I am running a VPN on an Asus RT-AC86U router with the latest version of Asuswrt-Merlin.
My question is about the “TLS control channel security” and “Auth digest” settings. What should they be for optimum security?
It defaults to Outgoing Auth (1). Is that correct or should it be Encrypt Channel V2 or something else?
Auth digest is currently set to “Default”. Is that correct or should it be SHA512, or something else?
As a supplementary question: with “Accept DNS Configuration” set to “Exclusive” and “Redirect internet traffic through tunnel” set to “Yes (all)” and hopefully TLS control channel security working properly, if I set the WAN DNS to “Get the DNS IP from your ISP automatically”, will the DNS IP come from my actual ISP or will it come from my VPN DNS Server?
Thank you for any guidance that you can provide.
My question is about the “TLS control channel security” and “Auth digest” settings. What should they be for optimum security?
It defaults to Outgoing Auth (1). Is that correct or should it be Encrypt Channel V2 or something else?
Auth digest is currently set to “Default”. Is that correct or should it be SHA512, or something else?
As a supplementary question: with “Accept DNS Configuration” set to “Exclusive” and “Redirect internet traffic through tunnel” set to “Yes (all)” and hopefully TLS control channel security working properly, if I set the WAN DNS to “Get the DNS IP from your ISP automatically”, will the DNS IP come from my actual ISP or will it come from my VPN DNS Server?
Thank you for any guidance that you can provide.