Book description
Master building and integrating secure private networks using OpenVPN
About This Book
- Discover how to configure and set up a secure OpenVPN
- Enhance user experience by using multiple authentication methods
- Delve into better reporting, monitoring, logging, and control with OpenVPN
Who This Book Is For
If you are familiar with TCP/IP networking and general system administration, then this book is ideal for you. Some knowledge and understanding of core elements and applications related to Virtual Private Networking is assumed.
What You Will Learn
- Identify different VPN protocols (IPSec, PPTP, OpenVPN)
- Build your own PKI and manage certificates
- Deploy your VPN on various devices like PCs, mobile phones, tablets, and more
- Differentiate between the routed and bridged network
- Enhance your VPN with monitoring and logging
- Authenticate against third-party databases like LDAP or the Unix password file
- Troubleshoot an OpenVPN setup that is not performing correctly
In Detail
Security on the internet is increasingly vital to both businesses and individuals. Encrypting network traffic using Virtual Private Networks is one method to enhance security. The internet, corporate, and “free internet” networks grow more hostile every day. OpenVPN, the most widely used open source VPN package, allows you to create a secure network across these systems, keeping your private data secure. The main advantage of using OpenVPN is its portability, which allows it to be embedded into several systems.
This book is an advanced guide that will help you build secure Virtual Private Networks using OpenVPN. You will begin your journey with an exploration of OpenVPN, while discussing its modes of operation, its clients, its secret keys, and their format types. You will explore PKI: its setting up and working, PAM authentication, and MTU troubleshooting. Next, client-server mode is discussed, the most commonly used deployment model, and you will learn about the two modes of operation using "tun" and "tap" devices.
The book then progresses to more advanced concepts, such as deployment scenarios in tun devices which will include integration with back-end authentication, and securing your OpenVPN server using iptables, scripting, plugins, and using OpenVPN on mobile devices and networks.
Finally, you will discover the strengths and weaknesses of the current OpenVPN implementation, understand the future directions of OpenVPN, and delve into the troubleshooting techniques for OpenVPN.
By the end of the book, you will be able to build secure private networks across the internet and hostile networks with confidence.
Style and approach
An easy-to-follow yet comprehensive guide to building secure Virtual Private Networks using OpenVPN. A progressively complex VPN design is developed with the help of examples. More advanced topics are covered in each chapter, with subjects grouped according to their complexity, as well as their utility.
Table of contents
-
Mastering OpenVPN
- Table of Contents
- Mastering OpenVPN
- Credits
- About the Authors
- About the Reviewers
- www.PacktPub.com
- Preface
- 1. Introduction to OpenVPN
- 2. Point-to-point Mode
- 3. PKIs and Certificates
-
4. Client/Server Mode with tun Devices
- Understanding the client/server mode
- Setting up the Public Key Infrastructure
- Initial setup of the client/server mode
- Adding extra security
- Basic production-level configuration files
- Routing and server-side routing
- Redirecting the default gateway
- Client-specific configuration – CCD files
- Client-side routing
- The OpenVPN status file
- The OpenVPN management interface
- Session key renegotiation
- Using IPv6
- Advanced configuration options
- Summary
- 5. Advanced Deployment Scenarios in tun Mode
- 6. Client/Server Mode with tap Devices
-
7. Scripting and Plugins
- Scripting
- Plugins
- Summary
- 8. Using OpenVPN on Mobile Devices and Home Routers
-
9. Troubleshooting and Tuning
- How to read the log files
-
Fixing common configuration mistakes
- Wrong CA certificate in the client configuration
- Client certificate not recognized by the server
- Client certificate and private key mismatch
- The auth and tls-auth key mismatch
- The MTU size mismatch
- The Cipher mismatch
- The Compression mismatch
- The fragment mismatch
- The tun versus tap mismatch
- The client-config-dir issues
- No access to the tun device in Linux
- Missing elevated privileges in Windows
- Troubleshooting routing issues
- How to optimize performance by using ping and iperf
- Analyzing OpenVPN traffic by using tcpdump
- Summary
- 10. Future Directions
- Index
Product information
- Title: Mastering OpenVPN
- Author(s):
- Release date: August 2015
- Publisher(s): Packt Publishing
- ISBN: 9781783553136
You might also like
book
OpenVPN Cookbook - Second Edition
Tag line About This Book Discover over 90 practical and exciting recipes that leverage the power …
book
VPNs Illustrated: Tunnels, VPNs, and IPsec
Virtual private networks (VPNs) based on the Internet instead of the traditional leased lines offer organizations …
book
IKEv2 IPsec Virtual Private Networks: Understanding and Deploying IKEv2, IPsec VPNs, and FlexVPN in Cisco IOS
Create and manage highly-secure Ipsec VPNs with IKEv2 and Cisco FlexVPN The IKEv2 protocol significantly improves …
book
Network Security, Firewalls, and VPNs, 3rd Edition
Network Security, Firewalls, and VPNs, third Edition provides a unique, in-depth look at the major business …