Here is my configs:
ubus call system board
{
"kernel": "6.12.74",
"hostname": "Defcon",
"system": "ARMv8 Processor rev 4",
"model": "GL.iNet GL-MT6000",
"board_name": "glinet,gl-mt6000",
"rootfs_type": "squashfs",
"release": {
"distribution": "OpenWrt",
"version": "25.12.2",
"firmware_url": "``https://downloads.openwrt.org/``",
"revision": "r32802-f505120278",
"target": "mediatek/filogic",
"description": "OpenWrt 25.12.2 r32802-f505120278",
"builddate": "1774469393"
}
}
ip route show
default via 100.69.0.1 dev eth1 proto static src 100.69.117.12
10.8.42.0/24 dev tun21 proto kernel scope link src 10.8.42.1
10.8.44.0/24 dev tun10 proto kernel scope link src 10.8.44.2
10.129.0.0/22 dev tun11 proto kernel scope link src 10.129.1.112
46.227.67.134 dev tun11 scope link
100.69.0.0/17 dev eth1 proto kernel scope link src 100.69.117.12
172.22.28.0/24 dev wgserver proto kernel scope link src 172.22.28.1
172.22.28.2 dev wgserver proto static scope link
172.22.28.3 dev wgserver proto static scope link
172.22.28.4 dev wgserver proto static scope link
172.22.28.5 dev wgserver proto static scope link
172.22.28.6 dev wgserver proto static scope link
192.165.9.158 dev tun11 scope link
192.168.2.0/24 dev br-guest proto kernel scope link src 192.168.2.1
192.168.25.0/24 dev eth1 proto kernel scope link src 192.168.25.2
192.168.46.0/24 dev br-lan proto kernel scope link src 192.168.46.1
192.168.50.0/24 via 10.8.44.1 dev tun10 metric 500
217.64.148.51 via 100.69.0.1 dev eth1 proto static
ip -6 route show
default from 2001:9b0:41::5f0b:2ec5 via fe80::a67b:2cff:fe9e:ea01 dev eth1 proto static metric 512 pref medium
default from 2001:9b1:df8:eb00::/56 via fe80::a67b:2cff:fe9e:ea01 dev eth1 proto static metric 512 pref medium
2001:67c:750:1:cafe:cd45:0:1 dev tun11 metric 1024 pref medium
2001:9b1:df8:eb01::/64 dev br-lan proto static metric 1024 pref medium
2001:9b1:df8:eb02::/64 dev br-guest proto static metric 1024 pref medium
unreachable 2001:9b1:df8:eb00::/56 dev lo proto static metric 2147483647 pref medium
2a07:a880:4601:1082::/64 dev tun11 proto kernel metric 256 pref medium
2a07:a880:4601:10f0:cd45::1 dev tun11 metric 1024 pref medium
fd00:0:1337:cafe:1111:1111:505:387e dev wgc_vpn10 proto kernel metric 256 pref medium
fd42:4242:4242::/64 dev tun21 proto kernel metric 256 pref medium
fd65:35f6:a308:2::/64 dev br-guest proto static metric 1024 pref medium
unreachable fd65:35f6:a308::/48 dev lo proto static metric 2147483647 pref medium
fda9:65bd:f903::2 dev wgserver proto static metric 1024 pref medium
fda9:65bd:f903::3 dev wgserver proto static metric 1024 pref medium
fda9:65bd:f903::4 dev wgserver proto static metric 1024 pref medium
fda9:65bd:f903::5 dev wgserver proto static metric 1024 pref medium
fda9:65bd:f903::6 dev wgserver proto static metric 1024 pref medium
fda9:65bd:f903::/64 dev wgserver proto kernel metric 256 pref medium
fe80::/64 dev eth0 proto kernel metric 256 pref medium
fe80::/64 dev br-lan proto kernel metric 256 pref medium
fe80::/64 dev tun21 proto kernel metric 256 pref medium
fe80::/64 dev eth1 proto kernel metric 256 pref medium
fe80::/64 dev br-guest proto kernel metric 256 pref medium
fe80::/64 dev ifb4eth1 proto kernel metric 256 pref medium
