最新版 TheGreenBow VPN Client 6.87
TheGreenBow 為保護企業通信和計算機數據資料的安全而開發獨立或安全套裝的安全軟件。我們的安全軟體設計為可以被直接嵌入並完整現已被部署的各種安全解決方案,如Bio Token, PKI,VPN設備或Antivirus。它們也被設計成為建立連貫性企業安全和減少TCO的中央管理技術。
TheGreenBow IPSec VPN客戶端軟體非常輕便靈活,與市場上絕大多數的VPN網關兼容。針對大中型企業,它還具備了安全部署功能的網路工具。效率高、配置方便,TheGreenBow IPSec VPN客戶端還支持P2P模式的VPN。
VPN 面臨新挑戰
企業網路總在持續發展。為了融入更多的商務應用操作, 您的工作平台在不斷加以鞏固。當使用者(公司職員、轉包商等, 在其住所、辦公室、或移動環境中) 與客戶或合作夥伴進行交流的時候, 他們要求能夠迅速、方便、安全地連接到公司內部網路服務器。在這種環境下,網路安全的維護就變得更加複雜。
TheGreenBow IPSec VPN 客戶端
TheGreenBow IPSec VPN客戶端軟件非常輕便靈活, 與市場上絕大多數的VPN 網關兼容。針對大中型企業,它還具備了安全部署功能的網路工具。效率高、配置方便,TheGreenBow IPSec VPN 客戶端還支持P2P 模式的VPN。peer-to-peer VPN.
主要特性- TheGreenBow IPSec VPN 客戶端
- 便利的連接面版
- 軟體存取權限控制 (密碼)
- 隧道協議
- NAT 內網互聯
- IP 封裝安全
- 強健的加密
- 強健的加密和認證
- Vista認證供應商
- 混合模式
- 配置模式
- IP 範圍
- 連接模式
- 多廠商設備環境
- 靈活的軟體部署
- USB 權杖和智慧卡
- 權杖證書管理
- 靜默自動安裝和隱藏介面
- VPN 配置保護
- 安全的導入匯出功能
- VPN 配置嚮導器
- 服務運作
- 適用於所有的 Windows 系統
- 多種語言當地語系化
功能介紹
Common Features | IPsec Features | SSL Features |
|
|
|
IPsec Features
Tunneling Protocol
Tunneling Protocol with full IKE support (IKEv1 and IKEv2). TheGreenBow VPN Client IKEv1 implementation is based on ISAKMPD (OpenBSD 3.1), thus providing best compatibility with existing IPsec routers and gateways.
Full IPsec support including:
- Main mode and Aggressive mode
- MD5 and SHA hash algorithms
Strong User Authentication
Strong User Authentication provided by:
- PreShared keying
- X-Auth / EAP
- USB Token and SmartCard
- X509 Certificates. Flexible Certificate format (PEM, PKCS12, ...) on various media (USB, smartcard, tokens)
- Hybrid mode is a specific authentication method (initially from Cisco) used within IKEv1. This method enables to specifies an asymetric authentication mode between both tunnel peers.
- Keying group: Support of Diffie-Hellman Groups 1, 2, 5, 14,15, 16, 17 and 18 (i.e. 768 to 8192)
IP Range
IP Range enables TheGreenBow VPN Client to establish a tunnel only within a range of predefined IP addresses.
Strong encryption
Strong IPsec encryption provided by:
- AES CBC 128/192/256 bits
- AES CTR 128/192/256 bits
- AES GCM 128/192/256 bits
IP Encapsulating Security
IP Encapsulating Security: mode tunnel & transport. Multi-tunneling to several VPN Gateways. Allows 'IPsec only' trafic filtering, can block all other connections than the VPN connections. Accepts incoming IPsec Tunnels.
IKEv2 vs IKEv1
IKEv2 introduces a new user authencation mechanism, similar to X-Auth. The new authentication mechanism can be combined with certificate.
IKEv2 also implements a mechanism similar to IKEv1 "Mode-Config" function. This mechanism enables to retrieve VPN information from the VPN gateway.
IKEv2 replaces Phase1 / Phase2 exchanges through new exchanges: IKE SA INIT, IKE AUTH and CHILD SA.
NAT-Traversal
NAT-Traversal support of Draft 1 (enhanced), Draft 2, Draft 3 and RFC 3947 (full implementation), including:
- NAT_OA support (floating port for IKE exchange)
- NAT keepalive
- NAT-T in aggressive mode
- Forced NAT-T
NAT-Traversal may be forced (IKEv1) from the VPN Client. This functionnality is especially useful to solve issues with intermediate NAT boxes.
Mode-Config
"Mode-Config" is an Internet Key Exchange (IKE) extension that enables the IPsec VPN gateway to provide LAN configuration to the remote user's machine (i.e. VPN Client).
Once the tunnel is opened with "Mode Config", the end-user is able to address all servers on the remote network by using their network name instead of their IP Address (e.g. //myserver/marketing/budget).
This mode is called "Mode-Config" with IKEv1, and "Mode-CP" with IKEv2.
