openvpn radius mysqlldap howto.pdf


Aperçu du fichier PDF openvpn-radius-mysqlldap-howto.pdf - page 6/14

Page 1...4 5 67814



Aperçu texte


OpenVPN RADIUS MySQL/LDAP Howto - 2010-11-26 11:40:28
by croessner - Rößner-Network-Solutions - http://www.roessner-network-solutions.com

acctport=1813
# The UDP port for radius authentication.
authport=1812
# The name or ip address of the radius server.
name=127.0.0.1
# How many times should the plugin send the if there is no response?
retry=1
# How long should the plugin wait for a response?
wait=1
# The shared secret.
sharedsecret=Hier das Secret aus der client.conf des Radius-Servers
}

Point-to-Multipoint Server
Please setup a point-to-multipoint configuration. Tip: Use the easy-rsa-package, which you can install seperatly
with aptitude:
i.e.:
cp -a /usr/share/doc/openvpn/examples/easy-rsa /etc
cd /etc/easy-rsa/2.0/
Edit the file vars and change the lines below, like described in the README.
source vars
./clean-all
./build-ca
./build-key-server server
./build-dh
Now you can create one or more client certificates:
./build-key cl1
cd keys
openvpn --genkey --secret ta.key
Please change to the directory /etc/openvpn
cd /etc/openvpn
mkdir ssl
cp -a /etc/easy-rsa/keys/{ca.crt,dh1024.pem,ta.key,server.crt,server.key} ssl/
Use an editor and put in the following sample configuration:
radiusvpn.conf:
# Which device
dev tun
fast-io
user nobody
group nogroup

page 6 / 14