fe80::/64 dev tun10 proto kernel metric 256 pref medium
fe80::/64 dev tun11 proto kernel metric 256 pref medium
ip route show table all
default via 100.69.0.1 dev eth1 proto static src 100.69.117.12
10.8.42.0/24 dev tun21 proto kernel scope link src 10.8.42.1
10.8.44.0/24 dev tun10 proto kernel scope link src 10.8.44.2
10.129.0.0/22 dev tun11 proto kernel scope link src 10.129.1.112
46.227.67.134 dev tun11 scope link
100.69.0.0/17 dev eth1 proto kernel scope link src 100.69.117.12
172.22.28.0/24 dev wgserver proto kernel scope link src 172.22.28.1
172.22.28.2 dev wgserver proto static scope link
172.22.28.3 dev wgserver proto static scope link
172.22.28.4 dev wgserver proto static scope link
172.22.28.5 dev wgserver proto static scope link
172.22.28.6 dev wgserver proto static scope link
192.165.9.158 dev tun11 scope link
192.168.2.0/24 dev br-guest proto kernel scope link src 192.168.2.1
192.168.25.0/24 dev eth1 proto kernel scope link src 192.168.25.2
192.168.46.0/24 dev br-lan proto kernel scope link src 192.168.46.1
192.168.50.0/24 via 10.8.44.1 dev tun10 metric 500
217.64.148.51 via 100.69.0.1 dev eth1 proto static
root@Defcon:~# clear screen
root@Defcon:~# ip -6 route show
default from 2001:9b0:41::5f0b:2ec5 via fe80::a67b:2cff:fe9e:ea01 dev eth1 proto static metric 512 pref medium
default from 2001:9b1:df8:eb00::/56 via fe80::a67b:2cff:fe9e:ea01 dev eth1 proto static metric 512 pref medium
2001:67c:750:1:cafe:cd45:0:1 dev tun11 metric 1024 pref medium
2001:9b1:df8:eb01::/64 dev br-lan proto static metric 1024 pref medium
2001:9b1:df8:eb02::/64 dev br-guest proto static metric 1024 pref medium
unreachable 2001:9b1:df8:eb00::/56 dev lo proto static metric 2147483647 pref medium
2a07:a880:4601:1082::/64 dev tun11 proto kernel metric 256 pref medium
2a07:a880:4601:10f0:cd45::1 dev tun11 metric 1024 pref medium
fd00:0:1337:cafe:1111:1111:505:387e dev wgc_vpn10 proto kernel metric 256 pref medium
fd42:4242:4242::/64 dev tun21 proto kernel metric 256 pref medium
fd65:35f6:a308:2::/64 dev br-guest proto static metric 1024 pref medium
unreachable fd65:35f6:a308::/48 dev lo proto static metric 2147483647 pref medium
fda9:65bd:f903::2 dev wgserver proto static metric 1024 pref medium
fda9:65bd:f903::3 dev wgserver proto static metric 1024 pref medium
fda9:65bd:f903::4 dev wgserver proto static metric 1024 pref medium
fda9:65bd:f903::5 dev wgserver proto static metric 1024 pref medium
fda9:65bd:f903::6 dev wgserver proto static metric 1024 pref medium
fda9:65bd:f903::/64 dev wgserver proto kernel metric 256 pref medium
fe80::/64 dev eth0 proto kernel metric 256 pref medium
fe80::/64 dev br-lan proto kernel metric 256 pref medium
fe80::/64 dev tun21 proto kernel metric 256 pref medium
fe80::/64 dev eth1 proto kernel metric 256 pref medium
fe80::/64 dev br-guest proto kernel metric 256 pref medium
fe80::/64 dev ifb4eth1 proto kernel metric 256 pref medium
fe80::/64 dev tun10 proto kernel metric 256 pref medium
fe80::/64 dev tun11 proto kernel metric 256 pref medium
root@Defcon:~# clear screen
root@Defcon:~# clear screen
root@Defcon:~# ip route show table all
default via 100.69.0.1 dev eth1 table pbr_wan
