From de648aaa83f71c4d79da1256993457076a118af3 Mon Sep 17 00:00:00 2001 From: jtbr Date: Tue, 12 Apr 2016 10:16:58 +0000 Subject: [PATCH] my personal preferences, and limit 3 simultaneous clients --- openvpn-install.sh | 8 ++++++-- 1 file changed, 6 insertions(+), 2 deletions(-) diff --git a/openvpn-install.sh b/openvpn-install.sh index ee21c50..40970ef 100644 --- a/openvpn-install.sh +++ b/openvpn-install.sh @@ -348,7 +348,10 @@ persist-key persist-tun crl-verify crl.pem tls-server -tls-auth tls-auth.key 0" >> /etc/openvpn/server.conf +tls-auth tls-auth.key 0 +status openvpn-status.log +max-clients 3 +verb 3" >> /etc/openvpn/server.conf # Enable net.ipv4.ip_forward for the system if [[ "$OS" = 'debian' ]]; then sed -i 's|#net.ipv4.ip_forward=1|net.ipv4.ip_forward=1|' /etc/sysctl.conf @@ -445,7 +448,8 @@ remote-cert-tls server cipher AES-256-CBC auth SHA512 tls-version-min 1.2 -tls-client" > /etc/openvpn/client-common.txt +tls-client +verb 3" > /etc/openvpn/client-common.txt if [[ "$VARIANT" = '1' ]]; then # If the user selected the fast, less hardened version echo "tls-cipher TLS-DHE-RSA-WITH-AES-128-CBC-SHA" >> /etc/openvpn/client-common.txt