MoRoS LAN PRO 2.0
Functions
53
To be able to establish an OpenVPN connection via the MoRoS LAN PRO 2.0,
you must activate the OpenVPN Client.
Configuring the OpenVPN client for certificate-based authentication
How to configure the MoRoS LAN PRO 2.0 OpenVPN client for certificate-
based authentication.
You have received a CA certificate suitable for your VPN, as well as a private
key and a certificate from the VPN administration or created them yourself.
1.
Navigate in the web interface of the MoRoS LAN PRO 2.0 to the menu "LAN
(ext)" to the page "OpenVPN client".
2.
Click in the section "Upload key or certificates" on Browse....
3.
Select the file with the CA certificate (e.g. ca.crt).
4.
Click on OK to load the certificate file to the MoRoS LAN PRO 2.0.
5.
Repeat the steps 2 to 4 with the files "<Your_certificate>.crt" and
"<Your_key>.key".
A green checkmark is displayed instead of the red "X" next to "CA certifi-
cate".
A green checkmark is displayed instead of the red "X" next to "Certificate".
A green checkmark is displayed instead of the red "X" next to "Private key".
If a red "X" is still present, no authentication with certificates will be per-
formed. If a user name with password has been assigned, only this will be
used for authentication. If all entries have a green checkmark, certificates
will be used for authentication. If a user name with password has also been
assigned, this will also be used for authentication in addition to the certifi-
cates.
If necessary, activate the checkbox "Check remote certificate type". This en-
ables the remote terminal to identify itself as a real server through its server
certificate. This will considerably reduce the danger of a "Man-In-The-Middle"
attack on your VPN.
6.
Click on OK to save the settings.
7.
Make sure that the IP address or the domain name of the remote terminal is
configured.
The MoRoS LAN PRO 2.0 OpenVPN Client is now completely configured for
the certificate-based authentication.