NETWORK ADMINISTRATION
OpenVPN Server on Linux
2013-2015
PASSERELLES NUMERIQEUS CAMBODIA
Street 371 Phum Tropeang Chhuk (Borey Sorla), Sangkat Tek Thia Khan Sek Sok P.O. Box 511 Phnom Penh,
Cambodia
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 1
CONTENTS
LAB Instruction ..........................................................................................................................2
Windows......................................................................................Error! Bookmark not defined.
Install DHCP service..................................................................Error! Bookmark not defined.
Create DCHP Scope...................................................................Error! Bookmark not defined.
Exclude IP address amount 10 IP addresses .............................Error! Bookmark not defined.
Configure DHCP Option ............................................................Error! Bookmark not defined.
IP address Reservation..............................................................Error! Bookmark not defined.
Deny Client by filter Mac address .............................................Error! Bookmark not defined.
Create New scope for LAN-Client .............................................Error! Bookmark not defined.
Show DHCP audit log file ..........................................................Error! Bookmark not defined.
Suse Linux....................................................................................Error! Bookmark not defined.
Adding more NICs and Assign IP address...............Error! Bookmark not defined.
Install DHCP Relay Service ...........................................Error! Bookmark not defined.
Configure DHCP Relay Service.....................................Error! Bookmark not defined.
Let client request IP address........................................Error! Bookmark not defined.
Make sure between LAN client and Windows Server can:.. Error! Bookmark
not defined.
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 2
LAB INSTRUCTION
SUSE LINUX ENTERPRISE SERVER 11
 LAN VPN Server
 Network Address: 192.168.102.0/24
 192.168.1.1 Router/Default Gateway
 192.168.1.1 DNS Server
 WAN
 Network address: 203.100.10.0/24
 203.100.10.1 Router/Default Gateway
 192.168.1.10 DNS Server
 172.16.120.3 – 172.16.120.254 Address pool/scope
 172.16.120.10 – 172.16.120.20 Address Exclusive
 Make sure the you have configure the hostname and ip address
of different LAN and WAN
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 3
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 4
1. Install Service OpenVPN
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 5
2. Configure VPN Server
a. Copy “ëasy-rsa” from /usr/share/openvpn/easy-rsa to “/etc/openvpn”
b. Generate the server key by go to /etc/openvpn and generate
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 6
c. Edit and change the certificate attribute by go to /etc/openvpn/easy-rsa/vars
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 7
d. Define keys directory
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 8
e. Generation of the key (by cryptography method Diffie-Hellman with dh1024
bit)
f. Generation of key and certificate to authority of certification
- Create new user for vpn and client for generate the email address
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 9
g. Generation of key and certificate to the server //information mixed with key
to create certificate then store in Server
h. Edit /etc/openvpn/easy-rsa/server.conf by changing
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 10
- Ca ca.crt -> ca /etc/openvpn/easy-rsa/keys/ca.crt
- Cert server.crt -> cert /etc/openvpn/easy-rsa/keys/vpnserver.crt
- key server.key -> server.key /etc/openvpn/easy-rsa/keys/vpnserver.key
- dh dh1024.perm -> dh /etc/openvpn/easy-rsa/keys/dh1024.pem
- ;cipher DES-EDE3-CBC -> cipher DES-EDE3-CBC(encryption method)
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 11
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 12
i. Generation of the keys and certificate to the client (for tola.leng user)
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 13
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 14
3. Install/Configure OpenVPN Client
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 15
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 16
-copy file ca.crt, tola.leng.crt, tola.leng.key to input into the configuration file and input the
certificate into C:Program FilesOpenVPNbin..........
-copy file client.ovpn to the folder config
-change configuration file client.ovpn
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 17
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 18
-Finally save the file after we edit the information there are:
remote 203.100.10.1 1194
;remote 203.100.10.1 1194
ca "C:Program FilesOpenVPNbinca.crt"
cert "C:Program FilesOpenVPNbintolaleng.crt"
key "C:Program FilesOpenVPNbintolaleng.key"
cipher DES-EDE3-CBC
PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION
TOLA.LENG-PC 19
4. Testing OpenVPN remotes
5. Testing to access File Server
6. Set only one user can remote in the same time.
The End!

