C-M-G
Series
Manual
© TDT GmbH
Chapter 5: Network Configuration
Seite 65 von 136
Command
Description
Hostname
Enter the new host name here
5.11 OpenVPN
OpenVPN makes it possible to establish VPN connections over encrypted TLS connections. For
encryption, OpenVPN uses the OpenSSL library. OpenVPN uses UDP or TCP to transport data.
Note
First of all you have to create a new OpenVPN server.
5.11.1 Add new server/client
Command
Description
Peer name
Name of the connection
Port to use
Port for the OpenVPN connection
Operating Mode
Routed VPN:
all usually used network protocols based on IP are
transported (Layer 3).
A connection to the network „behind“ the
OpenVPN-peer is not possible (Point-to-Point connection)
Bridged VPN (plain tunneling):
Layer 2 of the Ethernet frame
will be fully tunneled (e.g.: IPX protocol). Client may get an IP
address assigned from a DHCP server behind the VPN server.
Create appropriate Diffie-
Hellman Random File
String = Length of the Diffie-Hellman Key
The higher the String the longer it takes time to create
the random file.
5.11.2 Edit existing peer
Command
Description
Peer name
Name of the connection
Operating Mode
Defines the operation mode
Port to use
Port for the OpenVPN connection
Protocol
Uses the selected protocol
Standard: UDP
TCP connection retry
Enable internal datagram fragmentation, so that no UDP
datagrams are sent, which are larger than the here defined value.
Internatl UDP fragmentation
Limits the size of the sent packets
TCP send size to fit UDP
Clients may be assigned IP addresses from the defined IP range.
The OpenVPN servers uses always .1 from the IP rage (e.g.
192.168.0.0/24)
Network to assign client
addresses
Clients may be assigned a netmask from the defined range
Netmask to assign client
addresses
All packets are encrypted with the selected algorithm