diff --git a/swarmVPN/vpn-files/openvpn-services/crl.pem b/swarmVPN/vpn-files/openvpn-services/crl.pem new file mode 100644 index 0000000..3b6846c --- /dev/null +++ b/swarmVPN/vpn-files/openvpn-services/crl.pem @@ -0,0 +1,11 @@ +-----BEGIN X509 CRL----- +MIIBpjCBjwIBATANBgkqhkiG9w0BAQsFADAOMQwwCgYDVQQDDAN0ZWsXDTIxMDEw +MjE5NDg0NFoXDTMwMTIzMTE5NDg0NFqgTTBLMEkGA1UdIwRCMECAFNMW1YTI0bOP +M7989AF4hhftOWrYoRKkEDAOMQwwCgYDVQQDDAN0ZWuCFBFBT9augINsxoZOTEx3 +1J9Cakt3MA0GCSqGSIb3DQEBCwUAA4IBAQCTBmOtiyt/TUYFb2y/cTiWLcmiFxp6 +4h7BXoOV3fWFM43U2RcfdI0s1jqZnaFu/N1fnSmD1ruok/7hkp61hkT4xL8WHNFQ +HFZeesGoVSWHwZWCMuYqWWrOgJBTwAqUfzouyQH5RuIuis2eW/JWGa6SKFuGNn/m +T9pC5B6Fh0aSKvuGAw/qOtLxw5ydSXMAinJZ5qzNspHI/94qK1w7jkB/SfXDP/EV +oj9f4kx2u8OseD0rYK/SXd/8q2g9o/HHmEN0zhsejNk71WX/7D7RH5ejB9cy+/tb +MXk5kN47cRIGP5cCG3JWt8RoqRMmkMngt5tpsa1Uzfpui1T97K4oGkcU +-----END X509 CRL----- diff --git a/swarmVPN/vpn-files/openvpn-services/openvpn.conf b/swarmVPN/vpn-files/openvpn-services/openvpn.conf new file mode 100644 index 0000000..ee9a986 --- /dev/null +++ b/swarmVPN/vpn-files/openvpn-services/openvpn.conf @@ -0,0 +1,31 @@ +server 10.80.0.0 255.255.0.0 +verb 3 +key /etc/openvpn/pki/private/127.0.0.1.key +ca /etc/openvpn/pki/ca.crt +cert /etc/openvpn/pki/issued/127.0.0.1.crt +dh /etc/openvpn/pki/dh.pem +tls-auth /etc/openvpn/pki/ta.key +key-direction 0 +keepalive 10 60 +persist-key +persist-tun + +proto udp +# Rely on Docker to do port mapping, internally always 1194 +port 1194 +dev tun0 +status /tmp/openvpn-status.log + +user nobody +group nogroup +client-to-client +comp-lzo no + +### Push Configurations Below +push "dhcp-option DNS 8.8.8.8" +push "dhcp-option DNS 8.8.4.4" +push "comp-lzo no" +push "route 172.50.20.0 255.255.255.0" + +### Extra Configurations Below +topology subnet diff --git a/swarmVPN/vpn-files/openvpn-services/ovpn_env.sh b/swarmVPN/vpn-files/openvpn-services/ovpn_env.sh new file mode 100644 index 0000000..eef2dae --- /dev/null +++ b/swarmVPN/vpn-files/openvpn-services/ovpn_env.sh @@ -0,0 +1,25 @@ +declare -x OVPN_AUTH= +declare -x OVPN_CIPHER= +declare -x OVPN_CLIENT_TO_CLIENT=1 +declare -x OVPN_CN=127.0.0.1 +declare -x OVPN_COMP_LZO=0 +declare -x OVPN_DEFROUTE=0 +declare -x OVPN_DEVICE=tun +declare -x OVPN_DEVICEN=0 +declare -x OVPN_DISABLE_PUSH_BLOCK_DNS=1 +declare -x OVPN_DNS=1 +declare -x OVPN_DNS_SERVERS=([0]="8.8.8.8" [1]="8.8.4.4") +declare -x OVPN_ENV=/etc/openvpn/ovpn_env.sh +declare -x OVPN_EXTRA_CLIENT_CONFIG=() +declare -x OVPN_EXTRA_SERVER_CONFIG=([0]="topology subnet") +declare -x OVPN_FRAGMENT= +declare -x OVPN_KEEPALIVE='10 60' +declare -x OVPN_MTU= +declare -x OVPN_NAT=1 +declare -x OVPN_PORT=1194 +declare -x OVPN_PROTO=udp +declare -x OVPN_PUSH=([0]="route 172.50.20.0 255.255.255.0") +declare -x OVPN_ROUTES=() +declare -x OVPN_SERVER=10.80.0.0/16 +declare -x OVPN_SERVER_URL=udp://127.0.0.1:1194 +declare -x OVPN_TLS_CIPHER=