/etc/openvpn/openvpn.conf
local ctf.hackbbs.org port 1701 proto udp dev tap0 mode server tls-server tun-mtu 1500 auth-nocache ping 10
- ping-restart 60
mssfix persist-key persist-tun ca /etc/openvpn/ca.crt cert /etc/openvpn/server.crt key /etc/openvpn/server.key # This file should be kept secret dh /etc/openvpn/dh1024.pem
server-bridge 172.31.38.1 255.255.255.0 172.31.38.2 172.31.38.254
ifconfig 172.31.38.1 255.255.0.0 ifconfig-pool-persist /etc/openvpn/ipp.txt client-config-dir ccd ccd-exclusive
push "route 172.31.0.0 255.255.0.0" push "route 10.100.0.0 255.252.0.0" push "route-gateway 172.31.38.1"
client-to-client
- keepalive 10 120
cipher BF-CBC comp-lzo max-clients 15 chroot /etc/openvpn/ status /var/log/openvpn_status.log log-append /var/log/openvpn.log verb 1 mute 10