Web-based Configuration Guide    Networks Settings 
77 
 
    Lan only: The client can only access the LAN segment on the server. 
    LAN and Internet: The client can access the LAN and WAN segments on the 
server. In this mode, all traffic from the client will be forwarded to the server. 
You can click Export to export the parameter configuration tar tar file of the client 
connected to the server. After decompression, this file can be used to set up the 
OpenVPN client. 
Click Export to export VPN server credentials to verify the communication with 
clients. 
TLS Authentication can enhance the security of OpenVPN. Once enabled, the client 
must import the TLS key. (The version of the peer OpenVPN client must be later than 
2.40.) 
Once enabled, the device will compress the transmitted data to save bandwidth, but it 
will occupy a certain amount of CPU resources. This configuration must be consistent 
on the client and the server to avoid any potential connection failures. 
Encrypts the data to prevent it from being intercepted midway. The default encryption 
standard is AES-128-CBC. If the server is configured in auto mode, the client can be 
configured with any data encryption algorithm, which will be automatically matched by 
the server. If a specific encryption method is configured on the server, the client must 
be configured with the same encryption method. Otherwise, the connection between 
the server and the client cannot be established. 
The information pushed by the server to the client's DNS. Currently only Windows 
clients are supported. 
The digest algorithm informed by the server to the client. The default value is 
SHA256. 
 
2.   Adding OpenVPN clients 
Click + Add to enter a username and a password for authentication when the client dials in. 
Enable Status and click OK.