Vous êtes sur la page 1sur 44

TheGreenBow VPN Mobile

User Guide

Contact: support@thegreenbow.com

Website: www.thegreenbow.com

Property of TheGreenBow© - Sistech SA 2000-2008


TheGreenBow VPN Mobile 2.0 - User Guide

Property of TheGreenBow© - Sistech SA 2000-2008

All rights reserved. No parts of this work may be reproduced in any form or by any means - graphic, electronic, or
mechanical, including photocopying, recording, taping, or information storage and retrieval systems - without the
written permission of the publisher.

Products that are referred to in this document may be either trademarks and/or registered trademarks of the
respective owners. The publisher and the author make no claim to these trademarks.

While every precaution has been taken in the preparation of this document, the publisher and the author assume no
responsibility for errors or omissions, or for damages resulting from the use of information contained in this document
or from the use of programs and source code that may accompany it. In no event shall the publisher and the author be
liable for any loss of profit or any other commercial damage caused or alleged to have been caused directly or
indirectly by this document.

Printed: October 2008 in San Francisco.


I

Table of Contents

Part I Introducing TheGreenBow VPN Mobile 2


1 What is TheGreenBow
...................................................................................................................................
VPN Mobile ? 2
2 Multi VPN Gateway
...................................................................................................................................
solution 2
3 Linux Appliance
...................................................................................................................................
Support 2
4 TheGreenBow...................................................................................................................................
VPN Mobile Features 2
5 OEM and Software
...................................................................................................................................
rebranding 3

Part II Installing TheGreenBow VPN Mobile 5


1 VPN Mobile Software
...................................................................................................................................
Installation on the mobile device 5
2 VPN Mobile first
...................................................................................................................................
launch on the mobile device 7
3 VPN Mobile Software
...................................................................................................................................
Uninstallation 8
4 VPN Mobile Software
...................................................................................................................................
Evaluation 9
5 VPN Mobile Software
...................................................................................................................................
Activation 9
6 Activation Troubleshooting
................................................................................................................................... 10

Part III Quick HowTo's 12


1 HowTo Open...................................................................................................................................
VPN tunnel? 12
Tunnel Persistence
.......................................................................................................................................................... 14
2 HowTo Troubleshoot
...................................................................................................................................
VPN tunnel? 15
3 HowTo import
...................................................................................................................................
a VPN Configuration into VPN Mobile software? 16

Part IV Navigating the User Interface 19


1 User interface
...................................................................................................................................
elements 19
2 System Tray...................................................................................................................................
Icon 19
3 Portrait and Landscape
...................................................................................................................................
modes 21

Part V VPN Configuration 23


1 Create a VPN...................................................................................................................................
Configuration 23
Using TheGreenBow
..........................................................................................................................................................
VPN Client for laptop 23
Using TheGreenBow
..........................................................................................................................................................
VPN Configurator 23
2 Upload a VPN
...................................................................................................................................
Configuration on the mobile device 23
3 Change VPN...................................................................................................................................
Configuration 24
4 Import a Certificate
................................................................................................................................... 25
5 Using X-Auth................................................................................................................................... 26
6 Default VPN ...................................................................................................................................
Configuration 27

Part VI Settings 29
1 Protect TheGreenBow
...................................................................................................................................
VPN Mobile Software with password 29

Part VII Console and Logs 33

TheGreenBow VPN Mobile 2.0 - User Guide


TheGreenBow VPN Mobile 2.0 - User Guide II

1 Console Windows
................................................................................................................................... 33

Part VIII Software Localization 35

Part IX Contacts 37

Index 38

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Part

I
Introducing TheGreenBow VPN Mobile
Introducing TheGreenBow VPN Mobile 2

1 Introducing TheGreenBow VPN Mobile

1.1 What is TheGreenBow VPN Mobile ?

TheGreenBow VPN Mobile is an IPSec VPN Client software for Windows Mobile Operating
System that allows to establish secure connections over the Internet usually between a remote
worker and the Corporate Intranet. TheGreenBow VPN Mobile helps IT organization to extend the
Intranet to mobile workers whenever they have wireless (GSM, EGDE, 3G) or WiFi networks
available to them. IPSec is the most secure way to connect to the enterprise as it provides strong
user authentication, strong tunnel encryption with ability to cope with existing network and firewall
settings.
TheGreenBow VPN Mobile provides on Windows Mobile devices most of the features from the
TheGreenBow VPN Client version for PC, making deployment of mobile workers extremely easy
for IT managers. In fact, TheGreenBow allows a quite unique capability for IT managers to use the
exact same VPN Configuration on both PC and mobile version of the software.

