![NetComm Wireless NTC-140-01 Скачать руководство пользователя страница 58](http://html1.mh-extra.com/html/netcomm-wireless/ntc-140-01/ntc-140-01_user-manual_1670738058.webp)
58
NetComm Wireless 4G M2M Router
www.netcommwireless.com
v1.0
6.
The Server certificates section displays the details of the certificate. If you wish to change the certificate, click the Change
button.
7.
HMAC or Hash-based Message Authentication Code is a means of calculating a message authentication code through the
use of a cryptographic hash function and a cryptographic key. If you wish to use the HMAC signature as an additional key
and level of security, under the SSL/TLS handshake section, click the Use HMAC Signature toggle key so that it is in the
ON position, then click the Generate button so that the router can randomly generate the key. The Server key timestamp
field is updated with the time that the key was generated. Click the Download button to download the key file so that it can
be uploaded on the client.
8.
Select an Authentication type. Authentication may be done using a Certificate or Username / Password.
Certificate Authentication
In the Certificate Management section, enter the required details to create a client certificate. All fields are required. When
you have finished entering the details, click the Generate button.
Figure 65 - OpenVPN server configuration
–
Certificate management
When it is done, you can click the Download P12 button or the Download TGZ button to save the certificate file depending
on which format you would like. If for some reason the integrity of your network has been compromised, you can return to
this screen and use the Certificate drop down list to select the certificate and then press the Revoke button to disable it.
Optional: To inform the OpenVPN server of the network address scheme of the currently selected certificate, enter the
network address and network subnet mask in the respective fields and click the Set network information button. If you do
not enter the remote subnet here, any packet requests from the server to the client will not be received by the client
network because it is not aware of the remote client’s subnet.