system>certificates&openVPN

Hi,

This time I have a few questions regarding certificates&openVPN

sign ca-template ca-crl-host=10.5.101.16 name=myCa

What does actually mean ca-crl-host ? Is this public address of my router ? I saw a lot of people using 127.0.0.0. as an example.
Does it matter which address will i set ?

  1. I successfully created openDNS connection. From the client computer i can access local resources of my network (vpn pool in OVPN server settings is inside LAN interface), but i still use the internet connection of the client - the traffic from the browser doesn’t go through vpn - i used a few IP checking sides to check this. Any ideas how to fix this ?

  2. Is there any diffrence in accessing local resources:
    a) i set vpn pool inside LAN interface in openVPN server settings - LAN 10.2.0.0/24 (VPN pool 10.2.0.110-10.2.0.120)
    b)i set vpn pool outiside LAN interface (for instance 192.168.88.10-192.168.88-20) then in openVPN client options i set router 10.2.0.0 255.255.255.0

Cant anyone help me ? I just need the answer on 1st question.

bump