Jako vždycky, uvedu obrázek konfigurace.
Obrázek 27.8. Obrázek konfigurace Linux server — WinXP roadwarrior
I N T E R N E T - - - - - = - - - - - - - - - = - - - - - - - - -=- - - - - - - - - -=- - - - - - | | | | | | lan: 212.96.165.119/28 | eth1: 212.96.165.122/28 | +-------------+ | +---------+ | | trada | | | pikachu | | +-------------+ | +---------+ | virt: 10.16.65.1-20 | eth0: 10.16.66.53/19 | | | | | L A N lan: 212.96.165.120/28 lan: 212.96.165.118/28 +-------------+ +------------+ |wickie (yoda)| | jirka | +-------------+ +------------+ virt: 10.16.65.1-20 virt: 10.16.65.1-20
František mi laskavě poskytnul svou konfiguraci. Františkův /etc/openvpn/vpn_server.conf
:
# Konfigurak pro openvpn v rezimu server na linux stroji
mode server
tls-server
dev tap0
ifconfig 192.168.200.1 255.255.255.0
ifconfig-pool 192.168.200.10 192.168.200.20 255.255.255.0
#port 5001
proto udp
duplicate-cn
push "route 192.168.1.0 255.255.255.0"
ca /etc/openvpn/cacert.pem
cert /etc/openvpn/cert.pem
key /etc/openvpn/key.pem
dh /etc/openvpn/dh1024.pem
log-append /var/log/openvpn
status /var/run/openvpn/vpn.status 10
user openvpn
group openvpn
comp-lzo
verb 3