Ignore:
Timestamp:
01/12/19 00:11:37 (6 years ago)
Author:
Edwin Eefting <edwin@datux.nl>
Branches:
master
Children:
1cb5ee6
Parents:
08cf024
Message:

added ipset learning to openvpn, to allow firewalling based on openvpn certificate

Location:
npl/internetserver/openvpn_conf
Files:
1 added
1 deleted
5 edited

Legend:

Unmodified
Added
Removed
  • npl/internetserver/openvpn_conf/openvpn_conf.build

    r08cf024 r76ea60c  
    1 6565
     16566
  • npl/internetserver/openvpn_conf/openvpn_conf.md5

    r08cf024 r76ea60c  
    1 3bb0ddff2bba1afb30699c8181fa2287  ./openvpn_conf.pkg
     1ef79757c53e0d2e0708525ee47d00123  ./openvpn_conf.pkg
    22729b418d4c2197708760319d4097906e  ./openvpn_conf.SlackBuild
    3 c1e62f1b284422a04fa28a9f40d2b62e  ./openvpn_conf.SlackBuild.log.gz
     320fb700020946558a20824f87a9ae619  ./openvpn_conf.SlackBuild.log.gz
    44638790d39f3f773301dd0c58a0db6008  ./root/etc/cron.monthly/openvpn_regen_crl
    5502590f2d27b9254da5877e03719a9228  ./root/etc/firewall/services.openvpn
    665d08314120a94191e539c792b1c410a2  ./root/etc/openvpn/easyrsa
    7 e757a4246c98f98c150c7796e8c6f4fc  ./root/etc/openvpn/learn-address.sh
    87d6cb374d0d7d5b7b87d74f9976362a70  ./root/etc/openvpn/openssl-1.0.cnf
    9 88937c4fed1e288bcedfc2975792c331  ./root/etc/openvpn/openvpn.conf
     8636e64fe7182590b27f20607c584108d  ./root/etc/openvpn/openvpn.conf
    10934ca6b140576e1502376f59dc2843365  ./root/etc/openvpn/openvpn_custom.conf.new
    1110d41d8cd98f00b204e9800998ecf8427e  ./root/etc/openvpn/openvpn_syn3.conf.new
     
    16155f1d7122cb69dc05cda3c913f70f1cc1  ./root/etc/openvpn/syn3-genconfig
    1716aed23bf689b5b934959b28c45847b7ae  ./root/etc/openvpn/template.ovpn
     17110d475c05ef7aecc70e3f70f4fa99d7  ./root/etc/openvpn/update-ipset.sh
    1818bdf6c4b1e71f502a768eda6e65e1ffbd  ./root/etc/openvpn/x509-types/ca
    191984e917d7be5ee502148039694d5e579e  ./root/etc/openvpn/x509-types/client
  • npl/internetserver/openvpn_conf/openvpn_conf.pkg

    • Property mode changed from 100755 to 100644
  • npl/internetserver/openvpn_conf/root/etc/openvpn/openvpn.conf

    r08cf024 r76ea60c  
    285285# pam_ldap authentication (need to be member of group with uid 521)
    286286plugin /usr/lib/openvpn/plugins/openvpn-plugin-auth-pam.so "openvpn login USERNAME password PASSWORD"
     287
     288#learn ipsets to allow firewalling on openvpn certificate name
     289learn-address /etc/openvpn/update-ipset.sh
     290script-security 3
Note: See TracChangeset for help on using the changeset viewer.