D-Link DSR-Series User Manual
137
Section 7 - VPN
Field
Description
OpenVPN
Click On/Off button to start or stop the OpenVPN process. By default, this option is disabled.
Mode
Select
Server
.
VPN Network
Enter the IP network for the VPN.
VPN Netmask
Enter the netmask.
Duplicate CN
Toggle On to allow a same certification for multiple clients.
Port
Enter what port to use. The default port is 1194.
Tunnel Protocol
Select either
TCP
or
UDP
.
Encryption Algorithm
Select the encryption algorithm from the drop-down menu.
Hash Algorithm
Select the hash algorithm from the drop-down menu. The options are SHA1, SHA256, SHA512.
Tunnel Type
Select either
Full Tunnel
or
Split Tunnel
. Full Tunnel mode just sends all traffic from the client across the
VPN tunnel to the router. Split Tunnel mode only sends traffic to the private LAN based on pre-specified
client routes. If you select Split Tunnel, refer to “Local Networks” on page 147 to create local networks.
Client to Client
Communication
Enable this field to allow openvpn clients to communicate with each other in split tunnel case. By default,
it is disabled.
User Based Auth
This option is introduced to provide the additional authentication method using username/password.
Disabled by default.
Certificate Verification
This method does not require the client certificate, client will authenticate using the username/password
only. Enabled by default.
Certs Profile
Select the profile which has list certificates uploaded for the configured mode server/client. By default,
the default profile will be selected which has both server and client certificates.
TLS Authentication Key
Enabling this adds Tls authentication which adds an additional layer of authentication. Can be checked
only when the tls key is uploaded. Disabled by default.
TLS Key
Select the type of tls certificate name.
Invalid Client
Certificates
Enabling this adds facility to block invalid client certificate. This feature requires crl certificate which
contains list of client certificates to be blocked. Please upload crl certificate in OpenVPN Authentication
page. Disabled by default
CRL Certificates
Select the type of crl certificate name.
Save
Click
Save
to save and activate your settings.
Cancel
Click
Cancel
to revert to previous settings.