ESR-Series. User manual
472
•
•
•
•
•
•
•
•
•
•
•
•
•
•
Step
Description
Command
Keys
26
Change the authentication algorithm for
OpenVPN clients (optional).
esr(config-openvpn-server)#
authentication algorithm
<ALGORITHM>
<ALGORITHM> –
authentication algorithm:
8-128 bits key size: md4,
rsa-md4, md5, rsa-md5,
mdc2, rsa-mdc2
8-160 bits key size: sha,
sha1, rsa-sha, rsa-sha1,
rsa-sha1-2, dsa, dsa-sha,
dsa-sha1, dsa-sha1-old,
ripemd160, rsa-
ripemd160, ecdsa-with-
sha1
8-224 bits key size:
sha-224, rsa-sha-224
8-256 bits key size:
sha-256, rsa-sha-256
8-384 bits key size:
sha-384, rsa-sha-384
8-512 bits key size:
sha-512, rsa-sha-512,
whirlpool
Default value: sha
15.3.2 Configuration example
Objective:
Configure Open VPN server in L3 mode on a router for remote user connection to LAN.
OpenVPN server subnet: 10.10.100.0/24;
Mode: L3;
Authentication based on certificates.
Solution:
First, do the following:
Prepare certificates and keys:
CA certificate
OpenVPN server key and certificate
Diffie-Hellman and HMAC key for TLS
Configure zone for te1/0/1 interface
Содержание ESR Series
Страница 218: ...ESR Series User manual 218 ...
Страница 234: ...ESR Series User manual 234 In addition to RIP protocol configuration open UDP port 520 in the firewall ...
Страница 306: ...ESR Series User manual 306 Parameter targeted LDP Hold timer 45 seconds Keepalive holdtime 180 seconds ...
Страница 452: ...ESR Series User manual 452 Step Description Command Keys 4 Enable Tracking object esr config tracking enable ...
Страница 514: ...ESR Series User manual 514 esr show ntp peers ...