1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27
| 复制生成的文件到 /etc/openvpn/server sudo cp pki/ca.crt pki/private/server.key pki/issued/server.crt pki/dh.pem ta.key /etc/openvpn/server
编辑 OpenVPN 配置文件 sudo vi /etc/openvpn/server/server.conf
port 12345 //openvpn的端口号,用来连接openvpn proto udp dev tun ca /etc/openvpn/server/ca.crt //复制过来的证书和密钥 cert /etc/openvpn/server/server.crt key /etc/openvpn/server/server.key dh /etc/openvpn/server/dh.pem auth SHA256 tls-crypt /etc/openvpn/server/ta.key server 10.8.0.0 255.255.255.0 ifconfig-pool-persist ipp.txt push "redirect-gateway def1 bypass-dhcp" push "dhcp-option DNS 1.1.1.1" keepalive 10 120 data-ciphers AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305 cipher AES-256-GCM persist-key persist-tun status openvpn-status.log log-append ~/openvpn.log verb 3
|