This commit is contained in:
Julian Sutter 2023-07-28 09:37:56 -07:00
parent bef877ade4
commit 62f4b74fe0
4 changed files with 378 additions and 11 deletions

View file

@ -0,0 +1,124 @@
dev tun
persist-tun
persist-key
data-ciphers AES-128-GCM:AES-128-CBC
data-ciphers-fallback AES-128-GCM
auth SHA256
tls-client
client
resolv-retry infinite
remote mgmt-sfo-fw01.symbiosystems.net 1194 udp4
lport 0
verify-x509-name "mgmt-sfo-fw01.symbiosystems.net" name
auth-user-pass
remote-cert-tls server
explicit-exit-notify
<ca>
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
</ca>
<cert>
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
</cert>
<key>
-----BEGIN PRIVATE KEY-----
MIIEvgIBADANBgkqhkiG9w0BAQEFAASCBKgwggSkAgEAAoIBAQDeeoh87fiDygLE
leTCdO2YFO4OZ7V5seylbv9TRj7q6gL2oIp4bIuXkNgqvwcp76GKdP/Wh4BFf4z2
k6ic7xl5zqcNeINlyVPg30gQUgCao0Nz7Z92HjVPp2HPK8FYjL65uPCuVKGYuB9Q
tyg9J2lPK4H//JBjhqAbZUGGAKPDsHNErHB9qVBUXpvlFcEHuurlEmk0/uXH1whd
+eeBPC6BayO5pUdKQziCEhcklZexFUsON+77J/laBRSy7xIIwGj1PKsLUgRFC0Oh
S4tpbRDM+zn/SvuWJ8+1YY1SFygia4j30t5kVQZbrP6K0Mor5SV0zLAltUBKQslF
NO4tfFcNAgMBAAECggEBANmVXy1Hk7hYdlKLAnrH3qLRPW0rMon9YCL/pohr+BbJ
nPJVWneiOPeXukI8J6Z07Tk7agcG6IWP1G5HRS2OjgzZ9fkvttpyhy0zUghcGqki
KVMUv9LGgn8PhZIXCfYvWEzNOd5VeOGimUXYi2sbw1uhgne4LAKaZLXGVsnWkFNN
yJwYMu5lQEliZ24pBp+tczEg53ODiv8WwJt/K9+MSkv7vQNgUVtcBV7Pso0MEudJ
vV4jtha/hPlAjKwYU3S2xDdYTXxvCFZXorJbdxkAgIOT+vl4lqscaqEsCL/zVwgO
1Uaar2lGjc3doLm6aRilyGJ2iOBvtyaSbmSMZE/sZKECgYEA97f1ezLHFToqWKHU
j3p8ltgok7AJSSKlSX+gWYqihrW08hi20lcy2IsDwH3cFFnxIvc4LUhFJuqtmGIl
tCsVNQIsPObHENHGRc++e09gEsiL4iZHz8JUWMNbxGC3OOfGxxhgO0qkIDaAmmb9
PDmqN32s+v40FbvfJfTUHizbXvUCgYEA5eqQa1W9JrO8y/xKSPEz6pKcTovKD//h
dkNppjA988MLXxa1EzhGlV7Wcq/J6K42onHYCOEYUdjCWOfSiOv8kw1Gc2NU3TrR
QU92pn0Y6p8t4922Dp64dCnF758bxpZ61IkPaIkS5bAua/qYVMJFFhrRtsvGO73W
IdOGPM2+2LkCgYEAhE8hMphAdToH/CcTnT7S5M63fYp8qy9yEPu17Z16iXDsIJLK
szYX1kkJy/ptXgFcJkzdGHKNXOfjqIxjjwOj5BgxAKZSlM02lXsMRlhy/BVZgYTo
vjMRUgemMBFoS2Cgbx6553FKkFoL/mwbvdse61yY08aKk0ExQtitoyBaWzECgYAB
56qgqQozKuQSkJmQ9yal9+cBo5jd/xHAKBjU/qtUvLX4aLjBWwMCs9F1C83RdrgP
KoBOuoa4DuK1V95fsgzarw55YEZQuu8G6oCiKoEtWHpJ3AlpH5mJpNr1/Ex/nbmQ
zz3ocNJOQuJvlJj0gtONtlUsfY276vu+NgFzuYSuSQKBgA8MRtyOsAtQ5vdKGviI
vBk7UoR4267mMz628vMuOaX/TNZ0pk3Abgz7zPitjHJ5X2KKeBTYVMH2egN4cavW
jLLjjdMBSnXI65COpvANeTzk3/Oib1AmIgE4w4tfjBDaNpTpjTsxp2m01o7cl2CU
NnUa9OI5VK2eQnrUxN5XvwHn
-----END PRIVATE KEY-----
</key>
key-direction 1
<tls-auth>
#
# 2048 bit OpenVPN static key
#
-----BEGIN OpenVPN Static key V1-----
2cd2f9601c3e6dcf0680b0f3f488c9b9
c3020d0b24fe0e7e926ba3095787b431
7047e692d0e59f3fefa3e727c51dbbb9
fb0a0c34895418601080fbcbc67e0179
12f3ee6a4d34c5ed0499646f26e67bed
09b017d9335e605551d045d826bce436
6ee8d03c1aa4e19dcaedbdb8071ebb9f
d0a6a8a8e2c0a79bbfbf958150e7b850
63a4710dd76e50efc45cfc1ad7c5504d
d25918b644a997bc4d2753b3bdcfd695
7ad17754842e57365b7cad3aa7629e05
f36037bee290fe1ba8800bc26fd4f741
b5c01b798357047976f2a42896d0ed8e
dbd7cc3043326f494b02b5635fa76352
386abc1182903b23b1af88b8bb76b75e
ca5788865859403d48d52e47c46d8bba
-----END OpenVPN Static key V1-----
</tls-auth>