On the Select role service page, in Role services, select DirectAccess and VPN (RAS). The Add Roles and Features Wizard dialog box opens. On the Add Roles and Features dialog, select Add Features then select Next. On the Web Server Role (IIS) page, select Next. On the Select role services page, select Next.

There is a one-to-one correspondence between an OpenVPN process, an OpenVPN config file, an OpenVPN log file, and a TAP-Win32 adapter which represents an endpoint of a VPN tunnel. OpenVPN tunnels are point-to-point in their simplest form, but can be made point-to-multi-point through the use of bridging or routing (see below).

The AlwaysOn VPN before Windows Logon ((Formally Always On service) feature enables a user to establish a machine level VPN tunnel even before a user logs in to a Windows system. The tunnel remains active until the machine shuts down. After the user logs on, the device-level VPN tunnel is taken over by a user-level VPN tunnel.