This can be seen as an easy to use VPN client solution with following advantages: - Easy installation and update. - High security by using certificates. - The user can see all available connections and their status. - Central management.
Hints to configure the authentication options can be found here.
To activate ApplicGate as VPN client via the network following parameters may be specified in the URI when loading:
Required parameter: - server=node:port... IP address or DNS name and port of the central ApplicGate server, port is optional, default is 443
For authentication one of these three parameters can be selected (default is sslcc=Prompt:*): - sslcc=sslccparameter ... certificate selection, same parameter as for keyword SSLCC. - totp[=[email][!SecurityID]] ... use TOTP and specify optional default values, same parameter as for keyword TOTP - oa2[=provider] ... OAuth 2.0 authentication with the specified provider (optional), same as keyword OA2
Optional parameters: - browser=browsername ... start web browser, supported browsernames are IE, Edge and Firefox (default: browser=Edge) -- The browser will be started after the autologon session has been completed. -- If the browsername ends with the character '!': The browser will be started as soon as possible. - cifs ... same as keyword CIFS - defcmd=command ... default is uidall - log=logvalue ... one digit log level (0-4), if negativ: log will be shown in start window also and timestamps will be written (default is 1) - manage=ipaddress:port ... address to manage ApplicGate, default is 127.0.0.1:12321 - proxy=node:port ... web proxy for connection - rdpd=drives ... list of drive letters, same as keyword RDPD - rulenet=rulenet ... same as keyword RULENET - scsh ... same as keyword SCSH - selacc ... force account selection when authenticating via OAuth2 - title=title ... Title to display at the management interface
Example of an URI to load ApplicGate: https://www.mycomp.com/publishAG/ApplicGate.application?server=rsp.mycomp.com:442&title=MyCompany_RSP ... with default setting sslcc=Prompt:* These parameters are stored in an isolated storage to be used when ApplicGate is started via the Windows start menu or desktop shortcut. They can be changed by a new load via URI or via menu "Stop & Restart", "Change ClickOnce parameters an restart".
Remark: ClickOnce is supported by the web browsers IE and Edge. When using Edge for an initial installation, ClickOnce must be enabled: Enter edge://flags/#edge-click-once into the address field of Edge.
Detailed description. - The necessary files (ApplicGate.exe, manifests etc.) have to be stored in a web storage you chose. - Installation behaviour can be changed using mageui.exe (code signing certificate is necessary for update). - Installation and first start is done by entering the URI (example above) into the web browser (e.g. Edge): -- The local ApplicGate installation starts an autologon client connection: -- The user will be prompted to select a client certificate (list will be generated according to the email parameter in the URI). -- The connection to the server will be established (parameters server and port are used) and the routing entries will be downloaded (according to the privileges of the user). -- Microsoft Edge will be started and the “UID List” window will be shown (the title parameter can be used to define a title of the window). -- Now the user can use the remote connections. -- ApplicGate can be stopped by the stop command in the menu. - Additional starts of the ApplicGate client: -- Via the start menu or via the URI above. -- ApplicGate will be updated if there is a newer version available.
Hint: To start the "VPN client" without ClickOnce deployment start ApplicGate.exe with following argument: "/ClickOnce?param1=value1¶m2=value2&..."