ACE VPN Portal
ACE VPN Portal
Upon receipt of the ACE portal credentials navigate to ace-vpn.americancloud.com and log in to access the remote access
dashboard. Once logged in it's possible to manage the organization's users.
Below is a layout explanation of the User Interface.
1. The dropdown menu provides a means to access and edit the user account, a VPN connections, or to log out of the
session.
2. This button allows quick access to the current user's VPN client profiles.
3. This button allows the management of additional end-users in the organization that may also require access to the
ACE environment.
4. This section allows further information on the ACE features, setup and usage of the ACE environment, installation
instructions for the WireGuard client to connect with based on OS, and additional CloudStack documentation for
reference.
User Account
To access the user account, reset a password, and enable Two-Factor Authentication, use your dropdown menu and choose
Edit Account:
The next screen will allow for confirmation of the user's contact information, change the user's password, and toggle
Enable 2FA.
2FA SMS
Once Enable 2FA is toggled on and the SAVE button is pressed, the 2FA type will be available. Choose the method(s)
available.
When you choose your 2FA type and SAVE, a Manage type link will be made available for testing and confirm that the
method is functioning properly:
Access the Manage page and confirm the method is functioning properly prior to logging out of your session.
2FA TOTP
For TOTP, an auto-generated seed will be provided. To accept this seed, choose SAVE NEW SEED button, or to have a
different one generated choose GENERATE RANDOM SEED.
Once the SAVE NEW SEED button is pressed the Verification option will become available. Save your seed to the TOTP
application or scan the QR code in the application and enter the TOTP 6-digit code and choose VERIFY NEW CODE.
Remote Access VPN Clients
To set up a remote access VPN client(s) expand the dropdown menu and choose VPN Clients or use the MANAGE VPN CLIENTS
button on the dashboard main page (position 2).
The VPN USER-PORTAL page provides the ability to add, edit, and delete your VPN configurations.
To create a new peer connection choose ADD NEW PEER from the VPN USER-PORTAL page. This will generate a Public Key and
provide an option to give the connection a friendly Identifier. Then select SAVE.
Use nicknames that are easy for you to find and manage as needed, like ‘officeworkstation’, ‘mobilephone’, etc.
Now a Peer will be listed in the VPN User-Profile page. By selecting the peer it provides a download option of the
automatically generated configuration file to import into the local WireGuard client. Choose INFO to access the Download
option for the specific Peer being loaded on the current host. This will also display a QR code that can be scanned from
a mobile device. Choose INFO at the front of the Profile to view the additional information.
Download the client VPN profile and import it into the WireGuard Client. There is an EDIT option as well at the end of
each profile to change its nickname identifier or delete the profile.
Additional User Setup
In order for other end-users within the organization to access the ACE environment they will need to have their own user
account within the ACE-VPN portal to create their own VPN Profiles.
From the main dashboard choose MANAGE USERS (option 3). This will provide a list of accounts in the organization.
Additionally, the page provides the ability to create, edit, or delete users as needed. Only MANAGERS of the
organization have this access and ability.
Choose ADD NEW USER from the VPN USERS page and fill out the new user information. When finished, SAVE the account and
the new user will have access to this portal and may create, edit, and delete their own VPN Peers.
More information (Option 4 section of the dashboard) is provided for quick links to additional content, further reading,
and ACE online documentation.
Your data is your own and by utilizing the American Cloud Enterprise VPN Portal you are in control of who accesses your
data, wherever they may be.