This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| tips:vpn:galileo [2017/02/08 14:30] – [galileo openvpn] scipio | tips:vpn:galileo [2024/07/19 10:21] (current) – [Console] sscipioni | ||
|---|---|---|---|
| Line 1: | Line 1: | ||
| ====== VPN Galileo ====== | ====== VPN Galileo ====== | ||
| + | |||
| + | VPN PPTP/L2TP: | ||
| + | * indirizzo server concentratore: | ||
| + | * username e password | ||
| + | |||
| + | < | ||
| + | yay -S networkmanager-l2tp networkmanager-strongswan | ||
| + | </ | ||
| + | |||
| + | aggiungere vpn L2TP | ||
| + | |||
| + | {{ : | ||
| + | |||
| + | {{ : | ||
| + | |||
| + | {{ : | ||
| + | |||
| + | ====== pptp manual ====== | ||
| + | |||
| + | <file ini / | ||
| + | [connection] | ||
| + | id=galileo | ||
| + | uuid=97852b85-b57b-4b38-9687-d919f2820e57 | ||
| + | type=vpn | ||
| + | autoconnect=false | ||
| + | permissions=user: | ||
| + | timestamp=1623922800 | ||
| + | |||
| + | [vpn] | ||
| + | gateway=94.230.76.2 | ||
| + | mru=1400 | ||
| + | mtu=1400 | ||
| + | password-flags=0 | ||
| + | user=xxx | ||
| + | user-auth-type=password | ||
| + | service-type=org.freedesktop.NetworkManager.l2tp | ||
| + | |||
| + | [vpn-secrets] | ||
| + | password=xxx | ||
| + | |||
| + | [ipv4] | ||
| + | dns-search= | ||
| + | ignore-auto-dns=true | ||
| + | method=auto | ||
| + | |||
| + | [ipv6] | ||
| + | addr-gen-mode=stable-privacy | ||
| + | dns-search= | ||
| + | method=disabled | ||
| + | |||
| + | [proxy] | ||
| + | |||
| + | </ | ||
| + | |||
| + | < | ||
| + | chmod 600 / | ||
| + | </ | ||
| + | |||
| + | change: | ||
| + | * permissions=user: | ||
| + | * user=xxx | ||
| + | * password=xxx | ||
| + | |||
| + | |||
| + | |||
| + | ====== pptp GUI ====== | ||
| + | |||
| + | Installare il package networkmanager-pptp | ||
| + | |||
| + | Aggiungere una VPN pptp | ||
| + | |||
| + | {{: | ||
| + | |||
| + | {{ : | ||
| ===== galileo openvpn ===== | ===== galileo openvpn ===== | ||
| Server certificate | Server certificate | ||
| - | <file txt galileo.pem> | + | <file txt ca.crt> |
| -----BEGIN CERTIFICATE----- | -----BEGIN CERTIFICATE----- | ||
| - | MIIF9zCCA9+gAwIBAgIJAJH+goVQrErpMA0GCSqGSIb3DQEBCwUAMIGRMQswCQYD | + | MIIDVDCCAjygAwIBAgIIK+uSMAP/ |
| - | VQQGEwJJVDEOMAwGA1UECAwFSXRhbHkxDzANBgNVBAcMBlZlcm9uYTEWMBQGA1UE | + | AwwRQ0EtVlBOQ09OQy1NRVVDQ0kwHhcNMjEwNzE1MTAxOTQwWhcNMjIwNzE1MTAx |
| - | CgwNR2FsaWxlbyBTQ0FSTDEaMBgGA1UEAwwRdnBuLmNzZ2FsaWxlby5vcmcxLTAr | + | OTQwWjAcMRowGAYDVQQDDBFDQS1WUE5DT05DLU1FVUNDSTCCASIwDQYJKoZIhvcN |
| - | BgkqhkiG9w0BCQEWHnN0ZWZhbm8uc2NpcGlvbmlAY3NnYWxpbGVvLm9yZzAeFw0x | + | AQEBBQADggEPADCCAQoCggEBAMpvDbQaXdZ670pKiI/ |
