Answer the question
In order to leave comments, you need to log in
I ask for advice. Which VPS to choose for your own VPN for remote work?
Good day!
I had the opportunity to work remotely for a German company after a short acquaintance with the process in the office in Germany.
Accordingly, I want to work remotely outside of Germany.
In principle, they do not express direct objections, but there is also no direct answer about the possibility of authorization in a private vpn not with a German IP.
I want to completely protect myself from hypothetically possible unnecessary questions and explanations and raise my VPN on a VPS in Germany. I want to set up my VPN on my router.
So the question arose, which VPS to choose.
1. Best of all, I think that the IP VPS should be as close as possible to the widely spread providers in Germany.
2. Since I have never configured a VPN before, I would like to avoid immediately (without subsequent experiments) problems with the connection / traffic of a working VPN through my VPN.
3. The router has restrictions on the supported VPN protocols. More precisely:
It supports VPN connections according to the IPSec standard with ESP, IKEv1, and pre-shared keys. Authentication Header (AH) and Perfect Forward Security (PFS) are not supported.
Supported IPSec algorithms for IKE phase 1:
Encryption method: AES with 256, 192, 128 bit, Triple DES with 168 bit or DES with 56 bit
Hash algorithms: SHA2-512, SHA1 or MD5-96
The FRITZ!Box uses 1024-bit Diffie-Hellman initial key exchange (DH group 2). It then also accepts 768, 1536, 2048 and 3072 bits (DH groups 1, 5, 14, and 15).
Supported IPSec algorithms for IKE phase 2:
Encryption method: AES with 256, 192, 128 bit, Triple DES with 168 bit or DES with 56 bit
Hash algorithms: SHA2-512, SHA1 or MD5-96
The Diffie-Hellman group is determined by IKE phase 1
Compression: none
Answer the question
In order to leave comments, you need to log in
I think so, your German level is at a normal level :) Go to the website of some German provider and take a VPS there, the most zadripanskiy one will do, but only to have an honest VPS, and not a pseudo one with a hundred users on one core. You deploy strongswan, the router seems to be not very fashionable, but AES256-CBC will probably drag it, make a proposal so that the VPS chooses protocols - you will see what suits it.
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question