Guest User

Untitled

a guest
Apr 4th, 2015
233
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 12.44 KB | None | 0 0
  1. ##############################################
  2. # Sample client-side OpenVPN 2.0 config file #
  3. # for connecting to multi-client server. #
  4. # #
  5. # This configuration can be used by multiple #
  6. # clients, however each client should have #
  7. # its own cert and key files. #
  8. # #
  9. # On Windows, you might want to rename this #
  10. # file so it has a .ovpn extension #
  11. ##############################################
  12.  
  13. # Specify that we are a client and that we
  14. # will be pulling certain config file directives
  15. # from the server.
  16. client
  17.  
  18. # Use the same setting as you are using on
  19. # the server.
  20. # On most systems, the VPN will not function
  21. # unless you partially or fully disable
  22. # the firewall for the TUN/TAP interface.
  23. ;dev tap
  24. dev tun
  25.  
  26. # Windows needs the TAP-Win32 adapter name
  27. # from the Network Connections panel
  28. # if you have more than one. On XP SP2,
  29. # you may need to disable the firewall
  30. # for the TAP adapter.
  31. ;dev-node MyTap
  32.  
  33. # Are we connecting to a TCP or
  34. # UDP server? Use the same setting as
  35. # on the server.
  36. ;proto tcp
  37. proto udp
  38.  
  39. # The hostname/IP and port of the server.
  40. # You can have multiple remote entries
  41. # to load balance between the servers.
  42. remote 74.91.122.204 1194
  43. ;remote my-server-2 1194
  44.  
  45. # Choose a random host from the remote
  46. # list for load-balancing. Otherwise
  47. # try hosts in the order specified.
  48. ;remote-random
  49.  
  50. # Keep trying indefinitely to resolve the
  51. # host name of the OpenVPN server. Very useful
  52. # on machines which are not permanently connected
  53. # to the internet such as laptops.
  54. resolv-retry infinite
  55.  
  56. # Most clients don't need to bind to
  57. # a specific local port number.
  58. nobind
  59.  
  60. # Downgrade privileges after initialization (non-Windows only)
  61. ;user nobody
  62. ;group nogroup
  63.  
  64. # Try to preserve some state across restarts.
  65. persist-key
  66. persist-tun
  67.  
  68. # If you are connecting through an
  69. # HTTP proxy to reach the actual OpenVPN
  70. # server, put the proxy server/IP and
  71. # port number here. See the man page
  72. # if your proxy server requires
  73. # authentication.
  74. ;http-proxy-retry # retry on connection failures
  75. ;http-proxy [proxy server] [proxy port #]
  76.  
  77. # Wireless networks often produce a lot
  78. # of duplicate packets. Set this flag
  79. # to silence duplicate packet warnings.
  80. ;mute-replay-warnings
  81.  
  82. # SSL/TLS parms.
  83. # See the server config file for more
  84. # description. It's best to use
  85. # a separate .crt/.key file pair
  86. # for each client. A single ca
  87. # file can be used for all clients.
  88.  
  89. # Verify server certificate by checking
  90. # that the certicate has the nsCertType
  91. # field set to "server". This is an
  92. # important precaution to protect against
  93. # a potential attack discussed here:
  94. # http://openvpn.net/howto.html#mitm
  95. #
  96. # To use this feature, you will need to generate
  97. # your server certificates with the nsCertType
  98. # field set to "server". The build-key-server
  99. # script in the easy-rsa folder will do this.
  100. ns-cert-type server
  101.  
  102. # If a tls-auth key is used on the server
  103. # then every client must also have the key.
  104. ;tls-auth ta.key 1
  105.  
  106. # Select a cryptographic cipher.
  107. # If the cipher option is used on the server
  108. # then you must also specify it here.
  109. ;cipher x
  110.  
  111. # Enable compression on the VPN link.
  112. # Don't enable this unless it is also
  113. # enabled in the server config file.
