Jump to:navigation, search
Wiki





notempty
Dieser Artikel bezieht sich auf eine nicht mehr aktuelle Version!

notempty
Der Artikel für die neueste Version steht hier

notempty
Zu diesem Artikel gibt es bereits eine neuere Version, die sich allerdings auf eine Beta-Version bezieht



























































































































































































Download and installation of the Securepoint VPN Client

Last adaptation to the version: 3.0.1(04.2025)

New:
notempty
This article refers to a Beta version

System requirements

  • Windows 10 x64 or higher
  • 1GB RAM
Operating system:
  • Windows 10 x64 or higher
Term requirements:
  • windowsdesktop-runtime-6.0.12-win-x64.exe May be installed automatically
  • VC_redist.x64.exe May be installed automatically
Hardware:
  • Storage space: At least 206 MB (if the runtime requirements are also installed)
  • RAM: At least 1024 MB
  • Processor cores: 2, recommended: 4
  • Processor architecture: 64-bit (x64)

Download

The download takes place in the reseller portal under Support Downloads Tab VPN-Client x


Installation

An installation can be carried out in two different ways.

  • The first is installation via a graphical user interface
  • The second is a Quiet installation without user interaction.

Both steps, as well as the Installation with automatic import of a configuration and the Ignore runtime prerequisites are explained below.

GUI installation

The GUI installation is started by executing the previously downloaded file Securepoint-VPN-Client-<Version>.exe.













Installation with automatic import of a configuration

If there is a folder labelled Config in the same path as the installation file Securepoint_VPN_Client-<Version>.exe, the first configuration file contained there will be imported during the installation process.

Migration of old connections





notempty
This article refers to a version that is no longer current!

notempty
The article for the latest version is here

notempty
There is already a newer version of this article, but it refers to a Beter version






































The migration of connections from the file path of the old Securepoint SSL-VPN Client is carried out via the GUI either at the first start or, if the corresponding function has been activated in the settings, at each start.
In both cases, if a connection to the old client is found, the migration wizard opens.













Installation via the command line (CMD)

The following command can be used to install the client via the command line:
.\Securepoint_VPN_Client-<Version>.exe /quiet More detailed information can be found in the section on Command line commands.

Installation with automatic import of a configuration

If there is a folder labelled Config in the same path as the installation file Securepoint_VPN_Client-<Version>.exe, the first configuration file contained there will be imported during the installation process.

Migration via CLI

Migrate VPN configuration: C:\Program Files\Securepoint VPN Client\Securepoint VPN Client.exe" /migrate


Automated installation

Example of an automated installation process:

  1. Notification to users that the new client is being installed
  2. Copy the installation file Securepoint_VPN_Client_vXYZ.exe to the target devices via group policy (GPO) or software distribution system
  3. If necessary, create a folder with the name Config in the same way, which contains the respective configuration
  4. Install new VPN client via:C:\Securepoint_VPN_Client_vXYZ.exe" /quiet
  5. Migrate old VPN configuration if necessary:C:\Program Files\Securepoint VPN Client\Securepoint VPN Client.exe" /migrate
  6. Finally, users may have to deactivate the autostart of the old SSL VPN client and activate it in the new VPN client.
    Eine Instructions for end users can be found here: https://wiki.securepoint.de/VPN/VPN-Client-Umstellung






























Change autostart

If you are switching from the previous SSL VPN client to the new Securepoint VPN client, you only need to make a few simple changes to the autostart settings to finalise the switch.


Deactivate autostart for old client













  1. Click on the arrow to show the tray icons
  2. Right-click to open the menu for the SSL VPN Client
  3. Use the menu to display the client window
  • Open the menu by clicking on the cogwheel
  • Use the menu to switch to the client settings
  • Deselect the "Run on Windows startup" option
  • Close the window
  • Activate autostart for new client













    1. Click on the arrow to show the tray icons
    2. Right-click to open the menu for the Securepoint VPN Client or if not available, start the VPN client first
    3. Use the menu to show the client window
  • Navigate to the settings by clicking on the cogwheel
  • Activate the "Run on Windows startup" option

  • Ignoring runtime requirements

    notempty
    Ignoring the runtime environment is not recommended.

