Commit Graph
459 Commits
Author SHA1 Message Date
Angristan d8d0bbb5da Add access logs (log-append)
And move log files to /var/log/openvpn. Makes more sense and access logs can be very useful.
2018-08-22 22:11:36 +02:00
Angristan 1b18e7f2a7 Re-add a default suggestion for the client name
But only during the setup, not for additional clients
2018-08-18 21:47:10 +02:00
Angristan 47c86874dc Update check on the client's name input 2018-08-18 19:55:36 +02:00
AngristanandGitHub 9ef0bbc47d Add password option for clients (#160) 2018-08-18 19:40:07 +02:00
JebtrixandAngristan df172b962d Add option to generate random port in private port range (#229) 2018-08-18 15:57:24 +02:00
Sayem ChowdhuryandAngristan 5501de73c8 Improved code (#243) 2018-07-15 11:25:59 +02:00
cezar97andAngristan 63ac18075d Add quad9 secondary DNS (#248)
See https://www.quad9.net/faq/#Is_there_a_service_that_Quad9_offers_that_does_not_have_the_blocklist_or_other_security.
2018-07-06 22:11:22 +02:00
JebtrixandAngristan b8f0b44c55 [FIX] Unable to select AdGuard DNS choice (#228) 2018-05-29 10:18:24 +02:00
AngristanandGitHub 6cecc16f0d Fixes #217 "Package 'gpg' has no installation candidate" 2018-05-10 00:29:05 +02:00
Timofey VaseninandAngristan d2a3b3bec6 Backport improvements of external IP handling (#213)
* [backport] Remove IP address detection fallback

It was never used, the one-liner is enough.

* [backport] Improve NAT detection

Cleaner and better:
- Not relying in an external service
- Avoids a false positive when the server has multiple public IPv4
addresses and the user selects one which is not the default gateway
2018-05-08 21:23:36 +02:00
Timofey VaseninandAngristan b3fba4fddc [backport] Fix system resolvers option for environments running systemd-resolved (#214) 2018-05-08 21:01:32 +02:00
Stanislas 2f6821d778 Add support for Ubuntu 18.04 2018-05-08 20:53:57 +02:00
Timofey VaseninandAngristan 71bb6e8371 Remove unneeded -r argument from some rm commands
Backport the relevant part of:
https://github.com/Nyr/openvpn-install/commit/d7173537692df686afa26e74c456aede8bc569f3
2018-05-07 18:50:01 +02:00
cezar97andAngristan 61d89e3ba2 Remove .ovpn on cert revoke or OpenVPN uninstall (#178) 2018-04-10 11:06:19 +02:00
Angristan d7e706ac24 Add Cloudflare resolvers
Fixes #193
2018-04-01 23:12:05 +02:00
AngristanandGitHub 42f6553dcc Add GPG dependency 2018-02-25 17:37:03 +01:00
Angristan 687eb9019d Fix Fedora detection
Fixes #168
2018-02-22 21:47:35 +01:00
KcchouetteandAngristan f252614a36 Remove unsupported version of ubuntu (#163)
* Remove unsupported version of ubuntu

Remove 12.04 as the support finished on April 28, 2017
Remove 16.10 as the support finished 2017-07-20
Remove 17.04 as the support finished 2018-01-13
2018-02-14 14:48:36 +01:00
Angristan febdc04340 Support Ubuntu 17.10
Fixes #161
2018-02-13 22:38:48 +01:00
AngristanandGitHub 501f8a9b36 Use a different client name for new users
Just in case the user keeps the default "client" username when installing, reusing "client" will fail. A tiny commit for lazy users.
2018-02-12 16:07:37 +01:00
Angristan cffe4bee4a Inverse FDN's DNS servers for DNSSEC
The .12 does not validate DNSSEC while the .40 does, so I'm putting the .40 first.
2018-01-27 20:21:28 +01:00
AngristanandGitHub edbf48646e Merge pull request #151 from cezar97/master
Randomize CN and Server Name and verify Server Name
2018-01-25 12:24:50 +01:00
AngristanandGitHub d19283c46f Optmize vars
I'm not removing the PiVPN mention because I don't want to credit them, but to not bloat the script.