More Related Content

PDF
Configure Webserver & SSL secure & redirect in SuSE Linux Enterprise
PDF
Configure Proxy and Firewall (Iptables)
PDF
Tola.leng mail server (sq_mail & rcmail)_q5_
DOCX
DNS windows server(2008R2) & linux(SLES 11)
PDF
Configure DHCP Server and DHCP-Relay
PDF
System Engineer: OpenLDAP and Samba Server
DOCX
Ad, dns, dhcp, file server
ODT
How to configure IPA-Server & Client-Centos 7
Configure Webserver & SSL secure & redirect in SuSE Linux Enterprise
Configure Proxy and Firewall (Iptables)
Tola.leng mail server (sq_mail & rcmail)_q5_
DNS windows server(2008R2) & linux(SLES 11)
Configure DHCP Server and DHCP-Relay
System Engineer: OpenLDAP and Samba Server
Ad, dns, dhcp, file server
How to configure IPA-Server & Client-Centos 7

What's hot (19)

PDF
Configure proxy firewall on SuSE Linux Enterprise Server 11
PDF
Basic security & info
PDF
Dhcp & dhcp relay agent in cent os 5.3
PPTX
Mail server configuration
PDF
Mail server on Ubuntu Server 12.04 (Postfix, Courier, SSL, SpamAssassin, Clam...
PDF
Kea DHCP – the new open source DHCP server from ISC
DOCX
Kickstat File_Draft_ESXI5.1_Template
PDF
Installation of pfSense on Soekris 6501
PDF
PENYELESAIAN SOAL UKK/UPK TAHUN 2018 Paket 3 oleh Walid Umar
PPTX
DB Floripa - ProxySQL para MySQL
PDF
Nova HA
PDF
Percona University - ProxySQL para MySQL
PDF
在Oel5上安装配置oracle gird control 10.2.0.5
PDF
Brkcol 2344 understanding-cisco_jabber_service_discovery__client_configuration
PPTX
Resolution for a Faster Site
PDF
Tutorial CentOS 5 untuk Webhosting
PDF
DNSTap Webinar
PPTX
Dns explained
PDF
Keep Them out of the Database
Configure proxy firewall on SuSE Linux Enterprise Server 11
Basic security & info
Dhcp & dhcp relay agent in cent os 5.3
Mail server configuration
Mail server on Ubuntu Server 12.04 (Postfix, Courier, SSL, SpamAssassin, Clam...
Kea DHCP – the new open source DHCP server from ISC
Kickstat File_Draft_ESXI5.1_Template
Installation of pfSense on Soekris 6501
PENYELESAIAN SOAL UKK/UPK TAHUN 2018 Paket 3 oleh Walid Umar
DB Floripa - ProxySQL para MySQL
Nova HA
Percona University - ProxySQL para MySQL
在Oel5上安装配置oracle gird control 10.2.0.5
Brkcol 2344 understanding-cisco_jabber_service_discovery__client_configuration
Resolution for a Faster Site
Tutorial CentOS 5 untuk Webhosting
DNSTap Webinar
Dns explained
Keep Them out of the Database
Ad

Viewers also liked (20)

DOCX
Tola.leng sa nagios
DOCX
How to be a good presentor by tola
PDF
File Share Server, FTP server on Linux SuSE and Windows
PDF
Window8 installation on VMWare workstration
PPT
Linux and Samba in 75 Minutes
DOCX
Mikrotik basic configuration
DOC
Basic command to configure mikrotik
DOCX
Backup Data with Cron on Linux
PDF
Configuracion de red en ubuntu
DOC
Tutorial mikrotik-step-by-step(1)
PDF
Servidor VPN en Linux - Bilal Jebari
PDF
Network Diagram
PDF
Configure active directory & trust domain
TXT
Advance C++notes
PPT
Map.ppt
PDF
Install linux suse(sless11)
PDF
jsf2 Notes
PDF
Java Logging discussion Log4j,Slf4j
PDF
Struts2 notes
TXT
Jsp Notes
Tola.leng sa nagios
How to be a good presentor by tola
File Share Server, FTP server on Linux SuSE and Windows
Window8 installation on VMWare workstration
Linux and Samba in 75 Minutes
Mikrotik basic configuration
Basic command to configure mikrotik
Backup Data with Cron on Linux
Configuracion de red en ubuntu
Tutorial mikrotik-step-by-step(1)
Servidor VPN en Linux - Bilal Jebari
Network Diagram
Configure active directory & trust domain
Advance C++notes
Map.ppt
Install linux suse(sless11)
jsf2 Notes
Java Logging discussion Log4j,Slf4j
Struts2 notes
Jsp Notes
Ad