    When installing the client, it is possible to ignore the required runtime prerequisites

    • An option is displayed in the user interface (GUI) to not install the runtime requirements if they are missing on the system
      If the runtime requirements already exist, this option is not displayed
    • The parameter /ignore-prereq is used for the CLI
      .\Securepoint_VPN_Client-<Version>.exe /ignore-prereq /s
    This option is only useful if the runtime requirements
    • windowsdesktop-runtime-6.0.12-win-x64.exe May be installed automatically
    • VC_redist.x64.exe May be installed automatically
    are already pre-installed on the system or the setup could not verify the files when downloading the runtime prerequisites.
    This can happen if Microsoft creates a patch for these and the checksum changes as a result.
    However, the following things must then be configured manually:
    1. The runtime requirements must be downloaded and installed manually before the client can be started.
    2. The service is not started automatically.
      This means that it must be started manually and configured to start automatically at system startup.
      This can be implemented as follows (using elevated rights):
      1. Start service:
        sc.exe start "Securepoint VPN Client Service"
      2. Configure service for automatic start:
        sc.exe config "Securepoint VPN Client Service" start=auto
        This causes the service to start automatically the next time the system is started. It is recommended to test these configurations. You can check whether the Securepoint VPN Client Service is started via "Services".


    Update

    Update dialogue

    Als Administrator können automatische Updates aktiviert werden (siehe Erweiterte Einstellungen), wenn dies nicht erwünscht ist, wird im Header ein Update Symbol eingeblendet, falls ein Update verfügbar ist.

    Wenn automatisch Updates aktiviert sind, wird automatisch alle 12 Stunden nach Updates gesucht. Ein Benutzer kann ein automatisches Update 5 mal ablehnen, anschließend wird es erzwungen.
  • The service is restarted after an update.
    The client will use the new version the next time it is started.
    Connections that are set up with ‘’Autostart activated‘’ are restarted.


  • Tray-Icon

    Tray icon of the client in the taskbar

    When the client is started, the client icon appears in the taskbar as a tray icon. The following options are available by right-clicking on this icon:

    • Show the client window
    • Establish or disconnect a connection (is hidden if several connections are configured)
    • Close application


    Importing a VPN configuration

    Caption Description
    Importing a VPN configuration
    Protokoll Wahl des Protokolls (SSL-VPN oder WireGuard)
    Datei Mithilfe der Schaltfläche   Konfigurationsdatei auswählen
    Verbindungsname Verbindungsnamen bei Bedarf ändern
    Systemverbindung anlegen Wenn der Client als Administrator ausgeführt wurde (erkennbar an dem Hinweis Admin rechts oben in der Titelleiste), kann die Verbindung außerdem als Systemverbindung, also für alle Benutzerkonten des Computers, erstellt werden.
    Importieren Verbindung importieren

    Create configuration

    Call up the configuration wizard in the menu under Create













    Start the configuration of a new VPN connection with Next.
    Step 1
    • gewünschtes Protokoll SSLVPNWireGuard
    • Aussagekräftiger Name für die Verbindung
    • Falls mit Adminrechten ausgeführt: Ggf, BenutzerSystem
      Die Verbindung steht dann in allen Benutzerkonten dieses Computers zur Verfügung

    SSLVPN

    To configure an SSLVPN connection, follow the instructions below:













    Step 2
    • At least one VPN server must be added using the protocol, the IP address or the host name and the port.
    Step 3
  • Client und Server Schlüssel bzw. Zertifikate auswählen (mit )
    Zuordnung bei typischer Benennung:
    Zertifizierungsstelle(CA)
    …cert.pem
    Privater Schlüssen (RSA)
    …cert.key
    Öffentlicher Schlüssel (CA)
    …ca.pem
  • Mit der Option Serverzertifikate überprüfen kann die Prüfung der Serverzertifikate aktiviert werden
  • Step 4
  • Configure the connection with the VPN server accordingly
  •    Redirect Gateway
    • If deactivated, only packets to a local destination network are routed through the tunnel
    • If activated, all packets are routed to the tunnel and from there routed further if necessary
  • Step 5
    Zusammenfassung aller Einstellungen zur Überprüfung. Wenn alle Einstellungen korrekt sind kann der Konfigurations-Wizard mit der Schaltfläche Anwenden beendet und die Verbindung hinzugefügt werden.

