官术网_书友最值得收藏!

Chapter 1. Point-to-Point Networks

In this chapter, we will cover:

  • Shortest setup possible
  • OpenVPN secret keys
  • Multiple secret keys
  • Plaintext tunnel
  • Routing
  • Configuration files versus the command-line
  • IP-less configurations
  • Complete site-to-site setup
  • 3-way routing

Introduction

The recipes in this chapter will provide an introduction into configuring OpenVPN. The recipes are based on a point-to-point style network, meaning that only a single client can connect at a time.

A point-to-point style network is very useful when connecting to a small number of sites or clients. It is easier to set up, as no certificates or Public Key Infrastructure (PKI) is required. Also, routing is slightly easier to configure, as no client-specific configuration files containing --iroute statements are required.

The drawbacks of a point-to-point style network are:

  • The lack of perfect forward secrecy— a key compromise may result in a total disclosure of previous sessions
  • The secret key must exist in plaintext form on each VPN peer
主站蜘蛛池模板: 英德市| 文登市| 临邑县| 昭觉县| 准格尔旗| 阿拉尔市| 清流县| 和政县| 陆良县| 江陵县| 永丰县| 湘潭市| 潞西市| 苍梧县| 游戏| 始兴县| 闻喜县| 乌拉特后旗| 深水埗区| 肇庆市| 诸暨市| 仁布县| 集安市| 昌黎县| 九台市| 宜章县| 威宁| 拜泉县| 岢岚县| 郎溪县| 定州市| 兰考县| 岚皋县| 丰镇市| 泗阳县| 新建县| 昆明市| 阿克| 邢台市| 桦甸市| 永顺县|