TheGreenBow VPN Mobile is the result of many years of experience in network security and
Windows network driver development, as well as extensive research in related areas.
The VPN Mobile completes our range of network security products and like all our products is
extremely easy to use and to install.

1.2 Multi VPN Gateway solution

TheGreenBow strategy is to support as many VPN gateway and appliance vendors as possible,
available right now on the market in order to offer a true multi vendor solution to our customers.
New IPSec VPN gateways or appliances are tested in our labs. The list of certified gateways is
available on our web site and is increasing daily, thus do not hesitate to regularly check for new
certified VPN gateways.

In case your VPN Gateway is not listed, please contact our TechSupport and we'll work with you to
certified it.

1.3 Linux Appliance Support

TheGreenBow supports several implementations of Linux IPSec VPN like StrongS/WAN and
FreeS/WAN. Therefore TheGreenBow VPN Mobile is compatible with most of the IPSec routers/
appliances based on those Linux implementations. We will support more Linux implementations in
the future. The list of supported Linux VPN appliance is available on our website.

1.4 TheGreenBow VPN Mobile Features

Supported Windows Window Mobile 5.0 for Pocket PC


versions Window Mobile 5.0 for Pocket PC Phone Edition
Window Mobile 6 Classic
Window Mobile 6 Professional
Window Mobile 6.1 Classic
Window Mobile 6.1 Professional
Supported languages English, Deutsch, Portuguese, Spanish, French.
Supported layout mode Landscape and Portrait.
Synchronization ActiveSynch4.5 (Windows XP), Windows Mobile Device Center
(Vista)
TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Introducing TheGreenBow VPN Mobile 3

Connection Mode Several wireless connection types like WiFi, GPRS, EDGE, 3G are
supported. A GSM/GPRS, EDGE, 3G connection is automatically
opened if already configured and if there is no WiFi network
available.
Allow IP Range networking.
Split tunneling (forbid non-encrypted connections as soon as a
tunnel is opened).
Tunnel persistence to maintain tunnel opened on unstable wireless
networks.
Tunneling Protocol Full IPSec/IKE support: Our IKE implementation is based on the
OpenBSD 3.1 implementation (ISAKMPD), thus providing best
compatibility with existing IPSec routers and gateways:
 IKE aggressive mode, quick mode and main mode
 Tunnel mode ESP, tunnel and transport
 Change IKE port
 Mode-Config: "Mode-Config" is an Internet Key Exchange
(IKE) extension that enables the IPSec VPN gateway to
provide LAN configuration to the remote user's machine (i.e.
VPN Mobile). Once the tunnel is opened with "Mode Config",
the end-user is able to address all servers on the remote
LAN network by using their network name (e.g. \\myserver
\marketing\budget) instead of their IP Address.
NAT Traversal NAT Traversal Draft 1 (enhanced), Draft 2 and 3 (full
implementation)
 Including NAT_OA support
 Including NAT keepalive
 Including NAT T Aggressive Mode
 Forced NAT-Traversal mode.
Encryption & Hash It provides AES 128/192/256 bits encryption, DES and 3-DES CBC
56/168 bits.
MD5-HMAC 128bits and SHA1-HMAC 160 bits.
User Authentication  PreShared keying and X509 Certificates support. It is
compatible with most of the currently available IPSec
gateways
 Flexible Certificate support (PEM, PKCS#12, ...) when
available within the VPN Configuration. Only PKCS#12
Certificates can be imported directly from the mobile device
user interface.
 Support of Group 1, 2, 5 and 14 (i.e. 768, 1024, 1536 and
2048)
 X-Auth
Dead Peer Detection (DPD) DPD is an Internet Key Exchange (IKE) extension (i.e. RFC3706)
for detecting a dead IKE peer.
Log console All phase messages are logged for testing or staging purposes
allowing to easily narrow the view on specific aspects.
Same VPN Config for both Now, IT Managers can deploy the same VPN Configuration file to all
PCs and Mobile Devices remote workers wether they have PCs or Mobile Devices such as
Pocket PC or Smartphones. This makes it easy to deploy large
number of remote users.
Licensing Lifetime, Temporary, Release based Licensing are available.