default via 10.8.44.2 dev tun10 table pbr_GLMT6000
default via 172.16.193.37 dev wgc_vpn10 table pbr_wgc_vpn10
default via 10.129.1.112 dev tun11 table pbr_sthlm_vpn
default via 100.69.0.1 dev eth1 proto static src 100.69.117.12
10.8.42.0/24 dev tun21 proto kernel scope link src 10.8.42.1
10.8.44.0/24 dev tun10 proto kernel scope link src 10.8.44.2
10.129.0.0/22 dev tun11 proto kernel scope link src 10.129.1.112
46.227.67.134 dev tun11 scope link
100.69.0.0/17 dev eth1 proto kernel scope link src 100.69.117.12
172.22.28.0/24 dev wgserver proto kernel scope link src 172.22.28.1
172.22.28.2 dev wgserver proto static scope link
172.22.28.3 dev wgserver proto static scope link
172.22.28.4 dev wgserver proto static scope link
172.22.28.5 dev wgserver proto static scope link
172.22.28.6 dev wgserver proto static scope link
192.165.9.158 dev tun11 scope link
192.168.2.0/24 dev br-guest proto kernel scope link src 192.168.2.1
192.168.25.0/24 dev eth1 proto kernel scope link src 192.168.25.2
192.168.46.0/24 dev br-lan proto kernel scope link src 192.168.46.1
192.168.50.0/24 via 10.8.44.1 dev tun10 metric 500
217.64.148.51 via 100.69.0.1 dev eth1 proto static
local 10.8.42.1 dev tun21 table local proto kernel scope host src 10.8.42.1
broadcast 10.8.42.255 dev tun21 table local proto kernel scope link src 10.8.42.1
local 10.8.44.2 dev tun10 table local proto kernel scope host src 10.8.44.2
broadcast 10.8.44.255 dev tun10 table local proto kernel scope link src 10.8.44.2
local 10.129.1.112 dev tun11 table local proto kernel scope host src 10.129.1.112
broadcast 10.129.3.255 dev tun11 table local proto kernel scope link src 10.129.1.112
local 100.69.117.12 dev eth1 table local proto kernel scope host src 100.69.117.12
broadcast 100.69.127.255 dev eth1 table local proto kernel scope link src 100.69.117.12
local 127.0.0.0/8 dev lo table local proto kernel scope host src 127.0.0.1
local 127.0.0.1 dev lo table local proto kernel scope host src 127.0.0.1
broadcast 127.255.255.255 dev lo table local proto kernel scope link src 127.0.0.1
local 172.16.193.37 dev wgc_vpn10 table local proto kernel scope host src 172.16.193.37
local 172.22.28.1 dev wgserver table local proto kernel scope host src 172.22.28.1
broadcast 172.22.28.255 dev wgserver table local proto kernel scope link src 172.22.28.1
local 192.168.2.1 dev br-guest table local proto kernel scope host src 192.168.2.1
broadcast 192.168.2.255 dev br-guest table local proto kernel scope link src 192.168.2.1
local 192.168.25.2 dev eth1 table local proto kernel scope host src 192.168.25.2
broadcast 192.168.25.255 dev eth1 table local proto kernel scope link src 192.168.25.2
local 192.168.46.1 dev br-lan table local proto kernel scope host src 192.168.46.1
broadcast 192.168.46.255 dev br-lan table local proto kernel scope link src 192.168.46.1
default via fe80::a67b:2cff:fe9e:ea01 dev eth1 table pbr_wan metric 128 pref medium
default dev tun10 table pbr_GLMT6000 metric 128 pref medium
default dev wgc_vpn10 table pbr_wgc_vpn10 metric 128 pref medium
default dev tun11 table pbr_sthlm_vpn metric 128 pref medium
default from 2001:9b0:41::5f0b:2ec5 via fe80::a67b:2cff:fe9e:ea01 dev eth1 proto static metric 512 pref medium
