System information
CONFIGURATION
Local Interface IP
Address
IP address of the local side of tunnel.
Remote Interface IP
Address
IP address of interface local side of tunnel.
Ping Interval
This parameter defines the time period after which router sends a
message to opposite side of tunnel, for check the existence of the tunnel.
Ping Timeout
Ping Timeout waits on message from off-side tunnel. For OpenVPN
tunnel right verifies parameter Ping Timeout has to be bigger than Ping
Interval.
Renegotiate Interval
This parameter sets renegotiate period (reauthorization) of the OpenVPN
tunnel. This parameter is possible to set only at username/password
authentication or at X.509 certificate using. After this time period, the
router changes the encryption tunnel to ensure the continued safety of
the tunnel.
Max Fragment Size
By parameter Max Fragment Size it is possible to define maximum
sending packet size.
Compression
Sending data is possible compress
• – No compression is used.
• : – Are used lossless LZO compressions. Compression has to
be on both tunnel ends.
NAT Rules
By parameter NAT Rules it is possible to apply set NAT rules
to OpenVPN tunnel.
• ++ – NAT rules to OpenVPN is not applied.
• ++ – NAT rules to OpenVPN is applied.
Authenticate Mode
This parameter can be set authentication mode.
• – is used any authentication mode
• ;- ! – enables authentication using Pre-shared
secret. This authentication set shared key for both off-side tunnel
• <+ – enables authentication using CA
Certificate, Username and Password
• =(4&%!>!? – enables authentication by CA
Certificate, Local Certificate and Local Private Key
• =(4&% ! >!? – enables authentication by CA
Certificate, Local Certificate and Local Private Key
• =(4&% ! >? - enables authentication by CA
Certificate, Local Certificate and Local Private Key
Pre-shared Secret
Authentication using Pre-shared secret can be used in all offered
authentication mode.
CA Certificate
This authentication certificate can be used in authentication mode
Username/password and X.509 certificate.
DH Parameters
Protocol for exchange key DH parameters can be used in authentication
mode X.509 server.
Local Certificate
This authentication certificate can be used in authentication mode X.509
certificate.
Local Private Key Local private key can be used in authentication mode X.509 certificate.
Username Authentication using a login name and password authentication can be
29