10 OpenVPN™ Encryption
4. Call the commands
vars.bat
,
clean-all
and
build-ca
in this order. You could press enter
for all the values for which you will be asked, except the
Common Name
, which should be the
name of your VPN (eg.
MyVPN
).
5. The next command
build-key-server server
will generate a certificate and private key for
the server. As before, you could leave the values on the defaults but should enter the
Common
Name
(eg.
MyServer
). The password field could be blank or set for enhanced security. The
last two questions must be answered with Yes (’
y
’).
6. Now you can create as many keys as you want for your clients with
build-key client1,
build-key client2, ...
. Enter the client name from the command line for
Common Name
(eg.
client1
). The other values are the same as with the step before.
7. Finally call
build-dh
to generate Diffie-Hellman parameters for the OpenVPN™ server.
8. Now you find the certificates and keys in the subdirectory
keys
. You will use these files to
create a config ZIP container for the NetCom Plus as described before or use them on your
computer and copy these files with the config file (eg.
client1.ovpn
) into the config directory
of OpenVPN™.
10.3.3 Start NetCom Plus with OpenVPN™ active
This is the moment to open the web browser again, and access the Server Configuration of the
NetCom Plus. Go to the OpenVPN Parameter section (figure
65
), and carefully double check all
values. They must match the example used here. If you are sure, change the first parameter
‘OpenVPN’ from “Disabled” to “Server”. Save the changes, and let the NetCom Plus perform its
Reboot. After some time your web browser will attempt to open the Server Configuration page
again, but this will fail. This is desired, because now the communication must be done encrypted.
The NetCom Plus is still sending answers to PING on the Ethernet (or WLAN), and it will also
accept a TCP connection for Debugging on Port 1200. Try it by opening a Telnet session to
Port 1200. And finally the NetCom Plus waits for a TCP connection on Port 1194, to establish a
link via OpenVPN
10.3.4 Start OpenVPN™ by Context-Menu
The Graphical User Interface (GUI) is pretty much intuitive, so it is not covered in this manual.
Instead the other graphical option is documented now.
The Installation Wizard of OpenVPN™ associated the ".ovpn" file type with Notepad to open by
double click. It also added an action available via the Context-Menu of the file.
September 2016
NetCom Plus User Manual
115
Summary of Contents for NetCom Plus 111
Page 133: ......