Teltonika RUT955 User Manual page 135

Lte router
Hide thumbs Also See for RUT955:
Table of Contents

Advertisement

RUT955 User's Manual
Field name
Possible values
1.
Enable
Checked / Unchecked
2.
TUN/TAP
TUN (tunnel) / TAP
(bridged)
3.
Protocol
UDP / TCP
4.
Port
0 – 65535
5.
LZO
Checked / Unchecked
6.
Encryption
BF-CBC 128 (default) /
AES-128-CBC 128 / ...
7.
Authentication
TLS / Static Key /
Password /
TLS/Password
8.
TLS cipher
All / DHE + RSA /
Custom
9.
Remote host/IP
Any hostname or IP
address
address
10.
Resolve Retry
Infinite / any integer
number
11.
Keep alive
Any integer number
*space* any integer
number
12.
Remote
Any private IP address LAN IP address of the remote network
network IP
address
13.
Remote
Any netmask
network IP
netmask
14.
User name
Client's username
15.
Password
Client's password
16.
Extra options
17.
HMAC
none / SHA1(default)
authentication
/ SHA256 / SHA384 /
algorithm
SHA512
18.
Additional
Checked / Unchecked
HMAC
authentication
19.
Certificate
.ca file
authority
Teltonika Solutions
Explanation
Turns the OpenVPN instance on or off
OpenVPN interface type. TUN is most often in typical VPN connections,
however, TAP is required in some Ethernet bridging configurations
The transfer protocol used by the connection
Port number (make sure that this port is allowed by firewall)
With LZO compression, your VPN connection will generate less network
traffic. However, enabling this causes a higher CPU load. Use it carefully
with a high traffic rate or low CPU resources
Packet encryption algorithm
Authentication mode, used to secure data sessions.
Static key is a secret key used for server – client authentication.
TLS authentication mode uses X.509 type certificates:
Certificate Authority (CA), Client certificate, Client key.
All mentioned certificates can be generated using OpenVPN or Open
SSL utilities on any type of host machine.
Password is a simple username/password based authentication where
the owner of the OpenVPN server provides the login data.
TLS/Password uses both TLS and Password authentication
Packet encryption algorithm (cipher)
IP address or hostname of an OpenVPN server
Time in seconds to resolve server hostname periodically in case of first
resolve failure before generating service exception
Defines two time intervals: one is used to periodically send ICMP
request to the OpenVPN server, the other defines a time window,
which is used to restart the OpenVPN service, if no ICPM response is
received during the window time slice. Example: "10 60"
Subnet mask of the remote LAN network
Username used for authentication
Password used for authentication
Extra options to be used by the OpenVPN instance
The type of HMAC authentication algorithm
An additional layer of HMAC authentication on top of the TLS control
channel to protect against DoS attacks
Certificate authority is an entity that issues digital certificates. A digital
certificate certifies the ownership of a public key by the named subject
of the certificate
135

Advertisement

Table of Contents
loading

Table of Contents