
ADVANCED SET-UP
Page 98
DOC_DEV_RAS_User guide_A
Machine Access Box RAS
8.2
OpenVPN server set-up
Select the « Add » button located just below the VPN server table
“Port number” & “protocol” parameters :
Select the port Nr and the type of level 3 protocol used to transport OpenVPN.
Attention : The port number value must be different from the one used by remote users.
“VPN network address” & “VPN network netmask” parameters :
The OpenVPN server router assigns automatically an IP address to the VPN client router.
That VPN IP address must not be confused with the WAN interface IP address.
Leave the default values 172.16..0 and 255.255.0.0
“Connection death time-out” parameter :
A control message (also called Keep-alive message) is sent periodically by the VPN server router to make
sure that the VPN must be left active.
This parameter defines the period of the control messages.
As a consequence, it sets the maximum amount of time a VPN connection will stay established before being
cleared if no response to the VPN control message is received from the remote router.
Remark :
The value of this parameter must be selected carefully ; If the VPN has been cleared, for any reason, the
router will wait during that period of time before lauching the VPN again.
“Packet retransmit time-out” parameter:
This parameters sets the amount of time (in seconds) the server will wait for the response to the keep-alive
control message before repeating it.
“Encryption algorithm” & “Authentication algorithm” parameter :
AES provides a better encryption than 3DES, and SHA-1 a better authentication than MD5.
« Priority » parameter :
Enter a an intermediate value : 100 for instance.
«
Push local route to VPN clients
» parameter :
If that checkbox is selected, the server broadcasts to the clients the route to the IP domain of its local
network.
Leave that checkbox selected.
«
Push static routes to VPN clients
» parameter :
If that checkbox is selected, the server broadcasts to the clients the static routes which have been set-up int
the VPN server.
Leave that checkbox selected.
Summary of Contents for RAS-E
Page 8: ......
Page 44: ......
Page 64: ......
Page 96: ...ADVANCED SET UP Page 96 DOC_DEV_RAS_User guide_A Machine Access Box RAS ...
Page 126: ......
Page 132: ...ETIC TELECOM 13 chemin du vieux Chêne 38240 Meylan France contact etictelecom com ...