  114. comp-lzo
  115.  
  116. # Set log file verbosity.
  117. verb 3
  118.  
  119. # Silence repeating messages
  120. ;mute 20
  121. <ca>
  122. -----BEGIN CERTIFICATE-----
  123. MIIFEjCCA/qgAwIBAgIJAKvUnRwXj5ZMMA0GCSqGSIb3DQEBCwUAMIG2MQswCQYD
  124. VQQGEwJVUzELMAkGA1UECBMCQ0ExFTATBgNVBAcTDFNhbkZyYW5jaXNjbzEVMBMG
  125. A1UEChMMRm9ydC1GdW5zdG9uMR0wGwYDVQQLExRNeU9yZ2FuaXphdGlvbmFsVW5p
  126. dDEYMBYGA1UEAxMPRm9ydC1GdW5zdG9uIENBMRAwDgYDVQQpEwdFYXN5UlNBMSEw
  127. HwYJKoZIhvcNAQkBFhJtZUBteWhvc3QubXlkb21haW4wHhcNMTUwNDA0MDk1ODI2
  128. WhcNMjUwNDAxMDk1ODI2WjCBtjELMAkGA1UEBhMCVVMxCzAJBgNVBAgTAkNBMRUw
  129. EwYDVQQHEwxTYW5GcmFuY2lzY28xFTATBgNVBAoTDEZvcnQtRnVuc3RvbjEdMBsG
  130. A1UECxMUTXlPcmdhbml6YXRpb25hbFVuaXQxGDAWBgNVBAMTD0ZvcnQtRnVuc3Rv
  131. biBDQTEQMA4GA1UEKRMHRWFzeVJTQTEhMB8GCSqGSIb3DQEJARYSbWVAbXlob3N0
  132. Lm15ZG9tYWluMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAur4bHBnu
  133. KYqC06L6YfnPSjhFxVfG5O76y0j6TB8nBcvzABBQ/bHzXP36BmE/bhX1+EdTl2cL
  134. B3LFGubRfqP3vET0CkvRxdLwwtvdj8HkbR4VZDL4UIBnQLpRJu9oeA7TW9Az3u8i
  135. k4/JB//rScFPqnXQCDag89K5VrUFDJawRlgR2hucb7m2eiYrdXfDTUov3m4bXE/8
  136. 0YR9FpenCZDuaqUobgpxW1qTC+VKP33qAgnSLDJtKjdePxW7nUOybyjIwkwk07bq
  137. 1kKqoVHpuAR16DYD1QyYxSAE1fbTSswe6oU6B2oZcZz7owIUlKJFPuy2ipqOQSTv
  138. eALnjm/DGLt6mQIDAQABo4IBHzCCARswHQYDVR0OBBYEFMfOnhesErQGkRpoVQGm
  139. nWfLPRgoMIHrBgNVHSMEgeMwgeCAFMfOnhesErQGkRpoVQGmnWfLPRgooYG8pIG5
  140. MIG2MQswCQYDVQQGEwJVUzELMAkGA1UECBMCQ0ExFTATBgNVBAcTDFNhbkZyYW5j
  141. aXNjbzEVMBMGA1UEChMMRm9ydC1GdW5zdG9uMR0wGwYDVQQLExRNeU9yZ2FuaXph
  142. dGlvbmFsVW5pdDEYMBYGA1UEAxMPRm9ydC1GdW5zdG9uIENBMRAwDgYDVQQpEwdF
  143. YXN5UlNBMSEwHwYJKoZIhvcNAQkBFhJtZUBteWhvc3QubXlkb21haW6CCQCr1J0c
  144. F4+WTDAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAsPJUzBBYJ1+rA
  145. CAt5Tgz/8eyUsmeGBswa/Pap2gH3jbIAo3GjJxx4C7vhAi0S/8LhTV5TrVOPdFeZ
  146. Cv+t/jnPL5oI2o6z0uTHwC2z9O8TxE0k0sCwOCuB6aJ1rpXx/EESmKEc0aFRj957
  147. O4/6BrZRRPe8CqCSp9+/oN98Nx+FjXzQxKyZhCZVfvQ/sid/83ymmmPoUL5WFYNh
  148. gd6jpQ2fSA5nSVH7YXiDpqhUfcCGFQgE90ReAtmWMp7TbeMwZfYroZu2a56wxsWo
  149. qzN8DDHwNcYiM+5cDHDvz4DoYFqC2NbBiXAfE4VMmB86+CM24xDS9yAv71K0QynJ
  150. 60GBl3OC
