This option uses a static Pre-Shared Key (PSK) that must be
generated in advance and shared among all peers.
This feature adds extra protection to the TLS channel by requiring
that incoming packets have a valid signature generated using the
PSK key.
Enter the generated TLS Pre-Shared Key when using TLS
Authentication.
Select a generated CA from the dropdown list.
Select a generated Server Certificate from the dropdown list.
Enter the network range that the GWN7000 will be serving from to
the OpenVPN® client.
Note: The network format should be the following 10.0.10.0/16.
The mask should be at least 16 bits.
When redirect-gateway is used, OpenVPN® clients will route DNS
queries through the VPN, and the VPN server will need to handle
them.
Enable automatic firewall rule.
Auto Forward Group Traffic
If enabled, choose which groups you want to forward, if not, you can
manually configure the forward rules under firewall settings.
Select whether to activate LZO compression or no, if set to
“Adaptive”, the server will make the decision whether this option will
be enabled or no.
Allow remote change the IP and/or Port, often applicable to the
situation when the remote IP address changes frequently.
2. Click after completing all the fields.
3. Click on top of the web GUI to apply changes.
Figure 10: OpenVPN®
OpenVPN® Client Configuration
There are two ways to use the GWN7000 as an OpenVPN® client:
1) Upload client certificate created from an OpenVPN® server to GWN7000.
2) Create client/server certificates on GWN7000 and upload server certificate to the OpenVPN® server.