Changes between Version 17 and Version 18 of User Guide/Remote Access/VPN


Ignore:
Timestamp:
Nov 11, 2021, 8:44:09 PM (2 years ago)
Author:
jkol
Comment:

Legend:

Unmodified
Added
Removed
Modified
  • User Guide/Remote Access/VPN

    v17 v18  
    11[[Include(WikiToC)]]
    2 === IPSEC VPN === #setup
     2=== IPSec VPN === #setup
    33
    4 We maintain point to point connections to link various resources to the testbed, mostly at layer 2 for networking experiments. This consists of dialable links over internet2, as well as tunnels over the public internet.
     4We maintain point to point connections to link various resources to the testbed, mostly at layer 2 for networking experiments. This consists of dialable links over Internet2, as well as IKEv2/IPSec tunnels over the public internet.
    55
    66==== User VPN Service
    77
    8 Connect to the following endpoints using your COSMOS username and password. This will only be active during your reservation.
     8Connect to the following endpoints using your COSMOS username and password. Your VPN connection will only be active during your approved reservation time-slots.
    99
    10  ||   Server                  ||  Subnet         ||  Description        ||
    11  || vpn.bed.cosmos-lab.org    ||  10.110.0.0/16  ||  COSMOS Main Testbed ||
    12  || vpn.sb1.cosmos-lab.org    ||  10.37.0.0/16  ||  COSMOS SB1 ||
    13  || vpn.sb2.cosmos-lab.org    ||  10.116.0.0/16  ||  COSMOS SB2 ||
     10 ||=Testbed Domain=||=VPN Endpoint=||=Subnet=||
     11 ||  COSMOS Main Testbed  ||  vpn.bed.cosmos-lab.org  ||  10.110.0.0/16 ||
     12 ||  COSMOS Sandbox 1  ||  vpn.sb1.cosmos-lab.org  ||  10.37.0.0/16 ||
     13 ||  COSMOS Sandbox 2  ||  vpn.sb2.cosmos-lab.org  ||  10.116.0.0/16 ||
    1414
     15{{{#!box note
     16Please be aware of the subnet specified in the table above for the testbed domain you are connecting to. If your local network shares the same IP space, there could be unforeseen problems that will be difficult to troubleshoot.
     17}}}
    1518
    1619==== Instructions per Client OS
     
    9598
    9699[[CollapsibleStart(MacOS)]]
    97  Coming soon
     100
     1011. Open "System Preferences" by clicking on the "apple logo" and selecting "System Preferences..." from the menu.
     102
     103 [[Image(mac_vpn_01.png, 500px)]]
     104
     1052. In the "System Preferences" window, go to "Network"
     106
     107 [[Image(mac_vpn_02.png, 500px)]]
     108
     1093. Click the "+" button on the left hand side
     110
     111 [[Image(mac_vpn_03.png, 500px)]]
     112
     1134. Select "VPN" in the "Interface" drop-down and select "IKEv2" from the "VPN Type" drop-down. The "Service Name" can be anything you like (example: `COSMOS sb1`). Then click "Create".
     114
     115 [[Image(mac_vpn_04.png, 500px)]]
     116
     1175. Fill in the "Service Address" and "Remote ID" fields with the correct VPN endpoint for the specific testbed you want to connect to (example: `vpn.sb1.cosmos-lab.org`). Note that the two fields must be identical.
     118
     119 [[Image(mac_vpn_05.png, 500px)]]
     120
     1216. Click "Authentication Settings..."
     122
     123 [[Image(mac_vpn_06.png, 500px)]]
     124
     1257. Enter your COSMOS username in the "Username" field. Optionally you can also enter your COSMOS password in the "Password" field if you do not want to enter it every time you connect to the VPN. Then click "OK".
     126
     127 [[Image(mac_vpn_07.png, 500px)]]
     128
     1298. '''IMPORTANT:''' You must click "Apply" for the VPN settings to be saved correctly.
     130
     131 [[Image(mac_vpn_08.png, 500px)]]
     132
     1339. To connect to the VPN, click "Connect".
     134
     135 [[Image(mac_vpn_09.png, 500px)]]
     136
     13710. If you did not fill in your COSMOS password in step 7, you will be asked to enter it now.
     138
     139 [[Image(mac_vpn_10.png, 500px)]]
     140
     141Done! You are now connected via VPN to the testbed domain.
     142
     143Remember that you must have a currently approved reservation in order to use the VPN. Also, please don't forget to disconnect from the VPN when you are done.
     144
     145Each testbed domain (ie. sb1.cosmos-lab.org, sb2.cosmos-lab.org, etc.) requires its own VPN configuration.
     146
    98147[[CollapsibleEnd]]
    99148