  151. -----END CERTIFICATE-----
  152. </ca>
  153. <cert>
  154. Certificate:
  155. Data:
  156. Version: 3 (0x2)
  157. Serial Number: 3 (0x3)
  158. Signature Algorithm: sha256WithRSAEncryption
  159. Issuer: C=US, ST=CA, L=SanFrancisco, O=Fort-Funston, OU=MyOrganizationalUnit, CN=Fort-Funston CA/name=EasyRSA/[email protected]
  160. Validity
  161. Not Before: Apr 4 10:36:31 2015 GMT
  162. Not After : Apr 1 10:36:31 2025 GMT
  163. Subject: C=US, ST=CA, L=SanFrancisco, O=Fort-Funston, OU=MyOrganizationalUnit, CN=client/name=EasyRSA/[email protected]
  164. Subject Public Key Info:
  165. Public Key Algorithm: rsaEncryption
  166. Public-Key: (2048 bit)
  167. Modulus:
  168. 00:b7:ab:5b:03:7a:8e:f5:b7:1e:34:b3:83:bf:ac:
  169. ca:61:aa:63:6b:e5:9e:90:7d:eb:b7:16:f2:a8:1f:
  170. 73:e0:3d:e8:45:c4:73:1a:7e:92:48:c6:92:40:a1:
  171. 7b:e3:32:0f:7e:d1:65:ad:07:a5:29:6b:f9:aa:a2:
  172. 4a:49:4f:1f:de:08:2c:cf:8e:76:4a:73:c2:a7:53:
  173. 00:09:65:ac:ad:e0:d1:8f:c7:14:c8:0f:b1:55:df:
  174. 75:11:6a:2d:94:94:7b:76:e8:6d:5b:b7:06:05:e8:
  175. c7:f6:17:67:d9:89:aa:76:12:70:68:33:7a:1b:94:
  176. 15:1a:1e:95:d9:dc:23:93:11:21:00:d5:b0:ab:2f:
  177. 3d:6e:a6:f7:e0:0b:6f:f3:7e:94:43:ca:02:fc:fd:
  178. 3b:18:23:c6:16:55:3a:6d:ff:96:08:da:c7:3f:22:
  179. 95:3e:da:7b:e2:c7:38:a9:e6:2c:64:9f:f0:21:49:
  180. 3b:62:d1:50:b6:d6:7f:44:4f:15:20:24:81:2f:f4:
  181. 46:cd:a0:73:eb:23:c7:f6:5c:84:4e:5e:7e:cf:dd:
  182. 30:f9:73:24:89:9d:8d:fb:46:6c:24:7f:91:39:83:
  183. 67:58:17:39:e7:5d:28:59:5d:16:df:15:3f:d1:46:
  184. 56:b5:50:a4:71:0a:8e:27:51:bd:11:b1:75:6e:de:
  185. 4b:5f
  186. Exponent: 65537 (0x10001)
  187. X509v3 extensions:
  188. X509v3 Basic Constraints:
  189. CA:FALSE
  190. Netscape Comment:
  191. Easy-RSA Generated Certificate
  192. X509v3 Subject Key Identifier:
  193. B6:7B:DE:C1:BC:13:28:06:D1:BC:F5:18:9C:60:1D:5B:48:36:01:11
  194. X509v3 Authority Key Identifier:
  195. keyid:C7:CE:9E:17:AC:12:B4:06:91:1A:68:55:01:A6:9D:67:CB:3D:18:28
  196. DirName:/C=US/ST=CA/L=SanFrancisco/O=Fort-Funston/OU=MyOrganizationalUnit/CN=Fort-Funston CA/name=EasyRSA/[email protected]
  197. serial:AB:D4:9D:1C:17:8F:96:4C
  198.  
