1 00:00:02,540 --> 00:00:05,030 All right, that wraps up this module on configuring 2 00:00:05,030 --> 00:00:08,700 VPN infrastructure. Great module, you've, 3 00:00:08,700 --> 00:00:13,050 if you followed all the way through, now you have a working VPN infrastructure 4 00:00:13,050 --> 00:00:17,920 with an NPS server and a VPN server. And the NPS server, 5 00:00:17,920 --> 00:00:22,110 if you recall, the critical points there are just to make sure that we get 6 00:00:22,110 --> 00:00:25,680 our certificates enrolled correctly and automatically, because we want 7 00:00:25,680 --> 00:00:28,650 those to renew. And then configuring the policy, 8 00:00:28,650 --> 00:00:33,020 pay careful attention to some of those advanced settings in terms of security, 9 00:00:33,020 --> 00:00:37,940 disabling fast reconnect, enable support for crypto binding, and those 10 00:00:37,940 --> 00:00:41,990 types of things. On the VPN server, you saw how easy it was to install 11 00:00:41,990 --> 00:00:45,390 and configure that, especially using PowerShell. If you feel like using 12 00:00:45,390 --> 00:00:47,220 the GUI, knock yourself out. 13 00:00:47,220 --> 00:00:49,520 PowerShell is your friend here, though; it's going to simplify your 14 00:00:49,520 --> 00:00:51,840 life a great deal and save you a lot of time. 15 00:00:51,840 --> 00:00:54,430 And in terms of the VPN server, 16 00:00:54,430 --> 00:00:58,510 just ensure that you pay close attention when you're 17 00:00:58,510 --> 00:01:00,030 installing those certificates. 18 00:01:00,030 --> 00:01:06,540 The certificate request process can be rather tedious, and just use caution 19 00:01:06,540 --> 00:01:10,200 there and make sure that you dot all your i's, cross all your t's, as it 20 00:01:10,200 --> 00:01:14,340 were, and make sure that all of those certificates are enrolled successfully. 21 00:01:14,340 --> 00:01:21,410 And then finally, you saw that using my Always On VPN Tools PowerShell module 22 00:01:21,410 --> 00:01:26,780 can greatly simplify the task of performing some of those fine‑tuning and 23 00:01:26,780 --> 00:01:28,320 optimization tasks, you know, 24 00:01:28,320 --> 00:01:32,660 defining our IPsec policy and our root certificate, configuring 25 00:01:32,660 --> 00:01:35,090 our VPN ports, and those types of things. 26 00:01:35,090 --> 00:01:39,350 Be sure to download that module and look for updates in the future. 27 00:01:39,350 --> 00:01:42,050 I'm always adding features and capabilities to that module as well. 28 00:01:42,050 --> 00:01:43,490 It can really save you some time. 29 00:01:43,490 --> 00:01:46,240 It certainly does for me. 30 00:01:46,240 --> 00:01:54,000 So let's move on to the next module, where we start provisioning our Always On VPN clients.