User Manual/Web Interface MC-LR/MC-LR-4/MC-LRS/MC-LRS-4 – 01/2018 (FW 2.07.3)
27
VPN
Disabled:
VPN not activated.
Enabled:
VPNactivated.
Local Port
OpenVPN port setting for the server (default 1194).
Protocol
Protocol setting (UDP or TCP).
LZO Compression
Disabled:
Disabled or not permitted.
Adaptive:
Adaptive OpenVPN compression is activated.
No:
OpenVPN compression is disabled.
Yes:
OpenVPN compression is activated.
TLS Authentication
Used to select a common TLS authentication key which has been uploaded in advance under
Key
Certificates.
Local Certificate
Used to select the OpenVPN server’s PKCS#12 certificate (.p12). The certificate must be uploaded in
advance.
Note:
Please ensure that the router’s system time is current and thus falls within the
chronological validity window for the certificates.
Diffie-Hellman
The default setting is 1024 Bit, however can be changed to 2048 Bit here (is defined when creating
Parameter
the certificate).
Encryption
Encryption algorithm for the OpenVPN connection.
Client to Client Traffic
Used to block or permit client-to-client traffic.
Client Subnet Base
Specification of the OpenVPN server’s base network.
This setting is used to automatically derive the clients’ network segments
(see Setting: Client table below).
Virtual Network Base
Specification of the OpenVPN server’s internal, virtual base network. This setting is used to
automatically derive the clients’ virtual IP addresses (see Setting: Client table below).
Keep Alive
Time span in seconds after which keep alive queries should be sent. These queries test whether the
remote peer is still available.
Factory setting: 30 seconds.
Restart
Time span in seconds after which the connection to the remote peer should be restarted if the keep
alive queries were not answered.
Factory setting: 120 seconds.
Additional Options pushed to the Clients
Can be used to provide clients with information about routes. Click "Redirect Default Gateway" to direct client routes via
the OpenVPN tunnel.