...
Code Block | ||
---|---|---|
| ||
mode server daemon vpn-server port 1194 proto udp4 dev tun ca /etc/openvpn/ca.crt cert /etc/openvpn/server.crt key /etc/openvpn/server.key dh /etc/openvpn/dh2048.pem # либо dh1024.pem, в зависимости от размера ключа plugin /usr/lib/openvpn/radiusplugin.so /etc/openvpn/radius/radius.cnf client-connect /etc/ppp/ip-up script-security 3 client-disconnect /etc/ppp/ip-down # ifconfig-pool-persist ipp.txt persist-key tls-server tls-auth /etc/openvpn/ta.key 0 cipher AES-256-CBC server 192.168.50.0 255.255.255.0 push "redirect-gateway" ifconfig-pool-persist ipp.txt keepalive 10 120 #comp-lzo user nobody group nogroup persist-key persist-tun status /var/log/openvpn/openvpn-status.log log-append /var/log/openvpn/openvpn.log verb 4 mute 20 client-to-client client-config-dir /etc/openvpn/ccd route 192.168.50.0 255.255.255.0 topology subnet status-version 1 |
Создаем файл конфигурации RADIUS клиента:
...