Advertisement
meepmeep_

OpenVPN Conf

May 23rd, 2017
16
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.89 KB | None | 0 0
  1. Debian VM
  2. ***************************************
  3. local <MyIP>
  4. port 993
  5. proto tcp
  6. dev tun
  7. ca key_ok/ca.crt
  8. cert key_ok/xx.crt
  9. key key_ok/xx.key # This file should be kept secret
  10. dh key_ok/dh1024.pem
  11. server 10.8.0.0 255.255.255.0
  12. ifconfig-pool-persist ipp.txt
  13. push "dhcp-option DNS 8.8.8.8"
  14. push "redirect-gateway def1"
  15. push "register-dns"
  16. push "redirect-gateway def1 bypass-dhcp"
  17. client-to-client
  18. keepalive 10 120
  19. comp-lzo
  20. user nobody
  21. group nogroup
  22. persist-key
  23. persist-tun
  24. status openvpn-status.log
  25. verb 3
  26. crl-verify key_ok/crl.pem
  27. ***************************************
  28.  
  29.  
  30. pfSense openVPN configuration
  31. ***************************************
  32. dev ovpns3
  33. verb 1
  34. dev-type tun
  35. dev-node /dev/tun3
  36. writepid /var/run/openvpn_server3.pid
  37. script-security 3
  38. daemon
  39. keepalive 10 60
  40. ping-timer-rem
  41. persist-tun
  42. persist-key
  43. proto tcp-server
  44. cipher AES-128-CBC
  45. auth SHA1
  46. up /usr/local/sbin/ovpn-linkup
  47. down /usr/local/sbin/ovpn-linkdown
  48. client-connect /usr/local/sbin/openvpn.attributes.sh
  49. client-disconnect /usr/local/sbin/openvpn.attributes.sh
  50. local <MyIP>
  51. tls-server
  52. server 10.7.0.0 255.255.255.0
  53. client-config-dir /var/etc/openvpn-csc/server3
  54. username-as-common-name
  55. auth-user-pass-verify "/usr/local/sbin/ovpn_auth_verify user <SECRET> false server3 993" via-env
  56. tls-verify "/usr/local/sbin/ovpn_auth_verify tls 'Jarvis-ovpn' 1"
  57. lport 993
  58. management /var/etc/openvpn/server3.sock unix
  59. push "route 10.0.0.0 255.255.255.0"
  60. push "dhcp-option DNS 8.8.8.8"
  61. push "dhcp-option DNS 8.8.4.4"
  62. push "register-dns"
  63. client-to-client
  64. ca /var/etc/openvpn/server3.ca
  65. cert /var/etc/openvpn/server3.cert
  66. key /var/etc/openvpn/server3.key
  67. dh /etc/dh-parameters.4096
  68. crl-verify /var/etc/openvpn/server3.crl-verify
  69. tls-auth /var/etc/openvpn/server3.tls-auth 0
  70. comp-lzo no
  71. persist-remote-ip
  72. float
  73. topology subnet
  74. push "route 10.7.0.0 255.255.255.0"
  75.  
  76. ***************************************
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement