4s3ti
ad466f8728
Permissions hardening and Standardization
2019-09-01 16:10:53 +02:00
4s3ti
1bd8169aa6
Merge branch 'test' into master
2019-09-01 15:32:56 +02:00
IcedComputer
2da5c512d0
Merge branch 'test' into patch-2
2019-08-27 12:46:18 -07:00
IcedComputer
f6beac87d7
changed password parameter
...
Removed typo and changed -passin pass:$PASSWD to -passin env:$PASSWD
2019-08-27 12:44:37 -07:00
IcedComputer
5862d15d60
Update scripts/makeOVPN.sh
...
Co-Authored-By: Giraffe1966 <35208168+Giraffe1966@users.noreply.github.com>
2019-08-27 12:42:53 -07:00
Douglas Orend
371e65444b
Update makeOVPN.sh
2019-08-21 19:25:32 -05:00
Akvile
9d66688341
added the functionality to send your OVPN file to your Bitwarden vault
2019-08-20 11:36:05 -05:00
Douglas Orend
44e1f48856
Update makeOVPN.sh
...
Fixed ownership line to use only username, not install path.
2019-08-20 09:02:31 -05:00
Douglas Orend
8b40035bf5
Properly determine user's home directory
...
Code assumes that the specified user directory is under /home. This code parses the /etc/passwd file in order to determine what that user's proper home directory is.
2019-08-13 11:23:08 -05:00
4s3ti
18b7e16694
Merge branch 'test' into bitwarden
2019-08-08 10:34:17 +02:00
Orazio
b71c67c78a
Recreate ovpn folder if deleted
2019-08-06 10:02:28 +02:00
Akvile
b60a06791d
integrated bitwarden password manager into pivpn
2019-07-23 22:12:35 +02:00
Orazio
8a6d32ced5
Fixed regular expression
2019-07-13 19:59:28 +02:00
Orazio
241e06f970
Miscellaeous fixes
2019-07-13 10:45:44 +02:00
IcedComputer
97bb319795
Updated .ovpn12 configuration
...
Incorporated feedback on how to properly implement .ovpn12 files.
2019-06-27 14:43:30 -07:00
IcedComputer
dae6276d37
Made updates based on comments
...
added changes related to chown and chmod of .ovpn12 file. Also removed sudo.
2019-06-27 11:47:24 -07:00
IcedComputer
bda0d58b81
.ovpn12 files
...
Added new step to create an .ovpn12 file that can be stored on iOS keychain
This step is more secure method and does not require the end-user to keep entering passwords, or storing the client private cert where it can be easily tampered based on documentation located:
https://openvpn.net/faq/how-do-i-use-a-client-certificate-and-private-key-from-the-ios-keychain/
Someone can improve upon this by adding a parameter (possibly -i|--iOS) and then generating the original .ovpn file to not contain the client private certificate.
2019-06-20 16:53:29 -07:00
Orazio
e70cb32caa
Fixed logic
2019-05-10 12:53:52 +02:00
Orazio
e26cef1863
Custom certificate duration and more flexible names
2019-05-08 13:01:56 +02:00
LMS235
d0f85e3429
right adjustment
...
-read for "other" withdrawn from .ovpn files
- delete also /etc/openvpn/easy-rsa/pki/${CERTS_TO_REVOKE[ii]}.ovpn after remove certificate
2018-12-24 14:24:20 +01:00
redfast00
0b4464b3ee
Merge branch 'master' into test
2018-10-19 22:10:37 +01:00
Orazio
e2cde58cc8
Update makeOVPN.sh
2018-10-19 22:04:30 +01:00
Giraffe1966
f2f248e6ce
Add '--' to prevent 'send' from interpreting passwords beginning with '-' as options.
...
See #624 .
2018-10-11 17:58:29 -04:00
redfast00
b7c28af844
Merge pull request #541 from pivpn/test
...
Merge test branch into master
2018-05-29 22:38:46 +02:00
redfast00
09a73f9d3f
Merge pull request #514 from orazioedoardo/master
...
Several changes and some fixes
2018-05-29 22:33:42 +02:00
Zeik0s
fc3691406e
Merge pull request #1 from pivpn/master
...
