summaryrefslogtreecommitdiff
path: root/public/fs/etc/openvpn/hostvpn.conf.in
diff options
context:
space:
mode:
Diffstat (limited to 'public/fs/etc/openvpn/hostvpn.conf.in')
-rw-r--r--public/fs/etc/openvpn/hostvpn.conf.in40
1 files changed, 40 insertions, 0 deletions
diff --git a/public/fs/etc/openvpn/hostvpn.conf.in b/public/fs/etc/openvpn/hostvpn.conf.in
new file mode 100644
index 0000000..a285e12
--- /dev/null
+++ b/public/fs/etc/openvpn/hostvpn.conf.in
@@ -0,0 +1,40 @@
+port @vpn_port@
+proto udp
+
+dev tun0
+topology subnet
+
+cipher AES-256-CBC
+
+ca /etc/easy-rsa/pki/ca.crt
+cert /etc/easy-rsa/pki/issued/@hostname@.crt
+
+askpass /srv/webroot/openvpn/@hostname@.pass
+key /etc/easy-rsa/pki/private/@hostname@.key
+dh /etc/easy-rsa/pki/dh.pem
+
+status /var/log/openvpn/openvpn-status.log
+log-append /var/log/openvpn/openvpn.log
+
+server 10.8.0.0 255.255.255.0
+server-ipv6 2a01:4f9:2b:20f0:8000::/65
+
+push "route-ipv6 2000::/3"
+push "route-ipv6 2a01:4f9:2b:20f0::/64"
+
+push "block-outside-dns"
+push "redirect-gateway def1"
+push "route 192.168.0.0 255.255.255.0"
+push "dhcp-option DNS 10.8.0.1"
+
+duplicate-cn
+client-to-client
+
+daemon
+auth-nocache
+
+persist-key
+persist-tun
+
+verb 3
+keepalive 20 60