    WireGuard

    Follow the instructions below to configure a WireGuard connection:













    Step 2
    • At least one VPN server must be added using the protocol, the IP address or the host name and the port.
    Step 3
  • Enter client and server key
  • optional Enter preshared key
  • Step 4
  • Client IP address required
  • Other values can be left blank, these options are then either ignored or assigned a default value
  • DNS address(es) can also be entered as a domain notempty
    as of v1.0.9
  • Step 5
    Summary of all settings for verification. If all settings are correct, the configuration wizard can be closed with the Apply button and the connection added.



    Connection settings

    System and user connections

    User connections are saved in the Windows registry under the HKEY_CURRENT_USER context and are therefore only available to the Windows user who imported the connection.

    System connections are stored under HKEY_LOCAL_MACHINE and are therefore available to every user of the machine, but require administration rights for import.

    Herstellen einer Verbindung

    Eine Verbindung kann entweder über das Kontextmenü /  Verbinden oder über einen Klick auf die Verbindungs-Schaltfläche hergestellt werden
    Verbindung getrennt
    Verbindung wird aufgebaut
    Connection button


    Verbindungsübersicht

    Caption Value Description
    Verbindungsübersicht
    Suche
    Suchzeile, um die Verbindungen zu durchsuchen
  • Wird erst ab sieben Verbindungen angezeigt
  • Status Verbunden Verbindung ist hergestellt
    Verbinde Verbindung wird hergestellt
    Failed Verbindung konnte nicht hergestellt werden
    Getrennt Keine Verbindung
    Name TTT-Point-1 Name der Verbindung
    Mehr Öffnet das Kontextmenü der jeweiligen Verbindung
    / Wechselt zwischen Standardansicht und Kompaktansicht des Clients


    Extended view

    Connection details in the expanded view

    Über den Eintrag Details Anzeigen im Kontextmenü werden zusätzliche Verbindungsdetails angezeigt:

    • Empfangene Daten
    • Gesendete Daten
    • Verbindungsdauer
    • Gerätename (verwendete Schnittstelle)
    • Wintun Version
    • IPv4 Adresse / IPv6 Adresse

    Kompaktansicht

    Description
    Kompaktansicht VPN-Client
    Wechselt zwischen Standardansicht und Kompaktansicht des Clients
    Verbindgsflags

    - WireGuard
    - SSL-VPN
    - Systemverbindung (steht allen Benutzern zur Verfügung)
    - Es sind Benutzerdaten hinterlegt
    - Bei Verbindungsabbruch neu verbinden
    - Automatisch verbinden
    - PIN zum Verbinden benötigt

    Verbindungsdauer
    Verbindungsschaltfläche
    Volumen Upload und Download sowie Geschwindigkeit


    Context menu

    Aufruf mithilfe der Schaltfläche in der Verbindungsübersicht oder einem rechten Mausklick auf eine Verbindung.

    Menu item Description
    Connections Context menu
     Verbinden VPN Verbindung aktivieren
     Edit
    Only possible as Admin with a system connection
    Shows the associated configuration and the certificates that can be edited
     OTP anwenden
    Not possible with a Wireguard connection
    Activates/deactivates the entry of a one-time password during a connection attempt
     Automatisch verbinden Automatically establishes this connection when the app is started.
     Bei Verbindungsabbruch neu verbinden Falls die Verbindung unerwartet unterbrochen wird, wird automatisch versucht sich neu zu verbinden.
     Edit user data
    Only possible as Admin with a system connection
    Not possible with a Wireguard connection
    Opens a window through which you can update the user data
     Delete user data
    Only possible as Admin with a system connection
    Not possible with a Wireguard connection
    Deletes the user data for the current connection
     PIN hinzufügen oder bearbeiten
    Only possible as Admin with a system connection
    Nur bei einer Wireguard Verbindung möglich
    Verbindung mit PIN sichern, diese wird anschließend bei jedem Verbindungsversuch benötigt.
     PIN löschen
    Only possible as Admin with a system connection
    Nur bei einer Wireguard Verbindung möglich
    PIN der Verbindung löschen
     Ausgeschlossene SSIDs
    Only possible as Admin with a system connection
    Netzwerke konfigurieren, für die keine Verbindung hergestellt werden soll
    z.Zt nur per Kontextmenü konfigurierbar