1.5 OEM and Software rebranding

Our offer is specially designed to target OEM clients and System Integrators. We provide a fully
functional VPN Client solution to complete existing offers. Our VPN Mobile can be re-branded.

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Part

II
Installing TheGreenBow VPN Mobile
Installing TheGreenBow VPN Mobile 5

2 Installing TheGreenBow VPN Mobile

2.1 VPN Mobile Software Installation on the mobile device

1. Desktop to Device
TheGreenBow VPN Mobile installation is a classic Windows installation followed by a
synchronization with the mobile device via one of the following software:
 ActiveSynch 4.5 or older on Windows XP.
 Windows Mobile device center on Windows Vista.

The Windows Mobile you are using must be in the OS supported list and your computer must be
connected to your mobile device. You can also look at the list of mobile devices (PocketPC,..) we,
or our partners, have tested on the certified mobile devices webpage. If TheGreenBow VPN Mobile
works well with your PocketPC or SmartPhone and it is not on this list, let us know.

Launch TheGreenBow VPN Mobile on your computer, the installation will start.

Click 'Next'. The VPN Mobile software will be uploaded and installed onto the mobile device.

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Installing TheGreenBow VPN Mobile 6

Here is what you should see on both your computer and your mobile device:
On the computer using ActiveSynch.. On the Mobile Device..

Note : If the VPN Mobile software is already installed on the Mobile Device, the user is asked to
confirm the software update.

Once done, you should get a confirmation message from Windows Mobile such as:

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Installing TheGreenBow VPN Mobile 7

Now TheGreenBow VPN Mobile is installed, click 'ok' on upper-right corner.


After clicking 'ok', you'll be asked to reset the mobile device: the installation process is complete.

2. Web to Device
Not supported.

2.2 VPN Mobile first launch on the mobile device

After reset, you can start TheGreenBow VPN Mobile and an icon will appear on right end side of
the mobile device 'Today' screen. TheGreenBow VPN Mobile is set to start when Windows Mobile
starts. This can be reversed via Window Mobile settings.

One click on the systray icon to get the menu as follow:

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Installing TheGreenBow VPN Mobile 8

The software installation has created a new directory 'TheGreenBow' under 'My Document'
containing a default VPN Configuration file i.e. 'tgbtest.tgb' that users can use to test the VPN
Mobile software immediately. This default VPN Configuration allows to open a tunnel with one of
TheGreenBow online VPN gateways.

To use your own VPN Configuration see section 'Upload a VPN Configuration'.

2.3 VPN Mobile Software Uninstallation

TheGreenBow VPN Mobile can be un-installed at anytime. TheGreenBow VPN Mobile un-
installation is a classic Windows un-installation followed by a synchronization with the mobile
device.

Your computer must be connected to your mobile device. Select TheGreenBow VPN Mobile un-
installation in the TheGreenBow application folder on your computer. Windows Mobile Device
Center (Vista) or ActiveSynch (here below for Windows XP) will synchronize with your mobile
device.

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Installing TheGreenBow VPN Mobile 9

Uninstallation can be performed on the mobile device itself as well. Just go to Windows Mobile
"Settings" then "System" then select "Remove program".

2.4 VPN Mobile Software Evaluation

It is possible to use TheGreenBow VPN Mobile during the evaluation period (i.e. limited to 30
days). When the VPN Mobile is on "Evaluation" mode, the activation tab appears in the VPN
Mobile. Users can activate the VPN Mobile at anytime during evaluation period.

