Use Cases For OpenVPN Access Server | OpenVPN (2024)

Introduction

It’s important to note that due to the flexibility of computer networks and the OpenVPN Access Server product, there are many use-cases possible. The following example use-cases are not exhaustive, but they do showcase some of the possibilities. If you have any questions about the product fitting your requirements, please contact us and we will help you determine if it will work in your environment.

Most of the following use-cases for Access Server assume that you are going to install the product on a server you provide, either physical or virtual, on-premise or in the cloud. An example use-case is provided for adding a VPN to a virtual private cloud like AWS or Google.

Secure Remote Access

Use Cases For OpenVPN Access Server | OpenVPN (1)

Securely access resources remotely

Whether you have servers in your office, an off-site data center, or a cloud-based system containing all of your data, OpenVPN Access Server can provide secure access. In the diagram on the right, users on their desktop computers and mobile devices are using the OpenVPN client program to make a secure connection over the Internet to the OpenVPN Access Server. Depending on how you configure the access control rules in the Access Server, users can then transparently access either all of the resources there or only specific systems or services.

Detailed Use Case: Remote Access VPN

Site-to-site connections to bring networks together

Use Cases For OpenVPN Access Server | OpenVPN (2)

Create site-to-site connections

Using the client-server model in the OpenVPN Access Server it is possible to connect a Linux client system in one network to an OpenVPN Access Server in another network and use this connected client as a VPN concentrator or VPN client gateway system. Both terms mean to say that traffic from a whole network can go through the already established VPN tunnel between the client and the server and reach the other network. Traffic can pass in both directions which makes it possible to connect two networks together and makes accessing resources from one network on the other network transparent and easy.

Detailed Use Case: Secure Site-to-Site Networking

Multiple networks, subnets, gateways, and servers

Use Cases For OpenVPN Access Server | OpenVPN (3)

Complex inter-connectivity is possible

No matter how complex your existing setup is, the OpenVPN Access Server should integrate well. It is capable of sending specific IP addresses and ranges of traffic from a VPN client through the server. It can also send client Internet traffic through the VPN tunnel depending on what you configure. It can forward traffic coming in through the VPN tunnel intended for another subnet through the specified gateway server (handled in the OS routing table). It can be used to connect multiple different networks together in a site-to-site setup. Access Servers can be connected with each other to give access to resources or VPN clients.

Basically, if it can be routed, the OpenVPN Access Server should be able to handle it. If in doubt please contact us and we will be happy to assist you.

Use Cases For OpenVPN Access Server | OpenVPN (4)

Optionally protect your Internet access

If OpenVPN Access Server is installed in a data center or cloud system, it can be used to secure your client devices’ Internet connection. If, for example, you are on a public network you might want to ensure that all your Internet traffic goes into a secure encrypted VPN tunnel and to your own Access Server. From there the traffic can continue to its destination, and responses are sent back via the same path. This way programs and people snooping on the network you’re on can only see encrypted packets of data that are useless to them.

Another use-case for the type of setup shown in the diagram is the ability to have traffic from connected VPN clients appear to come from the public address of the OpenVPN Access Server itself. This is useful if you have a server on the Internet or in a datacenter that blocks all access except from a whitelist of specific IP addresses that do have access. You can have VPN clients connect to the Access Server and have it handle the traffic for only that limited access system. This traffic will then appear to be coming from the Access Server, which you can add to your whitelist. Any connected VPN client will then have access to this server in a secure manner.

Secure Access to Cloud-Based Systems

Use Cases For OpenVPN Access Server | OpenVPN (5)
You can extend the benefits of an IaaS cloud provider to your VPN server by using one of our preconfigured solutions. You have the option to install OpenVPN Access Server via the following cloud providers: Amazon Web Services, Google Cloud Platform, Oracle, DigitalOcean, and Microsoft Azure.

Detailed Use Case: Secure Access to Cloud-Based Systems

Deployment

To deploy OpenVPN Access Server, you can:

  • Deploy it yourself, using our Quick Start Guide.
  • Deploy a ready-to-launch instance on Amazon Web Services
  • Deploy a ready-to-launch instance on Microsoft Azure
  • Deploy a ready-to-launch instance on Google Cloud
  • Explore some of our more detailed self-deployment options.

Once you have Access Server, you then simply connect a device via one of our clients. On mobile platforms, we have apps for Android and iOS, but you can also get started on macOS, Linux, or Windows.

Use Cases For OpenVPN Access Server | OpenVPN (2024)

FAQs

Use Cases For OpenVPN Access Server | OpenVPN? ›

OpenVPN Access Server delivers an enterprise VPN solution for businesses around the globe. With this single solution, organizations can protect data communications, secure IoT resources, and provide encrypted remote access to on-premise, hybrid, and public cloud resources.

What does an OpenVPN access server do? ›

OpenVPN Access Server delivers an enterprise VPN solution for businesses around the globe. With this single solution, organizations can protect data communications, secure IoT resources, and provide encrypted remote access to on-premise, hybrid, and public cloud resources.

