CM5000 User Manual
UM-CM5000-FW3.5.2.0-REV0.0
2019-07-08
www.ateme.com
Page 111
C.3. Client configuration
The VPN client can be fully configured with the web GUI.
Table C.1. Client configuration
Enabled
-
Enable/Disable the VPN client.
Protocol
Udp
Tcp
Must be the same as the one defined on
the proto line of the server configuration.
Server address
IP address
The server address must be reachable by the CM5000
Server port
-
Must be the same as the one defined on
the port line of the server configuration
Certificate/keys
-
-
Root CA certificate
crt file
Must be the same as the one described
in the ca line of the server configuration.
Client certificate
crt file
Certificate file generated by the VPN admin.
Client key
key file
Client secret key file generated by the VPN admin.
C.4. Troubleshooting
Checking connections
To check client/server connections, on the server side, check the log file designated by the status line of the server.conf
(e.g. /var/log/openvpn-status.log)
OpenVPN CLIENT LIST
Updated,Tue Jan 26 10:42:18 2016
Common Name,Real Address,Bytes Received,Bytes Sent,Connected Since
kyrion.cert,10.0.2.2:41198,23229,23495,Tue Jan 26 10:03:03 2016
ROUTING TABLE
Virtual Address,Common Name,Real Address,Last Ref
10.8.0.6,kyrion.cert,10.0.2.2:41198,Tue Jan 26 10:03:03 2016
GLOBAL STATS
Max bcast/mcast queue length,0
END
You can see that a client using kyrion.cert has connected and was assigned 10.8.0.6 as an IP address.