http://qicheng0211.blog.51cto.com/3958621/1575273



vi /etc/openvpn/server.conf



local 0.0.0.0

port 1295

proto tcp


dev tun

ca /etc/openvpn/easy-rsa/keys/ca.crt

cert /etc/openvpn/easy-rsa/keys/server.crt

key /etc/openvpn/easy-rsa/keys/server.key

dh /etc/openvpn/easy-rsa/keys/dh2048.pem

tls-auth /etc/openvpn/easy-rsa/keys/ta.key 0



server 10.8.0.0 255.255.255.0


mode server

topology subnet

push "topology subnet"

ifconfig 10.8.0.1 255.255.0.0

push "route-gateway 10.8.0.1"


ifconfig-pool-persist ipp.txt


#client-config-dir /etc/openvpn/ccd


keepalive 10 120

comp-lzo

persist-key

persist-tun

status openvpn-status.log


client-to-client

duplicate-cn

log /root/openvpn.log

verb 3




linux openvpn客户端安装

http://qicheng0211.blog.51cto.com/3958621/1840055