
This is a software-only product which we will send
you by email or as a download with a key, which is used
to connect a Windows-based computer to a standard IPSec
server. We will also mail you a CD with the key if
you request it. IPSec servers are usually
standard firewalls (either hardware or software) with
additional IPSec functionality. They are used to provide
a secure, encrypted path from a single PC to a network
– say, your office network. Using our VPN client, you
can access your network while you’re traveling –
from a hotel, a cottage / camp / summer home /chalet.
You can also use it to establish a small branch office
securely away from your primary office. Use it for
telecommuters too! Many of our customers use it for
technical support from home. The product is ideal for
use with the many HotBrick VPN firewall appliances, such
as the 401VPN, the LB-2VPN (aka the LB2VPN, LB2 VPN,
etc.), the VPN600/2, the VPN1200/2, the VPN800/2,
VPN1400/2, VPN800/2G, VPN800/8F, HSS4000, or HSS6000. It
also works well with standard VPN IPSec appliances from
other manufacturers.
We are currently shipping version 4.2 of this
product.
Use this product to provide secure remote access to a
VPN firewall-protected network which supports IPSec VPNs.
Need to reach your office network securely while
traveling or working from home? You need this product!
Access sensitive data like customers lists, accounting
information, your contact manager or CRM system,
proprietary product information, etc. Give a copy to
your accountant, lawyer or boss! We sell three or four
of these licenses with every IPSec VPN appliance!
You do not need this product in the following cases:
a. If you have the 401VPN, HSS4000, or HSS6000 protecting your central
(office), you can use the built-in Microsoft VPN client
if your PC is running Windows 2000 or Windows XP.
However, if you need to access both 401VPN based
networks and LB-2VPN or VPN800/2, VPN1400/2, VPN800/2G,
or VPN800/8F based networks, you
still need this product!
b. You have more than one remote PC in the same
location needing secure access. In this case, it is
cheaper and in some ways better to use a hardware based
solution like the 401VPN at the remote office instead.
Phone us for advice.
Want to connect from a fixed location?
Consider using a hardware VPN firewall instead! (Click here)
401VPN
-Tunneling Protocol Tunneling Protocol with full IKE
support. The IKE implementation is based on the OpenBSD
3.1 implementation (ISAKMPD), thus providing best
compatibility with existing IPSec routers and gateways.
Full IPSec support:
-Main mode and Aggressive mode MD5 and SHA hash
algorithms
-NAT-Traversal NAT-Traversal support of Draft 1
(enhanced), Draft 2 and 3 (full implementation), IP
address emulation, including:
-NAT_OA support (floating port for IKE exchange) NAT
keepalive NAT-T in aggressive mode Forced NAT-T
-NAT-Traversal may be forced from the IPSec VPN
Client. This functionnality is especially useful to
solve issues with intermediate NAT boxes.
-IP Encapsulating Security IP Encapsulating Security:
mode tunnel & transport. Multi-tunneling to several VPN
Gateways. Allows 'IPSec only' trafic filtering, can
block all other connections than the VPN connections.
Accepts incoming IPSec Tunnels.
-Strong encryption Strong IPSec encryption provided
by:
-DES, 3DES 192 bits AES 256, AES 512 bits RSA 2048
-Strong User Authentication Strong User
Authentication provided by:
-PreShared keying X-Auth USB Token and Smart Card
X509 Certificates. Flexible Certificate format (PEM,
PKCS12, ...) on various media (USB, tokens, smartcards)
Hybrid mode is a specific authentication method used
within IKE. Phase 1. This method assume an asymmetry
between the authenticating entities. Keying group:
Support of Diffie-Hellman Group1, 2, 5 and 14 (i.e. 1536
and 2048)
-Mode-Config "Mode-Config" is an Internet Key
Exchange (IKE) extension that enables the IPSec VPN
gateway to provide LAN configuration to the remote
user's machine (i.e. IPSec VPN Client). Once the tunnel
is opened with "Mode Config", the end-user is able to
address all servers on the remote network by using their
network name (e.g. //myserver/marketing/budget) instead
of their IP Address.
-IP Range IP Range is a new feature that enables the
HotBrick IPSec VPN Client to establish a tunnel only
within a range of predefined IP addresses.
-Connection Mode All connections types such as Dial
up, DSL, Cable, GSM/GPRS and WiFi are supported. Several
connection modes:
-IPSec VPN Client to Gateway Mode allows remote users
and business partners or subcontractors to securely
connect to the corporate network, with strong
authentication solution. Peer to Peer Mode can be used
to securely connect branch office servers to the
corporate information system. Redundant gateway can
offer to remote users a highly reliable secure
connection to the corporate network. Redundant gateway
feature allows the HotBrick IPSec VPN Client to open an
IPSec tunnel with an redundant gateway in case the
primary gateway is down or not responding.
-Multi vendor Multi vendor strategy allows us to
support as many IPSec VPN Gateways and Routers on the
market as possible to offer a true multi-vendor solution
to enterprises. This client supports several IPSec VPN
gateways like Bewan, Cisco, HotBrick, Linksys, Netgear,
Netscreen, SonicWall, Symantec, Zyxel and Linux
appliances that support StrongS/WAN or FreeS/WAN. If you
are experiencing testing errors or stagging errors,
compatibility issues or configuration problems in a
multi gateways/routers environment then you want to try
the HotBrick IPSec VPN Client.
-Secured import and export functions To allow IT
Managers to deploy VPN Configurations securely, import
and export functions are available both through the GUI
or through direct command line options. These import and
export functions may be protected with a password in
order to ensure the protection of the VPN Configuration
diffusion.
VPN Configuration Wizard The VPN configuration Wizard
allows the creation of VPN configurations in three easy
steps. It is designed for remote computers that need to
get connected to a corporate LAN through a VPN gateway.
-Operates as a Service Operates as a Service,
allowing the use on unattended Servers
-Windows versions All Windows versions supported:
Win98 ,Me, NT, Win2000, WinXP (incl.SP2), Windows Vista