Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- dev tun
- proto udp
- port 1194
- ca /etc/openvpn/easy-rsa/pki/ca.crt
- cert /etc/openvpn/easy-rsa/pki/issued/testubu_ce6aa87b-172a-4fe5-928c-fb385d20316e.crt
- key /etc/openvpn/easy-rsa/pki/private/testubu_ce6aa87b-172a-4fe5-928c-fb385d20316e.key
- dh none
- ecdh-curve prime256v1
- topology subnet
- server 10.21.113.0 255.255.255.0
- # Set your primary domain name server address for clients
- push "dhcp-option DNS 1.1.1.1"
- push "dhcp-option DNS 1.0.0.1"
- # Prevent DNS leaks on Windows
- push "block-outside-dns"
- # Override the Client default gateway by using 0.0.0.0/1 and
- # 128.0.0.0/1 rather than 0.0.0.0/0. This has the benefit of
- # overriding but not wiping out the original default gateway.
- push "redirect-gateway def1"
- client-to-client
- client-config-dir /etc/openvpn/ccd
- keepalive 15 120
- remote-cert-tls client
- tls-version-min 1.2
- tls-crypt /etc/openvpn/easy-rsa/pki/ta.key
- cipher AES-256-CBC
- auth SHA256
- user openvpn
- group openvpn
- persist-key
- persist-tun
- crl-verify /etc/openvpn/crl.pem
- status /var/log/openvpn-status.log 20
- status-version 3
- syslog
- verb 3
- #DuplicateCNs allow access control on a less-granular, per user basis.
- #Remove # if you will manage access by user instead of device.
- #duplicate-cn
- # Generated for use by PiVPN.io
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement