Frencky Chen
Kamis, 10 November 2016
Kamis, 27 Oktober 2016
Script install squid debian - ubuntu
apt-get update
wget http://dedeerik.com/setup-squid.sh
bash setup-squid.sh
Script install openvpn ubuntu - debian
apt-get install nano openvpn -y
cp -a /usr/share/doc/openvpn/examples/easy-rsa /etc/openvpn/
cd /etc/openvpn/easy-rsa/2.0
source ./vars
./clean-all
./build-ca
./build-dh
./build-key-server server01
openvpn --genkey --secret keys/ta.key
cd /etc/openvpn
nano server.conf
port 25000
proto udp
dev tun
ca keys/ca.crt
cert keys/server01.crt
key keys/server01.key
dh keys/dh1024.pem
plugin /usr/lib/openvpn/openvpn-auth-pam.so login
client-cert-not-required
username-as-common-name
server 49.213.16.0 255.255.255.0
ifconfig-pool-persist ipp.txt
push "redirect-gateway def1"
push "dhcp-option DNS 8.8.8.8"
push "dhcp-option DNS 8.8.4.4"
keepalive 5 30
comp-lzo
persist-key
persist-tun
status server-tcp.log
verb 3
nano server-tcp.conf
port 1194
proto tcp
dev tun
ca keys/ca.crt
cert keys/server01.crt
key keys/server01.key
dh keys/dh1024.pem
plugin /usr/lib/openvpn/openvpn-auth-pam.so login
client-cert-not-required
username-as-common-name
server 49.213.17.0 255.255.255.0
ifconfig-pool-persist ipp.txt
push "redirect-gateway def1"
push "dhcp-option DNS 8.8.8.8"
push "dhcp-option DNS 8.8.4.4"
keepalive 5 30
comp-lzo
persist-key
persist-tun
status server-tcp.log
verb 3
mkdir /etc/openvpn/keys
cp /etc/openvpn/easy-rsa/2.0/keys/{ca.crt,server01.crt,server01.key,dh1024.pem,ta.key} /etc/openvpn/keys/
nano /etc/default/openvpn
EDIT #AUTOSTART="all" Buang TANDA #
/etc/init.d/openvpn restart
lsof -i |grep openvpn
nano /etc/sysctl.d/forwarding.conf
net.ipv4.ip_forward=1
sysctl -p /etc/sysctl.d/forwarding.conf
iptables -t nat -I POSTROUTING -s 49.213.16.0/24 -o eth0 -j MASQUERADE
iptables -t nat -I POSTROUTING -s 49.213.17.0/24 -o eth0 -j MASQUERADE
mkdir clientconfig
cp /etc/openvpn/easy-rsa/2.0/keys/{ca.crt,ta.key} clientconfig/
cd clientconfig
cat ca.crt
nano config-udp.ovpn
client
dev tun
proto udp
remote 192.168.X.X 25000
resolv-retry infinite
route-method exe
resolv-retry infinite
nobind
persist-key
persist-tun
auth-user-pass
comp-lzo
verb 3
<ca>
</ca>
nano config-tcp.ovpn
client dev tun proto tcp remote 192.168.x.x 1194 resolv-retry infinite route-method exe resolv-retry infinite nobind persist-key persist-tun auth-user-pass comp-lzo verb 3 <ca> </ca>
#DONE
Langganan:
Komentar (Atom)





