# @name Ardrobot Server
# @copyright (C) 2013 Ardrobot
# @file ardrobot.ovpn
# @brief OpenVPN development client settings; optimized for OpenVPN for Android. DO NOT USE IN PRODUCTION!
# @author Todd Sampson
# @version 0.3
# @date 2013-03-12
#
# This program is free software: you can redistribute it and/or modify
# it under the terms of the GNU Affero General Public License as
# published by the Free Software Foundation, either version 3 of the
# License, or (at your option) any later version.
#
# This program is distributed in the hope that it will be useful,
# but WITHOUT ANY WARRANTY; without even the implied warranty of
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
# GNU Affero General Public License for more details.
#
# You should have received a copy of the GNU Affero General Public License
# along with this program. If not, see .
# Enables connection to GUI
management /data/data/de.blinkt.openvpn/cache/mgmtsocket unix
management-client
management-query-passwords
management-hold
# Log window is better readable this way
suppress-timestamps
# Specify that we are a client and that we
# will be pulling certain config file directives
# from the server.
client
# Use the same setting as you are using on
# the server.
# On most systems, the VPN will not function
# unless you partially or fully disable
# the firewall for the TUN/TAP interface.
;dev tap
dev tun
# The hostname/IP and port of the server.
# You can have multiple remote entries
# to load balance between the servers.
remote 10.0.1.1 1194 udp
# Keep trying indefinitely to resolve the
# host name of the OpenVPN server. Very useful
# on machines which are not permanently connected
# to the internet such as laptops.
resolv-retry 60
connect-retry-max 5
connect-retry 5
# Set log file verbosity.
verb 3
# Enable compression on the VPN link.
# Don't enable this unless it is also
# enabled in the server config file.
comp-lzo
route-ipv6 ::/0
route 0.0.0.0 0.0.0.0
remote-cert-tls server
# Use system proxy setting
management-query-proxy
# SSL/TLS parms.
# See the server config file for more
# description. It's best to use
# a separate .crt/.key file pair
# for each client. A single ca
# file can be used for all clients.
ca [inline]
cert [inline]
key [inline]
-----BEGIN CERTIFICATE-----
MIID1DCCAz2gAwIBAgIJALhT4TCoPIJBMA0GCSqGSIb3DQEBBQUAMIGjMQswCQYD
VQQGEwJVUzELMAkGA1UECBMCQ0ExFTATBgNVBAcTDFNhbkZyYW5jaXNjbzERMA8G
A1UEChMIQXJkcm9ib3QxETAPBgNVBAsTCGFyZHJvYm90MREwDwYDVQQDEwhhcmRy
b2JvdDEVMBMGA1UEKRMMYXJkcm9ib3Qta2V5MSAwHgYJKoZIhvcNAQkBFhF0b2Rk
QGFyZHJvYm90LmNvbTAeFw0xMzAzMTEyMDE4MzNaFw0yMzAzMDkyMDE4MzNaMIGj
MQswCQYDVQQGEwJVUzELMAkGA1UECBMCQ0ExFTATBgNVBAcTDFNhbkZyYW5jaXNj
bzERMA8GA1UEChMIQXJkcm9ib3QxETAPBgNVBAsTCGFyZHJvYm90MREwDwYDVQQD
EwhhcmRyb2JvdDEVMBMGA1UEKRMMYXJkcm9ib3Qta2V5MSAwHgYJKoZIhvcNAQkB
FhF0b2RkQGFyZHJvYm90LmNvbTCBnzANBgkqhkiG9w0BAQEFAAOBjQAwgYkCgYEA
zychWY4NDTNpRzb4dB9tTsHXOZkCY6f/hYXf3gj62casxcGOZlGSKs/Z/uhTo0NE
DHAZbRDY5XW4zp1yl6FRdbXuBcm358j8RhtgiW16XBg93NUzAoTLcrj0H9wkANuU
OG0EjRLJr4swytdY/ZSZ0A93w9x1NkMMW1a0h5QwH/MCAwEAAaOCAQwwggEIMB0G
A1UdDgQWBBTQQTxiIjKj9lVubFQ0VBei3qFRnTCB2AYDVR0jBIHQMIHNgBTQQTxi
IjKj9lVubFQ0VBei3qFRnaGBqaSBpjCBozELMAkGA1UEBhMCVVMxCzAJBgNVBAgT
AkNBMRUwEwYDVQQHEwxTYW5GcmFuY2lzY28xETAPBgNVBAoTCEFyZHJvYm90MREw
DwYDVQQLEwhhcmRyb2JvdDERMA8GA1UEAxMIYXJkcm9ib3QxFTATBgNVBCkTDGFy
ZHJvYm90LWtleTEgMB4GCSqGSIb3DQEJARYRdG9kZEBhcmRyb2JvdC5jb22CCQC4
U+EwqDyCQTAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4GBAAz07BYEuoJu
kgTmg6yCT1UT/ixDxniLsWSpO9floTNUrLsEw8ZrDYZZu7HWxYeX+tCuQN8y+lec
o1z8GqDIho/5B3r2mXgsAqa1vWr0WbmkDdnnoAhzqd+roz3CfyiaYlSm6hp2QqCG
jP5wNqmbRkY3ve14/CcKs49IVE/fenY7
-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
-----BEGIN PRIVATE KEY-----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-----END PRIVATE KEY-----