    Dialog für Ausgeschlossene SSIDs
     Export
    Only possible as Admin with a system connection
    Opens a dialogue through which you can export the selected connection as a text file
     Log anzeigen Calls up the log for the specific connection
     Details Anzeigen Opens the connection to the full width and length and displays further helpful information
     Diagnosis
    • Switches to the diagnostic view
    • Testing server connectivity (Can a specified server be reached?)
    • Analyse the log
    • Testing the public IP address (via https://checkip.spdyn.de)
     Delete connection
    Only possible as Admin with a system connection
    Deletes the current connection

    Cloud-Verbindung

    In einer kommenden Version wird eine Anbindung zum Securepoint Unified Security Portal (USP) zur Verfügung stehen.
    Damit wird es möglich sein, den VPN-Client aus dem Portal heraus zu steuern und eine Übersicht über den Sicherheitsstatus des Hosts zu erhalten.

    Client settings













    Settings for application start:
    • Run when starting Windows
    • Start application minimised (tray icon)
    • Show migration wizard again
    Settings relating to the connections:
  • Minimise the client after connecting
  • Allow multiple VPN connections at the same time
  • Block shutdown during active connection
  • Attitudes towards appearance:
  • Show pop-up window when application is minimised
  • Display flyout information within the application
  • Activate dark mode
  • Choose language
  • notempty
    These settings are only displayed if the application was started as an administrator, this can be recognised by the "ADMIN" at the top right.

    Advanced settings for administrators:
  • Perform client updates automatically
  • Force DNS, all DNS requests must be made via the VPN


  • Log

    Button Description
    Log overview
    Komplett Filters the log by type: Complete log, Client, Connections, Daily, Service
    50 Shows a maximum of the set number of log messages
    Copy Log Copies the entire (also invisible) log
    Copy current Copies the entire currently visible log
    Export Exports the entire currently visible log


    Command line commands

    Installation, upgrade, uninstallation and repair

    Description Parameter Example
    Installing or upgrading the client Securepoint_VPN_Client-<Version>.exe
    Installation or upgrade without display
    The installation programme performs an installation without displaying a user interface.
    No prompts, messages or dialogue boxes are displayed to the user.
    The user cannot cancel the installation
    .
    Can be combined with Uninstall and Repair.
    The parameter /quiet must always be specified first.
    /quiet Securepoint_VPN_Client-<Version>.exe /quiet
    Uninstalling the client /uninstall Securepoint_VPN_Client-<Version>.exe /uninstall
    Repair of the client
  • The Repair command must always be executed in combination with the /quiet parameter.
    Otherwise, a user dialogue will be displayed, without which the programme will not continue, but the confirmation of which will end the programme.
  • /repair Securepoint_VPN_Client-<Version>.exe /quiet /repair
    Indicates what is being installed and whether it was completed successfully or whether errors occurred | more Securepoint_VPN_Client-<Version>.exe /repair | more
    Note the ‘’space‘’ between pipe and more


    Commands at runtime

    The commands are always appended to the client call (.Securepoint_VPN_Client-<version>.exe).

    Command Description Example
    /migrate
    short form: /m
    Migrate a connection from the file path of the old Securepoint SSL VPN client.
  • The result per connection is either ALREADY EXISTS (connection with the same name already exists in the registry. It is important that only the name is taken into account, not whether an identical copy of a config has already been imported), SUCCESS or FAILED.
  • All connections are created as USER connections. For SYSTEM connections, these must be created manually in the client.
  • .\Securepoint_VPN_Client.exe /migrate
    and
    /log
    Exportiert das vollständige Log .\Securepoint_VPN_Client.exe /log
    /help
    short form: /h
    Help on the commands .\Securepoint_VPN_Client.exe /help