############################################## # Sample client-side OpenVPN 2.0 config file # # for connecting to multi-client server. # # # # This configuration can be used by multiple # # clients, however each client should have # # its own cert and key files. # # # # On Windows, you might want to rename this # # file so it has a .ovpn extension # ############################################## # Specify that we are a client and that we # will be pulling certain config file directives # from the server. client # Use the same setting as you are using on # the server. # On most systems, the VPN will not function # unless you partially or fully disable # the firewall for the TUN/TAP interface. ;dev tap dev tun # Are we connecting to a TCP or # UDP server? Use the same setting as # on the server proto udp # The hostname/IP and port of the server. # You can have multiple remote entries # to load balance between the servers. remote gw-akb.oopen.de 1194 topology subnet # Keep trying indefinitely to resolve the # host name of the OpenVPN server. Very useful # on machines which are not permanently connected # to the internet such as laptops. resolv-retry infinite # Most clients don't need to bind to # a specific local port number. nobind # Try to preserve some state across restarts. persist-key persist-tun # Server CA -----BEGIN CERTIFICATE----- MIIG0jCCBLqgAwIBAgIJANRzErbB5rnUMA0GCSqGSIb3DQEBCwUAMIGgMQswCQYD VQQGEwJERTEPMA0GA1UECBMGQmVybGluMQ8wDQYDVQQHEwZCZXJsaW4xDzANBgNV BAoTBm8ub3BlbjEZMBcGA1UECxMQTmV0d29yayBTZXJ2aWNlczEQMA4GA1UEAxMH VlBOLUFLQjEQMA4GA1UEKRMHVlBOIEFLQjEfMB0GCSqGSIb3DQEJARYQc3VwcG9y dEBvb3Blbi5kZTAgFw0xODAyMDUyMDExMjJaGA8yMDUwMDIwNTIwMTEyMlowgaAx CzAJBgNVBAYTAkRFMQ8wDQYDVQQIEwZCZXJsaW4xDzANBgNVBAcTBkJlcmxpbjEP MA0GA1UEChMGby5vcGVuMRkwFwYDVQQLExBOZXR3b3JrIFNlcnZpY2VzMRAwDgYD VQQDEwdWUE4tQUtCMRAwDgYDVQQpEwdWUE4gQUtCMR8wHQYJKoZIhvcNAQkBFhBz dXBwb3J0QG9vcGVuLmRlMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA 4LBz66a5R/hS5Cygl8cPy63TMx10yjy8vJyToEUZCjGS8O5MgwKFWpf6CBKf8jrp kcY9JvvlDD11N+LU5kivRsZRf8Pbj2SuqUg2Rq1fCkVFDl9MshyWBnX1BntyLEQi A1X9bqKew/upZ09bSf8RB/9tsWBDi6m4xlnnojgGXbZnOXKzL442Qu0f+w1M9HoL mp8DXCevpbWSp6WLevQVe2VzDC+lGp1pw7Ea0raOD84u0mVKbBSCAaw0OG0+lkHR Ya3WVezkXVH2PQieqrSlWLmHqNQ5U77DYKYBZ7yhMDO+8Hkj6aN2JB8DglJVG79H GfWTrtFr3Bt80TZJi+GGdCg5u182V9s9Fhm//bKs5thJmS5dROBk1W4p/ZBQ2nQA +wA59vILAF49u1+wY1dryw3JIXTSP4VY8enkhjeKCxpGJd13xF8M5Ci2w8pOyttw NVppDPZItbxPeswzK95VgrEOQaIEANeTMje95Qf3/gPhkMzwPRh9VfZNQMn1AKfn Irc2fb2iGhVzQAVhtBIKm2d24rHK6NCDe89uyfRZV4ZukcUgRt+nn6bnC67VW2Az NhonvzsAjtwwt5KUakKHmq7uMW2bFPy0OoktsP60yWB/Weg/wWliHpudvTq48pLS oQpd/lsJ1K8SXLFqRlWHlJDcelfnj3r58VQpp/82LbECAwEAAaOCAQkwggEFMB0G A1UdDgQWBBQkj/5LsKY1ei5CVupk8fugP/xKLjCB1QYDVR0jBIHNMIHKgBQkj/5L sKY1ei5CVupk8fugP/xKLqGBpqSBozCBoDELMAkGA1UEBhMCREUxDzANBgNVBAgT BkJlcmxpbjEPMA0GA1UEBxMGQmVybGluMQ8wDQYDVQQKEwZvLm9wZW4xGTAXBgNV BAsTEE5ldHdvcmsgU2VydmljZXMxEDAOBgNVBAMTB1ZQTi1BS0IxEDAOBgNVBCkT B1ZQTiBBS0IxHzAdBgkqhkiG9w0BCQEWEHN1cHBvcnRAb29wZW4uZGWCCQDUcxK2 wea51DAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4ICAQBGKBoiGLJHTXMW 9JZIWPQBlyJXvnGp2y1O58GhMEdE+Ahy6bRepLRpcULlCDEXYPJhc8pYMOTa0VAM Ps6lwQH5WQRv6fkdYSMCos0NKpp/0fvrxYTWnFrvU26Pveg+Z3COkVHMI6bJ70IP QpBtBmj3CRqD66vnN1sc0q52hEAkubFI0mD+eqY5rTRE5Eea31KipY5/n93cmlb0 E2ORT/PwawgD2To5qd0THSPYJUiXQntbs4axBrU1S9RO44QZb4Ov71kqATc9u6ri 0bPfeQtTCkCi+mCLA1WbzJTGg6rd0ce3rdSI0uNmMT+cWhh52tMhEKcdDxMahGTx SWdTogb7QqJxMj5GTVDzZsjzsAc6lXgSOL/Ffp/HjKQL1aPxGMlHLju++B/fo7kp meD5g8x4FaVN2dE0oBQ/uaAo2JS5/mSQIYlM2fnyx9ZwXcVgRYeavSIDfA9ASYJA w5is0PUOLr91dS++fBs8NWg7dtcBvZuvtGWO4tk9iWY7Gw4MC7ez4+E7nJrhBkMg 1ySbg3/aJ4/E41K0k3zfkyOHhNVR37YN63e7xDdvGwm3fk8QFOAn+gVyfjnNhGJr JDh4YYK+cbK8E9PLV7eb1DvUNjUo19KToQBhaNNMt/n0niE6iU4ph997tlrG7MHu mj3n4HOYonYqpUwVlkIlCk11Sz/qnw== -----END CERTIFICATE----- # Client Certificate -----BEGIN CERTIFICATE----- MIIHLDCCBRSgAwIBAgIBBDANBgkqhkiG9w0BAQsFADCBoDELMAkGA1UEBhMCREUx DzANBgNVBAgTBkJlcmxpbjEPMA0GA1UEBxMGQmVybGluMQ8wDQYDVQQKEwZvLm9w ZW4xGTAXBgNVBAsTEE5ldHdvcmsgU2VydmljZXMxEDAOBgNVBAMTB1ZQTi1BS0Ix EDAOBgNVBCkTB1ZQTiBBS0IxHzAdBgkqhkiG9w0BCQEWEHN1cHBvcnRAb29wZW4u ZGUwHhcNMTgwMjA1MjMzNTE5WhcNMzgwMjA1MjMzNTE5WjCBpDELMAkGA1UEBhMC REUxDzANBgNVBAgTBkJlcmxpbjEPMA0GA1UEBxMGQmVybGluMQ8wDQYDVQQKEwZv Lm9wZW4xGTAXBgNVBAsTEE5ldHdvcmsgU2VydmljZXMxFjAUBgNVBAMTDVZQTi1B S0ItbWFpY2ExEDAOBgNVBCkTB1ZQTiBBS0IxHTAbBgkqhkiG9w0BCQEWDmFyZ3Vz QG9vcGVuLmRlMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAnWr9AHQw 4zbOC1o8LehS+GuBUWXNdR9l2VBLtxKlOQ1YOj5N4EfGe7vb7hvasWPghoNWsUDQ lVxFRT0hPVqxQQJsZ/GseA6HCdtXxqzJIFuXRcH35zM4HyMy+MF+L7a+7DLsmauU /jKSaYxKC01/s0aHrv2JvJYl/KnDYDOUblCJcRqwEOKky8bJKCdU42FcnOynfQNa