| - | NzAxMjAxMzUyMDZaFw0yNzAxMTgxMzUyMDZaMIGRMQswCQYDVQQGEwJJVDEOMAwG | + | 5ezrDlDpG2fzX1L7VHFwP9ICxWl5f4D54k9tf4BjSdkSprCNGZy7m6jjub/ |
| - | A1UECAwFSXRhbHkxDzANBgNVBAcMBlZlcm9uYTEWMBQGA1UECgwNR2FsaWxlbyBT | + | Ogqys//Ngd8izPAWVT7DT34z5rH8uuSbM/ZpZa+W0AQEQQi3NkVL7il1dN6vBZYZ |
| - | Q0FSTDEaMBgGA1UEAwwRdnBuLmNzZ2FsaWxlby5vcmcxLTArBgkqhkiG9w0BCQEW | + | KDynF9xoWgrFNOjnzBB+/dJE/sz6Xz+HGhfMf8sQPg2BpOhjJNaQ+V3giRlGMQEA |
| - | HnN0ZWZhbm8uc2NpcGlvbmlAY3NnYWxpbGVvLm9yZzCCAiIwDQYJKoZIhvcNAQEB | + | r6hUwrOIYe0/fcP148eFl8pReAMwcw+Ngv3IV53iZq/DrJAWKwWwdwR4gevskVvz |
| - | BQADggIPADCCAgoCggIBAMrWc8+qZN2YTODQTvhRD3XoSayCv74/9tttwuE4R/HG | + | UeFulcgrXN0W+lGM1JWwSwMlCR5E8Q8u/Y2l35rxl4UE7NECAwEAAaOBmTCBljAP |
| - | J5iTbTCGfxgTkLmTFBIG5VmaBHlc2znSD6hEx/rrr2/ | + | BgNVHRMBAf8EBTADAQH/MA4GA1UdDwEB/wQEAwIBBjAdBgNVHQ4EFgQUGP2aPxrh |
| - | Z7eyRCq2vireGxgsYkBsyb5fVNDq0yz+nipl+Bu+Rj4wBTrgglly0qt4Ey8RGnBv | + | 8UwB4OCsmtunMwXwdjYwLgYDVR0fBCcwJTAjoCGgH4YdaHR0cDovLzk0LjIzMC43 |
| - | tZduqx2iiswRk2awM+hDCFrjgDhfAS+S/MHDk8hPHrOZeYz8azj/RDclgARDx8sS | + | Ni4yL2NybC8xNC5jcmwwJAYJYIZIAYb4QgENBBcWFUdlbmVyYXRlZCBieSBSb3V0 |
| - | mzAwwS07oC7lxwrPC33i3tf8FWfXwbtR4VasAKZl5Rw+N3tGWu9pM9IXSZn+sR1O | + | ZXJPUzANBgkqhkiG9w0BAQsFAAOCAQEAJ/9cl1glKLuvHHDXmnz17+bH5ZAWOR7g |
| - | rXGdw9WPX5oLWcE4wheIsnVquEardd6/ATk8OSk9anxaXGuudWByUDUovQaj/HVi | + | KMjY1P2b9eK08mAAq4+Gp8/N/suiMBN6hA+WHtzbPYurXZgm1tAlI2kZE0XdLtig |
| - | ODPCi2COEGaqFWgnu1UzhclIw1jHQMsdE7bDmC5GEySeSjdehwjcriUW287MtwnH | + | o2rJ3Z24E/MuxxPGhNQe+l1Qx4v9Cp5Q98NIZh9Hl5KEV4ZvInvXbVxlzOSz+KN3 |
| - | fQusGXHzjbTu0SkWiuC5AYBnyKUQlfvzRUCeSDG8HnwjpRDd7Nk/7TFZEB31vdxw | + | R9fWzZrV9KWOWfLXvPF4n/ |
| - | FGWCdqjYWNNzgW11qsi1ZQc0awjVBMdvGAMeEGhaEVEVxPFZZDz4K80ApjHtOxN3 | + | vO0dg/ |
| - | 9cZA2NnJHVMiKKXn/8UbrwRasix4eoSrrSKlMJ5X7pltE/XJWIo7X0UMRdSiRZu0 | + | ilkuUqzSXarAg4LqxShPRxfSnX2kUP6IXsDeonX/UwmzrztRd+QZ2w== |
| - | U11vNfpSq8Ydzna6fuImUrZ0d18KOiKpwA8EGefmCq8E34MqEieltTPFuD7bt9hN | + | |
| - | AgMBAAGjUDBOMB0GA1UdDgQWBBTOWWuYdlt/ | + | |
| - | GDAWgBTOWWuYdlt/Tlt3h9gQ73UWqr/ | + | |
| - | DQEBCwUAA4ICAQCqcmEqOD2HqJUJ7wVT1ixZ/ | + | |
| - | i1WZSa/ | + | |
| - | Gj2RMcN5FN6hUrssNW7k9YKH8cfYOCrR1AtHLs/ | + | |
| - | blEg6Aa33YojvDPMIsbWC5Rr0VIXcM2WDvCoiXLrkv20WXGieBcHFckzVPsR6WYc | + | |
| - | J6koBUQzLzvAyOyI0VdJcX8RsNT6VuEywjf3xCwQ+7P0bGjulOQ4NkUR8BF9/N/X | + | |
| - | 3t+Gt7V9yRt2ZLz63TM3PPiaCKZ4LUwoU6TEGx/ | + | |
| - | ddm6QnLjW4go4m2kwD0BM74QUEp1ov+6lsuveEVGS2WMAi0Zd/dgDF+iKDbs0nEF | + | |
| - | VwMjOmyo+G87iZvpt5HoxF9ckFndAs2S3mqu2nAd5dPhDWZr8muAkICjY575PRCU | + | |
