pfsense:vpn:openvpn:configure_an_openvpn_server:manually
Differences
This shows you the differences between two versions of the page.
Next revision | Previous revision | ||
pfsense:vpn:openvpn:configure_an_openvpn_server:manually [2021/01/06 18:44] – created peter | pfsense:vpn:openvpn:configure_an_openvpn_server:manually [2022/09/20 18:00] (current) – [Create the Interface and Bridge] peter | ||
---|---|---|---|
Line 1: | Line 1: | ||
====== PFSense - VPN - OpenVPN - Configure an OpenVPN Server: | ====== PFSense - VPN - OpenVPN - Configure an OpenVPN Server: | ||
+ | |||
+ | <WRAP todo> | ||
+ | TODO: UPDATE - AS INTRUCTIONS ARE A LITTLE OLD. | ||
+ | </ | ||
+ | |||
===== Install the OpenVPN Client Export Utility Package ===== | ===== Install the OpenVPN Client Export Utility Package ===== | ||
- | Navigate to **System | + | Navigate to **System |
* Select the **Available Packages Tab**. | * Select the **Available Packages Tab**. | ||
Line 12: | Line 17: | ||
===== Setup your Certs ===== | ===== Setup your Certs ===== | ||
- | Navigate to **System | + | Navigate to **System |
- | * Crease | + | * Create |
* Select the **CA** tab and create a CA by pressing the **“+”** button. | * Select the **CA** tab and create a CA by pressing the **“+”** button. | ||
* Populate the fields with the appropriate information, | * Populate the fields with the appropriate information, | ||
Line 36: | Line 41: | ||
===== Setup the OpenVPN Server ===== | ===== Setup the OpenVPN Server ===== | ||
- | Navigate to **VPN —> OpenVPN**. | + | Navigate to **VPN -> OpenVPN |
- | * On the Server tab press the **"+"** button to create an OpenVPN server. | + | Press the **+Add** button to create an OpenVPN server. |
- | * Populate the following settings: | + | |
- | * Disabled: | + | |
- | * Server Mode: **Remote Access (SSL/ | + | |
- | * Protocol: | + | |
- | * Device Mode: **tap**. | + | |
- | * Interface: | + | |
- | * Port: **1194**. | + | |
- | * Description: | + | |
- | * TLS Authentication: | + | |
- | * Peer Certificate Authority: | + | |
- | * Peer Certificate Revocation List: **Optional. | + | |
- | * Server Certificate: | + | |
- | * DH Parameters: | + | |
- | * Encryption algorithm: | + | |
- | * Hardware Crypto: | + | |
- | * Certificate Depth: | + | |
- | ---- | + | In **General Information**: |
+ | |||
+ | * Disabled: | ||
+ | * Server Mode: **Remote Access (SSL/ | ||
+ | * Protocol: | ||
+ | * Device Mode: **tap**. | ||
+ | * Interface: | ||
+ | * Port: **1194**. | ||
+ | * Description: | ||
+ | |||
+ | |||
+ | In **Cryptographic Settings**: | ||
+ | |||
+ | * TLS Configuration: | ||
+ | * Use a TLS Key: **Checked**. | ||
+ | * Automatically generate a TLS Key: **Checked**. | ||
+ | * TLS keydir direction: | ||
+ | * Peer Certificate Authority: | ||
+ | * Peer Certificate Revocation List: **Optional. | ||
+ | * Server Certificate: | ||
+ | * DH Parameters: | ||
+ | * ECDH Curve: | ||
+ | * Encryption algorithm: | ||
+ | * Enable NCP: **Checked**. | ||
+ | * NCP Algorithms: | ||
+ | * Auth digest algorithm: | ||
+ | * Hardware Crypto: | ||
+ | * Certificate Depth: | ||
- | ===== IP Settings | + | In **Tunnel |
* IPv4 Tunnel Network: | * IPv4 Tunnel Network: | ||
Line 84: | Line 100: | ||
* Click **save** | * Click **save** | ||
- | Te OpenVPN server should be created. | + | The OpenVPN server should be created. |
---- | ---- | ||
Line 90: | Line 106: | ||
===== Create the Interface and Bridge ===== | ===== Create the Interface and Bridge ===== | ||
- | Navigate to **Interfaces | + | Navigate to **Interfaces |
* Add an interface by pressing the **“+”** button. | * Add an interface by pressing the **“+”** button. | ||
* Against the new interface (possibly OPT1), use the drop down box to choose the OpenVPN Server that was created. | * Against the new interface (possibly OPT1), use the drop down box to choose the OpenVPN Server that was created. | ||
- | * Navigate to **Interfaces | + | * Navigate to **Interfaces |
* Enable the interface and give it a Description | * Enable the interface and give it a Description | ||
- | * Navigate to **Interfaces | + | * Navigate to **Interfaces |
* Select the **Bridges** tab and then click the **“+”** button to add a bridge. | * Select the **Bridges** tab and then click the **“+”** button to add a bridge. | ||
* Hold the **CTRL** button and highlight both the LAN interface and the renamed OPT1 interface just created. | * Hold the **CTRL** button and highlight both the LAN interface and the renamed OPT1 interface just created. | ||
Line 106: | Line 122: | ||
Create a firewall rule allowing traffic on your OpenVPN port for the WAN interface. | Create a firewall rule allowing traffic on your OpenVPN port for the WAN interface. | ||
- | Navigate to **Firewall | + | Navigate to **Firewall |
* Select the **WAN**. | * Select the **WAN**. | ||
Line 133: | Line 149: | ||
===== Export the client configs ===== | ===== Export the client configs ===== | ||
- | Navigate to **VPN —> OpenVPN**. | + | Navigate to **VPN -> OpenVPN**. |
* Select the **Client Export** tab. | * Select the **Client Export** tab. |
pfsense/vpn/openvpn/configure_an_openvpn_server/manually.1609958695.txt.gz · Last modified: 2021/01/06 18:44 by peter