1 Introduction HotBrick VPN client is a complete IPSec VPN solution for all Windows versions. It provides full IKE support (preshared keying and X509 certificates) and Nat Traversal. It is compatible with most of the currently available IPSec gateways and also operates as a peer-to-peer VPN in a “point – to – multiple" mode, without a gateway or server.
If the License number is correct, HotBrick VPN Client is activated. You can then find a green/red icon in the taskbar. Right and left click give access to the configuration user interface and “Quit” command.
The configuration user interface can be launch via a double click on application icon (Desktop or Windows Start menu) or by single click on application icon in system tray. Once launched, the VPN Client software shows an icon in the system tray that indicates whether a tunnel is opened or not, using color code.
VPN configuration. • 'Configuration' menu contains all actions from tree control right-click menu • 'Configuration' menu gives also access to the configuration wizard. • 'Tools' menu contains 'Console' and 'Connections' choice. HotBrick VPN Client User Manual Property of HotBrick — 2005...
The 'About' window provides the VPN Client software version. There is also an URL to our web site. 4 Configuration You’ll find a set of useful VPN Client configuration documents available for each of the VPN Client gateway we support. Please go to our knowledge base on our website: 4.1 USB Mode...
Page 8
USB stick is plugged in. The text is plain when a USB Stick is plugged in. 4.1.2 How to enable the USB Stick? When you insert a new USB stick, the IPSec VPN Client automatically propose to enable the USB stick through the following options: HotBrick VPN Client User Manual...
• Copying the configuration onto the USB stick: the VPN client will copy the configuration onto the USB Stick and leave a copy in the computer. This is used by IT managers to enable multiple USB Sticks for multiple users.
Page 10
You specify the type of the equipment at the end of the tunnel: VPN gateway. 4.2.2 Step 2 of 3 You must specify the following information: • the public (network side) address of the gateway HotBrick VPN Client User Manual Property of HotBrick — 2005...
1. Right-click on 'Configuration' in the tree list window and select "New Phase 1” 2. Configure Authentication Phase (Phase 1) 3. Right-click on the new Phase 1 in the tree control and select “Add Phase 2” HotBrick VPN Client User Manual Property of HotBrick — 2005...
Disable every phase except the phase selected with the mouse. 4.4 Authentication or Phase 1 'Authentication' window will concern settings for Authentication Phase or Phase 1. It is also called IKE Negotia- tion Phase. HotBrick VPN Client User Manual Property of HotBrick — 2005...
Page 13
HotBrick VPN Client User Manual Property of HotBrick — 2005...
Page 14
This field is mandatory. Pre-shared key Password or key shared with the remote gateway. Certificate X509 certificate used by the VPN client (see certificate configuration). IKE encryption Encryption algorithm used during Authentication phase (3DES, AES ...). IKE authentication Authentication algorithm used during Authentication phase (MD5, SHA ...).
Page 15
Nat port Negotiation port for IKE. Default value is 500. Local ID Local ID is the identity the VPN client is sending during Phase 1 to VPN gate- way. This identity can be: •1 an IP address (type = IP address), for example: 195.100.205.101 •2 an domain name (type = DNS), e.g.
4.5 IPSec Configuration or Phase 2 HotBrick VPN Client User Manual Property of HotBrick — 2005...
Page 17
If checked, this option allows a tunnel to be automatically opened when the VPN starts Client starts. Note: as the VPN Client may also start during the boot (see section VPN Tools), tunnels can be configured to be opened automatically during the boot of the computer.
4.6 Certificate management HotBrick IPSec VPN Client uses X509 certificates with PEM format. This kind of certificates is created with OpenSSL, not with HotBrick VPN Client. In order to use X509 Certificates with HotBrick IPSec VPN client, you must have the following items: •...
Configuration management 4.8.1 How to Import or Export an IPSec VPN configuration HotBrick VPN Client can import or export a VPN Configuration. With this feature, IT managers can prepare a configuration and deliver it to other users. • Importing a configuration, select "File > Load configuration".
" [path]\vpnconf.exe /stop " where [path] is the client installation directory. If there are several active tunnels, they will close properly. This feature can be used, for example, in a script that launches the VPN Client after establishing a dialup con- nection and exit it just before the disconnection.
Launched by user or from a script ("manual" mode) 4.10.3 Hiding IPSec VPN Client configuration user interface: VPNHIDE VpnHide.exe is a configuration tool that hides HotBrick Client VPN interface. It can be used by IT managers for preventing end-user from modifying configuration settings.
Most of the time log level set to 0 is largely enough for resolving configuration issues. 5 Uninstall 5.1 Software uninstall HotBrick IPSec VPN Client can be uninstalled: • from Windows Control Panel by selecting "Add/Remove de programs" 6 Troubleshooting You will be able to find all troubleshooting issues, listed in a Troubleshooting Document on our website.
Page 24
7 Contacts Information and update are available at: www.HotBrick.com. Technical support is available by email: support@HotBrick.com End of Document HotBrick VPN Client User Manual Property of HotBrick — 2005...
Need help?
Do you have a question about the VPN Client and is the answer not in the manual?
Questions and answers