# @name Ardrobot Server # @copyright (C) 2013 Ardrobot # @file ardrobot.ovpn # @brief OpenVPN development client settings; optimized for OpenVPN for Android. DO NOT USE IN PRODUCTION! # @author Todd Sampson # @version 0.3 # @date 2013-03-12 # # This program is free software: you can redistribute it and/or modify # it under the terms of the GNU Affero General Public License as # published by the Free Software Foundation, either version 3 of the # License, or (at your option) any later version. # # This program is distributed in the hope that it will be useful, # but WITHOUT ANY WARRANTY; without even the implied warranty of # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the # GNU Affero General Public License for more details. # # You should have received a copy of the GNU Affero General Public License # along with this program. If not, see . # Enables connection to GUI management /data/data/de.blinkt.openvpn/cache/mgmtsocket unix management-client management-query-passwords management-hold # Log window is better readable this way suppress-timestamps # Specify that we are a client and that we # will be pulling certain config file directives # from the server. client # Use the same setting as you are using on # the server. # On most systems, the VPN will not function # unless you partially or fully disable # the firewall for the TUN/TAP interface. ;dev tap dev tun # The hostname/IP and port of the server. # You can have multiple remote entries # to load balance between the servers. remote 10.0.1.1 1194 udp # Keep trying indefinitely to resolve the # host name of the OpenVPN server. Very useful # on machines which are not permanently connected # to the internet such as laptops. resolv-retry 60 connect-retry-max 5 connect-retry 5 # Set log file verbosity. verb 3 # Enable compression on the VPN link. # Don't enable this unless it is also # enabled in the server config file. comp-lzo route-ipv6 ::/0 route 0.0.0.0 0.0.0.0 remote-cert-tls server # Use system proxy setting management-query-proxy # SSL/TLS parms. # See the server config file for more # description. It's best to use # a separate .crt/.key file pair # for each client. A single ca # file can be used for all clients. ca [inline] cert [inline] key [inline] -----BEGIN CERTIFICATE----- MIID1DCCAz2gAwIBAgIJALhT4TCoPIJBMA0GCSqGSIb3DQEBBQUAMIGjMQswCQYD VQQGEwJVUzELMAkGA1UECBMCQ0ExFTATBgNVBAcTDFNhbkZyYW5jaXNjbzERMA8G A1UEChMIQXJkcm9ib3QxETAPBgNVBAsTCGFyZHJvYm90MREwDwYDVQQDEwhhcmRy b2JvdDEVMBMGA1UEKRMMYXJkcm9ib3Qta2V5MSAwHgYJKoZIhvcNAQkBFhF0b2Rk QGFyZHJvYm90LmNvbTAeFw0xMzAzMTEyMDE4MzNaFw0yMzAzMDkyMDE4MzNaMIGj MQswCQYDVQQGEwJVUzELMAkGA1UECBMCQ0ExFTATBgNVBAcTDFNhbkZyYW5jaXNj bzERMA8GA1UEChMIQXJkcm9ib3QxETAPBgNVBAsTCGFyZHJvYm90MREwDwYDVQQD EwhhcmRyb2JvdDEVMBMGA1UEKRMMYXJkcm9ib3Qta2V5MSAwHgYJKoZIhvcNAQkB FhF0b2RkQGFyZHJvYm90LmNvbTCBnzANBgkqhkiG9w0BAQEFAAOBjQAwgYkCgYEA zychWY4NDTNpRzb4dB9tTsHXOZkCY6f/hYXf3gj62casxcGOZlGSKs/Z/uhTo0NE DHAZbRDY5XW4zp1yl6FRdbXuBcm358j8RhtgiW16XBg93NUzAoTLcrj0H9wkANuU