OpenVPN: Difference between revisions

From Open Source Ecology
Jump to navigation Jump to search
Line 23: Line 23:


==See Also==
==See Also==
*[[OSE OpenVPN]]
 
* [[Web server configuration]]
* [[Web server configuration]]
* [[Wordpress]]
* [[Wordpress]]

Revision as of 09:21, 18 December 2019

OpenVPN is the VPN solution of choice used by OSE.

Hardening

The server (and client) configs for OpenVPN should be hardened for security. For example, the admin should investigate the time-appropriate choices the following factors:

  1. server & client RSA key sizes
  2. DH params key size
  3. cipher (for data channel)
  4. tls-cipher (for control channel)
  5. tls-version-min

Important Files & Directories

For more information about our openvpn configuration, please see the following files & directories on the server:

/etc/openvpn/
/usr/share/easy-rsa/3/pki/


See Also