Solved

Using a VPN to amazon EC2 instance

Posted on 2015-01-28
10
156 Views
Last Modified: 2015-03-03
I have a Windows 2012 EC2 Instance that I'm launching on Amazon and I want to connect to it from a few different computers using a VPN.

What is the best way to go about this? Is it possible to use the Windows built in VPN client using IPsec?
0
Comment
Question by:Gerhardpet
  • 5
  • 3
  • 2
10 Comments
 
LVL 30

Expert Comment

by:Kerem ERSOY
ID: 40577652
Hi,

Can you clarify your question? I am not sure I understand what is that you want. You say you have Windows 2012 Instance and you want to connect it through VPN. If you want strong authentication and encryption this is definitely the way to go. Otherwise you'd open your Remote management port to the world which would be very dangerous.

In your second part you say something but what is the alternative? what VPN Server you're using? Is there a separate VPN service?  Are you using the Windows Built In VPN server? If you're using the Built in VPN server you can easily use the built in IPSec client. What are you current options?  The IPSec is good and widespread but it is not go through in most corporate environments to it. Also the implementation is relatively complex when compared to a SSL VPN.

Until you could elaborate your question this is all I could say to you .

Cheers,
K.
0
 
LVL 1

Author Comment

by:Gerhardpet
ID: 40577966
Correct I want to avoid opening the 3389 port for remote desktop access.

What I'm trying to accomplish is connect from my computer from any ISP to the Windows 2012 instance.

How would I use the built in VPN server in the Windows 2012 instance?
0
 
LVL 30

Expert Comment

by:Kerem ERSOY
ID: 40578186
Ok. If this is the case I'll suggest you to use SSTP VPN rather than IPSEC or PPTP. PPTP has a limited bandwith and limited implementation problem. IPSEC requires some TCP packets to be sent along with TCP and UDP ports due to complex implementation. SSTP requires you  to access a single port 443. If you're using this port for your application then you can remove it to a different port.

Here's an article on how to setup SSTP VPN over 2012 Server:
http://www.petenetlive.com/KB/Article/0000819.htm
Another one is here:
http://advancedhomeserver.com/windows-server-2012-sstp-vpn/

Unfortunately Microsoft TechNet documentation on SSTP is a bit stale this is why I've suggested some third party sources for setup.

Cheers,
K.
0
ScreenConnect 6.0 Free Trial

Check out the updates in one game-changing release, ScreenConnect 6.0, based on partner feedback. New features include a redesigned UI that improves session organization and overall user experience. See the enhancements for yourself!

 
LVL 30

Expert Comment

by:Kerem ERSOY
ID: 40578198
Another option is setting up OpenVPN. OpenVPN implements SSL based VPN and open source and free. There are lots of information over internet for setup. Ican provide you some if you're interested.
0
 
LVL 1

Author Comment

by:Gerhardpet
ID: 40580303
Using Open VPN would't that require an EC2 instance?
0
 
LVL 33

Expert Comment

by:shalomc
ID: 40581506
The recommended way is to launch your EC2 instance inside a VPC, and then map a VPN link between the VPC and your office network.  Of course, if you don't have an office this is irrelevant.. :(
1
 
LVL 1

Author Comment

by:Gerhardpet
ID: 40581625
I have an office but both users connecting to the server are on the road for the most part
0
 
LVL 33

Expert Comment

by:shalomc
ID: 40582198
If you have one of these in your office, then you can configure a permanent VPN link between the office and Amazon, and let your users connect via the office VPN connection.
https://aws.amazon.com/vpc/faqs/#C9
0
 
LVL 1

Accepted Solution

by:
Gerhardpet earned 0 total points
ID: 40622128
I ended up hiring a firm to so the setup for me. Too complicated and I couldn't figure it out.
0
 
LVL 1

Author Closing Comment

by:Gerhardpet
ID: 40641591
No answer
0

Featured Post

ScreenConnect 6.0 Free Trial

Want empowering updates? You're in the right place! Discover new features in ScreenConnect 6.0, based on partner feedback, to keep you business operating smoothly and optimally (the way it should be). Explore all of the extras and enhancements for yourself!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Moving applications to the cloud or switching services to cloud-based ones, is a stressful job.  Here's how you can make it easier.
Cloud-based technologies and services will continue to grow in popularity in 2017 thanks to the simple, scalable and cost-effective solutions they deliver. Here are three areas where cloud adoption is poised to really take off.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

809 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question