OVPN lan to lan bridge: Unterschied zwischen den Versionen

Aus Xinux Wiki
Zur Navigation springen Zur Suche springen
(Die Seite wurde neu angelegt: „=Serversite= ==Bridging stuff== *openvpn --mktun --dev tap1 *brctl addbr vmbr1 *brctl addif vmbr1 eth1 *brctl addif vmbr1 tap1 *ifconfig eth1 0.0.0.0 promisc u…“)
 
Zeile 8: Zeile 8:
 
*ifconfig tap1 0.0.0.0 promisc up
 
*ifconfig tap1 0.0.0.0 promisc up
 
*ifconfig vmbr1 192.168.56.1 netmask 255.255.255.0 up
 
*ifconfig vmbr1 192.168.56.1 netmask 255.255.255.0 up
 +
==Openvpn stuff==
 +
*/etc/openvpn/server.conf
 +
<pre>
 +
dev tap1
 +
daemon
 +
tls-server
 +
proto udp
 +
port 5555
 +
ca /etc/openvpn/ca.crt
 +
cert /etc/openvpn/kitan.tuxmen.de.crt
 +
key /etc/openvpn/kitan.tuxmen.de.key
 +
dh /etc/openvpn/dh4096.pem
 +
mssfix
 +
persist-key
 +
persist-tun
 +
log /var/log/openvpn
 +
status /var/log/openvpn-status.log
 +
verb 4
 +
keepalive 10 120
 +
mute 50
 +
log-append /var/log/openvpn
 +
compress lzo
 +
verb 3
 +
</pre>

Version vom 12. April 2018, 13:09 Uhr

Serversite

Bridging stuff

  • openvpn --mktun --dev tap1
  • brctl addbr vmbr1
  • brctl addif vmbr1 eth1
  • brctl addif vmbr1 tap1
  • ifconfig eth1 0.0.0.0 promisc up
  • ifconfig tap1 0.0.0.0 promisc up
  • ifconfig vmbr1 192.168.56.1 netmask 255.255.255.0 up

Openvpn stuff

  • /etc/openvpn/server.conf
dev tap1
daemon
tls-server
proto udp
port 5555
ca /etc/openvpn/ca.crt
cert /etc/openvpn/kitan.tuxmen.de.crt
key /etc/openvpn/kitan.tuxmen.de.key
dh /etc/openvpn/dh4096.pem
mssfix
persist-key
persist-tun
log /var/log/openvpn
status /var/log/openvpn-status.log
verb 4
keepalive 10 120
mute 50
log-append /var/log/openvpn
compress lzo
verb 3