How to Configure Connection Fallback using Multiple VPN Gateways

Similar documents
How to Configure the Barracuda VPN Client for Windows

Manual UCSFwpa Configuration for Windows 7

Configuring an IMAP4 or POP3 Journal Account for Microsoft Exchange Server 2003

STRS OHIO F5 Access Client Setup for ChromeBook Systems User Guide

Integrated Information Technology Services (IITS)

Adding a VPN connection in Windows XP

Instructions for connecting to the FDIBA Wireless Network (Windows Vista)

Connect to Wireless, certificate install and setup Citrix Receiver

APSCN VPN SETUP F5 VPN October Update

Procedure for Connecting to OIL VPN

Instructions for connecting to the FDIBA Wireless Network. (Windows XP)

Configuring 802.1X Authentication Client for Windows 8

How to Integrate RSA SecurID with the Barracuda Web Application Firewall

Internet access system through the Wireless Network of the University of Bologna

XIA Configuration Server

SETUP FOR OUTLOOK (Updated October, 2018)

Client Configuration Guide

How to Configure a Remote Management Tunnel for Barracuda NG Firewalls

Manually Configuring Windows 8 for Wireless PittNet

Manual for configuring VPN in Windows 7

WINDOWS NT 4.0 USER GUIDE

How to Set Up External CA VPN Certificates

ActivIdentity 4TRESS AAA Web Tokens and F5 BIG-IP Access Policy Manager. Integration Handbook

Remote Access User Guide for Mac OS (Citrix Instructions)

UNT System Campus VPN Guide

Barracuda Networks SSL VPN

3. In the upper left hand corner, click the Barracuda logo ( ) then click Settings 4. Select the check box for SPoE as default.

San Jacinto College. Secure SSL VPN Instruction Manual. Contents

How to Install the Barracuda Network Access/VPN Client for Windows

EOH-SASOL - Setup Sasol Mobile Express (Client)

UMDNJ Wireless Documentation Windows 7

The two bullets below provide instructions that will guide you through the process of setting up and connecting to the ILG VPN:

Help Document Series: Connecting to your Exchange mailbox via Outlook from off-campus

INF204x Module 1, Lab 3 - Configure Windows 10 VPN

Manually Configuring Windows 7 for Wireless PittNet

Parallels Remote Application Server

Student Website Setup

Configuring the WebDAV Folder for Adding Multiple Files to the Content Collection and Editing Them

Client VPN OS Configuration. Android

SET UP VPN FOR WINDOWS 10

Microsoft Outlook Live

Revised: 08/02/ Click the Start button at bottom left, enter Server Manager in the search box, and select it in the list to open it.

Getting Started with Outlook Web App (OWA)

IT Access Portal User Guide (Employees)

AAA and the Local Database

Publishing a Respondus File to Blackboard

WMI log collection using a non-admin domain user

How to Configure a Remote Management Tunnel for an F-Series Firewall

Configure Wireless for Windows 7

Business Connect Secure Remote Access Service (SRAS) Customer Information Package

Connecting to the eduroam Wireless Network. 1. If you are using a PC, move the. 2. Next Click or Tap the Settings. Help Sheet Windows 8.

Release Notes - Barracuda NAC/VPN Client for Windows

Adding your IMAP Mail Account in Outlook 2013 on Windows

Click Studios. Passwordstate. Remote Session Launcher. Installation Instructions

Cisco Secure Desktop (CSD) on IOS Configuration Example using SDM

NetMotion Integration with GreenRADIUS - Quick Start Guide

Printer Setup Instructions

V7610 TELSTRA BUSINESS GATEWAY

Configuring 802.1X Authentication Client for Windows 8

Configuring Microsoft Outlook to Connect to Hosted Exchange Service

Studywiz Extractor Installation Guide SIMS Multi-School

How to Configure the RSA Authentication Manager

Remote Desktop How to guide

Power Development Platform Connecting to your PDP system user guide

Password Reset Utility. Configuration

How do I configure my LPL client to use SSL for incoming mail?

Connecting to the NJITSecure wireless network.

Faculty Database (FDB) and TA Credentials Database (TADB) July 17, 2014 Launch from myuk portal

AT&T Global Network Client for Mac User s Guide Version 2.0.0

Reference Card: How to connect Windows 7 to UniWireless

SharePoint AD Administration Tutorial for SharePoint 2007

SAP GUI 7.30 for Windows Computer

Parallels Remote Application Server

Establishing two-factor authentication with Barracuda SSL VPN and HOTPin authentication server from Celestix Networks

Application Notes for snom MeetingPoint VoIP Conference Telephone with Avaya IP Office Issue 1.0

ACE Live on RSP: Installation Instructions

How to Install and Configure the Barracuda Outlook Add-In

Integrating IBM Security Privileged Identity Manager with ObserveIT Enterprise Session Recording

Configuring Remote Access using the RDS Gateway

External Authentication with Checkpoint R77.20 Authenticating Users Using SecurAccess Server by SecurEnvoy

Hosted Microsoft Exchange Client Setup & Guide Book

E mail Setup Guide for Microsoft Outlook 2002, 2003 & 2007

Cisco Voice Services Self-Care Portal User Guide

Step-by-step installation guide for monitoring untrusted servers using Operations Manager

3.1 Getting Software and Certificates

AT&T Global Network Client for Mac User s Guide Version 1.7.3

Connect to Wireless, certificate install and setup Citrix Receiver

The SSID to use and the credentials required to be used are listed below for each type of account: SSID TO CREDENTIALS TO BE USED:

