28 lines
670 B
Plaintext
28 lines
670 B
Plaintext
port 1194
|
|
proto tcp-server
|
|
dev tun
|
|
user nobody
|
|
group nogroup
|
|
persist-key
|
|
persist-tun
|
|
keepalive 10 120
|
|
topology subnet
|
|
server 10.8.0.0 255.255.255.0
|
|
ifconfig-pool-persist /var/log/openvpn/ipp.txt
|
|
push "redirect-gateway def1 bypass-dhcp"
|
|
push "dhcp-option DNS 1.1.1.1"
|
|
push "dhcp-option DNS 1.0.0.1"
|
|
ca /etc/openvpn/server/ca.crt
|
|
cert /etc/openvpn/server/server.crt
|
|
key /etc/openvpn/server/server.key
|
|
tls-crypt /etc/openvpn/server/tls-crypt.key
|
|
dh none
|
|
ecdh-curve prime256v1
|
|
crl-verify /etc/openvpn/server/crl.pem
|
|
data-ciphers AES-256-GCM:AES-128-GCM
|
|
cipher AES-256-GCM
|
|
auth SHA256
|
|
verb 3
|
|
status /var/log/openvpn/openvpn-status.log
|
|
log-append /var/log/openvpn/openvpn.log
|