Functions
MoRoS GPRS 2.1 PRO
which network is located behind the according tunnel ends. In the sample configu-
ration, this is the network 192.168.200.0/24 on one side. On the other side, this is
the network 192.168.1.0/24. As soon as the tunnel is established, data for these tar-
get networks is sent through the OpenVPN tunnel. If only data with a target in the
network behind the tunnel end are to be transmitted via the WAN interface, it is rec-
ommended to enable the firewall after successful configuration. This will limit the
communication to the port at which the OpenVPN tunnel is established (default set-
ting: port 1194).
The MoRoS GPRS 2.1 PRO supports several authentication methods when establish-
ing the VPN tunnel:
Authentication type Usage
Characteristics
None
For testing purposes
and to connect net-
works without encryp-
tion.
No encrypted connection. It is
not possible to log in several
clients at the server at the same
time.
Static key
For encrypted connec-
tions of one client and
one server each in small
applications
Encrypted connection. It is not
possible to log in several clients
at the server at the same time.
User na-
me/password and
common CA certifi-
cate (can only be
configured at the
OpenVPN client)
For encrypted connec-
tions from one or more
clients to an OpenVPN
server.
Flexible application for several
clients. Cannot be used with the
MoRoS GPRS 2.1 PRO as
OpenVPN server.
Certificate-based;
each participant has
an individual certifi-
cate and key.
For encrypted connec-
tions from one or more
clients to an OpenVPN
server.
Solution for maximum security,
but the configuration is more
complicated. This is the recom-
mended operating mode.
Table 11: Authentication methods for OpenVPN
For detailed information and troubleshooting, we also recommend the OpenVPN
web site: http://openvpn.net/howto.html
12.6.3
Setting Up an OpenVPN-Server
You can use the MoRoS GPRS 2.1 PRO as OpenVPN server, if you want to send
confidential data via an unsecured network, for example. This section describes the
set-up of an OpenVPN server. The basic settings of the MoRoS GPRS 2.1 PRO are
reasonable factory defaults, which you may change in certain circumstances. Here,
you define which port of the MoRoS GPRS 2.1 PRO is used to create the OpenVPN
tunnel and if the OpenVPN transmission is performed with the UDP or the TCP pro-
tocol. Moreover, you can specify here, whether the clients are informed about the
server network, the remote terminal may change its IP address, LZO compression is
used, packets are masked before tunnelling, which encryption algorithm is used dur-
70
Содержание MoRoS GPRS 2.1 PRO
Страница 1: ...Manual MoRoS GPRS 2 1 PRO...
Страница 2: ......
Страница 82: ...Functions MoRoS GPRS 2 1 PRO 82...
Страница 144: ......