# Configuration to Access OpenVPN server of MPIPKS Dresden # for questions or help, please write to support@pks.mpg.de # run OpenVPN in client mode client # use tun virtual network devices (much simpler, but only for IPv4 or IPv6 traffic) dev tun # hostname and port of the vpn server remote vpn.mpipks-dresden.mpg.de 1194 udp remote vpn.mpipks-dresden.mpg.de 443 tcp # check server certificate remote-cert-tls server # do not miss the client certificate client-cert-not-required # seconds to wait before using the next line with "remote vpn..." resolv-retry 10 # use an stronger encryption auth-nocache auth SHA512 # some other settings (see man openvpn) nobind persist-key persist-tun verb 3 # authenticate with login name and password auth-user-pass # the inline certificate of the Certificate Authority (CA) to validate vpn.mpipks-dresden.mpg.de -----BEGIN CERTIFICATE----- MIIFUzCCAzugAwIBAgIUDywFVpnWDO8TcwDQk/TqXYcg3IIwDQYJKoZIhvcNAQEN BQAwGDEWMBQGA1UEAwwNVlBOIE1QSVBLUyBDQTAgFw0yMDA1MjYxNzAyMDNaGA8y MTU3MDQxODE3MDIwM1owGDEWMBQGA1UEAwwNVlBOIE1QSVBLUyBDQTCCAiIwDQYJ KoZIhvcNAQEBBQADggIPADCCAgoCggIBANqesCj5VC+tFmm/i+mYDADOrk+UOKxn 7a7UeNqAfjPtPrqsM89oMnO3dnovPQV3n9hLUSGESmjFTE5mpmOzu8u+1hrPOyvS kzXqKLwl6+Q5jUNPiJTHYRKo6rNvXpTD0U5/4KutK/PAts4cx45BPj7az5iMx9Ga WlOihrEDmj1ZvSloMg7rFOysXdOAiVbolWmt/ijat+rk0JwF/Yoe0lYbnt9prRE5 +W4Nb9VXMSeu4P/Xv17EsQR6dWX5MH61LmCnhb4uN/92FQ223u8pd8tNLOBbKjyV tyoYr3G77TpcICKApE3lmR6y+6WcULB+r74CdMAk8mAOTUNujXNmHckU+k7ftJxe BPJcmpwkcq6sJN8CZWm2qB5IaGbPJkwd4/VoSi/YShm/fcBmGh9p6iz+caO4imPy tx37qJ6jb1L45PcdWGgjQL8wlwbCI0VY2SGHm3A8TE/rsbMUAAJ53B86nIY+SEN6 +5JJDtue3QHOTBuwzv4XbvuECLsbRSnFtD6slHtISU32FtvYETwlfAgwkwxjUQ+X Y6EI8tekbI8qI/1ood89CJBBzGaI2zp7VNsWN+e/rsXO41bSSCzZVNMwaBBGo3yk hmAPxkuZ0UDB7qx3z9HLhSLRAmjIDqsTTPE3YZNlZOF6IpJOse1OIFFSlMQenbvz veFYEzVMUyqvAgMBAAGjgZIwgY8wHQYDVR0OBBYEFF5aVHMzF0xVgZUyW+gRL1+1 iyviMFMGA1UdIwRMMEqAFF5aVHMzF0xVgZUyW+gRL1+1iyvioRykGjAYMRYwFAYD VQQDDA1WUE4gTVBJUEtTIENBghQPLAVWmdYM7xNzANCT9OpdhyDcgjAMBgNVHRME BTADAQH/MAsGA1UdDwQEAwIBBjANBgkqhkiG9w0BAQ0FAAOCAgEAeDcKLtY8zp60 JVfeUYNwLfjP40b0D1dJ8S1GS9FuStxHNc99AmsX8wzaHO2XRelU0OW9EcwPcA5i lQm9RXoyNgBQmn3/mCcgJjZX9YrqoxWHHA282RvXnVCxacIV344oRreJFuO1OLWd K/XYRPNJt37vbUfngQ/XS5ygS7eMG4ahI3rXcIzbwoF1zBcWOHVODEVAe7vtuOzL ZNOEkn/jpF/B6NgaSfyCdQWrVpdZAEtPq2MKVWWoRLfqeMnu2F6eOTDu1srAp8e+ f8UNjdwQRaLtoTttYv8jeLphoLjxIPhUv1QqCBM7j94RXa8aawI2GZUftCg7psDd qBtF0YivKwjlSBPXGVpcDJ4uA9VagqOdRWiq1qXYCGUcbmwFx9XiVQvRI/Rb2prl 1XzSD/uWlA/585U9NM0fqAJNOLznLvMQ0YSWlpY902chgozGPQtB+MMK2hurZOsK h5frH6IVH2iKvTNj8KS6XnikdNIqqNg7Bta3TCuN3G4r8Q8iUlc7vGEAKebwuK/A G3lfyx9dzThf110XTSQag7PuvnCK1h/dpaxajqRO4YS+C8I0m/5c3PfWXhwOV058 hp1y2IR36rFaqzhDkAvPOD/M6do3+d05brpDN1VuOJe/0bmM7hkFMQPyzt0xXgjn fi9DcqvZGxXYQ05klHifrFzr9Y8cGK8= -----END CERTIFICATE-----