Once evaluation period expires, 'Configuration' tab, 'Settings' tab and 'Console' tab are no longer
available and the VPN Mobile software is disabled.

2.5 VPN Mobile Software Activation

For use beyond the evaluation period, TheGreenBow VPN Mobile software must be activated. The
Software Activation is a simple process which requires a License Number.

Open the VPN Client software, select the 'Activation' tab and enter your Software License Number
and click on 'Activate'.

The VPN Mobile will automatically connect to TheGreenBow software activation server to activate
the VPN Mobile Software. The Software Activation process will end with a successful Activation
message.
Once the software activation is done, the 'Activation' tab disappears.

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Installing TheGreenBow VPN Mobile 10

2.6 Activation Troubleshooting

Errors may occurred during the activation process. Each activation error is briefly explained on the
activation window. The link "More information about this error" below the progress bar provides
online full explanations and recommendations on how to proceed next.

Most of errors encountered may be fixed by carefully checking the following points:

1. Check you entered the correct License Number (error 031).


2. The communication with our activation server may be filtered by a firewall (error 053 or
error 054). Check if a personal firewall or a corporate firewall is filtering
communications.
3. Our activation server may be temporarily unreachable. Try to activate the software a few
minutes later.
4. Your License Number is already activated (error 033). Contact our sales team:
sales@thegreenbow.com.

All activation errors are detailed online on our website:


http://www.thegreenbow.com/help.html?subject=osa&id=001

Note: If you didn't succeed to activate the software despite the previous
recommendations, it is always possible to manually activate the software
on our website: http://www.thegreenbow.com/activation/osa_manual.html.
This enables users to immediately fully activate the software.

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Part

III
Quick HowTo's
Quick HowTo's 12

3 Quick HowTo's

3.1 HowTo Open VPN tunnel?

There are several ways to open a tunnel (once the VPN configuration has been imported):

1. Single click on the SystemTray icon > Click on 'Open CnxVpn1'

Once tunnel is open, the systray menu will change to allow the user to close the tunnel:

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Quick HowTo's 13

2. Single click on the SystemTray icon > Click on 'Configuration' > Select on 'Console' tab and
click on 'Open'.

3. Tunnel opens automatically on traffic. This feature allows the tunnel to open automatically when
traffic to the corporate network is detected. Corporate network addresses are defined in the
Phase2 of the VPN configuration (i.e. 'remote LAN address). If the network is unavailable or
gateway does not respond VPN Mobile tries to re-open the tunnel 4 times.

In case no connection is possible either because it has been configured or the selected wireless
network is not available, the user is informed via the following popup window:

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Quick HowTo's 14

3.1.1 Tunnel Persistence

Wireless networks are less stable and require features to maintain the persistence of VPN tunnels
so remote users can count on stable VPN tunnels regardless. In VPN Mobile, both failures of the
remote gateway and the current wireless network used can be detected to make sure the tunnel is
always on when physically possible.

1. Failure of the remote gateway


Failure of the remote gateway is detected using DPD mechanisms (Dead Peer Detection) because
the wireless network can be available while the remote gateway has restarted its WAN interfaces.
Once a failure has been detected, VPN Mobile attempts several times (i.e. configurable) to restart
the tunnel on the same network .

2. Unavailability of selected wireless network


The selected wireless network (3G, GPRS or WiFi) is constantly monitored to detect lost. In case
of unavailability of the wireless network, VPN Mobile attempts several times to restart the tunnel on
the same network as the wireless disconnection might have been brief. If the wireless network is
still not available after several attempts, the following windows pops up to inform the user so that
he can use another wireless network depending his location:

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Quick HowTo's 15

3. Moving out of the office from WiFi to GSM/GPRS, EDGE or 3G wireless network
If there is no more WiFi network available or if WiFi just failed because the user comes out of his
office building, a GSM/GPRS, EDGE or 3G connection is automatically opened, if already
configured/enabled, and VPN tunnel is up immediately as the VPN Mobile has detected the
network change instantaneously. Corporate network is still available without user noticing network
change.

