Vpn; Openvpn (Site To Site ) - Teltonika RUT100 HSDPA User Manual

3g mobile router
Hide thumbs Also See for RUT100 HSDPA:
Table of Contents

Advertisement

4.7 VPN

4.7.1

OpenVPN (site to site )

OpenVPN site to site graphical user interface (GUI) implementation allows connecting two
remote networks via point-to-point encrypted tunnel. OpenVPN implementation offers a cost-effective
simply configurable alternative to other VPN technologies. The OpenVPN security model is based on
SSL, the industry standard for secure communications via the internet. OpenVPN implementation uses
OSI layer 2 secure network extension using the SSL/TLS protocol. The typical VPN site to site
implementation using OpenVPN is presented in Figure 23.
Remote Endpoint IP
xxx.xxx.xxx.xxx
Server
Network IP
192.168.0.0/24
192.168.0.2
Figure 23. Typical site to site OpenVPN tunnel configuration
Server configuration
Local tunnel IP
10.0.0.1
Remote tunnel IP
10.0.0.2
Remote network IP
192.168.1.0
Remote network
255.255.255.0
subnet mask
The OpenVPN implementation requires server to have public IP or hostname. Also the remote
network subnets must be different as in Fig. 23 192.168.0.0/24 and 192.168.1.0/24. If the subnet will
be the same tunnel will not be created or may not function correctly due to routing rules.
The server and client have almost the same configuration. The difference in the client
configuration is the remote endpoint IP or hostname field. Also the client can set up the keep alive
settings. For successful tunnel creation a static key must be generated on one side and the same key
must be uploaded on the opposite side.
Figure 24. OpenVPN settings
Enable OpenVPN. Check the box to enable the OpenVPN function.
VPN network mode. Select network mode. Currently only p2p configuration is possible.
Protocol - set tunnel protocol (UDP/TCP).
Enable LZO compression – check the box to enable fast adaptive LZO compression.
Mode – select client or server.
Internet
Tunnel IP 10.0.0.1
OpenVPN tunnel
Client configuration
Remote Endpoint IP
Local tunnel IP
Remote tunnel IP
Remote network IP
Remote network
subnet mask
Tunnel IP 10.0.0.2
192.168.1.0/24
LAN2 192.168.1.2
xxx.xxx.xxx.xxx
10.0.0.2
10.0.0.1
192.168.0.0
255.255.255.0
Client
Network IP
26 |
P a g e

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Rut110 hsdpaRut hsupaRut102 gprsRut103 edge

Table of Contents