Server je umiestneny za routrom a ma staticku IP 192.192.192.1
vnutorna adresa serveru je 192.168.1.1
Na routri je presmerovany port 5555 na server
certifikat s nazvom skuska je umiestneny v C:\Program Files\OpenVPN\config
Kluc je rovnako v C:\Program Files\OpenVPN\config
ca certifikat neviem aky mam zadat program mi ziadny nevygeneroval resp neviem kde ho mam hladat. A neplanujem ho zadavat nejakej certifikacnej autorite.
Server je nastaveny takto:
Kód: Vybrať všetko
;local a.b.c.d
port 5555
proto tcp
;proto udp
;dev tap
dev tun
dev-node OpenVPN
ca config/skuska.crt
cert config/skuska.crt
key config/skuska.key
dh sample-keys/dh1024.pem # Tomuto nerozumiem co to je?
server 192.168.1.1.255.255.0
ifconfig-pool-persist ipp.txt
;server-bridge 10.8.0.4 255.255.255.0 10.8.0.50 10.8.0.100
;push "route 192.168.10.0 255.255.255.0"
;push "route 192.168.20.0 255.255.255.0"
;push "redirect-gateway"
;push "dhcp-option DNS 10.8.0.1"
;push "dhcp-option WINS 10.8.0.1"
client-to-client
;duplicate-cn
keepalive 10 120
;tls-auth ta.key 0
cipher BF-CBC # Blowfish (default)
;cipher AES-128-CBC # AES
;cipher DES-EDE3-CBC # Triple-DES
comp-lzo
;max-clients 100
;user nobody
;group nobody
persist-key
persist-tun
status openvpn-status.log
;log openvpn.log
;log-append openvpn.log
verb 4
;mute 20
Kód: Vybrať všetko
dev tun
dev-node OpenVPN
proto tcp
;proto udp
remote 192.192.192.1 5555
;remote my-server-2 1194
;remote-random
resolv-retry infinite
nobind
;user nobody
;group nobody
persist-key
persist-tun
;http-proxy-retry
;http-proxy [proxy server] [proxy port #]
mute-replay-warnings
ca config/skuska.crt
cert config/skuska.crt
key config/skuska.key
;ns-cert-type server
;tls-auth ta.key 1
;cipher x
comp-lzo
verb 4
;mute 20