EasyManua.ls Logo

Digi TransPort LR54 - Page 402

Digi TransPort LR54
512 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Command reference openvpn-server
Digi TransPort WR Routers User Guide
402
Accepted values can be one of net30, p2p or subnet. The default value is net30.
protocol
The protocol (TCP or UDP) this OpenVPN server uses to listen for incoming connections from
OpenVPN clients.
Accepted values can be one of udp or tcp. The default value is udp.
bridge-mode
Enables Ethernet bridge (TAP) mode for this OpenVPN server. This eliminates the need for routing
between networks as required by TUN mode, but may have scalability issues, since all broadcast
traffic will flow over the OpenVPN tunnel.
Accepted values can be one of off, lan1, lan2, lan3, lan4, lan5, lan6, lan7, lan8, lan9 or lan10. The default
value is off.
cipher
The encryption algorithm or list of algorithms the OpenVPN server can use to encrypt and decrypt
data channel packets. The OpenVPN server will always push the first cipher in the list to OpenVPN
clients that support cipher negotiation. OpenVPN clients that do not support cipher negotiation can
connect using any cipher in this list.
Accepted values can be multiple values of aes-128-cbc, aes-192-cbc, aes-256-cbc, aes-128-gcm, aes-
192-gcm and aes-256-gcm. The default value is aes-256-gcm,aes-256-cbc,aes-128-gcm,aes-128-cbc.
digest
The digest algorithm the OpenVPN server uses to sign and authenticate data channel packets.
Accepted values can be one of sha1, sha224, sha256, sha384 or sha512. The default value is sha1.
auth-by
Configures authentication to use certs, username/password, or both.
Accepted values can be one of certs, user-pass or both. The default value is certs.
ca
The CA certificate this OpenVPN server uses to validate all certificates presented by clients. This file is
in PEM format and is often named 'ca.crt' or similar.
Accepted value is any string up to 63 characters.
crl
The CRL this OpenVPN server uses to deny access to any client that presents a revoked certificate.
This file is in PEM format and is often named 'crl.pem' or similar.
Accepted value is any string up to 63 characters.
capath
The CA and CRL directory path for this OpenVPN server. This allows you to provide multiple CA and
CRL files. You should use the c_rehash tool to create CA certificates with a '.0' filename extension and
CRLs with a '.r0' filename extension.
Accepted value is any string up to 63 characters.

Table of Contents

Other manuals for Digi TransPort LR54

Related product manuals