S
S
stereo122019-08-15 13:21:31
VPN
stereo12, 2019-08-15 13:21:31

What is the best way to set up vpn?

Hello, the task is to give the director access to shared folders at work, from a laptop. House, cottage, business trips.
Raised vpn on windows 2008 r2 (license). While I was looking for which ports to throw / how to give access through a router (Mikrotik), I found out that Mikrotik itself can be a vpn server.
Therefore, I ask for help on such stupid questions:
1. What is the best, how to do it right, how is it customary to do it: vpn on a windows server behind a router or vpn on the Mikrotik router itself or does it matter?
2. If, let's say wins windows server 2008r2, then what ports should be forwarded? udp 500 and 4500 enough?
Type vpn l2tp / ipsec
ps or can not suffer with this topic at all and give access to the balls via RDP?

Answer the question

In order to leave comments, you need to log in

5 answer(s)
2
20ivs, 2019-08-15
@stereo12

on Mikrotik L2TP + IPsec server, on a laptop from home \ business trip, etc. standard L2TP+IPsec client. You do not need to forward anything additionally, you will connect directly to the working network.
Here, for example .

D
d-stream, 2019-08-15
@d-stream

In order to avoid crooked blocking (for example, in resorts) - it's probably worth looking in the direction of SSTP - no admincheg will block port 443.
Mikrotik quite knows how to do this regularly in a couple of clicks.

C
constnw88, 2019-08-16
@constnw88

If 1C is used in file mode and documents will be edited directly on the ball, then RDP is better. It will be more reliable for files when the connection is broken. In addition, it is easy to work from smartphones and tablets, which also happens sometimes.
And VPN is better to hang up on port 443, as they wrote earlier. In hotels abroad, ports are often whitelisted and vpn is not included there.

S
Stanislav, 2019-08-28
@stasmik

I to myself have simplified the task in approximately a similar situation.
I took a VPN with a white ip from vp-next.com. This is essentially the same VPS, only already pre-configured, with a vpn server (softether). Of course, you can do it yourself, but it's easier that way. Again, there is no need to monitor security and nothing shines openly on the Internet. The server is connected to this vpn and the director with the accountant connects from anywhere. For them, this server is obtained as in the internal network. Bypass blocking - a bonus.
The price is the same as VPS for rent.
Here they have an article https://vp-next.com/remote-pc-connection/ about connecting via vpn. There is certainly more water. But even so, everything is clear and simple. I also connect managers from time to time when on a business trip or when someone is sick.

F
FileManager2049, 2022-03-24
@FileManager2049

I can recommend hydemyname. Good and relatively cheap vpn. The most thrill for me is that any applications go through a VPN, and there is also the ability to connect 5 devices at once. In the current situation, a very good option. If you also sign up using my link, it will be super. https://hidemy.name/#623cc3f4de403

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question