  199. X509v3 Extended Key Usage:
  200. TLS Web Client Authentication
  201. X509v3 Key Usage:
  202. Digital Signature
  203. Signature Algorithm: sha256WithRSAEncryption
  204. 71:60:70:bb:02:04:71:13:38:64:ee:d5:8c:6a:86:b4:21:40:
  205. b1:95:4c:22:fd:38:25:e5:d6:4e:2e:76:a2:46:cd:6f:1b:a0:
  206. d0:c7:66:9a:cb:36:44:f8:58:14:c4:e5:63:f5:3c:69:22:e8:
  207. a2:67:54:aa:0f:97:c0:52:93:ac:48:df:21:a3:91:e3:48:bf:
  208. 57:9b:7f:63:bf:ac:92:5e:74:ed:0f:c1:6c:94:f3:ce:71:e9:
  209. 17:fb:91:d8:16:f9:2a:65:fd:f6:b5:cf:d3:6f:9d:cb:34:45:
  210. 39:05:35:65:05:c9:e4:c5:f3:08:fd:c1:8e:8c:48:e4:b3:35:
  211. 23:15:32:52:4a:ee:59:a2:80:31:83:04:64:cf:a6:49:95:ac:
  212. 47:41:2b:39:d0:86:5d:ee:3b:20:3f:9d:ec:41:d5:1c:d7:31:
  213. 55:ea:db:7f:48:bc:ca:fd:10:07:c8:a5:2a:27:b6:69:9e:10:
  214. 70:6d:c7:05:d0:92:33:a3:80:c4:5b:3c:d3:88:46:f1:7f:4e:
  215. fa:c3:3d:1a:19:56:58:d8:2e:c1:f0:29:84:2b:58:96:c6:bd:
  216. 6a:60:d3:41:7e:8e:e8:92:53:07:d4:6f:7f:72:2c:e6:ea:33:
  217. b8:9c:ff:4e:c7:32:40:b5:e2:46:db:02:35:e8:38:9b:77:aa:
  218. f9:b3:b1:46
  219. -----BEGIN CERTIFICATE-----
  220. MIIFTzCCBDegAwIBAgIBAzANBgkqhkiG9w0BAQsFADCBtjELMAkGA1UEBhMCVVMx
  221. CzAJBgNVBAgTAkNBMRUwEwYDVQQHEwxTYW5GcmFuY2lzY28xFTATBgNVBAoTDEZv
  222. cnQtRnVuc3RvbjEdMBsGA1UECxMUTXlPcmdhbml6YXRpb25hbFVuaXQxGDAWBgNV
  223. BAMTD0ZvcnQtRnVuc3RvbiBDQTEQMA4GA1UEKRMHRWFzeVJTQTEhMB8GCSqGSIb3
  224. DQEJARYSbWVAbXlob3N0Lm15ZG9tYWluMB4XDTE1MDQwNDEwMzYzMVoXDTI1MDQw
  225. MTEwMzYzMVowga0xCzAJBgNVBAYTAlVTMQswCQYDVQQIEwJDQTEVMBMGA1UEBxMM
  226. U2FuRnJhbmNpc2NvMRUwEwYDVQQKEwxGb3J0LUZ1bnN0b24xHTAbBgNVBAsTFE15
  227. T3JnYW5pemF0aW9uYWxVbml0MQ8wDQYDVQQDEwZjbGllbnQxEDAOBgNVBCkTB0Vh
  228. c3lSU0ExITAfBgkqhkiG9w0BCQEWEm1lQG15aG9zdC5teWRvbWFpbjCCASIwDQYJ
