Functions
MoRoS GPRS 2.1 PRO
In order to configure the detail level of the messages in the connection
log, enter the detail level into the field "Log level", where "0" disables the
log record completely and "9" records the most detailed information.
In order to define a certain fragmenting size for the OpenVPN tunnel
packets in bytes, use the entry field "Fragment packets". Enter the re-
quired maximum packet size in bytes here. If you don't enter a value, the
OpenVPN packets will have a maximum size of 1.500 bytes. The actually
transmitted amount of user data is lower, because OpenVPN creates a
"protocol overhead", which means that the protocol information that is
transmitted as well is a part of the packet size.
In order to adjust the interval up to the key renegotiation, use the entry
field "Interval for renegotiation of data channel key". This interval config-
ures the time in seconds, which must expire before new keys are created.
In order to adjust the VPN ping interval, use the entry field "Ping interval".
Enter the interval in the amount of seconds, in which the OpenVPN server
of the MoRoS GPRS 2.1 PRO sends ping packets to the remote VPN ter-
minal. The frequent ping is used to keep the connection open via several
routers and gateways, which may participate in the connection and would
close the channel in case there was no communication. We recommend
entering a value of a few minutes, depending on the used network and
the used infrastructure.
In order to adjust the ping restart interval, use the entry field "Ping restart
interval". The ping restart interval configures the time in seconds after
which the tunnel is to be established again, if no ping from the remote
terminal arrived during the complete time. The value "0" prevents the tun-
nel to be terminated, even if no ping is received any more.
In order to configure the authentication with certificates, select the radio
button "Authentication based on certificate". It is indicated under the op-
tion here, whether the individual certificates and keys are present (green
checkmark) or not (red cross). Present certificates can also be downloaded
(blue arrow) or deleted again (red cross on white box). The private key can
only be deleted. Check the checkbox "Allow communication between cli-
ents" to enable a communication between the clients as well. Define the
IP address pool for the clients in the fields "IP address pool for clients" and
"Netmask of IP address pool". In order to create a new route to a client
network, enter in the section "Create new route to a client network" the
Common Name of the client into the field "Name in certificate" as well as
its network address and netmask into the field "Net address" and "Net-
mask address". Optionally, enter the VPN IP address for the tunnel end of
a client into the field "VPN IP address". Click on "OK" to take over the new
route. You can delete existing routes by checking the checkbox in the col-
umn "delete" of the respective route and clicking on "OK".
A link of a network address with "DEFAULT" as "Common Name" may
be created as "Standard route". It is always used as route, when a client
registers with a certificate, for whose "Common Name" no other link
has been entered.
72
Summary of Contents for MoRoS GPRS 2.1 PRO
Page 1: ...Manual MoRoS GPRS 2 1 PRO...
Page 2: ......
Page 82: ...Functions MoRoS GPRS 2 1 PRO 82...
Page 144: ......