Web-based Configuration Guide Networks Settings
75
The IP address pool delivered to VPN clients, in the form of a network segment.
The first address in that segment is reserved by the server. For example, if
10.80.12.0/24 is set, then the VPN server address is 10.80.12.1.
You can choose Home Network Only or Internet and Home Network
Home Network Only: The client can only access the LAN segment on the
server.
Internet and Home Network: The client can access the LAN and WAN
segments on the server. In this mode, all traffic from the client will be
forwarded to the server.
TLS Authentication can enhance the security of OpenVPN. Once enabled, the
client must import the TLS key. (The version of the peer OpenVPN client must be
later than 2.40.)
Once enabled, the device will compress the transmitted data to save bandwidth,
but it will occupy a certain amount of CPU resources. This configuration must be
consistent on the client and the server to avoid any potential connection failures.
Encrypts the data to prevent it from being intercepted midway. The default
encryption standard is AES-128-CBC. If the server is configured in auto mode, the
client can be configured with any data encryption algorithm, which will be
automatically matched by the server. If a specific encryption method is configured
on the server, the client must be configured with the same encryption method.
Otherwise, the connection between the server and the client cannot be
established.
The information pushed by the server to the client's DNS. Currently only Windows
clients are supported.
The digest algorithm informed by the server to the client. The default value is
SHA256.
2. Adding OpenVPN clients
Click + Add to enter a username and a password for authentication when the client dials in.
Enable Status and click OK.