История изменений
Исправление Stazot, (текущая версия) :
Нашёл конфиг
dev ovpns2
verb 1
dev-type tun
dev-node /dev/tun2
writepid /var/run/openvpn_server2.pid
#user nobody
#group nobody
script-security 3
daemon
keepalive 10 60
ping-timer-rem
persist-tun
persist-key
proto udp4
auth SHA256
up /usr/local/sbin/ovpn-linkup
down /usr/local/sbin/ovpn-linkdown
client-connect /usr/local/sbin/openvpn.attributes.sh
client-disconnect /usr/local/sbin/openvpn.attributes.sh
local 125.11.45.153
tls-server
server 10.10.10.0 255.255.255.0
client-config-dir /var/etc/openvpn/server2/csc
tls-verify "/usr/local/sbin/ovpn_auth_verify tls 'OVPN_SERVER_CRT' 1"
lport 22222
management /var/etc/openvpn/server2/sock unix
max-clients 50
push "route 10.11.11.0 255.255.255.0"
push "route 10.11.12.0 255.255.255.0"
push "route 10.11.13.0 255.255.255.0"
push "dhcp-option DOMAIN example.corp"
push "dhcp-option DNS 10.11.11.250"
push "dhcp-option DNS 1.1.1.1"
push "register-dns"
client-to-client
remote-cert-tls client
capath /var/etc/openvpn/server2/ca
cert /var/etc/openvpn/server2/cert
key /var/etc/openvpn/server2/key
dh /etc/dh-parameters.2048
tls-auth /var/etc/openvpn/server2/tls-auth 0
data-ciphers AES-128-GCM
data-ciphers-fallback AES-128-GCM
allow-compression no
persist-remote-ip
float
topology subnet
explicit-exit-notify 1
inactive 300
Исходная версия Stazot, :
Нашёл конфиг
dev ovpns2
verb 1
dev-type tun
dev-node /dev/tun2
writepid /var/run/openvpn_server2.pid
#user nobody
#group nobody
script-security 3
daemon
keepalive 10 60
ping-timer-rem
persist-tun
persist-key
proto udp4
auth SHA256
up /usr/local/sbin/ovpn-linkup
down /usr/local/sbin/ovpn-linkdown
client-connect /usr/local/sbin/openvpn.attributes.sh
client-disconnect /usr/local/sbin/openvpn.attributes.sh
local 125.11.45.153
tls-server
server 10.10.10.0 255.255.255.0
client-config-dir /var/etc/openvpn/server2/csc
tls-verify "/usr/local/sbin/ovpn_auth_verify tls 'OVPN_SERVER_CRT' 1"
lport 22222
management /var/etc/openvpn/server2/sock unix
max-clients 50
push "route 10.11.11.0 255.255.255.0"
push "route 10.11.12.0 255.255.255.0"
push "route 10.11.13.0 255.255.255.0"
push "dhcp-option DOMAIN example.corp"
push "dhcp-option DNS 10.11.11.250"
push "dhcp-option DNS 1.1.1.1"
push "register-dns"
client-to-client
remote-cert-tls client
capath /var/etc/openvpn/server2/ca
cert /var/etc/openvpn/server2/cert
key /var/etc/openvpn/server2/key
dh /etc/dh-parameters.2048
tls-auth /var/etc/openvpn/server2/tls-auth 0
data-ciphers AES-128-GCM
data-ciphers-fallback AES-128-GCM
allow-compression no
persist-remote-ip
float
topology subnet
explicit-exit-notify 1
inactive 300