ʹÓÃOpenVPN´î½¨LinuxϵÄVPN·þÎñ
³£ÔÚÏîÄ¿ÖÐÓöµ½ÍâµØµÄ¿Í»§Åöµ½ÎÊÌ⣬µ«ÎÞ·¨Ôڵ绰Öнâ¾ö£¬ÐèÒªÔÚ»úÆ÷ÉϽøÐзÖÎöºÍ´¦Àí¡£µÚÒ»¸öÏëµ½µÄ¾ÍÊÇÔ¶³ÌµÇ½£¬µ«¶Ô·½Ã»Óй«ÍøIP£¬Ôõô°ì£¿´Ëʱ£¬Èç¹ûÓиöVPNͨµÀ¸Ã¶àºÃ¡£ËùÒÔ£¬ÎÒ¾ö¶¨´î½¨Ò»Ì¨VPN·þÎñÆ÷ÒÔ·½±ã½ñºóµÄά»¤£¬Ë³±ãÒ²ÔÙÊìϤһÏÂÏà¹ØµÄÅäÖá£
VPNÓ²¼þÊDz»Óÿ¼Âǵģ¬·ÑÓÃÌ«¸ß¡£¶øÇÒ¼ÈÈ»ÒѾÊìϤÁËLinux»·¾³£¬µ±È»»¹ÊÇÔڸû·¾³ÏÂÑ°ÕÒÁË¡£¿¼ÂÇÁ½µã£º
1¡¢°²È«ÐÔµÚÒ»£¬ÅäÖ÷½±ã£»
2¡¢Ö§³Ö¶àƽ̨Á¬½Ó£¬±Ï¾¹Ê¹ÓÃWindows×ÀÃæµÄÓû§»¹ÊǺܶàµÄ¡£
¿¼ÂÇÔÙÈý£¬¾ö¶¨Ê¹ÓÃOpenVPNÀ´ÊµÏÖ¡£
Ò»¡¢ÔÀí
OpenVPNÊÇ»ùÓÚSSLµÄVPN£¬ÆäʹÓù¤Òµ±ê×¼µÄSSL/TLSÐÒéʵÏÖµÚ2²ãºÍµÚ3²ãµÄ°²È«Êý¾ÝÁ´Â·VPN¡£×îа汾ÊÇ2.0.7£¬ÆäÓŵã°üÀ¨£º
1¡¢»ùÓÚSSLÐÒ飬°²È«£¬²¢Ê¹Óõ¥Ò»TCP»òUDP¶Ë¿Ú¼´¿ÉʵÏÖ£»
2¡¢Ê¹ÓÃË«ÏòÑéÖ¤£¬·þÎñÆ÷Ö»Ðè±£´æ×Ô¼ºµÄÖ¤ÊéºÍÃÜÔ¿£»
3¡¢·þÎñÆ÷Ö»½ÓÊÜÄÇЩÓÉÖ÷CAÖ¤ÊéÇ©ÃûµÄ¿Í»§¶Ë£¬²¢Óг·»Ø»úÖÆ£¬¶ø²»ÐèÒªÖؽ¨Õû¸öPKI£»
4¡¢¿ÉÒÔʵÏÖ»ùÓÚCommon NameµÄȨÏÞ¿ØÖÆ¡£
¹Ù·½ÍøÕ¾£ºÕâÀï
rpmÏÂÔØ£ºµã»÷
ÒÀÀµµÄlzo°ü£ºµã»÷
¡ù×¢Ò⣬OpenVPNÊÇ»ùÓÚSSL/TLSÐÒéµÄ£¬ËùÒÔÊDz»¼æÈÝIPSecºÍPPTP£¬ÔÚWindowsÒ²ÐèÒª°²×°¿Í»§¶Ë¡£
¶þ¡¢ÍøÂç¼Ü¹¹
OpenVPN¿ÉÒÔʵÏÖ¶àµã¶Ôµ¥µã£¬ÒÔ¼°µã¶ÔµãµÄVPN¹¦ÄÜ¡£½ñÌìÎÒÃÇÏÈÒÔÒ»¸ö¼òµ¥µÄ°¸ÀýÀ´ËµÃ÷£¬ºóÐøÔÙÏêϸÃèÊö¸üÉîÈëµÄÅäÖá£
¼Ü¹¹ÈçÏ£º
˵Ã÷£º
1¡¢Ô¶³Ì¿Í»§¶Ëͨ¹ýInternetÍøÂçÁ¬½Óµ½¹«Ë¾ÍøÂ磨ģÄâ³É192.168.228.0Íø¶Î£©£¬²¢½¨Á¢10.8.0.0µÄVPNͨµÀ£»
2¡¢¹«Ë¾ÄÚ²¿ÍøÂçΪ192.168.56.0Íø¶Î£¬¼ÙÉèÖ»ÓÐһ̨Ö÷»ú£»
3¡¢Ä¿±êÊÇ¿Í»§¶ËºÍºǫ́Ö÷»ú¿ÉÒÔË«Ïò»¥Í¨¡£
Èý¡¢°²×°ºÍÅäÖÃ
¼ÙÉè¿Í»§¶ËºÍ·þÎñ¶Ë¶¼ÊÇLinuxϵͳ£¬ÈçÏ£º
·þÎñÆ÷ƽ̨£º ºìÆì DC Server 5.0 for x86
¿Í»§¶Ëƽ̨£º ºìÆì Desktop 5.0 for x86
1¡¢·þÎñ¶Ë°²×°
rpm -ivh lzo-1.08-4.redflag.i386.rpm
rpm -ivh openvpn-2.0.7-2.redflag.i386.rpm
1£©Ê¾ÀýÅäÖÃÎļþÔÚ£º
ÒýÓÃ
/usr/share/doc/openvpn-2.0.7/