default from 2001:9b1:df8:eb00::/56 via fe80::a67b:2cff:fe9e:ea01 dev eth1 proto static metric 512 pref medium
2001:67c:750:1:cafe:cd45:0:1 dev tun11 metric 1024 pref medium
2001:9b1:df8:eb01::/64 dev br-lan proto static metric 1024 pref medium
2001:9b1:df8:eb02::/64 dev br-guest proto static metric 1024 pref medium
unreachable 2001:9b1:df8:eb00::/56 dev lo proto static metric 2147483647 pref medium
2a07:a880:4601:1082::/64 dev tun11 proto kernel metric 256 pref medium
2a07:a880:4601:10f0:cd45::1 dev tun11 metric 1024 pref medium
fd00:0:1337:cafe:1111:1111:505:387e dev wgc_vpn10 proto kernel metric 256 pref medium
fd42:4242:4242::/64 dev tun21 proto kernel metric 256 pref medium
fd65:35f6:a308:2::/64 dev br-guest proto static metric 1024 pref medium
unreachable fd65:35f6:a308::/48 dev lo proto static metric 2147483647 pref medium
fda9:65bd:f903::2 dev wgserver proto static metric 1024 pref medium
fda9:65bd:f903::3 dev wgserver proto static metric 1024 pref medium
fda9:65bd:f903::4 dev wgserver proto static metric 1024 pref medium
fda9:65bd:f903::5 dev wgserver proto static metric 1024 pref medium
fda9:65bd:f903::6 dev wgserver proto static metric 1024 pref medium
fda9:65bd:f903::/64 dev wgserver proto kernel metric 256 pref medium
fe80::/64 dev eth0 proto kernel metric 256 pref medium
fe80::/64 dev br-lan proto kernel metric 256 pref medium
fe80::/64 dev tun21 proto kernel metric 256 pref medium
fe80::/64 dev eth1 proto kernel metric 256 pref medium
fe80::/64 dev br-guest proto kernel metric 256 pref medium
fe80::/64 dev ifb4eth1 proto kernel metric 256 pref medium
fe80::/64 dev tun10 proto kernel metric 256 pref medium
fe80::/64 dev tun11 proto kernel metric 256 pref medium
local ::1 dev lo table local proto kernel metric 0 pref medium
local 2001:9b0:41::5f0b:2ec5 dev eth1 table local proto kernel metric 0 pref medium
anycast 2001:9b1:df8:eb01:: dev br-lan table local proto kernel metric 0 pref medium
local 2001:9b1:df8:eb01::1 dev br-lan table local proto kernel metric 0 pref medium
anycast 2001:9b1:df8:eb02:: dev br-guest table local proto kernel metric 0 pref medium
local 2001:9b1:df8:eb02::1 dev br-guest table local proto kernel metric 0 pref medium
anycast 2a07:a880:4601:1082:: dev tun11 table local proto kernel metric 0 pref medium
local 2a07:a880:4601:1082:a5ba:e2ef:b725:826b dev tun11 table local proto kernel metric 0 pref medium
local fd00:0:1337:cafe:1111:1111:505:387e dev wgc_vpn10 table local proto kernel metric 0 pref medium
anycast fd42:4242:4242:: dev tun21 table local proto kernel metric 0 pref medium
local fd42:4242:4242::1 dev tun21 table local proto kernel metric 0 pref medium
anycast fd65:35f6:a308:2:: dev br-guest table local proto kernel metric 0 pref medium
local fd65:35f6:a308:2::1 dev br-guest table local proto kernel metric 0 pref medium
anycast fda9:65bd:f903:: dev wgserver table local proto kernel metric 0 pref medium
local fda9:65bd:f903::1 dev wgserver table local proto kernel metric 0 pref medium
anycast fe80:: dev eth0 table local proto kernel metric 0 pref medium
anycast fe80:: dev eth1 table local proto kernel metric 0 pref medium
anycast fe80:: dev br-guest table local proto kernel metric 0 pref medium