Similar to Open vpn server_linux (9)

PDF
Openvpn
PDF
3 manual installation of open vpn
PDF
Open-VPN Server
PDF
Proxy+firewall linux
PPTX
How to setup OpenVPN Server and Client on Ubuntu 14.04
PDF
FreeBSD, ipfw and OpenVPN 2.1 server
PDF
[Advantech] ADAM-3600 open vpn setting Tutorial step by step
DOC
The endian vpn menu
PDF
OpenVPN as a WAN - pfSense Hangout October 2016
Openvpn
3 manual installation of open vpn
Open-VPN Server
Proxy+firewall linux
How to setup OpenVPN Server and Client on Ubuntu 14.04
FreeBSD, ipfw and OpenVPN 2.1 server
[Advantech] ADAM-3600 open vpn setting Tutorial step by step
The endian vpn menu
OpenVPN as a WAN - pfSense Hangout October 2016

Recently uploaded (20)

PPTX
Presentation - Principles of Instructional Design.pptx
PDF
SaaS reusability assessment using machine learning techniques
PPTX
SGT Report The Beast Plan and Cyberphysical Systems of Control
PPTX
Module 1 Introduction to Web Programming .pptx
PDF
Connector Corner: Transform Unstructured Documents with Agentic Automation
PDF
Transform-Your-Streaming-Platform-with-AI-Driven-Quality-Engineering.pdf
PPTX
MuleSoft-Compete-Deck for midddleware integrations
PDF
“The Future of Visual AI: Efficient Multimodal Intelligence,” a Keynote Prese...
PDF
Early detection and classification of bone marrow changes in lumbar vertebrae...
PDF
Advancing precision in air quality forecasting through machine learning integ...
PDF
A hybrid framework for wild animal classification using fine-tuned DenseNet12...
PDF
NewMind AI Weekly Chronicles – August ’25 Week IV
PDF
CXOs-Are-you-still-doing-manual-DevOps-in-the-age-of-AI.pdf
PDF
LMS bot: enhanced learning management systems for improved student learning e...
DOCX
Basics of Cloud Computing - Cloud Ecosystem
PDF
IT-ITes Industry bjjbnkmkhkhknbmhkhmjhjkhj
PDF
MENA-ECEONOMIC-CONTEXT-VC MENA-ECEONOMIC
PDF
Rapid Prototyping: A lecture on prototyping techniques for interface design
PDF
The-Future-of-Automotive-Quality-is-Here-AI-Driven-Engineering.pdf
PDF
Introduction to MCP and A2A Protocols: Enabling Agent Communication
Presentation - Principles of Instructional Design.pptx
SaaS reusability assessment using machine learning techniques
SGT Report The Beast Plan and Cyberphysical Systems of Control
Module 1 Introduction to Web Programming .pptx
Connector Corner: Transform Unstructured Documents with Agentic Automation
Transform-Your-Streaming-Platform-with-AI-Driven-Quality-Engineering.pdf
MuleSoft-Compete-Deck for midddleware integrations
“The Future of Visual AI: Efficient Multimodal Intelligence,” a Keynote Prese...
Early detection and classification of bone marrow changes in lumbar vertebrae...
Advancing precision in air quality forecasting through machine learning integ...
A hybrid framework for wild animal classification using fine-tuned DenseNet12...
NewMind AI Weekly Chronicles – August ’25 Week IV
CXOs-Are-you-still-doing-manual-DevOps-in-the-age-of-AI.pdf
LMS bot: enhanced learning management systems for improved student learning e...
Basics of Cloud Computing - Cloud Ecosystem
IT-ITes Industry bjjbnkmkhkhknbmhkhmjhjkhj
MENA-ECEONOMIC-CONTEXT-VC MENA-ECEONOMIC
Rapid Prototyping: A lecture on prototyping techniques for interface design
The-Future-of-Automotive-Quality-is-Here-AI-Driven-Engineering.pdf
Introduction to MCP and A2A Protocols: Enabling Agent Communication

