Many times we need a stable and secure and multiple types of VPN, here is the topology diagram of this experiment to achieve SSTP and L2TP VPN.
SSTP requires certificate SSL for implementation, while L2TP is implemented by key sharing (this connection method is appropriate for mobile devices, but not secure enough for SSTP).
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/396760eb8d92448f020bd754cd31a198.png "width=" 634 "height=" 293 "/>
I. Azure Create a virtual machine
Log on to the international version of Azure:https://portal.azure.com, and then create a Windows Server R2 server.
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/aa56c56232a3d3c3e6ec28627fb4b7e6.png "width=" 682 "height=" 383 "/>
After the creation is complete, remote into the virtual machine to set up.
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/2508b9050d5e9e0cdb4cc0693ec78b5f.png "width=" 691 "height=" 279 "/>
Two. Install the server role
Log in to add a certificate, route access role
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/8d0a9133792b71b32ce4f0b98a0be7ec.png "width=" 530 "height=" 337 "/>
Add the AD Certificate Services and network policy access services
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/2743c9f695b3f40be7b70bd161d25967.png "width=" 524 "height=" 388 "/>
Add Routing and Remote Access features
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/65baa383268d02088ff0da27f59a1c12.png "width=" 526 "height=" 389 "/>
Add certificate validation and certificate validation Web enrollment
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/d039c7df6e768c1ef4403135590e76fc.png "width=" 524 "height=" 388 "/>
Choose a separate Certificate method
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/a6c4502af304c4c412c70772f66fbd66.png "width=" 519 "height=" 382 "/>
Choose the root certificate method
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/3510eaba80f17516cdd3edc225d456d9.png "width=" 528 "height=" 390 "/>
Create a new private key
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/e6d0b012a3c6e456c387b5d8e3abbf90.png "width=" 534 "height=" 395 "/>
Select the type and length of the key
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/40b82f95754f328e2e96e9a710138325.png "width=" 531 "height=" 393 "/>
Fill in the name of the certificate
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/92483271f47b2189bf1dccb9e9099f80.png "width=" 536 "height=" 397 "/>
Set the certificate years
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/6f4b10ce6662a799bd12d3ae62db16fb.png "width=" 553 "height=" 409 "/>
Select DB Path, default
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/0f9d6a1f05974915a2a52941f6218a98.png "width=" 557 "height=" 411 "/>
Default settings Add IIS
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/f5dd203a253647d1231649c620ef3893.png "width=" 563 "height=" 414 "/>
Confirm Installation
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/82ca2543634c1850f0eb3b26772b8b3c.png "width=" 546 "height=" 406 "/>
Wait for the installation to complete.
650) this.width=650; "title=" image "style=" border-right-width:0px;background-image:none;border-bottom-width:0px; padding-top:0px;padding-left:0px;padding-right:0px;border-top-width:0px; "border=" 0 "alt=" image "src=" http:// S3.51cto.com/oss/201710/26/1afa464a86c6922727b06ab928a59c61.png "width=" 546 "height=" 404 "/>
After the installation is complete, the next article is configured for VPN.
This article is from the "Month Missing" blog, please be sure to keep this source http://yueque.blog.51cto.com/4580340/1976338
The international version of Azure builds multiple types of Windows Vpn_ one. Introduction and Installation Services