  229. KoZIhvcNAQEBBQADggEPADCCAQoCggEBALerWwN6jvW3HjSzg7+symGqY2vlnpB9
  230. 67cW8qgfc+A96EXEcxp+kkjGkkChe+MyD37RZa0HpSlr+aqiSklPH94ILM+Odkpz
  231. wqdTAAllrK3g0Y/HFMgPsVXfdRFqLZSUe3bobVu3BgXox/YXZ9mJqnYScGgzehuU
  232. FRoeldncI5MRIQDVsKsvPW6m9+ALb/N+lEPKAvz9OxgjxhZVOm3/lgjaxz8ilT7a
  233. e+LHOKnmLGSf8CFJO2LRULbWf0RPFSAkgS/0Rs2gc+sjx/ZchE5efs/dMPlzJImd
  234. jftGbCR/kTmDZ1gXOeddKFldFt8VP9FGVrVQpHEKjidRvRGxdW7eS18CAwEAAaOC
  235. AW0wggFpMAkGA1UdEwQCMAAwLQYJYIZIAYb4QgENBCAWHkVhc3ktUlNBIEdlbmVy
  236. YXRlZCBDZXJ0aWZpY2F0ZTAdBgNVHQ4EFgQUtnvewbwTKAbRvPUYnGAdW0g2AREw
  237. gesGA1UdIwSB4zCB4IAUx86eF6wStAaRGmhVAaadZ8s9GCihgbykgbkwgbYxCzAJ
  238. BgNVBAYTAlVTMQswCQYDVQQIEwJDQTEVMBMGA1UEBxMMU2FuRnJhbmNpc2NvMRUw
  239. EwYDVQQKEwxGb3J0LUZ1bnN0b24xHTAbBgNVBAsTFE15T3JnYW5pemF0aW9uYWxV
  240. bml0MRgwFgYDVQQDEw9Gb3J0LUZ1bnN0b24gQ0ExEDAOBgNVBCkTB0Vhc3lSU0Ex
  241. ITAfBgkqhkiG9w0BCQEWEm1lQG15aG9zdC5teWRvbWFpboIJAKvUnRwXj5ZMMBMG
  242. A1UdJQQMMAoGCCsGAQUFBwMCMAsGA1UdDwQEAwIHgDANBgkqhkiG9w0BAQsFAAOC
  243. AQEAcWBwuwIEcRM4ZO7VjGqGtCFAsZVMIv04JeXWTi52okbNbxug0Mdmmss2RPhY
  244. FMTlY/U8aSLoomdUqg+XwFKTrEjfIaOR40i/V5t/Y7+skl507Q/BbJTzznHpF/uR
  245. 2Bb5KmX99rXP02+dyzRFOQU1ZQXJ5MXzCP3BjoxI5LM1IxUyUkruWaKAMYMEZM+m
  246. SZWsR0ErOdCGXe47ID+d7EHVHNcxVerbf0i8yv0QB8ilKie2aZ4QcG3HBdCSM6OA
  247. xFs804hG8X9O+sM9GhlWWNguwfAphCtYlsa9amDTQX6O6JJTB9Rvf3Is5uozuJz/
  248. TscyQLXiRtsCNeg4m3eq+bOxRg==
  249. -----END CERTIFICATE-----
  250. </cert>
  251. <key>
  252. -----BEGIN PRIVATE KEY-----
  253. MIIEvgIBADANBgkqhkiG9w0BAQEFAASCBKgwggSkAgEAAoIBAQC3q1sDeo71tx40
  254. s4O/rMphqmNr5Z6Qfeu3FvKoH3PgPehFxHMafpJIxpJAoXvjMg9+0WWtB6Upa/mq
  255. okpJTx/eCCzPjnZKc8KnUwAJZayt4NGPxxTID7FV33URai2UlHt26G1btwYF6Mf2
