From 65fb49fc5f3e4628353ee2e54c5ced76c5bc40fa Mon Sep 17 00:00:00 2001 From: Christian Pointner Date: Tue, 16 Nov 2021 22:34:30 +0100 Subject: openvpn: initial support for server/client --- roles/network/openvpn/client/templates/conf.j2 | 18 ++++++++++++++++++ 1 file changed, 18 insertions(+) create mode 100644 roles/network/openvpn/client/templates/conf.j2 (limited to 'roles/network/openvpn/client/templates') diff --git a/roles/network/openvpn/client/templates/conf.j2 b/roles/network/openvpn/client/templates/conf.j2 new file mode 100644 index 00000000..f9d8775b --- /dev/null +++ b/roles/network/openvpn/client/templates/conf.j2 @@ -0,0 +1,18 @@ +client +proto udp +remote {{ openvpn_zone.server_addr }} {{ openvpn_zone.server_port }} +ping 60 +ping-timer-rem + +tls-client +ca /etc/ssl/openvpn/{{ openvpn_zone.name }}/ca-crt.pem +cert /etc/ssl/openvpn/{{ openvpn_zone.name }}/client/crt.pem +key /etc/ssl/openvpn/{{ openvpn_zone.name }}/client/key.pem +remote-cert-tls server +cipher AES-256-GCM +persist-key + +dev tun +persist-tun + +pull -- cgit v1.2.3