<?=gettext("When a certificate-based client logs in, do not accept certificates below this depth. Useful for denying certificates made with intermediate CAs generated from the same CA as the server.");?>
<?=gettext("Force all client generated traffic through the tunnel");?>.
</span>
</div>
</td>
</tr>
<trid="local_optsv4">
<tdwidth="22%"valign="top"class="vncell"><aid="help_local_network"href="#"class="showhelp"><iclass="fa fa-info-circle"></i></a><?=gettext("IPv4 Local Network/s");?></td>
<tdwidth="78%"class="vtable">
<tdwidth="22%"><aid="help_local_network"href="#"class="showhelp"><iclass="fa fa-info-circle"></i></a><?=gettext("IPv4 Local Network/s");?></td>
<?=gettext("These are the IPv4 networks that will be accessible ".
...
...
@@ -1335,8 +1335,8 @@ endif; ?>
</td>
</tr>
<trid="local_optsv6">
<tdwidth="22%"valign="top"class="vncell"><aid="help_for_local_networkv6"href="#"class="showhelp"><iclass="fa fa-info-circle"></i></a><?=gettext("IPv6 Local Network/s");?></td>
<tdwidth="78%"class="vtable">
<tdwidth="22%"><aid="help_for_local_networkv6"href="#"class="showhelp"><iclass="fa fa-info-circle"></i></a><?=gettext("IPv6 Local Network/s");?></td>
<?=gettext("Allow multiple concurrent connections from clients using the same Common Name.<br />NOTE: This is not generally recommended, but may be needed for some scenarios.");?>
<?=gettext("Allocate only one IP per client (topology subnet), rather than an isolated subnet per client (topology net30).");?><br/>
<?=gettext("Relevant when supplying a virtual adapter IP address to clients when using tun mode on IPv4.");?><br/>
<?=gettext("Some clients may require this even for IPv6, such as OpenVPN Connect (iOS/Android). Others may break if it is present, such as older versions of OpenVPN or clients such as Yealink phones.");?><br/>
<?=gettext("Provide a DNS server list to clients");?><br/>
</span>
</div>
</td>
</tr>
<trid="chkboxPushRegisterDNS">
<tdwidth="22%"valign="top"class="vncell"><aid="help_for_push_register_dns"href="#"class="showhelp"><iclass="fa fa-info-circle"></i></a><?=gettext("Force DNS cache update");?></td>
<tdwidth="78%"class="vtable">
<tdwidth="22%"><aid="help_for_push_register_dns"href="#"class="showhelp"><iclass="fa fa-info-circle"></i></a><?=gettext("Force DNS cache update");?></td>
<?=gettext("Run ''net stop dnscache'', ''net start dnscache'', ''ipconfig /flushdns'' and ''ipconfig /registerdns'' on connection initiation. This is known to kick Windows into recognizing pushed DNS servers.");?><br/>
<?=gettext("Use a different management port on clients. The default port is 166. Specify a different port if the client machines need to select from multiple OpenVPN links.");?><br/>