2£©¿½±´´´½¨CAÖ¤ÊéµÄeasy-rsa£º
cp -ra /usr/share/doc/openvpn-2.0.7/easy-rsa /etc/openvpn/
3£©¿½±´Ê¾ÀýÅäÖÃÎļþ
cd /etc/openvpn/
mkdir config
cp -ra /usr/share/doc/openvpn-2.0.7/sample-config-files/server.conf config/
ln -s config/server.conf ./
¡ùÈç¹ûÄú½ñºóÏ£ÍûOpenvpnËæϵͳ×Ô¶¯Æô¶¯£¬ÔòËü»á×Ô¶¯Ñ°ÕÒ/etc/openvpnϵÄËùÓÐ.confÅäÖÃÎļþ£¬²¢ÔËÐС£ËùÒÔ£¬ÎÒÕâÀïÏȽ¨Á¢¶ÔÓ¦µÄÁ´½ÓÁË¡£
4
Ïà¹ØÎĵµ£º
°ÑGDAL°²×°Ä¿Â¼ÏµÄ../bin/gdal-config¸´ÖƵ½/usr/bin/Ï£¬·ñÔò³öÏÖ“ÕÒ²»µ½gdal-config”
°Ñproj4°²×°Ä¿Â¼ÏµÄ../include/proj_api.h¸´ÖƵ½GDAL°²×°Ä¿Â¼ÖеÄincludeÖУ¬·ñÔò³öÏ֓䶨Òåproj_api.h”»òÕßÖ±½Ó°Ñproj4°²×°µ½Ä¬ÈÏ·¾¶£¬·ñÔò»áÌáʾ“ÕÒ²»µ½ -lproj”¡£ ......
ÔÎĵØÖ·£ºhttp://www.xxlinux.com/linux/article/development/embed/20080227/14047.html
LinuxºÍuClinux
LinuxÕýÖð½¥µØÓ¦ÓÃÓÚǶÈëʽÉ豸£¬uClinuxÕýÊÇÔÚÕâÖÖ·ÕΧϲúÉúµÄ¡£uClinux¾ÍÊÇMicro-Control-Linux£¬ËüÒ²ÊÇÒ»¸ö ......
LinuxϵĶδíÎó²úÉúµÄÔÒò¼°µ÷ÊÔ·½·¨
ĬÈÏ·ÖÀà 2008-08-26 13:37 ÔĶÁ28 ÆÀÂÛ0
×ֺţº ´ó´ó ÖÐÖРСС
¼ò¶øÑÔÖ®,²úÉú¶Î´íÎó¾ÍÊÇ·ÃÎÊÁË´íÎóµÄÄÚ´æ¶Î£¬Ò»°ãÊÇÄãûÓÐȨÏÞ£¬»òÕ߸ù±¾¾Í²»´æÔÚ¶ÔÓ¦µÄÎïÀíÄÚ´æ,ÓÈÆä³£¼ûµÄÊÇ·ÃÎÊ0µØÖ·.
Ò»°ãÀ´Ëµ,¶Î´íÎó¾ÍÊÇÖ¸· ......
debian lenny , my favorite
a. vim /etc/sysctl.conf:
modify net.ipv4.ip_forward = 1
b. flush route table:
iptables -F
iptables -P INPUT ACCEPT
iptables -P FORWARD ACCEPT
c. open NAT services:
&nb ......
LinuxÐźÅÓжàÖÖ˵·¨¡£Ò»¸ö½ø³Ì´´½¨Ò»¸öÐźÅÓÃÓÚ·¢Ë͸øÁíÍâÒ»¸ö½ø³Ì½Ð×ö·¢ËÍÒ»¸öÐźţ¬Äں˴´½¨Ò»¸öÐźŽÐ×öÉú³ÉÒ»¸öÐźţ¬½ø³Ì×Ô¼ºÏò×Ô¼º·¢ËÍÐźŽÐ×ö»½ÆðÒ»¸öÐźš£²»¹ýÎÒ¿´Ò²Ã»±ØÒªÕâôѧ¾¿Æø¡£
Ðźż¯--signel set,Æäʵ¾ÍÊǽ«¶à¸öÐźŷÅÔÚ¼¯ºÏÖнøÐм¯ÖеĴ¦Àí¡£POSIX.1¶¨ÒåÁËsigset_tÒÔ°üºÒ»¸öÐźż¯£ ......