Company  |  Products  |  Services  |  News  |  Partners  |  Support

IPSec VPN Client


Products
IPSec VPN Client
VPN Mobile
CryptoMailer

IPSec VPN Client
VPN Mobile
CryptoMailer

VPN Client Support
VPN Client FAQs
VPN Gateway Guides
VPN Documentation
Supported Tokens
Supported languages
Feature request

Download
Trials
Manuals, docs
Marketing material
Configuration tools
Release Notes

Datasheet
VPN SSL vs IPSec
VPN USB Features
USB Stick vs Token
VPN IPSec & WiFi


Announcing New Release TheGreenBow IPSec VPN Client 4.0 VPN Client Software Connection Panel

32 bits
What's new

TheGreenBow IPSec VPN ClientDownload TheGreenBow IPSec VPN Client SoftwareBuy TheGreenBow IPSec VPN Client Software

VPN facing new challenges

Your network is constantly evolving as you integrate more business applications and consolidate servers. In that environment, it’s therefore becoming extremely complex to maintain total security at the network's edge while users (employees or subcontractors either at home, the office or on the go) are working with customers and partners. They need to have access to the company's applications and servers quickly, easily and securely.

Presenting TheGreenBow IPSec VPN Client

TheGreenBow IPSec VPN Client is an on demand IPSec VPN Client, compliant with most popular VPN gateways and with network tools to deploy security in large and medium enterprises. Highly efficient and easy to configure, the IPSec VPN Client also allows peer-to-peer VPN.

All Gateways VPN Configuration Guides

VPN Supported Token
 

TheGreenBow IPSec VPN Client features



TheGreenBow IPSec VPN Client Software - Phase1 VPN Configuration
 TheGreenBow
   IPSec VPN Client #1







TheGreenBow IPSec VPN Client Software - Phase2 VPN Configuration
 TheGreenBow
    IPSec VPN Client #2







TheGreenBow IPSec VPN Client Software - Connection Panel
 TheGreenBow
   IPSec VPN Client #3

Detailed Features

Tunneling Protocol
  Tunneling Protocol with full IKE support. Our IKE implementation is based on the OpenBSD 3.1 implementation (ISAKMPD), thus providing best compatibility with existing IPSec routers and gateways. Full IPSec support:
  • Main mode and Aggressive mode
  • MD5 and SHA hash algorithms

NAT-Traversal
  NAT-Traversal support of Draft 1 (enhanced), Draft 2 and 3 (full implementation), IP address emulation, including:
  • NAT_OA support (floating port for IKE exchange)
  • NAT keepalive
  • NAT-T in aggressive mode
  • Forced NAT-T

NAT-Traversal may be forced from the IPSec VPN Client. This functionnality is especially useful to solve issues with intermediate NAT boxes.

IP Encapsulating Security
  IP Encapsulating Security: mode tunnel & transport. Multi-tunneling to several VPN Gateways. Allows 'IPSec only' trafic filtering, can block all other connections than the VPN connections. Accepts incoming IPSec Tunnels.

Strong encryption
  Strong IPSec encryption provided by:
  • DES, 3DES 192 bits
  • AES 256, AES 512 bits
  • RSA 2048

Strong User Authentication
  Strong User Authentication provided by:
  • PreShared keying
  • X-Auth
  • USB Token and SmartCard
  • X509 Certificates. Flexible Certificate format (PEM, PKCS12, ...) on various media (USB, smartcard, tokens)
  • Hybrid mode is a specific authentication method used within IKE. Phase 1. This method assume an asymmetry between the authenticating entities.
  • Keying group: Support of Diffie-Hellman Group1, 2, 5 and 14 (i.e. 1536 and 2048)

Mode-Config
  "Mode-Config" is an Internet Key Exchange (IKE) extension that enables the IPSec VPN gateway to provide LAN configuration to the remote user's machine (i.e. IPSec VPN Client). Once the tunnel is opened with "Mode Config", the end-user is able to address all servers on the remote network by using their network name (e.g. //myserver/marketing/budget) instead of their IP Address.

IP Range
  IP Range is a new feature that enables TheGreenBow IPSec VPN Client to establish a tunnel only within a range of predefined IP addresses.

Connection Mode
  All connections types such as Dial up, DSL, Cable, GSM/GPRS and WiFi are supported. Several connection modes:
  • IPSec VPN Client to Gateway Mode
    allows remote users and business partners or subcontractors to securely connect to the corporate network, with strong authentication solution.
  • Peer to Peer Mode
    can be used to securely connect branch office servers to the corporate information system.
  • Redundant gateway
    can offer to remote users a highly reliable secure connection to the corporate network. Redundant gateway feature allows TheGreenBow IPSec VPN Client to open an IPSec tunnel with an redundant gateway in case the primary gateway is down or not responding.

Multi vendor
  Multi vendor strategy allows us to support as many IPSec VPN Gateways and Routers on the market as possible to offer a true multi-vendor solution to enterprises. TheGreenBow has certified several IPSec VPN gateways like Bewan, Cisco, Linksys, Netgear, Netscreen, SonicWall, Symantec, Zyxel and Linux appliances that support StrongS/WAN or FreeS/WAN. Please also check our Certified VPN Gateway/Routeur complete list. If you are experiencing testing errors or stagging errors, compatibility issues or configuration problems in a multi gateways/routers environment then you want to try TheGreenBow IPSec VPN Client.

Flexible software deployment
  Flexible software deployment means software, configuration, policy and updates can be deployed whenever and wherever they are needed while maintaining low TCO for your organisation. TheGreenBow software provides the best combination of strong IPSec security and "lightweight" IPSec Clients that can be web-deployed to simplify IPSec based network-layer access. TheGreenBow IPSec VPN Client has a tiny software footprint without compromising any security features.

USB token and SmartCard
  USB token and SmartCard add another layer of security on top of IPSec:
  • VPN configurations and security elements (certificates, preshared key,…) can be saved into an USB Stick in order to remove authentication information from the computer.
  • TheGreenBow IPSec VPN Client can read Certificates from SmartCards to make full use of existing corporate ID card or employee cards that may carry Digital credentials.

Silent Install and Hidden Interface
  Silent install and invisible graphical interface allow IT managers to deploy solutions while preventing users from misusing configurations. For more details about silent install, see our Deployment User Guide.

VPN Configuration protection
  The VPN Configuration is fully protected when it is stored locally on the work station or stored on a USB stick. All the Security Elements of a VPN tunnel (certificates, private key and the whole IPSec/IKE configuration) are encrypted.

Secured import and export functions
  To allow IT Managers to deploy VPN Configurations securely, import and export functions are available both through the GUI or through direct command line options. These import and export functions may be protected with a password in order to ensure the protection of the VPN Configuration diffusion.

VPN Configuration Wizard
  The VPN configuration Wizard allows the creation of VPN configurations in three easy steps. It is designed for remote computers that need to get connected to a corporate LAN through a VPN gateway. Look at IPSec VPN Client Wizard screenshot.

Operates as a Service
  Operates as a Service, allowing the use on unattended Servers

Localization
  The localization of the IPSec VPN Client is fully customisable, even by a third party. To know how to produce a new localization, see our localization page.

Windows versions
  All Windows versions supported: Win98 ,Me, NT, Win2000, WinXP (incl.SP2), Windows Vista