ICR-1601
145
When Advanced Configuration is selected, an OpenVPN Client Advanced Configuration screen will appear.
OpenVPN Advanced Client Configuration
1. A Must filled setting.
2. TLS-RSA-WITH-
AES128-SHA is
selected by default
Specify the TLS Cipher from the dropdown list.
It can be None / TLS-RSA-WITH-RC4-MD5 / TLS-RSA-WITH-AES128-SHA /
TLS-RSA-WITH-AES256-SHA / TLS-DHE-DSS-AES128-SHA / TLS-DHE-DSS-
AES256-SHA.
Note: TLS Cipher will be available only when TLS is chosen in Authorization
Mode.
2. String format: any
text
Specify the TLS Auth. Key for connecting to an OpenVPN server, if the server
required it.
Note: TLS Auth. Key will be available only when TLS is chosen in Authorization
Mode.
Enter the User account for connecting to an OpenVPN server, if the server
required it.
Note: User Name will be available only when TLS is chosen in Authorization
Mode.
Enter the Password for connecting to an OpenVPN server, if the server
required it.
Note: User Name will be available only when TLS is chosen in Authorization
Mode.
By default VLAN 1 is
selected
Specify the setting of “Bridge TAP to” to bridge the TAP interface to a certain
local network interface or VLAN.
Note: Bridge TAP to will be available only when TAP is chosen in Tunnel
Scenario and NAT is unchecked.
The box is unchecked
by default.
Check the box to activate the Firewall Protection function.
Note: Firewall Protection will be available only when NAT is enabled.
By default Dynamic IP
is selected
Specify the virtual IP Address for the OpenVPN Client.
It can be Dynamic IP/Static IP.
2.The value is 1500 by
default
Specify the value of Tunnel MTU.
The value is 1500 by
default
Specify the value of Tunnel UDP Fragment.
Value Range: 0 ~ 1500.
Note: Tunnel UDP Fragment will be available only when UDP is chosen in
Protocol.
The box is unchecked
by default.
Check the Enable box to activate the Tunnel UDP MSS-Fix function.
Note: Tunnel UDP MSS-Fix will be available only when UDP is chosen in
Protocol.
The box is unchecked
by default.
Check the Enable box to activate the nsCerType Verification function.
Note: nsCerType Verification will be available only when TLS is chosen in
Authorization Mode.
TLS Renegotiation
Time (seconds)
The value is 3600 by
default
Specify the time interval of TLS Renegotiation Time.
Connection
Retry(seconds)
The value is -1 by
default
Specify the time interval of Connection Retry.
The default -1 means that it is no need to execute connection retry.
Value Range: -1 ~ 86400, and -1 means no retry is required.