Functions
MoRoS LAN PRO 2.0
52
12.3.5
Configure OpenVPN Client
Configuring the OpenVPN Client with or without authentication
In the following, you will find a description of how to set up the MoRoS LAN PRO 2.0
as OpenVPN client. How to configure the OpenVPN client of the MoRoS LAN PRO 2.0
without authentication or with one of the two supported authentication methods
(certificate-based or by static key):
Configuring OpenVPN Client with CA certificate and user name / password
How to configure the MoRoS LAN PRO 2.0 OpenVPN Client with authentica-
tion using a user name and password. This authentication type uses certifi-
cates, but not each VPN participant has its own certificate.
You have a CA certificate for your VPN.
You have a user name and a password for the authentication at the
OpenVPN remote terminal.
1.
Use the menu item "LAN (ext)" to go to the page "OpenVPN Client".
2.
Select the radio button "Authentication based on certificate".
3.
Click on OK to save the settings.
4.
Click in the section "Upload key or certificates" on Browse....
5.
Select a file with the ending ".crt" with the CA certificate for your VPN.
6.
Click on OK to load the certificate file to the MoRoS LAN PRO 2.0.
The page will be refreshed. A green checkmark is displayed instead of the
red "X" next to the text "CA certificate available".
7.
Make sure that the IP address or the domain name of the remote terminal is
configured.
This address will be used for the connection setup of the VPN tunnel.
8.
Enter user name and password for the authentication at the VPN remote
terminal.
If necessary, activate the checkbox "Check remote certificate type". This en-
ables the remote terminal to identify itself as a real server through its server
certificate. This will considerably reduce the danger of a "Man-In-The-Middle"
attack on your VPN.
9.
Click on OK to save your settings.
The OpenVPN Client is now configured for a VPN connection with a CA cer-
tificate and user name / password.