| - | eejWA3clVwc7y+HlaZpyvczh2usylDh4SkMlLAL3uAKVGymP4ujjizC0SKAdhkXO | + | |
| - | QClOyfP+VvnLWVvXMii6kie6/cEA0yxnsNhF/Er+qAFfVdH0vpKMOTasD8la7jRw | + | |
| - | / | + | |
| -----END CERTIFICATE----- | -----END CERTIFICATE----- | ||
| </ | </ | ||
| + | ==== GUI ==== | ||
| + | ubuntu | ||
| <code bash> | <code bash> | ||
| sudo apt install network-manager-openvpn-gnome | sudo apt install network-manager-openvpn-gnome | ||
| sudo service network-manager restart | sudo service network-manager restart | ||
| </ | </ | ||
| + | |||
| + | arch: pacman -S networkmanager-openvpn | ||
| add VPN connection with network manager GUI: | add VPN connection with network manager GUI: | ||
| * type: openvpn | * type: openvpn | ||
| - | * gateway: **vpn.csgalileo.org** | + | * gateway: **vpn1.csgalileo.org** |
| * user: < | * user: < | ||
| * pass: < | * pass: < | ||
| - | * CA certificate: | + | * CA certificate: |
| * in advanced settings check **"Use TCP connection" | * in advanced settings check **"Use TCP connection" | ||
| + | * in route add 10.0.0.0/8 and 185.91.188.0/ | ||
| + | |||
| + | ==== Console ==== | ||
| + | |||
| + | <code bash> | ||
| + | sudo apt install openvpn | ||
| + | </ | ||
| + | |||
| + | <file txt auth.cfg> | ||
| + | < | ||
| + | < | ||
| + | </ | ||
| + | |||
| + | <file txt openvpn.conf> | ||
| + | client | ||
| + | dev tun | ||
| + | proto tcp-client | ||
| + | remote vpn1.csgalileo.org | ||
| + | port 1194 | ||
| + | nobind | ||
| + | persist-key | ||
| + | persist-tun | ||
| + | tls-client | ||
| + | remote-cert-tls server | ||
| + | ca cert_export_CA-VPNCONC-MEUCCI.crt | ||
| + | cert cert_export_client-VPNCONC-MEUCCI-adalcason.crt | ||
| + | key cert_export_client-VPNCONC-MEUCCI-adalcason.key | ||
| + | verb 1 | ||
| + | mute 20 | ||
| + | auth SHA1 | ||
| + | auth-user-pass login.conf | ||
| + | cipher AES-256-CBC | ||
| + | ;cipher AES-256-GCM | ||
| + | auth-retry interact | ||
| + | ; | ||
| + | route 10.0.0.0 255.0.0.0 | ||
| + | route 172.16.0.0 255.240.0.0 | ||
| + | route 94.230.77.0 255.255.255.0 | ||
| + | route 94.230.78.0 255.255.255.0 | ||
| + | route 94.230.79.0 255.255.255.0 | ||
| + | route 109.104.240.0 255.255.252.0 | ||
| + | route 185.91.188.0 255.255.252.0 | ||
| + | #log-append log.txt | ||
| + | askpass chiave.config | ||
| + | |||
| + | providers legacy default | ||
| + | data-ciphers-fallback BF-CBC | ||
| + | compat-mode 2.3.18 | ||
| + | |||
| + | </ | ||
| + | |||
| + | <file txt go> | ||
| + | sudo openvpn --config openvpn.conf | ||
| + | </ | ||
| + | |||
| + | Connect with | ||
| + | <code bash> | ||
| + | ./go | ||
| + | </ | ||