What is the benefit of OpenVPN? ›

OpenVPN provides an extensible VPN framework which has been designed to ease site-specific customization, such as providing the capability to distribute a customized installation package to clients, or supporting alternative authentication methods via OpenVPN's plugin module interface (For example the openvpn-auth-pam ...

What are the 3 ports required for OpenVPN access server to be reachable properly? ›

By default, Access Server requires three ports to be reachable: TCP 443, TCP 943, and UDP 1194. Check that the port is correct. Make sure you're not trying an incorrect port.

What is the difference between OpenVPN site-to-site and client server? ›

The difference between them is simple: Client-to-Site VPN is characterized by single user connections. In contrast, Site-to-Site VPNs deal with remote connections between entire networks.

What is the difference between proxy server and OpenVPN? ›

Key takeaway: A proxy passes web activity through a mediating server. A VPN works on an operating system level to secure all web traffic. (Note: OpenVPN products support connections through one or more proxies.)

How do I run an OpenVPN server as a service? ›

Set up OpenVPN Connect in service daemon mode
  1. Go to the correct location for your system (for our example, we use an x64 system): cd "%ProgramFiles%\OpenVPN Connect\" ...
  2. Install the system service: ...
  3. Specify the connection profile to use (optional): ...
  4. Specify the path to a log file (optional): ...
  5. Start the service:

What are the disadvantages of OpenVPN? ›

Disadvantages
  • High Overheads.
  • Proxy Problems.
  • Complex.
  • Other disadvantages include.
  • Needs third party software for setup.
  • Lengthy and complex setup.
  • Difficult to configure.
  • Blocked by some proxy servers.
Apr 24, 2019

Is OpenVPN no longer free? ›

No matter what solution you choose, you can use our free connections until you're ready to scale. Those VPN connections are free for life. We're that confident you'll trust OpenVPN to manage your network security.

What is the difference between VPN and OpenVPN? ›

What is the difference between VPN and OpenVPN? Modern VPNs use Wireguard, which is the faster protocol, whereas OpenVPN doesn't. Both offer a similar level of security, but OpenVPN's encryption can be set to a lower level — from 256-bit to 128-bit.

What is the best port for OpenVPN server? ›

The preferred port for an OpenVPN tunnel is the UDP port, but the TCP 443 port serves as a fallback method due to restricted internet connectivity on some networks, such as public networks.

Should I use OpenVPN TCP or UDP? ›

TCP, UDP, and OpenVPN

OpenVPN's default is to use UDP simply because it is faster. Our smart protocol selection feature will always attempt to establish a connection using UDP first. But you can also switch between UDP and TCP manually in our app or command line tool.

Which is better, OpenVPN TCP or UDP? ›

By default, you will experience faster speeds over UDP. On unreliable networks, however, you may have a better experience switching to TCP.

What ports are used by OpenVPN client? ›

With OpenVPN Access Server, you will want to have incoming ports TCP 22 (optional - for maintenance purposes), TCP 443, TCP 943, TCP 945 (optional - for clustering purposes), and UDP 1194 open assuming default settings.

What is the difference between push and route in OpenVPN? ›

route is used to allow a client remote access to a subnet (i.e. LAN) behind the router. push is specified in the server config to push the route directive to the client upon the client connecting to the server, negating the need to have the route directive in the client's *. ovpn config.

What is the difference between OpenVPN connect and community client? ›

OpenVPN Community Client, is an open source OpenVPN client for Windows. The OpenVPN Connect client, aka. OpenVPN Desktop Client or OpenVPN-AS Client, is a proprietary client distributed with OpenVPN Access Server.

Can OpenVPN server see my data? ›

OpenVPN collects Personal Data only through web form submissions, primarily for the purpose of enabling the purchase of services and engaging in support.

Is OpenVPN access server free? ›

Providing two free simultaneous connections for Access Server also supports the culture of our open source community and provides flexibility, scalability, and affordability. Get started for free with two connections. No credit card required.

Is OpenVPN Access Server Secure? ›

The web server built into OpenVPN Access Server uses HTTPS SSL encryption. This secures the connection between the web browser and the web server.

Top Articles
Latest Posts
Article information

Author: Tuan Roob DDS

Last Updated:

Views: 6042

Rating: 4.1 / 5 (62 voted)

Reviews: 93% of readers found this page helpful

Author information

Name: Tuan Roob DDS

Birthday: 1999-11-20

Address: Suite 592 642 Pfannerstill Island, South Keila, LA 74970-3076

Phone: +9617721773649

Job: Marketing Producer

Hobby: Skydiving, Flag Football, Knitting, Running, Lego building, Hunting, Juggling

Introduction: My name is Tuan Roob DDS, I am a friendly, good, energetic, faithful, fantastic, gentle, enchanting person who loves writing and wants to share my knowledge and understanding with you.