ICX35-HWC ♦ Industrial Cellular Gateway
ICX35-HWC Tech Notes
3G/4G LTE
User Manual
ProSoft Technology, Inc.
Page 119 of 127
7
Browse and select the
Certificate Authority
,
Client Certificate
, and
Client Key
credential files. Your OpenVPN Server 2 Administrator provides the three
certificate files.
Note: Certificate/keys are mandatory as separate files if a custom configuration file is not used,
or if a custom configuration file is provided but does not contain the certificates and keys inline.
If the certificates and keys are provided both inline in the custom configuration file and
uploaded in the UI, the uploaded certificate and key files will take precedence.
8
Select
Protocol
to match the OpenVPN Server 2 protocol.
10.5.1
Troubleshooting Multiple OpenVPN Servers
Below are items to consider when connecting the ICX35-HWC to multiple OpenVPN
servers:
Using the same IP address for OpenVPN servers.
OpenVPN server has a default IP address 10.8.0.1/24. It also leases to
clients from the same subnet 10.8.0.0/24.When using the ICX35-HWC with
multiple OpenVPN servers, it is imperative to reconfigure each OpenVPN
server to avoid overlap of these default subnets. Failure to reconfigure the
overlapping subnets may lead to incorrect routing at the ICX35-HWC level.
OpenVPN servers are using the same IP subnet or overlapping IP
subnets for route injection.
The system administrator should monitor this to avoid the overlap of the
subnets used for route injection.
Configuring one of the OpenVPN Server connections as Default Gateway
implies that all network traffic will be passed through the tunnel. The server
administrator should be aware of the filters put in place on the server side,
and how the OpenVPN server configuration might impact the network traffic.
When using Belden Horizon together with the OpenVPN setup in this
scenario, make sure that traffic to the Belden Horizon is reachable through
the connection configured as a Default Gateway.