Connection Mode
All connections types such as Dial up, DSL, Cable, GSM/GPRS and WiFi are supported. Several connection modes are available:
- VPN Client to VPN Gateway
- Allows remote users and business partners or subcontractors to securely connect to the corporate network, using the strong authentication functions provided by the software.
- Peer to Peer Mode
- Can be used to securely connect branch office servers to the corporate information system. All connections types such as Dial up, DSL, Cable, GSM/GPRS and WiFi are supported.
- Redundant gateway
- Can offer to remote users a highly reliable secure connection to the corporate network. Redundant gateway feature allows TheGreenBow VPN Client to open an IPsec tunnel with a redundant gateway in case the primary gateway is down or not responding.
SSL Features
Strong encryption
Strong IPsec encryption provided by:
- DES, 3DES 192 bit
- AES 128, 192, 256 bit
- RSA 2048
Compression
Compression of the traffic to compensate SSL overhead
Strong User Authentication
Strong User Authentication provided by:
- Extra-Authentication
- USB Token and SmartCard
- X509 Certificates. Flexible Certificate format (PEM, PKCS12, ...) on various media (USB, smartcard, tokens)
Auto Adaptive Settings
When possible, the VPN Client will adapt automatically to the settings of the VPN gateway.
Common Features
IPv4 & IPv6
Supports heterogeneous IPv4 and IPv6 networks on both the LAN and WAN ends, i.e. on both corporate and home networks. The 'Auto' feature (for IPv4/IPv6) enables you to automatically adapt to these complex environments.
USB tokens and smartcards
The ability to use USB tokens and smartcards adds an additional layer of security to IPsec:
The Windows Standard VPN Client can be configured to read certificates from USB tokens and smartcards to make full use of existing corporate ID card or employee cards that may carry digital credentials.
VPN configuration protection
The VPN Configuration is fully protected when it is stored locally on the workstation or on a USB drive. All the security elements of a VPN tunnel (certificates, private key and the whole IPsec/IKE configuration) are encrypted.
Localization
The Windows Standard VPN Client comes with a localization tool that enables you to create a new localization for the software. Refer to our localization page to find out how to create a new localization.
Windows versions
The following Windows versions are supported: Windows 7 32/64-bit, Windows 8 32/64-bit, Windows 8.1 32/64-bit, Windows 10 32/64-bit, Windows Server 2008 32/64-bit, Windows Server 2012 32/64-bit, Windows Server 2019.
Secure import and export
To provide IT administrators with a reliable and flexible way to deploy VPN security policies, import and export functions are available both in the GUI and directly as command line options. These import and export functions may be password-protected to ensure that the security policies are kept confidential when they are distributed.
Remote Desktop Sharing
Multiple Remote Desktop Sharing sessions may be configured in the 'Remote Sharing' tab. This feature enables users to share their machine on the corporate network from a remote location like their home. A single click on one of the Remote Desktop Sharing sessions is all the user needs to automatically open the associated VPN tunnel and then start a Remote Desktop Protocol session is launched to reach the target machine.
Multi-vendor gateway
Our multi-vendor strategy allows us to support the greatest possible number of IPsec VPN gateways and routers available on the market and to provide businesses with a true multi-vendor solution. TheGreenBow has certified several IPsec VPN gateways such as Bewan, Cisco, Linksys, Netgear, Netscreen, Stormshield, SonicWall, Symantec, Zyxel and numerous Linux appliances that support Strong S/WAN or Free S/WAN.
Please refer to our list of compliant VPN gateways/routers that provide VPN configuration guides for nearly all gateways.
Credential Providers
Support for Credential Providers (formerly GINA on W2K/WXP) enables you to establish a VPN connection prior to logging on to Windows (opening a Windows session).
VPN configuration wizard
The Windows Standard VPN Client comes with a configuration wizard that allows you to quickly create a complete and operational VPN configuration in three easy steps for each protocol: IKEv1, IKEv2 or SSL.
OS:
- Windows 10 64-bits, Windows 11
Languages
Arabic, Chinese (simplified), Czech, Danish, Dutch, English, Farsi, Finnish, French, German, Greek, Hindi, Hungarian, Italian, Japanese, Korean, Norwegian, Polish, Portuguese, Russian, Serbian, Slovenian, Spanish, Thai & Turkish.
Enterprise VPN
Large deployment & easy pki integration
Designed for large deployments, the Windows Enterprise VPN Client easily integrates with any existing Information System and PKI
VPN Certified
Trusted security for critical environment
TheGreenBow provides the only certified VPN Client dedicated to security of critical Information Systems & strategic operators
VPN Android
Mobile communication reliable security
The VPN Client for Android secures business applications as well as control command apps, on smartphone or tablet.
VPN iOS
Remote connection protection & security
The VPN Client for iOS secures business communications or industrial connections on iPhone and iPad.
VPN macOS
Secure connections for remote workers
Easy to install, quickly operationnal, the VPN Client for macOS enables secure connections for remote workers.
VPN Linux
Proven VPN for business applications
The VPN for Linux provides security of connections for embedded solutions as for business applications
VPN OEM
Universal VPN Customized
TheGreenBow provides full customization for OEM partners. Contact us for detailed information about our OEM program.