4. Moving back into the office from GSM/GPRS, EDGE or 3G wireless network to WiFi
As soon as the GSM/GPRS, EDGE or 3G connection is lost, and the WiFi connection is enabled,
the VPN Mobile will try to reopen VPN tunnel immediatly without user noticing. WiFi network might
not be available right away therefore several attempts are made till the VPN tunnel opens again.

5. Auto open tunnel on traffic


In addition, auto open tunnel on traffic feature allows to open VPN tunnel to the right gateway by
detecting traffic to that destination. In case the wireless connections have been disabled for some
times to save battery and enabled again, VPN tunnel will open as soon as the user clik on email
synch or tries to access an URL in the browser.

Tunnel Persistence makes easier VPN software for mobile users regardless of standards and
technologies used by the wireless providers or the visited wireless networks.

3.2 HowTo Troubleshoot VPN tunnel?

How to troubleshoot a VPN tunnel?


You will be able to find all troubleshooting issues, listed in the following documents on our website:
 Online help (html).
 Online Software Activation (html).
 Use the Default VPN Configuration to test you network.
 VPN Mobile FAQs.

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Quick HowTo's 16

3.3 HowTo import a VPN Configuration into VPN Mobile software?

The first step would be to upload your VPN Configuration onto the Mobile Device like any other
files. It is possible to use the exact same VPN Configuration file you are using with the PC version
of TheGreenBow VPN Client. However, in case several VPN tunnels have been configured in the
VPN Configuration, only the first VPN tunnel configured will be uploaded into the TheGreenBow
VPN Mobile.

Note: The VPN Configuration shall not protected with a password prior to import.

Step1: Single click on the SystemTray icon > click on 'Configuration' > click on 'Load'.

Step2: Select the right folder to find your VPN Configuration .

Step3: Then, double click on your VPN Configuration

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Quick HowTo's 17

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Part

IV
Navigating the User Interface
Navigating the User Interface 19

4 Navigating the User Interface

4.1 User interface elements

TheGreenBow VPN Mobile user interface is made of several elements:


 Activation Tab
 Configuration Tab
 Settings Tab
 Console Tab
 System Tray Icon

4.2 System Tray Icon

The VPN Mobile user interface can be launched via a single click on application icon in system
tray. Once launched, the VPN Mobile software shows an icon in the system tray that indicates
whether a tunnel is opened or not, using color code.

VPN Mobile application color code is the following:

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Navigating the User Interface 20

Blue icon: no VPN tunnel is opened. Green icon: at least one VPN tunnel is opened.

Warning icon: error occurs when trying to open tunnel.

A tap on VPN Mobile icon opens the following systray menu:


 'Quit' will close established VPN tunnels and quit.
 'Configuration' opens the setting tabs e.g. upload VPN Configuration, change settings and
activate software.
 Configured tunnel with current status. Tunnel can be opened or closed from this menu as
well.

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Navigating the User Interface 21

4.3 Portrait and Landscape modes

Portrait and Landscape modes are both supported. However, some panels may not display
properly when switching from one mode to another. In case mode change is required, then please
stop and restart VPN Mobile software.

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Part

V
VPN Configuration
VPN Configuration 23

5 VPN Configuration

5.1 Create a VPN Configuration

The same VPN Configuration can be deployed on TheGreenBow VPN Client for PC and
TheGreenBow VPN Mobile for Windows Mobile based devices.

5.1.1 Using TheGreenBow VPN Client for laptop

IT Managers can use TheGreenBow VPN Client for PC to create VPN Configurations and import
them onto the mobile devices.

Step1: Launch TheGreenBow VPN Client for PC and open the Configuration Panel.
Step2: Setup all VPN parameters, click 'Save&Apply' and export your VPN Configuration as a '.tgb'
file (see also TheGreenBow VPN Client User Guide on our website)
Step3: Upload your VPN Configuration on the Mobile device.

5.1.2 Using TheGreenBow VPN Configurator

In case you are not using TheGreenBow VPN Client for PC already, you can download
TheGreenBow VPN Configurator software available on our website.