Partner Integration Portal (PIP) Installation Guide

Power Development Platform Connecting to your PDP system user guide

Copyright NeoAccel Inc. SSL VPN-Plus TM. NeoAccel Management Console: Network Extension version 2.3

<Partner Name> <Partner Product> RSA SECURID ACCESS. VMware Horizon View 7.2 Clients. Standard Agent Client Implementation Guide

InfoRouter LDAP Authentication Web Service InfoRouter Version 7.5 Active Innovations, Inc. Copyright

Partner Information. Integration Overview. Remote Access Integration Architecture

Parallels Remote Application Server

Securewireless Windows 7 Setup Guide

NetExtender for SSL-VPN

Almadallah Healthcare Management

Outlook 2010 Exchange Setup Guide

How to Configure Your Client for HughesNet

Transcription:

How to Configure Connection Fallback using Multiple VPN Gateways Configure the Barracuda VPN Client for Windows to silently switch to fallback VPN gateways when a VPN gateway is not reachable, such as when the client is used in different corporate networks or geographic locations. A working VPN connection is always available and the appropriate gateway is automatically selected. Example scenario In this example, three VPN profiles are used to connect to a corresponding gateway into the company network: externalvpn.mycompany.com The gateway to be used when the client is not connected to a corporate network. hqvpn The gateway to be used within the company HQ network. branchvpn The gateway to be used within a branch office network. These VPN profiles are configured as part of a fallback chain that will be used by the VPN client to find the appropriate gateway. You can initiate a VPN connection using the hqvpn profile that is set as the default VPN profile. If necessary, the VPN client will try each configured VPN profile in the fallback chain until it can establish a connection. Fallback chain: 1 / 6

Configure the VPN profiles Configure the VPN profiles for the three gateways as shown in the example scenario. Step 1. Set up the VPN gateways Create a VPN profile for each of the three VPN gateways. 1. 2. 3. 4. 5. 6. In the Barracuda VPN Client window, click Preferences. The Barracuda VPN Control window opens. Click New in the left navigation pane to launch the Profile Wizard. You can also right-click the window's main area and select New (Wizard) or New. In the Remote Server field, enter the IP address or host name of the first gateway. E.g.: externalvpn.mycompany.com Select the Remember my user name check box so that the client will reconnect to this server without prompting users for their username. Click Next. On the Authentication Method screen, select your authentication method: If you choose User Name and Password, you must configure additional settings to save the password locally if you do not want the client to constantly prompt users for a password when changing gateways. To automatically reconnect in the background, select Certificate or Barracuda Personal License. Do not select SecurID because it uses one-time passwords, which are not suitable with fallback gateways. 2 / 6

For more information on configuring a profile and choosing the correct authentication method, see How to Create VPN Profiles. 7. Configure the two remaining profiles with your respective parameters. The two remaining profiles used in the example scenario are named hqvpn and branchvpn, and they point to identically named VPN servers. Step 2. Configure externalvpn.mycompany.com 1. In the Barracuda VPN Control window, right-click the externalvpn.mycompany.com entry and select Modify Profile. 2. In the Properties window, click the Advanced Settings tab. 3 / 6

3. In the Tunnel Connect section, set Enable VPN Tunnel Probing to Yes. This setting ensures that the client will always use the fastest available gateway. 4. In the Tunnel Reconnect section, set WLAN Roaming, Fast Reconnect, and Reconnect immediately to Yes. 5. In the same section, set Fallback Profile to hqvpn. With this option set, the next gateway in the chain will be tried if the primary gateway is not reachable. 6. Because the externalvpn.mycompany.com gateway is used when the client is not connected to the company network, you should disable it in the company network. 7. Although the external URL of a company's VPN server should not be reachable from within a cleanly configured company network, you can accelerate the switch to the next fallback profile by enabling the client to detect the company's Active Directory (AD) service. In the Active Directory section, configure the following settings: Set Probe Active Directory to Yes. In the Active Directory IP field, you can enter one or more known IP addresses for the MSAD service to help the client quickly detect the AD service. 8. In the User Interface Settings section, configure the following settings: If you configured username and password authentication, set Remember logon user name to Yes to disable login prompts. To store credentials after they are entered, set Use MS Credential Manager to Local. 4 / 6

To disable the informational pop-up window that displays connection status changes, set Show Popup to No. 9. Click OK to save the configuration. Step 3. Configure hqvpn Configure the hqvpn profile with the same settings as the external profile, with these three exceptions: 1. In the Tunnel Reconnect section, set Fallback Profile to branchvpn. This way, the branch network's VPN gateway is defined to be the next gateway in the chain. 2. Disable Active Directory probing. In the Active Directory section, set Probe Active Directory to No. 3. Define hqvpn as the default profile by right-clicking its list entry in the Barracuda VPN Control window and selecting Set as Default. The client will automatically start with this profile in the fallback chain when it tries to establish a connection. Step 4. Configure branchvpn Configure the branchvpn profile with the same settings as the hqvpn profile, with these two exceptions: In the Tunnel Reconnect section, set Fallback Profile to externalvpn.mycompany.com. This closes the fallback chain so that the external VPN gateway will be tried next if none of the company's internal VPN gateways is reachable. Do not select branchvpn as the default profile. 5 / 6

Figures 6 / 6