############################################################################### # OpenVPN 2.0 Sample Configuration File # for PacketiX VPN / SoftEther VPN Server # # !!! AUTO-GENERATED BY SOFTETHER VPN SERVER MANAGEMENT TOOL !!! # # !!! YOU HAVE TO REVIEW IT BEFORE USE AND MODIFY IT AS NECESSARY !!! # # This configuration file is auto-generated. You might use this config file # in order to connect to the PacketiX VPN / SoftEther VPN Server. # However, before you try it, you should review the descriptions of the file # to determine the necessity to modify to suitable for your real environment. # If necessary, you have to modify a little adequately on the file. # For example, the IP address or the hostname as a destination VPN Server # should be confirmed. # # Note that to use OpenVPN 2.0, you have to put the certification file of # the destination VPN Server on the OpenVPN Client computer when you use this # config file. Please refer the below descriptions carefully. ############################################################################### # Custom hostname setting. # # Uncomment the line and replace "Hostname" with your desired string, if you # want the server to use a specific hostname instead of the default gateway's # hardware address. ;setenv UV_HOSTNAME Hostname ############################################################################### # Push extra info about the client to the server. # # The server currently uses: # IV_HWADDR = Default gateway's MAC Address # UV_HOSTNAME = Custom hostname # # They are required in order to set an hostname for the client. push-peer-info ############################################################################### # Specify the type of the layer of the VPN connection. # # To connect to the VPN Server as a "Remote-Access VPN Client PC", # specify 'dev tun'. (Layer-3 IP Routing Mode) # # To connect to the VPN Server as a bridging equipment of "Site-to-Site VPN", # specify 'dev tap'. (Layer-2 Ethernet Bridging Mode) dev tun ############################################################################### # Specify the underlying protocol beyond the Internet. # Note that this setting must be correspond with the listening setting on # the VPN Server. # # Specify either 'proto tcp' or 'proto udp'. proto udp ############################################################################### # The destination hostname / IP address, and port number of # the target VPN Server. # # You have to specify as 'remote '. You can also # specify the IP address instead of the hostname. # # Note that the auto-generated below hostname are a "auto-detected # IP address" of the VPN Server. You have to confirm the correctness # beforehand. # # When you want to connect to the VPN Server by using TCP protocol, # the port number of the destination TCP port should be same as one of # the available TCP listeners on the VPN Server. # # When you use UDP protocol, the port number must same as the configuration # setting of "OpenVPN Server Compatible Function" on the VPN Server. # Note: The below hostname is came from the Dynamic DNS Client function # which is running on the VPN Server. If you don't want to use # the Dynamic DNS hostname, replace it to either IP address or # other domain's hostname. remote 6932.v4.softether.net 1194 ############################################################################### # The HTTP/HTTPS proxy setting. # # Only if you have to use the Internet via a proxy, uncomment the below # two lines and specify the proxy address and the port number. # In the case of using proxy-authentication, refer the OpenVPN manual. ;http-proxy-retry ;http-proxy [proxy server] [proxy port] ############################################################################### # The encryption and authentication algorithm. # # The default setting is compatible with most clients. Modify it as you prefer. # It is recommended to use a better algorithm if your client supports it. # When you specify an unsupported algorithm, an error will occur. cipher AES-128-CBC auth SHA1 ############################################################################### # Other parameters necessary to connect to the VPN Server. # # It is not recommended to modify it unless you have a particular need. resolv-retry infinite nobind persist-key persist-tun client verb 3 ############################################################################### # Authentication with credentials. # # Comment the line out in case you want to use the certificate authentication. auth-user-pass ############################################################################### # The certificate file of the destination VPN Server. # # The CA certificate file is embedded in the inline format. # You can replace this CA contents if necessary. # Please note that if the server certificate is not a self-signed, you have to # specify the signer's root certificate (CA) here. -----BEGIN CERTIFICATE----- MIIDyjCCArKgAwIBAgIBADANBgkqhkiG9w0BAQsFADBkMRswGQYDVQQDDBI2OTMy LnNvZnRldGhlci5uZXQxGzAZBgNVBAoMEjY5MzIuc29mdGV0aGVyLm5ldDEbMBkG A1UECwwSNjkzMi5zb2Z0ZXRoZXIubmV0MQswCQYDVQQGEwJVUzAeFw0yMjAzMTcx MjU3MzdaFw0zNzEyMzExMjU3MzdaMGQxGzAZBgNVBAMMEjY5MzIuc29mdGV0aGVy Lm5ldDEbMBkGA1UECgwSNjkzMi5zb2Z0ZXRoZXIubmV0MRswGQYDVQQLDBI2OTMy LnNvZnRldGhlci5uZXQxCzAJBgNVBAYTAlVTMIIBIjANBgkqhkiG9w0BAQEFAAOC AQ8AMIIBCgKCAQEArSZBGpJlRdPRELCjA/Ar/bLUoEiFs6WgyWSWIMfWP6C5OSqP noYt3I3MeB+csM/0dkmdiQ7XuppYh9HnAzisI1FOn64OuZ8hKDmi34pelathOriP hVjjvDbQHokhb+TKdSDy5iS0ehD+h/vM3HCKYiPrCzJ++sfVSXSfAwaPPe+DYVXs C9D6QuSD5nChx4iGrAD+Wf16h0fGae4FYQXaZwiMWqP/rYmZOOGXs0G/kZ7WhSe6 7BLhiEbT58UcpgWpbu0l5G50Qsb8n3JrxY6Xpl3lMsigz/cVvFLpRv0hSXwLcB5Z hJzTeRjLI1dPidymc0l1kl6ZGg+9RAfJnHHF8wIDAQABo4GGMIGDMA8GA1UdEwEB /wQFMAMBAf8wCwYDVR0PBAQDAgH2MGMGA1UdJQRcMFoGCCsGAQUFBwMBBggrBgEF BQcDAgYIKwYBBQUHAwMGCCsGAQUFBwMEBggrBgEFBQcDBQYIKwYBBQUHAwYGCCsG AQUFBwMHBggrBgEFBQcDCAYIKwYBBQUHAwkwDQYJKoZIhvcNAQELBQADggEBAGAa cYc4BQpxJ4w8SE9l13PFQtEkToYyGdYw85+puzDH1hj6PeyRKIym+9wVggDvHUZ8 wIaRex2bK/cThuOd4CI04BcPYRuCFo2SikPKB8HcFEU4qJiJkPryoufIwqn0SPgX QWITc9148XSVj8p5QsP3BYll4NVO/IYUHx2BUrZEtaGYkSI8rxY8vKin1IcfGU5k hVlBJem9JXqdjKRtdEco4jaiSp13wuU98FbEXFyKDE+hHRjB5zjeK1idmy5kG0Gz AbB6kJ0fTgo4DSR/AYhRYsllbOlFoV1dq2jJIXemMjLtFiIaorAGq9OpPPbxXmu8 J8i/a+K3Vnu/M/ub0ec= -----END CERTIFICATE----- ############################################################################### # Client certificate and key. # # A pair of client certificate and private key is required in case you want to # use the certificate authentication. # # To enable it, uncomment the lines below. # Paste your certificate in the block and the key in the one. ; ;-----BEGIN CERTIFICATE----- ; ;-----END CERTIFICATE----- ; ; ;-----BEGIN RSA PRIVATE KEY----- ; ;-----END RSA PRIVATE KEY----- ;