Step1: Launch TheGreenBow VPN Configurator for PC and open the Configuration Panel.
Step2: Setup all VPN parameters, click 'Save&Apply' and export your VPN Configuration as a '.tgb'
file (see also TheGreenBow VPN Client User Guide on our website)
Step3: Upload your VPN Configuration on the Mobile device.

5.2 Upload a VPN Configuration on the mobile device

Here is how to upload your VPN Configuration onto the Mobile Device:
 Connect your mobile device to your PC. A new drive is created under 'My Computer', thanks to
ActiveSynch software.
 Drag&drop your VPN Configuration file from the computer onto the drive of the mobile device
under 'MyDocument' using Windows Explorer.
 From the mobile device, import the VPN Configuration into TheGreenBow VPN Mobile.

Note: It is possible to use the exact same VPN Configuration file you are using with the PC version
of TheGreenBow VPN Client. However, the VPN Client can manage only one tunnel. In case
several VPN tunnels have been configured in the VPN Configuration, only the first VPN tunnel
configured will be uploaded into the TheGreenBow VPN Mobile.

Once uploaded onto the mobile device, the VPN Configuration needs to be imported in
TheGreenBow VPN Mobile. Here are the steps:

Step1: Single tap on the SystemTray icon > tap on 'Configuration' > tap on 'Load'.

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
VPN Configuration 24

Step2: Select the right folder to find your VPN Configuration and double click on your VPN
Configuration.

Step3: Then, click on 'Apply'

5.3 Change VPN Configuration

Once imported in TheGreenBow VPN Mobile the VPN Configuration can be modified.

Single click on the systray icon, and go to Configuration tab:


TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
VPN Configuration 25

Here are the settings that can be modified:

Gateway IP address or DNS address of the remote gateway (e.g. 88.162.180.79,


gateway.mydomain.com).
PSK (Pre-shared key) Pre shared key as defined in the remote gateway.
Certificate X509 certificate used by the VPN Mobile . Click on 'Certificate Import ..'
to select the Certificate required for user authentication.

Click on 'Apply' to make sure modifications have been taken into account.

5.4 Import a Certificate

It is possible to import a Certificate into the TheGreenBow VPN Mobile for strong user
authentication. In this software release only PKCS#12 Certificates can be imported directly from
the mobile device.

Step1: Single click on the systray icon > go to Configuration tab > click on 'Certificate Import..' as
followed:

Step2: Select the right folder and the required Certificate in the list:

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
VPN Configuration 26

5.5 Using X-Auth

X-Auth is a great capability to add more security for remote users. It is possible to define the login
and password of an X-Auth IPSec negotiation. If "X-Auth popup" has been selected while building
the VPN Configuration, a popup window asking for a login and a password will appear each time
an authentication is required to open a tunnel with the remote gateway. The end-user has few
seconds to enter its login and password before X-Auth authentication fails.

Note: This time out can be configured in the VPN Configuration but it is not taken into account
within the VPN Mobile.

The popup window will look like this:

In case 'Don't ask again' is selected, the login and password won't be asked each time it is
required to open a tunnel. After the VPN Mobile restarts, the login and password for X-Auth
authentication will be asked again.

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
VPN Configuration 27

5.6 Default VPN Configuration

The VPN Mobile Setup embeds a Default VPN Configuration and this default VPN Configuration is
loaded right after software installation. This Default VPN Configuration enables to open a tunnel to
our TheGreenBow Demo Server.

It is particularly useful to check if a tunnel can be opened from the mobile device to an operational
remote gateway for test – and eventually for debug – purpose.

This VPN configuration file i.e. 'tgbtest.tgb' is saved in a new directory 'TheGreenBow' under 'My
Document' created during software installation.

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Part

VI
Settings
Settings 29

6 Settings

TheGreenBow VPN Mobile Settings can be defined in the 'Settings' tab:

Software Release Product Name and Software Release Number.


