set up is dependent on the product of the respective company. In any case the required software and instructions of the setup are provided along with the purchase. Many of these companies also offer service to setup and configure your VPN connection.
VPN setup is a process that needs to be discussed with the Network administrator. Many a time you are guided by the network administrator in the setup at your remote access client network. VPN may be setup but always be on the safe side. Get a good antivirus and install a good firewall to protect your computer from unwanted attacks.