Virtual Private Networks (VPN) OpenVPN
Digi Connect EZ Mini User Guide
245
(config vpn openvpn server name)> server_key value
(config vpn openvpn server name)>
v. Paste the contents of the Diffie Hellman key (usually in dh2048.pem) into the value of
the diffie parameter:
(config vpn openvpn server name)> diffie value
(config vpn openvpn server name)>
8. (Optional) Set the access control list to restrict access to the OpenVPN server:
n To limit access to specified IPv4 addresses and networks:
(config vpn openvpn server name)> add acl address end value
(config vpn openvpn server name)>
Where value can be:
l A single IP address or host name.
l A network designation in CIDR notation, for example, 192.168.1.0/24.
l any: No limit to IPv4 addresses that can access the service-type.
Repeat this step to list additional IP addresses or networks.
n To limit access to specified IPv6 addresses and networks:
(config vpn openvpn server name)> add acl address6 end value
(config vpn openvpn server name)>
Where value can be:
l A single IP address or host name.
l A network designation in CIDR notation, for example, 2001:db8::/48.
l any: No limit to IPv6 addresses that can access the service-type.
Repeat this step to list additional IP addresses or networks.
n To limit access to hosts connected through a specified interface on the Connect EZ
device:
(config vpn openvpn server name)> add acl interface end value
(config vpn openvpn server name)>
Where value is an interface defined on your device.
Display a list of available interfaces:
Use ... network interface ? to display interface information:
Repeat this step to list additional interfaces.
n To limit access based on firewall zones:
(config vpn openvpn server name)> add acl zone end value
(config vpn openvpn server name)>
Where value is a firewall zone defined on your device, or the any keyword.