License Number License Number as entered during software activation.
Protected by Password If selected, password is asked when the user tries to open a tunnel,
access the Configuration, Settings or Console tabs.
Block non ciphered This allow to force all traffic into the tunnel already opened. In case '
connection Block non ciphered connection' is not selected, the GPRS network of the
wireless carrier might interpret and treat all WINS traffic depending on
their architecture and therefore never reach your corporate network. To
avoid that, you need to force all this traffic into the tunnel so it is
conveyed up to the remote LAN. It is convenient to have the ability within
the GUI so that it can be changed depending on the network used. Plus
it is a more secure way to use tunnel.
Open this application It is possible to open Outlook or any web page when a tunnel opens.
Both can be selected in the same time. web pages can be defined by an
URL address or an IP address.
Note: URL format shall be http://www.domain.com/page.html or
http://192.168.175.50

6.1 Protect TheGreenBow VPN Mobile Software with password

TheGreenBow VPN Mobile Software is installed WITHOUT password. Please make sure a
password is setup as soon as possible after installation.

To setup a password, click on the systray icon > go to 'Settings' tab and select 'Protected by
Password'.
TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Settings 30

Enter your password twice for confirmation and click on 'Ok':

Password can always been changed later on by going back to 'Settings' tab. Once 'Protected by
Password' is selected, the user will be asked to enter is password whenever he tries either to open
a tunnel from systray menu or to open Configuration tabs:

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Settings 31

Note: the password is not stored as soon as this feature is disabled, and it must re-entered again
to enable the protection.

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Part

VII
Console and Logs
Console and Logs 33

7 Console and Logs

7.1 Console Windows

The 'Console' tab displays the VPN IPSec messaging. This tools can be used to analyze VPN
tunnel behavior which is particularly useful to IT managers in setting up their networks.

Button Description
Clear Clear console window content.
Save Save all logs in a file 'vpnlog.txt' under 'MyDocuments\TheGreenBow.
Open/Close Open or Close tunnel.

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Part

VIII
Software Localization
Software Localization 35

8 Software Localization

The localization (L10N) of the VPN Mobile is now possible, even by a third party company.

Please go to www.thegreenbow.com/contribute or contact our support@thegreenbow.com.

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Part

IX
Contacts
Contacts 37

9 Contacts

Information and update are available at: www.thegreenbow.com


Technical support by email at: support@thegreenbow.com
Sales support by email at: sales@thegreenbow.com

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
38 Index

Import VPN Configuration 16

Index -L-
-A- Linux appliance compatibility
Localization
2
35
Activation 9, 10 Log file 33
Activation errors 10

-M-
-C- Modify a VPN Configuration 24
Certificate 25 Multi Gateway Compatibility 2
Certificate import 24, 25
Change a VPN Configuration
Change Pre-Shared key
24
24 -N-
Console 33 Navigating user interface 19
Create a VPN Configuration 23

-D- -O-
OEM Partners 3
Default VPN Configuration 7, 27 Open tunnel 12

-E- -P-
Evaluation period 9 PKCS#12 Certificate 25
Pre-Shared key 24

-F- Protect access with password 29

Feature list 2
-S-
-G- Sales contact
Settings
37
29
Gateway Address 24 Software Activation 9
Support contact 37
Supported Languages 2, 35
-H- Supported Operating Systems 2
System tray icon 19
How to install ? 5, 7
HowTo create a VPN Configuration 23
HowTo import Certificates
HowTo open a tunnel
25
12
-T-
HowTo protect access with password 29 Test VPN Configuration 27
HowTo save log file 33 TheGreenBow VPN Configurator 23
HowTo troubleshoot VPN 15 Tunnel persistence 14
HowTo upload a VPN Configuration 23

-U-
-I- Uninstall 8
IKE/IPSec Logs 33 Upload a VPN Configuration 23
Import Certificates 25 User Authentication 24, 25, 26
TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Index 39

-W-
What's the TheGreenBow VPN Mobile for 2
?

-X-
X-Auth 26

TheGreenBow VPN Mobile 2.0 - User Guide Property of TheGreenBow© - Sistech SA 2000-2008
Secure, Strong, Simple.
TheGreenBow Security Software

Property of TheGreenBow© - Sistech SA 2000-2008

Vous aimerez peut-être aussi