File tree 5 files changed +5
-50
lines changed
5 files changed +5
-50
lines changed Original file line number Diff line number Diff line change @@ -15,8 +15,7 @@ RUN echo "http://dl-cdn.alpinelinux.org/alpine/edge/testing/" >> /etc/apk/reposi
15
15
ENV OPENVPN=/etc/openvpn
16
16
ENV EASYRSA=/usr/share/easy-rsa \
17
17
EASYRSA_CRL_DAYS=3650 \
18
- EASYRSA_PKI=$OPENVPN/pki \
19
- EASYRSA_VARS_FILE=$OPENVPN/vars
18
+ EASYRSA_PKI=$OPENVPN/pki
20
19
21
20
VOLUME ["/etc/openvpn" ]
22
21
Original file line number Diff line number Diff line change @@ -15,7 +15,6 @@ RUN echo "http://dl-4.alpinelinux.org/alpine/edge/community/" >> /etc/apk/reposi
15
15
ENV OPENVPN /etc/openvpn
16
16
ENV EASYRSA /usr/share/easy-rsa
17
17
ENV EASYRSA_PKI $OPENVPN/pki
18
- ENV EASYRSA_VARS_FILE $OPENVPN/vars
19
18
20
19
# Prevents refused client connection because of an expired CRL
21
20
ENV EASYRSA_CRL_DAYS 3650
Original file line number Diff line number Diff line change @@ -31,20 +31,20 @@ a corresponding [Digital Ocean Community Tutorial](http://bit.ly/1AGUZkq).
31
31
private key used by the newly generated certificate authority.
32
32
33
33
docker volume create --name $OVPN_DATA
34
- docker run -v $OVPN_DATA:/etc/openvpn --log-driver=none -- rm kylemanna/openvpn ovpn_genconfig -u udp://VPN.SERVERNAME.COM
35
- docker run -v $OVPN_DATA:/etc/openvpn --log-driver=none -- rm -it kylemanna/openvpn ovpn_initpki
34
+ docker run -v $OVPN_DATA:/etc/openvpn --rm kylemanna/openvpn ovpn_genconfig -u udp://VPN.SERVERNAME.COM
35
+ docker run -v $OVPN_DATA:/etc/openvpn --rm -it kylemanna/openvpn ovpn_initpki
36
36
37
37
* Start OpenVPN server process
38
38
39
39
docker run -v $OVPN_DATA:/etc/openvpn -d -p 1194:1194/udp --cap-add=NET_ADMIN kylemanna/openvpn
40
40
41
41
* Generate a client certificate without a passphrase
42
42
43
- docker run -v $OVPN_DATA:/etc/openvpn --log-driver=none -- rm -it kylemanna/openvpn easyrsa build-client-full CLIENTNAME nopass
43
+ docker run -v $OVPN_DATA:/etc/openvpn --rm -it kylemanna/openvpn easyrsa build-client-full CLIENTNAME nopass
44
44
45
45
* Retrieve the client configuration with embedded certificates
46
46
47
- docker run -v $OVPN_DATA:/etc/openvpn --log-driver=none -- rm kylemanna/openvpn ovpn_getclient CLIENTNAME > CLIENTNAME.ovpn
47
+ docker run -v $OVPN_DATA:/etc/openvpn --rm kylemanna/openvpn ovpn_getclient CLIENTNAME > CLIENTNAME.ovpn
48
48
49
49
## Next Steps
50
50
Load Diff This file was deleted.
Original file line number Diff line number Diff line change @@ -15,10 +15,6 @@ source "$OPENVPN/ovpn_env.sh"
15
15
# Specify "nopass" as arg[2] to make the CA insecure (not recommended!)
16
16
nopass=$1
17
17
18
- # EasyRSA 3.0.7 introduced checks for $EASYRSA_VARS_FILE existence
19
- # in the init-pki script
20
- touch $EASYRSA_VARS_FILE
21
-
22
18
# Provides a sufficient warning before erasing pre-existing files
23
19
easyrsa init-pki
24
20
You can’t perform that action at this time.
0 commit comments