From 3a5bcf5d2d8078fb38bb4c7368476384970b8f08 Mon Sep 17 00:00:00 2001 From: randomshell Date: Mon, 13 Dec 2021 21:50:21 +0000 Subject: [PATCH] Remove unnecessary cipher configuration on Fedora (#762) --- openvpn-install.sh | 4 ---- 1 file changed, 4 deletions(-) diff --git a/openvpn-install.sh b/openvpn-install.sh index c2845cf..0365721 100755 --- a/openvpn-install.sh +++ b/openvpn-install.sh @@ -930,10 +930,6 @@ verb 3" >>/etc/openvpn/server.conf sed -i 's|LimitNPROC|#LimitNPROC|' /etc/systemd/system/openvpn-server@.service # Another workaround to keep using /etc/openvpn/ sed -i 's|/etc/openvpn/server|/etc/openvpn|' /etc/systemd/system/openvpn-server@.service - # On fedora, the service hardcodes the ciphers. We want to manage the cipher ourselves, so we remove it from the service - if [[ $OS == "fedora" ]]; then - sed -i 's|--cipher AES-256-GCM --ncp-ciphers AES-256-GCM:AES-128-GCM:AES-256-CBC:AES-128-CBC:BF-CBC||' /etc/systemd/system/openvpn-server@.service - fi systemctl daemon-reload systemctl enable openvpn-server@server