anycast fe80:: dev br-lan table local proto kernel metric 0 pref medium
anycast fe80:: dev tun21 table local proto kernel metric 0 pref medium
anycast fe80:: dev ifb4eth1 table local proto kernel metric 0 pref medium
anycast fe80:: dev tun10 table local proto kernel metric 0 pref medium
anycast fe80:: dev tun11 table local proto kernel metric 0 pref medium
local fe80::51:49ff:fe29:7066 dev ifb4eth1 table local proto kernel metric 0 pref medium
local fe80::34c1:2b4b:f86c:3048 dev tun11 table local proto kernel metric 0 pref medium
local fe80::3841:415a:b2be:e658 dev tun10 table local proto kernel metric 0 pref medium
local fe80::9483:c4ff:fea5:ff80 dev br-guest table local proto kernel metric 0 pref medium
local fe80::9683:c4ff:fea5:ff7d dev eth1 table local proto kernel metric 0 pref medium
local fe80::9683:c4ff:fea5:ff7f dev eth0 table local proto kernel metric 0 pref medium
local fe80::9683:c4ff:fea5:ff7f dev br-lan table local proto kernel metric 0 pref medium
local fe80::efe0:486a:ffdc:581b dev tun21 table local proto kernel metric 0 pref medium
multicast ff00::/8 dev br-guest table local proto kernel metric 256 pref medium
multicast ff00::/8 dev eth0 table local proto kernel metric 256 pref medium
multicast ff00::/8 dev wgserver table local proto kernel metric 256 pref medium
multicast ff00::/8 dev br-lan table local proto kernel metric 256 pref medium
multicast ff00::/8 dev tun21 table local proto kernel metric 256 pref medium
multicast ff00::/8 dev eth1 table local proto kernel metric 256 pref medium
multicast ff00::/8 dev ifb4eth1 table local proto kernel metric 256 pref medium
multicast ff00::/8 dev wgc_vpn10 table local proto kernel metric 256 pref medium
multicast ff00::/8 dev tun10 table local proto kernel metric 256 pref medium
multicast ff00::/8 dev tun11 table local proto kernel metric 256 pref medium
ip rule show
0: from all lookup local
29995: from all lookup main suppress_prefixlength 1
29996: from all sport 56468 lookup pbr_wan
29997: from all fwmark 0x40000/0xff0000 lookup pbr_sthlm_vpn
29998: from all fwmark 0x30000/0xff0000 lookup pbr_wgc_vpn10
29999: from all fwmark 0x20000/0xff0000 lookup pbr_GLMT6000
30000: from all fwmark 0x10000/0xff0000 lookup pbr_wan
32766: from all lookup main
32767: from all lookup default
wg show
interface: wgserver
public key: ldNI7Af0OjiJG0h8g2c7bBn/XIMrBmngk1M8jKqyIUU=
private key: (hidden)
listening port: 56468
peer: 9JnBH7masjvJ0tOvqFr6F2cCwvCBxTSSGyGpJrCWOnc=
preshared key: (hidden)
allowed ips: 172.22.28.2/32, fda9:65bd:f903::2/128
persistent keepalive: every 25 seconds
peer: /ascelqF6qfpE13ukKJbx/12Ip8EkPNwdFWVQeFckT0=
preshared key: (hidden)
allowed ips: 172.22.28.3/32, fda9:65bd:f903::3/128
persistent keepalive: every 25 seconds
peer: IiLtgpjPh74poGwxbVTrfnDuoluDbQR67hrLPf5CKnY=
preshared key: (hidden)
allowed ips: 172.22.28.4/32, fda9:65bd:f903::4/128
persistent keepalive: every 25 seconds
peer: 9N4fCGKg9vIGzPq5WAOLjuHCwuDQBg5WovYxwwq8EjA=
preshared key: (hidden)
allowed ips: 172.22.28.5/32, fda9:65bd:f903::5/128
persistent keepalive: every 25 seconds
peer: E9i5TAjroHcvaeO5orqGtWGnydZ5fbKRf71ULNgJaGA=
preshared key: (hidden)
allowed ips: 172.22.28.6/32, fda9:65bd:f903::6/128
