NextGen Knowledge Center

Using Virtual Private Network Connections

A virtual private network (VPN) enables you to create a secure channel of communication (or "tunnel") over a public network, such as the internet. Security is provided through authentication to ensure that the entity connecting is authorized and through encryption to protect the data in transit. Select Services > VPN Connections to create the connection.

The VPN service uses certificate-based SSL authentication. Therefore, each VPN user that you configure has a unique certificate generated and assigned to them. When a user attempts to connect to the service, their VPN client must present a valid certificate for the VPN to be established. The VPN service uses the Advanced Encryption Standard (AES) cipher algorithm in cipher block chaining (CBC) mode with a 256-bit key.

VPN connection management enables you to terminate client-based VPN connections directly on your Mirth® Appliance by NextGen Healthcare. After being established, these connections provide a secure path for administrative or message traffic. Each connection is authenticated with a unique digital certificate, and all traffic is encrypted. The VPN service is only for inbound VPN connections and will not connect to another vendor’s VPN.

The VPN Connection Management window shows a list of all currently configured VPN connections.

VPN Connection Management window

If a connection has never connected to the appliance, the Remote IP status displays “Never connected,” and the connection’s name appears in red text.

Connections that have previously connected show an assigned private IP address in green if their connection is active and red if it is not. When a user is actively connected, the appliance can initiate a connection to the client over the VPN by using the listed private IP address.