PiJi61I3uxZSi7XzwJJC1chaocpoA+bFXR2JvXv1DP/Ely8Mv5UtTJaFoBqPRGMP 1Jj4P6CEXLnshVWqoKIq+SW2lds2zrgPVLWxEs8hjz3aMfBQzHfWKEkn84FEA2U3 2gk3Id22h/9VdunHuNJK/BhsbFMCfi/ohG3KG6iFwFs9qJV2pDpfhddYkj+SjWd1 YFKjYmDonyCYN8fwMZda8ghkoMCJzaZptSPWJbjsQknHHbwiv6oL2vV2aMK1jSCo JfFi4uX7NEa957ukMMsyJoE5b2jxNcP2OGUyS36cMecQmmGmZQ1CoG1BD5dwYfJb bRBOw/tTnnELIE0+lmZ23SCNUF0r4MDUvbsCcq+7JR3oSfEIHahS+xjJFJHCLtnn LyrJrOvVvfGC5OE7Z8m3P/U4j2W8bUru8gB1X6AzyAKd9DZP+aoRkWQRsAJnRBX2 TpQ8PBCjKNyxlFbuewQPeJ1D1vMPPGzmcL0CAwEAAaOCAWkwggFlMAkGA1UdEwQC MAAwLQYJYIZIAYb4QgENBCAWHkVhc3ktUlNBIEdlbmVyYXRlZCBDZXJ0aWZpY2F0 ZTAdBgNVHQ4EFgQUA5JOPC52IovznOyfsiQfnGvm/GIwgdUGA1UdIwSBzTCByoAU JI/+S7CmNXouQlbqZPH7oD/8Si6hgaakgaMwgaAxCzAJBgNVBAYTAkRFMQ8wDQYD VQQIEwZCZXJsaW4xDzANBgNVBAcTBkJlcmxpbjEPMA0GA1UEChMGby5vcGVuMRkw FwYDVQQLExBOZXR3b3JrIFNlcnZpY2VzMRAwDgYDVQQDEwdWUE4tQUtCMRAwDgYD VQQpEwdWUE4gQUtCMR8wHQYJKoZIhvcNAQkBFhBzdXBwb3J0QG9vcGVuLmRlggkA 1HMStsHmudQwEwYDVR0lBAwwCgYIKwYBBQUHAwIwCwYDVR0PBAQDAgeAMBAGA1Ud EQQJMAeCBW1haWNhMA0GCSqGSIb3DQEBCwUAA4ICAQA62xvIk+QBCtXobEmkG4cv jCGYJXH9JRaS5sU0Z1TCgRYOI3u8fYbjpIyvAoAqaa+WmM/FIVxdTK1k6b36/2AZ n6ZTR5lS+XYLPfsH/lZ6cLlFMF9enSzgDNJ6GiorWzDjiAnHaSMsQbvCbIVw0bko XPxOZ9inO/f51kbJLVs/PnuCWbwNsPPGw45tJyds1e3dRw+bOxGqLZnkcd7r8G6C VU0XwY1Vyf0FNvjnA61GYh6/wrL1e0rlyhnGBFWiKN9ZqaR3anJGJZdok0Y87q4S 91qULeVF9nvJZrTocBGkEn2N8cCxBgA+vvkaxgo1md9ew67Brfn47b3ini2KaBXu mmGymXyWbMd1O9Mo1uRR8SoOujq+0usVpFdTrVCebQJesY8kPWCQEtBAfDRQSB0T UkEmKH7y2VcAmPV9ab3t0jDOdL8L/bnYFYjUWXfGtH+QvdjtADqMwG3BBdtQF59T SdzMfJXm74GY6bDmOaNkQXfN3RhBeQDI+neFnN2FZd2nn6d3qI6nbHwvDpLEtaYo 3PSYshsiUyx+eAWjISUb0mifNsgGEnxpLfkJJEWcdKZF9fkgHnKtzwtSQ38qkiog E6r8Y4ycAoV4vVdLyQoBHXdye08ftX+Jj2OafMF6ON1qEXbUioaTC+07vqE5OLdj RJu59FKP9UAr29FBOGDbMw== -----END CERTIFICATE----- # Client Key -----BEGIN ENCRYPTED PRIVATE KEY----- MIIJpDBOBgkqhkiG9w0BBQ0wQTApBgkqhkiG9w0BBQwwHAQIFeT4JOL9pXsCAggA MAwGCCqGSIb3DQIJBQAwFAYIKoZIhvcNAwcECITrZqSnxTbhBIIJUOJXOGNmXjBJ V4IOyYpGU0sEtp4A9P/3/cJg7s0AT5R7ULE91IxBBTCDfY7KZNgwgHjAVzL1xpD7 SsA3JW7D5NT0XX3eWMyCtuLpriyH5qSXUehyn8+AXrdCcafIdhDnM1+FfTUWe7KW RGlhznt4J0AYR0v0jSxCXF6fbKV9f5ZYKRsGOUCbWKBco6eu15Jp+LLXbrjpIcyb ufWl1X7KllSlPw03FdHP4puTcGHu+VgB3PXF6154ltkR3Lc+fDwCyroKh19Y4ww4 M6EpqPZ6g9A2GeKkyCe0wxuda9twUFmgr1EolwYF0jjnpW8itLeUvcDztpXklrLY JVt9l87xUALaRHC5tZ65c0Urv6NFa9R2pe1RFku+ObzHKRwWEcVnecLQhzr35/D5 