martedì, settembre 16, 2014

OpenVPN server with SSL certificates


root@myserver:/etc/openvpn# cat myvpn.conf  | grep -vE "^(#| |$|;)"

port 443
proto tcp
dev openvpn
dev-type tun
ca myvpn.ca.crt
cert myvpn.crt
key myvpn.key  # This file should be kept secret
dh dh1024.pem
server 192.168.124.0 255.255.255.0
ifconfig-pool-persist ipp.txt
push "route 192.168.123.0 255.255.255.0"
push "route 192.168.125.0 255.255.255.0"
client-config-dir myvpn.ccd
ccd-exclusive
push "dhcp-option DOMAIN local.lan"
push "dhcp-option DNS 192.168.123.2"
push "dhcp-option DNS 8.8.8.8"
client-to-client
keepalive 10 120
comp-lzo
user nobody
group nogroup
persist-key
persist-tun
status myvpn.status.log
verb 3

root@myserver:/etc/openvpn# ls -lrt myvpn.ccd/

total 4
-rw-r--r-- 1 root root  0 Jun 14  2012 laptop
-rw-r--r-- 1 root root 42 Jun 14  2012 dr-server
-rw-r--r-- 1 root root  0 Oct  4  2012 smartphone_mico
-rw-r--r-- 1 root root  0 May 21 14:15 tablet_mico

root@myserver:/etc/openvpn# cat myvpn.ccd/dr-server

ifconfig-push 192.168.124.3 192.168.124.4


1 commento:

Anonimo ha detto...

Thank U, now my vpn work!