Byos Secure Lobby Setup Guide_old

This article will walk you through how to set up the necessary tools for accessing the Byos Management Console and using its Secure Lobby Functionality

Jump Ahead

Download OVPN

Download and Install OpenVPN Connect on your computer - openvpn.net/download-open-vpn/

Setting Up Authenticator App

  1. On your mobile device, download and install your authenticator app of choice:

    1. Google Authenticator

    2. Microsoft Authenticator

    3. LastPass Authenticator

    4. Authy

    5. Yubico Authenticator

  2. Once the authenticator app is installed, proceed to log into the Byos Management Console.

Logging into the Byos Management Console

  1. Visit the Byos Management Console URL provided to you (e.g. https://XXXXXXX.byos.network).

  2. Login to the Management Console with the credentials provided by Byos.

     

  3. Scan the QR code with your mobile device using the authenticator app.

     

  4. Enter the 2nd factor code (6-digits) from your authenticator app.

You are now logged into the Management Console and will see the Home Dashboard.

Download Secure Lobby OVPN File

From your Byos Management Console (e.g. https://XXXXXXX.byos.network), click the Settings cog in the top right corner and click Edit Account.

Once here, click the green Secure Lobby button in the top right - this will download the Secure Lobby OVPN file. Save this file to a memorable location.

Load the previously downloaded OVPN file into OpenVPN Connect by clicking File > Browse and select desired file.

Sign in using the same Username/Password combo as for the Management Console login.

If you have changed your password to access the Management Console, you will also need to update the Secure Lobby OVPN password in the OpenVPN Connect app.

Click the slider to connect.

 

If the OVPN connection fails, please contact your Byos rep or email support@byos.io.

Establishing the Secure Lobby Connection

Ensure your OVPN connection is active in the OpenVPN Connect app

 

In the Management Console - In the left navigation bar under GENERAL, click “Policy Management” and then navigate to the “Secure Lobby” tab. This is where you need to establish the ports you wish to control your remote endpoint with through the µGateway.

In the screenshot below, the µGateway is configured to be used with Remote Desktop Protocol (RDP), which communicates over Port 3389. Secure Lobby can be enabled for the protocol of your choice (RDP, SSH, VNC, etc.) to access your remote machine, so please ensure the correct ports are added to the policy configuration.

 

Next, on the left navigation bar under QUICK ACCESS > Users, select the Byos µGateway device you wish to control

 

Once a µGateway is selected, under the table in the left navigation bar, you will see three parameters:

  • User - indicates the username of the Byos µGateway user/device it is plugged into

  • Group - indicates the group that the selected µGateway belongs to

  • Last Seen - indicates the connection status of the µGateway

    • Now - the µGateway is currently connected

    • YYYY/MM/DD 00:00 - currently disconnected, indicating the date/time of the last connection

 

To set up the Secure Lobby Connection, the selected µGateway device must be “Last Seen: Now”.

4. Click the Secure Lobby slider button to enable Secure Lobby.

 

Secure Lobby is now enabled and you are able to access your equipment remotely.

Accessing your Equipment Remotely

Once the Secure Lobby connection has been enabled, use the protocol of your choice (RDP, SSH, VNC, etc.) to access your remote machine.

The Private IP address of your remote machine while inside of the Secure Lobby is the one located in the red square below.

 

Filter by label

There are no items with the selected labels at this time.