  256. F2fZiap2EnBoM3oblBUaHpXZ3COTESEA1bCrLz1upvfgC2/zfpRDygL8/TsYI8YW
  257. VTpt/5YI2sc/IpU+2nvixzip5ixkn/AhSTti0VC21n9ETxUgJIEv9EbNoHPrI8f2
  258. XIROXn7P3TD5cySJnY37Rmwkf5E5g2dYFznnXShZXRbfFT/RRla1UKRxCo4nUb0R
  259. sXVu3ktfAgMBAAECggEADOcg0bG+cUyX9qPV0ZVV8l6B9YaACS6PbKFUErOC9HHk
  260. 62HNpELYC/zHMXsmtONDa2lSd0FePPa052PXTCce2f5BB6O+c6SGPDL8gax+4Qg2
  261. MJ+Pui5ACwRTuRF4ekOkGMpjRForNicQRR2H0iR1sS3Cb8+N+HoCsX8Mj+2DIkWn
  262. LYN/jx4wx+W7Mq0hoNSrxk3J/Lqaa09NcVSXDihokiivXSe0Mm1hqvQgZw2ulVgy
  263. seu8ewmq713/DlJG0FyAXwa2TRnIxtEdodgiXHgU/1ojCxsjKTdybQh/QaSvxr+O
  264. 8SvfIMMmpsocrmK+na7iS5nurjaXnT7r9Hxjy+Ua4QKBgQDuWyvNn4jub3ES0/Ba
  265. GBMdckdDHeO6d/G+X4vB2QI9qx52XVgeSCsDm/UsH/T2+mytKeGkqSLYhFGcECTh
  266. KwatRFZ7sA23aCQKfM6PqtrEXGokXjUimESNJJfaXlJC3UL9aT9KJjDRI0IlR/lg
  267. /tPGvn+RJqSzeZMaAfijvJmphQKBgQDFQ9/fyUXJNZAF8SzcllfboSjgpiDjt3QL
  268. rqrBmpRvk7ZyzyjqgEXROWA1SVNs2bK0DthxNI7G3/OD/gs5XwY2CCLyRWF6a8M3
  269. 3G5ceR6rlKMuHzxTGstYOJrCJEMGG1flVThyuNEu2KX7kj9msatHinzgIINVdf/1
  270. 1TUiMeJkkwKBgQC9+xUy05HE2jZ6F0tfxAiYU9nQ+SXmHmwknOs8Gsfad2XUWho+
  271. KK+ANPJ5tQ7/PCMa8mLTZ6xKf0y843FBt5WezPVRqMWGBg+T/F53zGqKUE6Zpi0b
  272. 4dnh1eTjPIK8oLcgXJ8BbudCCqRSKsfuM66Anp33B6IHG0PQWvnfKBgiMQKBgFJm
  273. t+3TNcOHDFJvHD5Izwp/l4O/4Z091MvMeqfE2pyBJ4Vt47mRO5jaTsXzi1W82lk8
  274. mk0vlzSb+Cz6wdWFTCLl4zMwqDdrLHD5M2CNd7JUtJVfluNgHfEMNBlE7HpwkZbK
  275. snm5mifnd+5OeQ18yf9oaiF1c2cPk4wtM7TFAbzhAoGBANWbgCQrW9fMgZbl14QO
  276. Ns0PG3Z3+j9nvM9D4/Ks81S1Mm0XttOuo0aCuQihu801Dxcd2euVNj+q5jZiQeOz
  277. BtL+serZx7hPHEZG/LmqKUf/ys8a5tNnmZnqZwkNI/ZMRas21Oe2ariroKNfzqsT
  278. jM/Rr7/jz91XkusW1F7VAhGT
  279. -----END PRIVATE KEY-----
  280. </key>
Advertisement
Add Comment
Please, Sign In to add comment