Administrator’s Guide for Yealink VC800&VC500 Video Conferencing System56VPNVPN (Virtual Private Network) is a secured private network connection built on top of publictelecommunication infrastructure, such as the Internet. It has become more prevalent due tobenefits of scalability, reliability, convenience and security.VPN TechnologyVC800/VC500 systems support SSL VPN, which provides remote-access VPN capabilitiesthrough SSL. OpenVPN is a full featured SSL VPN software solution that creates secureconnections in remote access facilities, designed to work with the TUN/TAP virtual networkinterface. TUN and TAP are virtual network kernel devices. TAP simulates a link layer device andprovides a virtual point-to-point connection, while TUN simulates a network layer device andprovides a virtual network segment.VC800/VC500 systems use OpenVPN to achieve VPN feature. To prevent disclosure of privateinformation, tunnel endpoints must authenticate each other before secure VPN tunnel isestablished. After VPN feature is configured properly on the IP phone, the IP phone acts as aVPN client and uses the certificates to authenticate the VPN server.To use VPN, the compressed package of VPN-related files should be uploaded to theVC800/VC500 systems in advance. The file format of the compressed package must be *.tar. Therelated VPN files are: certificates (ca.crt and client.crt), key (client.key) and the configuration file(vpn.cnf) of the VPN client.The following table lists the unified directories of the OpenVPN certificates and key in theconfiguration file (vpn.cnf) for Yealink video conferencing system:VPN files Description Unified Directoriesca.crt CA certificate /config/openvpn/keys/ca.crtclient.crt Client certificate /config/openvpn/keys/client.crtclient.key Private key of the client /config/openvpn/keys/client.keyFor more information, refer toOpenVPN Feature on Yealink IP phones.VPN feature parameters on the system are described below.Parameter Description Configuration MethodVPN Enables or disables VPN feature onthe system.Remote ControlWeb User Interface