ESR-Series. User manual
469
•
•
•
•
•
•
•
•
Step
Description
Command
Keys
5
Define type of connection with a private
network via OpenVPN server.
esr(config-openvpn-server)#
tunnel <TYPE>
<TYPE> – encapsulation
protocol, takes the following
values:
ip – point-to-point
connection;
ethernet – L2 domain
connection.
6
Specify IP addresses list from which
dynamic IP addresses are leased to
remote users in L2 mode by OpenVPN
server (only for tunnel ethernet).
esr(config-openvpn-server)#
address-range <FROM-ADDR>-
<TO-ADDR>
<FROM-ADDR> – range starting
IP address, defined as
AAA.BBB.CCC.DDD where each
part takes values of [0..255];
<TO-ADDR> – range ending IP
address, defined as
AAA.BBB.CCC.DDD where each
part takes values of [0..255].
7
Include client connections via OpenVPN
in L2 domain (only for tunnel ethernet).
esr(config-openvpn-server)#
bridge-group <BRIDGE-ID>
<BRIDGE-ID> – bridge
identifying number.
8
Specify certificates and keys.
esr(config-openvpn-server)#
certificate <CERTIFICATE-TYPE>
<NAME>
<CERTIFICATE-TYPE> –
certificate or key type, may take
the following values:
ca – Certificate Authority;
crl – Certificate
Revocation List;
dh – Diffie-Hellman key;
server - crt – public
server certificate;
server - key – private
server key;
ta – HMAC key.
<NAME> – certificate or key
name, set by the string of up to
31 characters.
9
Select encryption algorithm used when
data transmission.
esr(config-openvpn-server)#
encryption algorithm
<ALGORITHM>
<ALGORITHM> – encryption
protocol identifier, may take
values: 3des,blowfish128,
aes128.
10
Include the OpenVPN server in a
security zone and configure interaction
rules between zones (see section
esr(config-openvpn-server)#
security-zone <NAME>
<NAME> – security zone name,
set by the string of up to 31
characters.
Содержание ESR Series
Страница 218: ...ESR Series User manual 218 ...
Страница 234: ...ESR Series User manual 234 In addition to RIP protocol configuration open UDP port 520 in the firewall ...
Страница 306: ...ESR Series User manual 306 Parameter targeted LDP Hold timer 45 seconds Keepalive holdtime 180 seconds ...
Страница 452: ...ESR Series User manual 452 Step Description Command Keys 4 Enable Tracking object esr config tracking enable ...
Страница 514: ...ESR Series User manual 514 esr show ntp peers ...