persistent keepalive: every 25 seconds
interface: wgc_vpn10
public key: iv4fmvnJqzJ/2jRFeWy8OWfJpAOQHmmC2nljLSeriz0=
private key: (hidden)
listening port: 50775
peer: KKCpXL20GjRtC8ADvYna/pTsrFAtML/ndWxbVifg8Uw=
endpoint: 217.64.148.51:9929
allowed ips: 0.0.0.0/0, ::/0
latest handshake: 1 minute, 29 seconds ago
transfer: 38.27 KiB received, 142.25 KiB sent
persistent keepalive: every 25 seconds
cat /tmp/resolv.conf.d/resolv.conf.auto
interface wan6
nameserver 2001:9b0::53:1
nameserver 2001:9b0::53:2
Interface wgc_vpn10
nameserver 46.227.67.134
nameserver 192.165.9.158
nameserver 2a07:a880:4601:10f0:cd45::1
nameserver 2001:67c:750:1:cafe:cd45:0:1
Interface wan
cat /etc/config/openvpn
config openvpn 'DefconVpnServer'
option enabled '1'
option dev 'tun21'
option proto 'udp'
option local '::'
option port '2197'
option cipher 'AES-256-GCM'
list data_ciphers 'AES-256-GCM'
list data_ciphers 'AES-128-GCM'
list data_ciphers 'CHACHA20-POLY1305'
option auth_nocache '1'
option tls_crypt_v2 '/etc/openvpn/DefconVpnServer/tls-crypt-v2-server.key'
option ca '/etc/openvpn/DefconVpnServer/ca.crt'
option cert '/etc/openvpn/DefconVpnServer/server.crt'
option key '/etc/openvpn/DefconVpnServer/server.key'
option dh '/etc/openvpn/DefconVpnServer/dh.pem'
option topology 'subnet'
option server '10.8.42.0 255.255.255.0'
option server_ipv6 'fd42:4242:4242::/64'
list push 'route 192.168.46.0 255.255.255.0'
list push 'dhcp-option DOMAIN home.lan'
list push 'dhcp-option DNS 192.168.46.1'
list push 'route-ipv6 2000::/3'
list push 'dhcp-option DNS fd42:4242:4242::1'
list push 'redirect-gateway def1 ipv6'
option client_to_client '1'
option client_config_dir '/etc/openvpn/DefconVpnServer/ccd'
option ifconfig_pool_persist '/etc/openvpn/DefconVpnServer/ipp.txt 600'
option verb '3'
option log '/var/log/openvpn-server1.log'
option status_version '2'
option keepalive '10 60'
option reneg_sec '0'
option script_security '2'
option mute_replay_warnings '1'
option fast_io '1'
option multihome '1'
config openvpn 'GLMT6000'
option enabled '1'
option client '1'
option dev 'tun10'
option proto 'udp'
list remote 'octopus.xinit.se'
option port '2196'
option nobind '1'
option float '1'
option persist_tun '1'
option fast_io '1'
option reneg_sec '3600'
option verb '3'
option mute_replay_warnings '1'
option replay_window '256'
option auth_nocache '1'
option cipher 'AES-256-GCM'
option tls_crypt_v2 '/etc/openvpn/GLMT6000/tls-crypt-v2-client.key'
option ca '/etc/openvpn/GLMT6000/gl-mt6000-ca.crt'
option cert '/etc/openvpn/GLMT6000/gl-mt6000.crt'
option key '/etc/openvpn/GLMT6000/gl-mt6000.key'
option verify_x509_name 'octopus.xinit.se name'
option remote_cert_tls 'server'
option log '/var/log/openvpn-client1.log'
option script_security '2'
config openvpn 'Sthlmovpn'
option client '1'
option dev 'tun11'
option proto 'udp'
option pull '1'
option nobind '1'
option float '1'
option persist_tun '1'
option fast_io '1'
option reneg_sec '3600'
option verb '3'
option mute_replay_warnings '1'
option replay_window '256'
option auth_nocache '1'
option cipher 'AES-256-GCM'
option tls_auth '/etc/openvpn/sthlmovpn/tlsauth.key'
option ca '/etc/openvpn/sthlmovpn/ca.crt'
option auth_user_pass '/etc/openvpn/sthlmovpn/user.pass'
