
www.netcommwireless.com
NetComm Wireless NTC-30WV 3G Outdoor Router with Voice
/
71
Ver 1.6
In the Type drop down list, select the OpenVPN connection type (TUN/TAP). Default is TUN.
Use the Server port field to select a port number and then use the drop down list to select a packet type to use for your
OpenVPN Server. The default OpenVPN port is 1194 and default packet type is UDP.
In the VPN network address and VPN network subnet mask fields, enter the IP address and network subnet mask to
assign to your VPN. This is ideally an internal IP address which differs from your existing address scheme.
The Server certificates section displays the details of the certificate. If you wish to change the certificate, click the Change
button.
HMAC or Hash-based Message Authentication Code is a means of calculating a message authentication code through the
use of a cryptographic hash function and a cryptographic key. If you wish to use the HMAC signature as an additional key
and level of security, under the SSL/TLS handshake section, click the Use HMAC Signature toggle key so that it is in the
ON position, then click the Generate button so that the router can randomly generate the key. The Server key timestamp
field is updated with the time that the key was generated. Click the Download button to download the key file so that it can
be uploaded on the client.
Select an Authentication type. Authentication may be done using a Certificate or Username / Password.
Certificate Authentication
In the Certificate Management section, enter the required details to create a client certificate. All fields are required. When
you have finished entering the details, click the Generate button.
Figure 76 - OpenVPN server configuration – Certificate management
When it is done, you can click the Download P12 button or the Download TGZ button to save the certificate file depending
on which format you would like. If for some reason the integrity of your network has been compromised, you can return to
this screen and use the Certificate drop down list to select the certificate and then press the Revoke button to disable it.