OVPN lan to lan bridge: Unterschied zwischen den Versionen
Zur Navigation springen
Zur Suche springen
(Die Seite wurde neu angelegt: „=Serversite= ==Bridging stuff== *openvpn --mktun --dev tap1 *brctl addbr vmbr1 *brctl addif vmbr1 eth1 *brctl addif vmbr1 tap1 *ifconfig eth1 0.0.0.0 promisc u…“) |
|||
| Zeile 8: | Zeile 8: | ||
*ifconfig tap1 0.0.0.0 promisc up | *ifconfig tap1 0.0.0.0 promisc up | ||
*ifconfig vmbr1 192.168.56.1 netmask 255.255.255.0 up | *ifconfig vmbr1 192.168.56.1 netmask 255.255.255.0 up | ||
| + | ==Openvpn stuff== | ||
| + | */etc/openvpn/server.conf | ||
| + | <pre> | ||
| + | dev tap1 | ||
| + | daemon | ||
| + | tls-server | ||
| + | proto udp | ||
| + | port 5555 | ||
| + | ca /etc/openvpn/ca.crt | ||
| + | cert /etc/openvpn/kitan.tuxmen.de.crt | ||
| + | key /etc/openvpn/kitan.tuxmen.de.key | ||
| + | dh /etc/openvpn/dh4096.pem | ||
| + | mssfix | ||
| + | persist-key | ||
| + | persist-tun | ||
| + | log /var/log/openvpn | ||
| + | status /var/log/openvpn-status.log | ||
| + | verb 4 | ||
| + | keepalive 10 120 | ||
| + | mute 50 | ||
| + | log-append /var/log/openvpn | ||
| + | compress lzo | ||
| + | verb 3 | ||
| + | </pre> | ||
Version vom 12. April 2018, 13:09 Uhr
Serversite
Bridging stuff
- openvpn --mktun --dev tap1
- brctl addbr vmbr1
- brctl addif vmbr1 eth1
- brctl addif vmbr1 tap1
- ifconfig eth1 0.0.0.0 promisc up
- ifconfig tap1 0.0.0.0 promisc up
- ifconfig vmbr1 192.168.56.1 netmask 255.255.255.0 up
Openvpn stuff
- /etc/openvpn/server.conf
dev tap1 daemon tls-server proto udp port 5555 ca /etc/openvpn/ca.crt cert /etc/openvpn/kitan.tuxmen.de.crt key /etc/openvpn/kitan.tuxmen.de.key dh /etc/openvpn/dh4096.pem mssfix persist-key persist-tun log /var/log/openvpn status /var/log/openvpn-status.log verb 4 keepalive 10 120 mute 50 log-append /var/log/openvpn compress lzo verb 3