Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
configuration:openvpn [2020/06/08 08:03]
dodenhoeft [How to setup OpenVPN]
configuration:openvpn [2022/08/05 20:05] (current)
fachet
Line 51: Line 51:
 ===== Network setup ===== ===== Network setup =====
  
-For this configuration we will use the most common mode, **__the routing mode__**. ​+For this configuration we will use the most common mode, **__the routing mode__**.
  
 {{:​configuration:​openvpn1.png|}} {{:​configuration:​openvpn1.png|}}
 +
 +==== Server ====
 +^General^Parameter^
 +|Operation mode|Server|
 +|Server port|1194|
 +|Type|TUN|
 +|Protocol|UDP|
 +|Cipher|AES-256-CBC|
 +^Authentication^Parameter^
 +|certificate-based|
 +|HMAC digest|SHA256|
 +|Manage keys and certifictaes (below)|
 +^Options^Parameter^ ​
 +|use compression|enable|
 +|use keepalive|enable|
 +
 +After you done with the server configuation apply the setting and we will continue with the client configuation.
 +
 +==== Client ====
 +^General^Parameter^
 +|Operation mode|Client|
 +|Server port|1194|
 +|Type|TUN|
 +|Protocol|UDP|
 +|Cipher|AES-256-CBC|
 +^Authentication^Parameter^
 +|certificate-based|
 +|HMAC digest|SHA256|
 +|Manage keys and certifictaes (below)|
 +^Options^Parameter^ ​
 +|use compression|enable|
 +|use keepalive|enable|
 +
 +==== minimal configuration ====
 +Generate a static key:
 +
 +    openvpn --genkey --secret static.key
 +
 +Copy the static key to both client and server, over a pre-existing secure channel.
 +Server configuration file
 +
 +    dev tun
 +    ifconfig 10.8.0.1 10.8.0.2
 +    secret static.key
 +
 +Client configuration file
 +
 +    remote myremote.mydomain
 +    dev tun
 +    ifconfig 10.8.0.2 10.8.0.1
 +    secret static.key
 +
 +
 +
 +
 +
 See {{:​nrsw:​openvpn.pdf|}} See {{:​nrsw:​openvpn.pdf|}}