Open vpn server_linux

  • 1. NETWORK ADMINISTRATION OpenVPN Server on Linux 2013-2015 PASSERELLES NUMERIQEUS CAMBODIA Street 371 Phum Tropeang Chhuk (Borey Sorla), Sangkat Tek Thia Khan Sek Sok P.O. Box 511 Phnom Penh, Cambodia
  • 2. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 1 CONTENTS LAB Instruction ..........................................................................................................................2 Windows......................................................................................Error! Bookmark not defined. Install DHCP service..................................................................Error! Bookmark not defined. Create DCHP Scope...................................................................Error! Bookmark not defined. Exclude IP address amount 10 IP addresses .............................Error! Bookmark not defined. Configure DHCP Option ............................................................Error! Bookmark not defined. IP address Reservation..............................................................Error! Bookmark not defined. Deny Client by filter Mac address .............................................Error! Bookmark not defined. Create New scope for LAN-Client .............................................Error! Bookmark not defined. Show DHCP audit log file ..........................................................Error! Bookmark not defined. Suse Linux....................................................................................Error! Bookmark not defined. Adding more NICs and Assign IP address...............Error! Bookmark not defined. Install DHCP Relay Service ...........................................Error! Bookmark not defined. Configure DHCP Relay Service.....................................Error! Bookmark not defined. Let client request IP address........................................Error! Bookmark not defined. Make sure between LAN client and Windows Server can:.. Error! Bookmark not defined.
  • 3. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 2 LAB INSTRUCTION SUSE LINUX ENTERPRISE SERVER 11  LAN VPN Server  Network Address: 192.168.102.0/24  192.168.1.1 Router/Default Gateway  192.168.1.1 DNS Server  WAN  Network address: 203.100.10.0/24  203.100.10.1 Router/Default Gateway  192.168.1.10 DNS Server  172.16.120.3 – 172.16.120.254 Address pool/scope  172.16.120.10 – 172.16.120.20 Address Exclusive  Make sure the you have configure the hostname and ip address of different LAN and WAN
  • 4. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 3
  • 5. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 4 1. Install Service OpenVPN
  • 6. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 5 2. Configure VPN Server a. Copy “ëasy-rsa” from /usr/share/openvpn/easy-rsa to “/etc/openvpn” b. Generate the server key by go to /etc/openvpn and generate
  • 7. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 6 c. Edit and change the certificate attribute by go to /etc/openvpn/easy-rsa/vars
  • 8. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 7 d. Define keys directory
  • 9. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 8 e. Generation of the key (by cryptography method Diffie-Hellman with dh1024 bit) f. Generation of key and certificate to authority of certification - Create new user for vpn and client for generate the email address
  • 10. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 9 g. Generation of key and certificate to the server //information mixed with key to create certificate then store in Server h. Edit /etc/openvpn/easy-rsa/server.conf by changing
  • 11. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 10 - Ca ca.crt -> ca /etc/openvpn/easy-rsa/keys/ca.crt - Cert server.crt -> cert /etc/openvpn/easy-rsa/keys/vpnserver.crt - key server.key -> server.key /etc/openvpn/easy-rsa/keys/vpnserver.key - dh dh1024.perm -> dh /etc/openvpn/easy-rsa/keys/dh1024.pem - ;cipher DES-EDE3-CBC -> cipher DES-EDE3-CBC(encryption method)
  • 12. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 11
  • 13. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 12 i. Generation of the keys and certificate to the client (for tola.leng user)
  • 14. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 13
  • 15. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 14 3. Install/Configure OpenVPN Client
  • 16. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 15
  • 17. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 16 -copy file ca.crt, tola.leng.crt, tola.leng.key to input into the configuration file and input the certificate into C:Program FilesOpenVPNbin.......... -copy file client.ovpn to the folder config -change configuration file client.ovpn
  • 18. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 17
  • 19. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 18 -Finally save the file after we edit the information there are: remote 203.100.10.1 1194 ;remote 203.100.10.1 1194 ca "C:Program FilesOpenVPNbinca.crt" cert "C:Program FilesOpenVPNbintolaleng.crt" key "C:Program FilesOpenVPNbintolaleng.key" cipher DES-EDE3-CBC
  • 20. PASSERELLESNUMERIQUES CAMBODIA NETWORK ADMINISTRATION TOLA.LENG-PC 19 4. Testing OpenVPN remotes 5. Testing to access File Server 6. Set only one user can remote in the same time. The End!