summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
-rw-r--r--etc/dh-parameters.10245
-rw-r--r--etc/dh-parameters.20488
-rw-r--r--etc/dh-parameters.409613
-rw-r--r--etc/inc/openvpn.inc4
4 files changed, 29 insertions, 1 deletions
diff --git a/etc/dh-parameters.1024 b/etc/dh-parameters.1024
new file mode 100644
index 0000000..3148f4c
--- /dev/null
+++ b/etc/dh-parameters.1024
@@ -0,0 +1,5 @@
+-----BEGIN DH PARAMETERS-----
+MIGHAoGBAINPWm4z+KHppuzSZFjreaLrKdI/wkP0ojutrSlkiszXsGkbU6++GB1C
+7ZH2ZVpSIo4z31XyQnlraIkyY2pAItxqN8ozWaz84QLSHcwVcWKDEU7ZP0ISyTep
+alnFPGG8nJBSzxch+7H3HOfM68y6kfMtFDWuZtYj/9Zw4W42fVDLAgEC
+-----END DH PARAMETERS-----
diff --git a/etc/dh-parameters.2048 b/etc/dh-parameters.2048
new file mode 100644
index 0000000..f0e1a5d
--- /dev/null
+++ b/etc/dh-parameters.2048
@@ -0,0 +1,8 @@
+-----BEGIN DH PARAMETERS-----
+MIIBCAKCAQEAmWwXhRjeqPYl1TvXeKZt5W8MHe0keJK7wC+uPMxpGFVXlvPnWdN+
+W/GyimtD2rHYWF1gyr5IbhiEkXSAuTCnwokwz9XiNQ3hKY/iwTPDo0Go8beB5Ezr
+wz8DibSIv93Va5C+fHzwosuwTAqaOgpOzPqSmVS/UmUATssxOuCK6Crv7YyA5knW
+v0JsJK3VfloeXq/p4skn/KRgL2twO5puJvZWGycMd3cv9+afsWjES/ItwzEHNSEG
+sPen/kNDB4nH+WFKdXnP3fUAqPZCxiqaBC+UnuHngm7Se4smc7DeJkUsed7NLIeg
+zDZ0a3bKZ3UB0lcLGbqXIhh74TtFQ1egmwIBAg==
+-----END DH PARAMETERS-----
diff --git a/etc/dh-parameters.4096 b/etc/dh-parameters.4096
new file mode 100644
index 0000000..30058a1
--- /dev/null
+++ b/etc/dh-parameters.4096
@@ -0,0 +1,13 @@
+-----BEGIN DH PARAMETERS-----
+MIICCAKCAgEA1G0VaCFVkFFPB0pL1Y6NtAlysfvZaAXXmmJ89Xy5wrNLEZfTdmqT
+NmABAhr0DD6+1rcI5d4LriRLhTFf77COjW/+FelEA5BZBsoQDL6QsxWt4VoLT6uK
+bKVkbtwKycz0uOU1areS5gWHF71KRmKgooOuY2yl7a75uLn4QYCS7hKLXsAIB8eC
+63nl81T5gXOAc3hMiKrk8hKLUA6zkMfqWIpG06wvicaPlg8GyQavwGxONDNl/Y2r
+XyRoh/4ja7Moz0tUCmZV+iKtGgq5wekJ1fCN3zhXPX6h6WujoYqzcCmPLFCuIuEa
+kxRy9XaDTe8V40p1RDc4yMYQrl2hxrO8YPRBewigILYxEfe+51qE5Sb//UZszwNL
+kIhW9ObfAkotXoH81xke4EN0RX+rVK1ZYbeBIDCn62ZqNsUVkMh5Otsh0TiK7SP9
+O14IflklQqpyYc+aHMNknhsN30MFV3aD/785QS8zcWUdSdQeZlbjjFgJ4Xpt+r3p
+X6Vv8cwEh8qDHn2CaOfZtyTx2V3B2LU1sJZQ9ynVzlxy2clQcVboXPM1xNgzHSsd
+bFgPMJUAq9VjLGrbN6a3NqWwXnQPMuczX1G3T690fKF55e/boIAXZD1hEZqKt1f0
+DuCwyf/D4CEGyHhHIdVm7f1kTaErWzSgqcc2wGsjFi3ABTG2byxTnSsCAQI=
+-----END DH PARAMETERS-----
diff --git a/etc/inc/openvpn.inc b/etc/inc/openvpn.inc
index ee2461b..70ecac4 100644
--- a/etc/inc/openvpn.inc
+++ b/etc/inc/openvpn.inc
@@ -446,7 +446,7 @@ function openvpn_reconfigure($mode,& $settings) {
openvpn_add_keyfile($cert['crt'], $conf, $mode_id, "cert");
openvpn_add_keyfile($cert['prv'], $conf, $mode_id, "key");
if ($mode == 'server')
- $conf .= "dh {$g['varetc_path']}/openvpn/dh-parameters\n";
+ $conf .= "dh {$g['etc_path']}/dh-parameters.2048\n";
if ($settings['crl'])
openvpn_add_keyfile($settings['crl'], $conf, $mode_id, "crl-verify");
if ($settings['tls'])
@@ -604,6 +604,7 @@ function openvpn_resync_all() {
if (!is_array($config['openvpn']))
$config['openvpn'] = array();
+/*
if (!$config['openvpn']['dh-parameters']) {
echo "Configuring OpenVPN Parameters ...\n";
$dh_parameters = openvpn_create_dhparams(1024);
@@ -618,6 +619,7 @@ function openvpn_resync_all() {
$dh_parameters = base64_decode($dh_parameters);
file_put_contents($path_ovdh, $dh_parameters);
}
+*/
if (is_array($config['openvpn']['openvpn-server']))
foreach ($config['openvpn']['openvpn-server'] as & $settings)
OpenPOWER on IntegriCloud