Users Manual Part 2

Device Configuration
VPN – OpenVPN Client (Profile Setup Manually)
170
BEC 4700A / 4700AZ User Manual
Certification
Local Certificate / Trusted CA Index: OpenVPN mutually authenticate the server and client based
on certificates and CA. Select a certificate and CA.
To import certificates and CAs, go to Maintenance >> Certificate Management to upload files.
Otherwise, select Default certificate and CA.
Additional Authentication: Enter the extra credential requested by the OpenVPN server.
TLS-Auth / Key Direction / TLS-Auth Key: These are optional functions which must be activated on
the server side.
Cryptographic Suite
Cipher: OpenVPN uses all the ciphers available in the OpenSSL package to encrypt both the data
and channels. Select an encryption method.
Hash: To establish the integrity of the datagram and ensures it is not tampered with in transmission.
There are options: Message Digest 5 (MD5) and Secure Hash Algorithm (SHA1, SHA256). SHA1 is
more resistant to brute-force attacks than MD5. However, it is slower.
Compression: Choose adaptive to use the LZO compression library to compress the data stream.