Their contribution will be available via git blame + https://github.com/Angristan/OpenVPN-install/pull/151 :)
2018-01-25 12:23:25 +01:00
Angristan 7c7084238f Update EasyRSA to 3.0.4
Fixes "./easyrsa: 644: ./easyrsa: [[: not found"
2018-01-23 12:19:01 +01:00
cezar97andGitHub 931190dd59 Verify server name to strengthen security 2018-01-18 17:36:31 +01:00
cezar97andGitHub 4f5f43e503 Randomize CN and server name, fixed #48
Solution taken from pivpn install script here: https://github.com/pivpn/pivpn/blob/master/auto_install/install.sh.
Repo in https://github.com/pivpn/pivpn.
2018-01-18 17:19:51 +01:00
AngristanandGitHub f681c0bd34 Add Amazon Linux support
Fixes https://github.com/Angristan/OpenVPN-install/issues/128
2018-01-11 11:08:35 +01:00
AngristanandGitHub bb23ed1227 Merge pull request #139 from Angristan/systemd-openvz-fix
Fix systemd service on OpenVZ
2017-12-16 15:29:02 +01:00
Arda 6931364a23 Fedora Support 2017-11-30 22:54:53 +03:00
AngristanandGitHub 3b8c5d776a Update DNS list with Quad9 2017-11-29 11:21:33 +01:00
AngristanandGitHub 6ac1b185fa Update DNS list with Quad9 2017-11-29 11:17:06 +01:00
Nicolas Duchon 449361007a Add Quad9 DNS 2017-11-29 10:46:58 +01:00
AngristanandGitHub 1241072bb2 Fix systemd service on OpenVZ
fix the service on all systemd/ubuntu versions
2017-11-28 22:14:27 +01:00
Angristan f47fc795d5 Merge PR #83 : Remove rc.local and use an iptables systemd service
- Install iptables systemd service for Debian, Ubuntu and CentOS
- Fix iptables install for ArcLinux
- Remove the use rc.local file
- Remove all iptables rules when removing openvpn (cf. #60 )
2017-11-12 22:56:02 +01:00
Angristan 80fd8678a6 Revert "Merge PR #83 : Remove rc.local and use an iptables systemd service"
This reverts commit e874013112, reversing
changes made to 998d1e8b13.
2017-11-12 22:51:54 +01:00
Angristan e874013112 Merge PR #83 : Remove rc.local and use an iptables systemd service 2017-11-12 22:43:55 +01:00
AngristanandGitHub aca3b4a019 Fix the network interface variable
Fix for https://github.com/Angristan/OpenVPN-install/pull/83#issuecomment-343758329
2017-11-12 19:54:44 +01:00
AngristanandGitHub dcec3f12a4 Disable firewalld to allow iptables to start upon reboot 2017-11-12 18:30:05 +01:00
AngristanandGitHub ed17fc074d Resolve conflicts
Merge changes from master to resolve conflicts
2017-11-12 18:07:07 +01:00
AngristanandGitHub 998d1e8b13 Merge pull request #92 from NathanZepol/master
Adding auth-nocache option to .ovpn configuration
2017-11-12 16:04:11 +01:00
AngristanandGitHub a7a277e2dc Remove "local" parameter
Revert https://github.com/Angristan/OpenVPN-install/commit/ad3c223385a9aa323227633fcc5e456d1235e873

On some servers, this prevented OpenVPN to start on boot. (Socket bind failed on local address [AF_INET] IP:1194 Cannot assign requested address)
2017-11-12 15:48:39 +01:00
AngristanandGitHub a0821ee5b4 Fix typo 2017-10-17 22:05:11 +02:00
AngristanandGitHub dccbe2f71d Add AdGuard DNS 2017-10-09 17:12:46 +02:00
Jelle Dekker 603d6747b9 Extended the expiration date of the certificate revocation list to 10 years. 2017-09-29 16:13:02 -05:00
Nathan 641510984b Adding auth-nocache Option to .ovpn Configuration 2017-08-27 13:59:08 -05:00
AngristanandGitHub 37d42e25fe Update Easy-RSA to v3.0.3 2017-08-23 10:39:33 +02:00
AngristanandGitHub c0ed60e8cf Update openvpn-install.sh 2017-08-22 11:12:42 +02:00
Ola TuvessonandGitHub ad3c223385 Will now set "local" in server.conf to the chosen IP adderess
If you want to run OpenVPN in UDP mode on an secondary IP, UDP routing will fail unless you explicitly bind OpenVPN to the chosen IP address. This change includes the "local" parameter in the config and sets it to the IP address entered at the beginning.
2017-08-22 00:39:43 +01:00
AngristanandGitHub edbe4fed90 Rename OpenVPN's APT list 2017-08-20 22:38:55 +02:00
AngristanandGitHub a3c005c556 Update Debian and Ubuntu repository
swupdate.openvpn.net hasn't been updated since OpenVPN 2.3.14 whereas build.openvpn.net supports OpenVPN 2.4.x as of today
Fixes https://github.com/Angristan/OpenVPN-install/issues/86
2017-08-07 16:44:16 +02:00