| + | |||
| + | ==== Winzozz ==== | ||
| + | |||
| + | <file txt c:\Program Files\OpenVPN\config\auth_galileo.cfg> | ||
| + | username | ||
| + | password | ||
| + | </ | ||
| + | |||
| + | <file txt c:\Program Files\OpenVPN\config\galileo.ovpn> | ||
| + | client | ||
| + | dev tun | ||
| + | proto tcp-client | ||
| + | remote-cert-tls server | ||
| + | |||
| + | remote vpn.csgalileo.org 1194 | ||
| + | route 10.0.0.0 255.0.0.0 vpn_gateway 3 | ||
| + | route 185.91.188.0 255.255.255.0 vpn_gateway 3 | ||
| + | |||
| + | resolv-retry infinite | ||
| + | nobind | ||
| + | persist-key | ||
| + | persist-tun | ||
| + | verb 3 | ||
| + | auth-user-pass auth_galileo.cfg | ||
| + | script-security 3 | ||
| + | <ca> | ||
| + | -----BEGIN CERTIFICATE----- | ||
| + | MIIE3zCCA8egAwIBAgIJAKI/ | ||
| + | VQQGEwJJVDELMAkGA1UECBMCVlIxDzANBgNVBAcTBlZlcm9uYTEQMA4GA1UEChMH | ||
| + | R2FsaWxlbzEQMA4GA1UECxMHR2FsaWxlbzETMBEGA1UEAxMKR2FsaWxlbyBDQTEQ | ||
| + | MA4GA1UEKRMHRWFzeVJTQTEtMCsGCSqGSIb3DQEJARYec3RlZmFuby5zY2lwaW9u | ||
| + | aUBjc2dhbGlsZW8ub3JnMB4XDTE3MDMyMjE1MDQ0NFoXDTI3MDMyMDE1MDQ0NFow | ||
| + | gaUxCzAJBgNVBAYTAklUMQswCQYDVQQIEwJWUjEPMA0GA1UEBxMGVmVyb25hMRAw | ||
| + | DgYDVQQKEwdHYWxpbGVvMRAwDgYDVQQLEwdHYWxpbGVvMRMwEQYDVQQDEwpHYWxp | ||
| + | bGVvIENBMRAwDgYDVQQpEwdFYXN5UlNBMS0wKwYJKoZIhvcNAQkBFh5zdGVmYW5v | ||
| + | LnNjaXBpb25pQGNzZ2FsaWxlby5vcmcwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAw | ||
| + | ggEKAoIBAQDgxKb1DORrR5kZhTz1oj4ronvQaU8oyBc71y5oxp70XwIEQkW+87WT | ||
| + | lgfeT8fwqec6KIjQr6SJOhMmIDphYifN1gwseJ4rtLf33WZOsWgWNOeLjxcn354g | ||
| + | M26pWJt3ETP3THUu4dK4Y6T7t7dFJiaIZ0jRg15EIKHsfMZDYRtcl5Sc0EBw4G32 | ||
| + | TndnWsy+vJRocM0zkniuDnNnI1GJh3MOLK+/ | ||
| + | qUteWn5pBZm91Q2KQa5W5OQYVNPA4wbopQHxhhEXGDDwm+iQsqjBQVK39TQDwBGS | ||
| + | foMxbPZwr17pJGbhhHGVNm8DP+XnTltFAgMBAAGjggEOMIIBCjAdBgNVHQ4EFgQU | ||
| + | 6kM1PEOCDJ+cqiazQu70mrXni+AwgdoGA1UdIwSB0jCBz4AU6kM1PEOCDJ+cqiaz | ||
| + | Qu70mrXni+ChgaukgagwgaUxCzAJBgNVBAYTAklUMQswCQYDVQQIEwJWUjEPMA0G | ||
| + | A1UEBxMGVmVyb25hMRAwDgYDVQQKEwdHYWxpbGVvMRAwDgYDVQQLEwdHYWxpbGVv | ||
| + | MRMwEQYDVQQDEwpHYWxpbGVvIENBMRAwDgYDVQQpEwdFYXN5UlNBMS0wKwYJKoZI | ||
| + | hvcNAQkBFh5zdGVmYW5vLnNjaXBpb25pQGNzZ2FsaWxlby5vcmeCCQCiP4p3w6yw | ||
| + | KDAMBgNVHRMEBTADAQH/ | ||
| + | hy4R7qStYnbELKFosI1KJ4Oz+ibYZxAOCOyURpacJq9NPYAS/ | ||
| + | kNGq1ZxCHIsGWhagHFDHru2ct4nKtyEFSAzzy7UAnQITeTBZkEjDENWncdb41+VA | ||
| + | fJRoM8O1kj3+Kn0Zpwn126pp8/ | ||
| + | iCGKzo/ | ||
| + | 3/ | ||
| + | vlW7 | ||
| + | -----END CERTIFICATE----- | ||
| + | </ca> | ||
| + | </ | ||
| ===== Lavagno ===== | ===== Lavagno ===== | ||