Difference between revisions of "OpenVPN Routed"
m (→Version) |
Unnilennium (talk | contribs) |
||
Line 42: | Line 42: | ||
#copy bridge certificates | #copy bridge certificates | ||
cp -a /etc/openvpn/bridge/{priv,pub} /etc/openvpn/routed/ | cp -a /etc/openvpn/bridge/{priv,pub} /etc/openvpn/routed/ | ||
− | # if you want to | + | # if you want to change the default network range assigned (192.169.29.0) |
− | db configuration setprop openvpn-routed | + | db configuration setprop openvpn-routed Network 192.168.79.0/255.255.255.0 |
# signale event to regenerate all you need | # signale event to regenerate all you need | ||
signal-event openvpn-routed-update | signal-event openvpn-routed-update |
Revision as of 17:23, 2 December 2013
Maintainer
Daniel B. from Firewall Services
Description
OpenVPN is a full-featured open source SSL VPN solution that accommodates a wide range of configurations, including remote access, site-to-site VPNs, Wi-Fi security, and enterprise-scale remote access solutions with load balancing, fail-over, and fine-grained access-controls. Starting with the fundamental premise that complexity is the enemy of security, OpenVPN offers a cost-effective, lightweight alternative to other VPN technologies that is well-targeted for the SME and enterprise markets.
This contrib will help you configuring OpenVPN in bridge mode. With this mode, clients connecting to the VPN from the outside will get an IP in the local subnet, the VPN and the Internal Interface are bridged. There's no routing problem, no additional firewall rules. The downside is that you cannot limit which services VPN clients has access to, they are just treated as locally connected computers.
Requirements
- SME Server 7.X and 8.0 (serveronly or server&gateway works)
- You have to install and enable the bridge-interface contrib
- You may want to install PHPki to manage easily your certificates.
Installation
install the rpms (7.x) and (8.x)
install fws repo, see : Fws
then :
yum install smeserver-openvpn-routed --enablerepo=fws,smecontribs
Configure
refer to OpenVPN_Bridge
Configure as running in parallel of bridge contrib
- install
- change port
config setprop openvpn-routed UDPPort 1195
- copy bridge certificates
cp -a /etc/openvpn/bridge/{priv,pub} /etc/openvpn/routed/
- if you want to change the default network range assigned (192.169.29.0)
db configuration setprop openvpn-routed Network 192.168.79.0/255.255.255.0
- signale event to regenerate all you need
signal-event openvpn-routed-update