Merge commits
2018-05-29 14:47:31 +02:00
johanfagerstroem
23cc58ce3a
Changing name validation regex to allow dashes
...
Great for readable naming conventions.
2018-05-01 16:38:38 +02:00
Piero
33e7ef0c91
Several changes
2018-04-02 12:07:58 +02:00
Zeik0s
b8e5f318b6
makeOVPN.sh change 3DES to AES-128
2018-03-14 21:55:05 +01:00
Piero
4b47b5aa61
2.4
2018-02-15 10:14:03 +01:00
Tuan M. Dang
455b754c41
Issue-171: Error using iOS OpenVPN
...
As @fyellin There is some chatter on other groups that some
OpenVPN implementations cannot handle client keys that are
encrypted with RSA.
If the client key is encrypted, we might re-encrypting the
current client key using 3DES.
This commit will convert user client key to 3DES in command
`pivpn -a`
P/S: All credits to @fyellin. Many thanks to him.
2017-11-19 21:36:21 +07:00
Jelle Dekker
7b6a358779
Modified the messages when PiVPN installation completes and client profiles are generated, so the user knows to generate a client profile per each device he/she wants to connect to the VPN with.
2017-09-22 14:11:23 -05:00
EWouters
cb482d6697
added fi to if-statement
2017-03-16 22:28:50 +13:00
EWouters
cd4d13691d
fixed check for when both nopass and a password argument are passed to the script
2017-03-16 22:25:17 +13:00
EWouters
56f24aa372
added command line option to (batch) remove certs
...
::: Revoke a client ovpn profile
:::
::: Usage: pivpn <-r|revoke> [-h|--help] [<client-1>] ... [<client-n>]
...
:::
::: Commands:
::: [none] Interactive mode
::: <client> Client(s) to to revoke
::: -h,--help Show this help dialog
2017-03-15 02:36:12 +13:00
EWouters
7a65f083c4
added -n and -p options to pivpn add
...
::: Create a client ovpn profile, optional nopass
:::
::: Usage: pivpn <-a|add> [-n|--name <arg>] [-p|--password
<arg>]|[nopass] [-h|--help]
:::
::: Commands:
::: nopass Create a client without a password
::: -n,--name Name for the Client (default: 'raspberrypi')
::: -p,--password Password for the Client (no default)
::: -h,--help Show this help dialog
2017-03-15 00:49:25 +13:00
Kaladin Light
752d0cc3af
Leave the loop once we match
2017-02-05 14:30:31 -05:00
Kaladin Light
bfd2c43570
Allow reuse of cert name once revoked.
2017-01-27 20:36:53 -05:00
Kaladin Light
22b5bfef68
Add fix iptables help to debug script (1/2)
2016-12-11 13:36:14 -05:00
Kaladin Light
9b8a883119
pivpn add for easyrsa3, updates to pivpn list for easyrsa3
2016-12-06 10:56:51 -05:00
Kaladin Light
2468c69d9a
Fix escaping stuff in for password of client key
...
Was overzealously escaping... oops
2016-11-11 21:55:47 -05:00
Kaladin Light
7d34c0cae6
Fixes Issue #148
2016-11-11 17:45:48 -05:00
redfast00
147192c79b
fixes expect timeout
2016-10-09 13:34:17 +02:00
redfast00
d8d89c758b
Prevent overwriting files
2016-10-04 20:54:09 +02:00
redfast00
caee0858cf
Sanitization 'n input validation
2016-10-04 19:46:14 +02:00
Kaladin Light
dea112f50f
Fixes #23 , enhance 'pivpn add', minor bug fixes & other enhancements
2016-05-05 21:04:57 -04:00
Kaladin Light
6956fcb99b
Implement the "planetahuevo enhancement", IE the ability to
...
generate a client cert with no password. Run 'pivpn add nopass'
2016-04-30 23:37:27 -04:00
Kaladin Light
af19eeb55b
'pivpn add' functionality greatly improved!
...
Now with 2 scoops of raisins!
2016-04-30 13:28:01 -04:00
Kaladin Light
53565dd4fe
First commit of reworked installer
2016-04-19 14:01:55 -04:00