OG0EjRLJr4swytdY/ZSZ0A93w9x1NkMMW1a0h5QwH/MCAwEAAaOCAQwwggEIMB0G A1UdDgQWBBTQQTxiIjKj9lVubFQ0VBei3qFRnTCB2AYDVR0jBIHQMIHNgBTQQTxi IjKj9lVubFQ0VBei3qFRnaGBqaSBpjCBozELMAkGA1UEBhMCVVMxCzAJBgNVBAgT AkNBMRUwEwYDVQQHEwxTYW5GcmFuY2lzY28xETAPBgNVBAoTCEFyZHJvYm90MREw DwYDVQQLEwhhcmRyb2JvdDERMA8GA1UEAxMIYXJkcm9ib3QxFTATBgNVBCkTDGFy ZHJvYm90LWtleTEgMB4GCSqGSIb3DQEJARYRdG9kZEBhcmRyb2JvdC5jb22CCQC4 U+EwqDyCQTAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4GBAAz07BYEuoJu kgTmg6yCT1UT/ixDxniLsWSpO9floTNUrLsEw8ZrDYZZu7HWxYeX+tCuQN8y+lec o1z8GqDIho/5B3r2mXgsAqa1vWr0WbmkDdnnoAhzqd+roz3CfyiaYlSm6hp2QqCG jP5wNqmbRkY3ve14/CcKs49IVE/fenY7 -----END CERTIFICATE----- -----BEGIN CERTIFICATE----- MIIEGTCCA4KgAwIBAgIBAjANBgkqhkiG9w0BAQUFADCBozELMAkGA1UEBhMCVVMx CzAJBgNVBAgTAkNBMRUwEwYDVQQHEwxTYW5GcmFuY2lzY28xETAPBgNVBAoTCEFy ZHJvYm90MREwDwYDVQQLEwhhcmRyb2JvdDERMA8GA1UEAxMIYXJkcm9ib3QxFTAT BgNVBCkTDGFyZHJvYm90LWtleTEgMB4GCSqGSIb3DQEJARYRdG9kZEBhcmRyb2Jv dC5jb20wHhcNMTMwMzExMjAyMjMyWhcNMjMwMzA5MjAyMjMyWjCBojELMAkGA1UE BhMCVVMxCzAJBgNVBAgTAkNBMRUwEwYDVQQHEwxTYW5GcmFuY2lzY28xETAPBgNV BAoTCEFyZHJvYm90MREwDwYDVQQLEwhhcmRyb2JvdDEQMA4GA1UEAxMHY2xpZW50 MTEVMBMGA1UEKRMMYXJkcm9ib3Qta2V5MSAwHgYJKoZIhvcNAQkBFhF0b2RkQGFy ZHJvYm90LmNvbTCBnzANBgkqhkiG9w0BAQEFAAOBjQAwgYkCgYEAzD/19d+GM6U6 iVFsjWUlsk70ciCpBoKPkKqswUoHEIMIy0vfxl2e9tG7rrFlB7owg4Ul9OEVmbPn VhdWhvU8AFJQDuGYczh41IwgUl6qCJ6E92qHd8mIIRik2aYY8HJnCu1Ve6b0OwA7 mN3yp607jHKKNt4vVwCEkecw2cD5TGsCAwEAAaOCAVowggFWMAkGA1UdEwQCMAAw LQYJYIZIAYb4QgENBCAWHkVhc3ktUlNBIEdlbmVyYXRlZCBDZXJ0aWZpY2F0ZTAd BgNVHQ4EFgQU1WwL27tTDoTUGuWeZqcLqwxetUUwgdgGA1UdIwSB0DCBzYAU0EE8 YiIyo/ZVbmxUNFQXot6hUZ2hgamkgaYwgaMxCzAJBgNVBAYTAlVTMQswCQYDVQQI EwJDQTEVMBMGA1UEBxMMU2FuRnJhbmNpc2NvMREwDwYDVQQKEwhBcmRyb2JvdDER MA8GA1UECxMIYXJkcm9ib3QxETAPBgNVBAMTCGFyZHJvYm90MRUwEwYDVQQpEwxh cmRyb2JvdC1rZXkxIDAeBgkqhkiG9w0BCQEWEXRvZGRAYXJkcm9ib3QuY29tggkA uFPhMKg8gkEwEwYDVR0lBAwwCgYIKwYBBQUHAwIwCwYDVR0PBAQDAgeAMA0GCSqG SIb3DQEBBQUAA4GBAA8ZXCBueyKl2mhQjLFb5asnh/GM9g8NCwxcmE6tJJDD7TO2 tdK04IDWu9+vc1b3p46Jd7zE2fo9d1w7tJXqw+myBKc7uGBsfBzWsrk1P7COF9Hf uMTEP5Hor0bp8WRcmXoPhthSDTwZAz4vhAsCehnJJmOcfXmCW0lqzNQnN4hl -----END CERTIFICATE----- -----BEGIN PRIVATE KEY----- MIICdgIBADANBgkqhkiG9w0BAQEFAASCAmAwggJcAgEAAoGBAMw/9fXfhjOlOolR bI1lJbJO9HIgqQaCj5CqrMFKBxCDCMtL38ZdnvbRu66xZQe6MIOFJfThFZmz51YX Vob1PABSUA7hmHM4eNSMIFJeqgiehPdqh3fJiCEYpNmmGPByZwrtVXum9DsAO5jd 8qetO4xyijbeL1cAhJHnMNnA+UxrAgMBAAECgYEAhwMsmee0dUUeKZEqOVkIDxLD 4QEX2dbKAa3gXjCJ9O85C/FOrXhLUQoYjwRyLSZ1VSrZiUKUHbLfE3h/2NwYWUqo t6rhrMkprVdIXaFKCWoJ6u8HTcscuGoeAU8KvK+RsQH7oqoXUGXmqCpOZG5nULpm kzDJ28vdDJd2jXlcViECQQD4+cbXRJsPiSlGhUnn7/cz6otK9wShz8XU5kv3h4cN lIhb0Kjv9PF6QO1IZzfMfJIZHJoFXhABZJSry58sOnrRAkEA0gMm/dhLC4XDn+oV UZagF4b7Dbv5Me2ygvddGEHESj7g7mYJj7S2w0VYvCW28Hjr6JM3aQ8iGZ+d/lbD V5oqewJANGwrINJSL9A6f5269PoCu8yrrYobUJK13eDrp9/CYOqgV2y01Wlmms4m 5/LLveOQw3bRO0YV6qUp5I5IIoDhsQJAL1pIm2n+mc2Ca3dDcU8OL9/ekZ01tf1L h94wnnyNvtPosbhOJZnwr5zeQiYa1qPdRWaUUtr3rGFiJWv4xbLcKwJAe+6Qqo/j wHG8wFONJtwNeyTduLyvBKVx/ZX3vyPPr5VBBoyPstmL1JGhNYkR24YKDTfTwD5F PjK3qltnG7Kmaw== -----END PRIVATE KEY-----