uPEsC6Qk5aVVLDiPSXi42C1ekiN+5MqDLql12aDYapMkSl5gbrDZhTnV3vBIwwuj 57yd92N9mP07rlgTCkOPJWiqFdsc7wId4zNLX/8pg8mDxnTg0J5XGtEHQwm3ytPT oF3ity+wm650hRXlvsMzKnCHpJhYX6z6PXFrin0pZQkUEXPicX4WKMfr8DADoCAH nbxXTTsiKLAAtC1u+vrqw7XDerHN7ceF/SglzgyShjc5PF2mIPBDVG9bSUqc2cXT xTtlhYAVRaHXowOBahMyzKZFIxogp1mEcVCYmTjxtrQGBuiwL1gArBZeAt36iTmI JOvsnibHg4zZHKC+Cbh5pbSXdXQ1zAtRlAVWSFrLyVxTRu0dkqbd85TmtnoQZDUz 7T8Qy9TxMkXnKrp+6S/7ia0LyMdV6VWEkRXks1NnxHNxNqpG2KNoaAqX6vK7vStU qOxaSbGuYoL+sqrppSdHDABtgoV+olZ4cDi/7UFYwwT4+DaU2jTj1y9ZtXrc88m/ hdRE5HYBXa9vCy2pQGMq0QimQ8zx6FtD+z4rBVNFh4boh8+XKSKPru2T0/DLgVtV oS5U6JwzJrir0U8RWz1NkNztvxVHz5D1gHwNvYpUegkTt4j9ohoboPcspW/4ICJY mOvx9THXUcxCPZN7DBS8GaRa1EpyaI2cdEra3uh3G6siQB1At3KSHKf5+tsUuVsb /TFjnogKy8L5YeFCHxzOJPfnbYXdy7ESQe4AEodO+YAAQUAbafoyk5Pq4I3CVpzd aAhPpPA1SjDCCHXZkJ/AgbwDBLtN1iazN1r5WdDvafVEBbaoPXtZFi8/0i69W8qG cdG5p/pPkG9OeoB17jtwWxJaA87F96lhTxFZk5e5CvM4xrpF9EPz981d05/xvD6c Q7mbjvjyx66yVnoFSPrXda/d+phL0wx9228UXZ4IiGx5zxDr+b6ly3bO33wiXRCV owZ9lFkQBrxDcO9JNe8koAIOtTP+4Z+gtbGxR5meV6JpdcImGahNMSsUiwguYnjt dyFgUQcoxR5+m9bQPpyhkDEqmF1X1nujR8h9PkM6p8uQvCZNrq0clBudJdKDOp+o mXn2o7KawVEna6GvGJONZie4VeMROlse2yNAsxrKzMGWDKGtXbM3P51AFkvnV/fa Ap83yrjj9Xmpm0mRUZw3EN2j4Aw5ZRfI19AgMrfjSUBRSRldXSirT6O/NQhMfAV+ +g0uzwzo8xtkmzopUii//aWng1OJL9j8/CFFlqf2m+lg3bk80jj+QJthgR7OOsQB fH6S8G/t7r8f0NC629RRZ6KM/2KepQZ+WFzRyEeYQRDW1ca0+BwIXQNilZtAbhsr sCLXlZKcNqczfWmLHND+Gg/3W6FN1DXGHPp+3MyawEcAo7VduLb3bBfbmMZcv9y1 JRbXWsTM5XekIOesqz1WsUcR6MYmiWm+m74GoNuGMWiDMy4UIILSx9V3uEABeQio yCOsR0RGFS1MfjX6YAzA4ZrgA88UCHW4tru+K7pRw7L6CVPb4IMPuHWvcmpp+vSq hMBh0LSgHOmvjlSk7c5zKsRipR7Y4cPbL/wpNTfJwOBYHxb4xVPhkOWCsQg/ywz2 JkG5VbmsLxunYFONuV1h5r75+akQwuESnkyOBPLn2mnNThmWEgtEoQEfz6n74Vwc mr7LW/9dt7WIc/Ra1iworbv+n9LqhnOJZmkl3hP7KJLb71NDjTk10PRvkNJ0vDqw zYklUm4q8ptr6nUrZd9yVf/bXwWrrf/NSEYFQnLiTht1+aJvlUvc1314YALtYG1d e6rUXBr+a4blG5WVkaglC5gvPTw3ZdDeZgQ/ipUWxENnGgG24PK75/dJLZPECLRL UK0mmNb09jr3XV4yIanfkEYqtqwEWPRm4eLJWVWnwptdHVvdRPBHbwiD25PPMUWk 8ObIpvaTA1m73xDJea/YkQNO0hKw2i9+wDMeTtSoK6VF077rt03rZrGoHlDYMrO8 0iLYdf87fU11GQ367w+n9j6qNLbT5LHRIZP5FE9YY81qYl2DoDzBHf78IH5Uut7x Y+FbajrBVUwOhmawhVD0Pu8CaRw8rNKmhHabtFSXJCprtEXqinEmTE4L0EOuIi5C 5IjAuJGAKBVzyt2NrwWazeoHHrYKktE3tUVkvi+sse/wp3PLGxbYvEIQgb8k3HGW z18BMj4YfqOsjoR9PQUkG+Wm1yh4YNo5AZLVfXkfTGJcNQhgKqmj2YBdLpxZonlH s/rbae2GWz0ePb1gCNvWX6cIl+g02jThGkRNyhn7HFbj/Rex8rdDk8g7NMroytur