X-Git-Url: https://iankelling.org/git/?p=vpn-setup;a=blobdiff_plain;f=vpn-mk-client-cert;fp=vpn-mk-client-cert;h=f4e5762d78c52024dfad15245960599140c813a6;hp=b094c9224cbed6df027ce83b820010d4a3ffefc1;hb=dbea144f7249f9c244e748ac972fd86a54ee2086;hpb=50a29b33506900a8bc5d87e67ea0d3fd9bd69369 diff --git a/vpn-mk-client-cert b/vpn-mk-client-cert index b094c92..f4e5762 100755 --- a/vpn-mk-client-cert +++ b/vpn-mk-client-cert @@ -35,8 +35,8 @@ usage: ${0##*/} VPN_SERVER_HOST the generator keeps track, so you can't generate. -c CLIENT_HOST default is localhost. Else we ssh to root@CLIENT_HOST -n CONFIG_NAME default is client --s SCRIPT_PATH Use custom up/down script at PATH, copied to same path - on client. +-s SCRIPT_PATH Use custom up/down script at SCRIPT_PATH. copied to same path + on client, if client is not localhost. Generate a client cert and config and install it on locally or on CLIENT_HOST if given. Uses default config options, and expects be able @@ -136,7 +136,6 @@ down "$script" # matching server config cipher AES-256-CBC - # example config has the commented line, but this other thing looks stronger, # and I've seen it in a vpn provider I trust # ns-cert-type server