option remote_cert_tls 'server'
option key_direction '1'
option log '/var/log/openvpn-client2.log'
option script_security '2'
list pull_filter 'ignore "route-ipv6"'
list pull_filter 'ignore "redirect-gateway"'
list pull_filter 'ignore "redirect-gateway ipv6"'
list data_ciphers 'AES-128-GCM'
list data_ciphers 'AES-256-GCM'
option remote_random '1'
option resolv_retry 'infinite'
option connect_retry '5'
option connect_retry_max '3'
list remote 'pool-1.prd.se.sthlm.ovpn.com 1194'
list remote 'pool-1.prd.se.sthlm.ovpn.com 1195'
list remote 'pool-2.prd.se.sthlm.ovpn.com 1194'
list remote 'pool-2.prd.se.sthlm.ovpn.com 1195'
option up /etc/openvpn/ovpn-update-resolv-9
option down /etc/openvpn/ovpn-update-resolv-9
option enabled '1'
for ovpn in $(ls /etc/openvpn/*.ovpn);do echo $ovpn; cat $ovpn; echo;done
ls: /etc/openvpn/*.ovpn: No such file or directory
for vpn in $(ls /tmp/etc/openvpn*.conf);do echo $vpn;cat $vpn;echo;done
/tmp/etc/openvpn-DefconVpnServer.conf
auth-nocache
client-to-client
fast-io
multihome
mute-replay-warnings
ca /etc/openvpn/DefconVpnServer/ca.crt
cert /etc/openvpn/DefconVpnServer/server.crt
cipher AES-256-GCM
client-config-dir /etc/openvpn/DefconVpnServer/ccd
dev tun21
dh /etc/openvpn/DefconVpnServer/dh.pem
ifconfig-pool-persist /etc/openvpn/DefconVpnServer/ipp.txt 600
keepalive 10 60
key /etc/openvpn/DefconVpnServer/server.key
local ::
log /var/log/openvpn-server1.log
port 2197
proto udp
push "route 192.168.46.0 255.255.255.0"
push "dhcp-option DOMAIN home.lan"
push "dhcp-option DNS 192.168.46.1"
push "route-ipv6 2000::/3"
push "dhcp-option DNS fd42:4242:4242::1"
push "redirect-gateway def1 ipv6"
reneg-sec 0
server 10.8.42.0 255.255.255.0
server-ipv6 fd42:4242:4242::/64
status-version 2
tls-crypt-v2 /etc/openvpn/DefconVpnServer/tls-crypt-v2-server.key
topology subnet
verb 3
data-ciphers AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305
/tmp/etc/openvpn-GLMT6000.conf
auth-nocache
client
fast-io
float
mute-replay-warnings
nobind
persist-tun
ca /etc/openvpn/GLMT6000/gl-mt6000-ca.crt
cert /etc/openvpn/GLMT6000/gl-mt6000.crt
cipher AES-256-GCM
dev tun10
key /etc/openvpn/GLMT6000/gl-mt6000.key
log /var/log/openvpn-client1.log
port 2196
proto udp
remote octopus.xinit.se
remote-cert-tls server
reneg-sec 3600
replay-window 256
tls-crypt-v2 /etc/openvpn/GLMT6000/tls-crypt-v2-client.key
verb 3
verify-x509-name octopus.xinit.se name
/tmp/etc/openvpn-Sthlmovpn.conf
auth-nocache
client
fast-io
float
mute-replay-warnings
nobind
persist-tun
pull
remote-random
auth-user-pass /etc/openvpn/sthlmovpn/user.pass
ca /etc/openvpn/sthlmovpn/ca.crt
cipher AES-256-GCM
connect-retry 5
connect-retry-max 3
dev tun11
key-direction 1
log /var/log/openvpn-client2.log
proto udp
pull-filter ignore "route-ipv6"
pull-filter ignore "redirect-gateway"
pull-filter ignore "redirect-gateway ipv6"
remote pool-1.prd.se.sthlm.ovpn.com 1194
remote pool-1.prd.se.sthlm.ovpn.com 1195
remote pool-2.prd.se.sthlm.ovpn.com 1194
remote pool-2.prd.se.sthlm.ovpn.com 1195
remote-cert-tls server
reneg-sec 3600
replay-window 256
resolv-retry infinite
tls-auth /etc/openvpn/sthlmovpn/tlsauth.key
verb 3
data-ciphers AES-128-GCM:AES-256-GCM
logread | grep openvpn
No output