Kerio Control

How can we improve Kerio Control?

You've used all your votes and won't be able to post a new idea, but you can still search and comment on existing ideas.

There are two ways to get more votes:

  • When an admin closes an idea you've voted on, you'll get your votes back from that idea.
  • You can remove your votes from an open idea you support.
  • To see ideas you have already voted on, select the "My feedback" filter and select "My open ideas".
(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can support and comment on it.

If it doesn't exist, you can post your idea so others can support it.

Enter your idea and we'll search to see if someone has already suggested it.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. (more) VPN Parameter changeable via WebGui

    Most of our customers are using VPN Connections with "their customers" or HomeOffice workes (both LAN-LAN with most CISCO and AVM FritzBox receivers).

    Nearly each VPN connection must be manually edited via changing parameters in winroute.cfg (primarily "ike lifetime" / "dpdaction")

    so my wishful thinking:
    Make those (or more) VPN Parameters changeable via WebGUI (and thereby changeable without stopping /starting winroute)

    77 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    11 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  2. IKEv2 + MOBIKE allowing stable VPN from wide range of mobile devices.

    L2TP with cert or preshared key works well on iPhones or Android when on Wi-Fi or not moving among GSM cells, but how about improvement and move to general IKEv2 VPN server supporting and being supported also by other mobile platforms and allowing roaming in GSM network ?

    53 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    7 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  3. Kerio control VPN client for ARM

    VPN client for ARM devices (like Raspberry pi)
    Very useful to make some (very) small vpn appliances.

    49 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  4. setting route in client vpn

    be able to set the route table of the individual client PCs with kerio vpn.
    Now when a client connects via vpn acquires all the firewall routing

    44 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  5. possibility of setting ikelifetime for ipsec connections

    The default time for the ikelifetime at an ipsec-vpn is about 3hr. In most cases it is sufficient.
    But if you need a longer time (leased Line for an office outside) is the configuration very awkward. Can you provide a way, that you can set via a selection box or free input?

    40 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    5 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
    Roman Jokl responded

    I don’t see reason for changing the key lifetime. It is automatic process that user shouldn’t be aware of. The only case is if the re-keying doesn’t work and increasing lifetime is a workaround. Such a bug should be fixed in the first place.

  6. Export Pre-Configured VPN Client, or client configuration file.

    Once I've setup my Control box, I want to be able to download a file to automatically configure the VPN Client.

    This file should be importable by the VPN Client on any platform, and the installer should have a location (next to the installer executable?) to look for this file.

    this file should be able to specify any or all of :
    vpn server hostname
    Certificate signature
    VPN Server Port
    whether or not to redirect all traffic over the VPN, or if only to send traffic bound for the remote network.
    Username
    if it is allowed to save the password …

    35 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  7. OpenVPN Support / Stronger Client Support

    We need stronger security for VPN support. PPTP and L2TP are simply not enough today.

    31 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    4 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  8. IPsec AES256 support

    Please add support AES256-SH1 to IPsec tunnel authentication phases

    26 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  9. More secure VPN (two-factor auth) - remember me on this device

    Thank you very much for two-factor auth in Kerio 8.5. But I do not understand the option "remember me on this device" when entering code. Why? The code should be mandatory at all times! This is a security hole. Imagine the situation: the stolen notebook with knowledge of user's name and password (or better the password is saved in kerio vpn client :) , children of employees "playing" with notebook.

    If you do not cancel this setting for all, please add it to the administration. Preferred may be a softer setting too - on the individual user. See the picture.

    24 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  10. Please add support for IKE2 on VPN. Security holes need to be opened up to support L2TP/IPSec

    Please add support for IKE2 on VPN. Security holes need to be opened up to support L2TP/IPSec

    22 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
    planned  ·  Heather Paunet responded

    We do plan to support IKEv2. Will post updates here as we make progress.

  11. ipsec over https

    Please add ipsec over https support to kerio control. On Lancom this is standard. Most offical hotspot disable ports other than 80, 443.

    18 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  12. IPSEC detailed configuration

    Option to enter all possible connection details for IPsec tunnels, like ah instead of esp, etc. at least manualy via winroute.cfg, so anybody can fine-tune connection parameters if required for 3rd party HW/SW.

    17 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    3 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  13. Multiple VPN Clients

    "Dear Developers"
    Why Does't Kerio Make an Official VPN Client For Android Platform to have more influence in the Private Networking World Wide?
    Because IPSec Preshared Key Connection Really Doesn't Works.
    in the internet Censoring countries, Kerio Vpn Client gonna be the best Solution For Users to Free Web Surfing.
    Thank You

    14 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  14. In IP tools for connecting multiple lines, add the option through which interface the test leave

    During remote management is test to be sent to the selected WAN links or VPN tunnel to verify proper functionality

    14 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    2 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  15. Grouping of VPN interfaces

    Introduce groups for VPN interfaces that can be used in traffic rules. Since we usually need rules to cover multiple VPNs (but not all, so all VPN tunnels would not sufice) it would be nice if we can create groups of VPNs and use these in the rules.

    12 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  16. Adding The Time Control { Limitation} To The Users - Kerio Control

    Hi , I think it would be good idea to add time control on the users who has vpn access through Kerio Control i searched for it and i saw alots of users have this problem as me :( and why more than one person can loging as a user ? its really unsecured

    amirsat@gmail.com

    10 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  17. linux

    Improve Linux client for VPN, to something that works similar to the windows one.
    Not only is complex to install it, but also connecting and disconnecting requires specific and complex commands, which have to be done with superuser privileges, giving the password to use sudo. It should be needed to configure once, and being able to start and stop VPN connection with just a click (I finally made it but wasn't easy).

    9 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  18. Make VPN redirection per user

    It would be very helpful to have the option to redirect Internet access for VPN users to be on a per-user basis.

    "VPN clients access the Internet through the VPN"

    This facility is very helpful in many situations, but it seems to be a blanket setting on the VPN server. It would be very helpful to be able to define this per user or (perhaps even better) also be able to select it as an option on the client side when connecting.

    The MS PPTP VPN client allows this client-side and it would be useful for Control to support the…

    9 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  19. Allow Policy Routing through a VPN Interface

    Allow a Traffic Rule / Policy Route to use a VPN Interface in addition to physical interfaces to allow rules to direct particular traffic, IP Addresses, Address Groups, etc through a VPN Interface.

    8 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  20. vpn client to client, without using a client. I can`t conect to a cisco router.

    vpn client to client, without using a Kerio`s client. I can`t conect to a cisco router.

    7 votes
    Vote
    Sign in
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
← Previous 1 3 4
  • Don't see your idea?

Kerio Control

Feedback and Knowledge Base