Page 131 / 237 Scroll up to view Page 126 - 130
OxyGEN
mini
Office
Administrator’s Guide
Figure 11.6: SSL VPN Users
Note
There is no way of re-generating the certificates corresponding to a configured SSL VPN
username. In case you want to do so, the only option is to revoke the username and
then add it again.
Note
For more detailed information about the configuration of SSL VPN please refer to
Appendix E
.
Gennet s.a.
131
Page 132 / 237
OxyGEN
mini
Office
Administrator’s Guide
GRE Tunnel
This sub-menu lets you configure a Generic Routing Encapsulation (GRE) Tunnel between your OxyGEN
miniOffice and another GRE-capable endpoint. GRE is a tunneling mechanism which uses IP as the
transport protocol and can be used for carrying many different passenger protocols.
Figure 11.7: GRE Tunnel
To configure the GRE tunnel:
1. Select Enabled as GRE Tunnel
Status
.
2. Enter the public IP of the remote endpoint in the
Remote Router
field.
3. Specify the
IP Address
and
Netmask
for the local virtual interface of the GRE tunnel (the remote
endpoint must use compatible values).
4. Enter the appropriate
Pre-shared key
value (the remote endpoint must use the same key value).
5. Click
Apply
.
Gennet s.a.
132
Page 133 / 237
OxyGEN
mini
Office
Administrator’s Guide
VPN Tunnel
This sub-menu allows the configuration of an L2TP (Layer-2 Tunneling Protocol) and/or IPSec (Internet
Protocol Security) -based VPN tunnel.
IPsec is a protocol suite for securing IP communications by
authenticating and encrypting each IP packet of a data stream.
L2TP tunnels, on the other hand,
are used for the transport of other protocols (e.g. Point-to-Point Protocol - PPP) inside UDP datagrams
(default port 1701). Since, however, L2TP does not provide any encryption or confidentiality by itself,
it is frequently combined with an encryption protocol (e.g. IPSec) which iis passed within the tunnel to
provide privacy.
Figure 11.8: L2TP VPN Tunnel
To configure the VPN tunnel, use the
Status/Type
drop-down list to enable and at the same time
select the type of VPN. Available options are L2TP only, IPSec only, L2TP/IPSec and Off for disabled VPN
service.
Once the type of VPN has been selected, the relevant parameters appear on the web configuration
page. In the case of an L2TP-based VPN, these include the public
IP Address
of the remote server, along
with the
Subnet
and
Netmask
behind the remote server. For tunnel authorization purposes, a
Username
and
Password
combination must be supplied (with same values configured on the remote server).
If IPSec is enabled on the VPN tunnel, some more parameters appear.
The
Remote Server
is
configured like in the case of the L2TP tunnel, but now it is also required to provide information about
the local subnet:
Subnet
and
Netmask
under the
Local Server
heading. Authorization is in this case
based on a
Pre-shared key
(common for both endpoints of the VPN tunnel) and, finally, parameters of
the encryption algorithm are specified using the corresponding drop-down lists under the
IPSec Options
heading.
Gennet s.a.
133
Page 134 / 237
OxyGEN
mini
Office
Administrator’s Guide
Figure 11.9: IPSec VPN Tunnel
Gennet s.a.
134
Page 135 / 237
OxyGEN
mini
Office
Administrator’s Guide
QoS Policy
This sub-menu lets you configure the Quality of Service (QoS) policy of the OxyGEN miniOffice.
This
policy consists of the classification of IP traffic into 3 different priority categories: GOLD (high-priority),
SILVER (medium-priority) and BRONZE (low-priority). For the realization of this classification scheme, the
IP traffic is divided into different classes, with each class representing a different type of traffic (e.g. a
different service, an application, traffic from/to a specific host, etc.).
The first thing displayed when selecting the
QoS Policy
link is a list of the configured QoS classes for
IP traffic.
Figure 11.10: List of QoS Classes
You can Edit and Delete configured QoS classes by clicking on the icons
and
respectively of
Action
column.
To configure a new QoS class, click
Add New
and the
Priority Class
page opens:
Figure 11.11: New QoS Priority Class
1. Enter the
Name
of the new priority class. This name is going to be used in order to distinguish
between the different priority classes. Note that names must be unique among different classes
and that once configured, they cannot be modified.
Gennet s.a.
135

Rate

4.5 / 5 based on 2 votes.

Popular Gennet-OxyGEN Models

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top