Virtual Private Networks (VPN)
OpenVPN
IX10 User Guide
315
b. (Optional) Select the
Metric
for the OpenVPN server. If multiple active routes match a
destination, the route with the lowest metric will be used. The default setting is
0
.
c. For
Address
, type the IP address and subnet mask of the OpenVPN server.
d. (Optional) For
First IP address
and
Last IP address
, set the range of IP addresses that the
OpenVPN server will use when providing IP addresses to clients. The default is from
80
to
99
.
7. (Optional) Set the
VPN port
that the OpenVPN server will use. The default is
1194
.
8. For
Server managed certificates
, determine the method of certificate management. If
enabled, the server will manage certificates. If not enabled, certificates must be created
externally and added to the server.
9. If
Server managed certificates
is not enabled:
a. Select the
Authentication
type:
n
Certificate only
: Uses only certificates for client authentication. Each client
requires a public and private key.
n
Username/password only
: Uses a username and password for client
authentication. You must create an OpenVPN authentication group and user. See
Configure an OpenVPN Authentication Group and User
for instructions.
n
Certificate and username/password
: Uses both certificates and a username and
password for client authentication. Each client requires a public and private key,
and you must create an OpenVPN authentication group and user. See
OpenVPN Authentication Group and User
for instructions.
b. Paste the contents of the
CA certificate
(usually in a ca.crt file), the
Public key
(for
example, server.crt), the
Private key
(for example, server.key), and the
Diffie Hellman
key
(usually in dh2048.pem) into their respective fields. The contents will be hidden when
the configuration is saved.
10. (Optional) Click to expand
Access control list
to restrict access to the OpenVPN server:
n
To limit access to specified IPv4 addresses and networks:
a. Click
IPv4 Addresses
.
b. For
Add Address
, click
.
c. For
Address
, enter the IPv4 address or network that can access the device's
service-type. Allowed values are:
l
A single IP address or host name.
l
A network designation in CIDR notation, for example, 192.168.1.0/24.
l
any
: No limit to IPv4 addresses that can access the service-type.
d. Click
again to list additional IP addresses or networks.
n
To limit access to specified IPv6 addresses and networks:
a. Click
IPv6 Addresses
.
b. For
Add Address
, click
.
c. For
Address
, enter the IPv6 address or network that can access the device's
service-type. Allowed values are:
l
A single IP address or host name.
l
A network designation in CIDR notation, for example, 2001:db8::/48.
Содержание IX10
Страница 1: ...IX10 User Guide User Guide Firmware version 22 5 ...
Страница 444: ...Services Simple Network Management Protocol SNMP IX10 User Guide 444 The SNMP page is displayed 4 Click Download ...
Страница 740: ...Monitoring This chapter contains the following topics intelliFlow 741 Configure NetFlow Probe 748 IX10 User Guide 740 ...
Страница 823: ...Command line interface Execute a command from the web interface IX10 User Guide 823 The Admin CLI prompt appears ...
Страница 849: ...Command line interface Command line reference IX10 User Guide 849 Parameters None ...
Страница 858: ...Command line interface Command line reference IX10 User Guide 858 reboot Reboot the system Parameters None ...