P3o7l3i7KUSpW1utpDrE+PudJg/+mqe2vkKqlatUbMOUmtQM7AMPGRjOTESH4T8o j5P0YDrsqDnwfTZ/pWAla6x1SuLceneAqBBoeK3S90D26OXLImMBdgjcX1oBHz/Z +CfJAz3yKfkD3EWQi7OHAyjdD5KDFhD3YNmFQpxfZX+Zi09Losd+UA7EGalK4ERW lmtCvSpcSnQmw5bq+w0bAmvF9P3EIH0OYig8r61/nEqGmvFjB2Yp1vosvjRF/dna pxLZVz0fLXkQPgAIsQOMW/iGPX47Fqb05zTLu/PtZYQR3QXsdvtbO3vJHhalY32v H45dwbPP5olUeoj6NnxlVOmXn3/zqj935dNxmDJIBLAbtu/uGcXuNNkebAElDHek p740XqNjn7Bu/55jtTKsryUdMb8os+IO3iysxHyBvX7Stc7A/HcOJHz956dhZ99h lMAktW8kgbpVqVrwhB64ibcp2PU2GV/2 -----END ENCRYPTED PRIVATE KEY----- # Verify server certificate by checking # that the certicate has the nsCertType # field set to "server". This is an # important precaution to protect against # a potential attack discussed here: # http://openvpn.net/howto.html#mitm # # To use this feature, you will need to generate # your server certificates with the nsCertType # field set to "server". The build-key-serve ns-cert-type server # If a tls-auth key is used on the server # then every client must also have the key. # # Don't forget to set the 'key-direction' Parameter if using # Inline Key. Usualy , sever has key direction '0', while client # has ke direction '1'. # key-direction 1 -----BEGIN OpenVPN Static key V1----- 5b91b2a91925f7503bb408768cb5053b 80a9d011f37c13df8297549c485d787b 6450a5341cd9b5079bf4993cd7724c91 8ae6953503cf30565dc75025061990c7 44348470db2143ff80b8ed281d822a69 a2d67538439c1f04f73df867848f618f cc096eb98252e5c7e01a7921803ca4fe 18a0df2a99aaf15839f598fc5a3f24b9 17afcfd477d49792ffe450a18b8ad0f2 a9b1e5bc658e066e461472b2439ad423 1be921f71ac59a050bc751f681fcd553 60c4274c640dc56b0e140d5e9e062349 12bfaa7450b615bbc898f822dd5eb6bc f3023bbcd87fb2a18c651dbae4bfbbcb 5797d4b6c01f0bd700681b308e19b239 53cfefa995eb4bf57ee985194e814548 -----END OpenVPN Static key V1----- # Select a cryptographic cipher. # If the cipher option is used on the server # then you must also specify it here. # Enable compression on the VPN link. # Don't enable this unless it is also # enabled in the server config file. comp-lzo # Verbosity level. # 0 -- quiet except for fatal errors. # 1 -- mostly quiet, but display non-fatal network errors. # 3 -- medium output, good for normal operation. # 9 -- verbose, good for troubleshooting verb 1 # Setting 'pull' on the client takes care to get the 'push' durectives # from the server pull