CentOS 7 and legacy openVPN
CentOS 7 no longer supports MD5, which is a good thing.
But not so great if your still using certificates with MD5 encryption for openVPN as it will fail to connect. Here's a workaround to get it working.
yum install openvpn
cd /etc/openvpn
mv client.conf service.conf
systemctl enable openvpn@service.service
Add this:
[Service]
Environment="OPENSSL_ENABLE_MD5_VERIFY=1 NSS_HASH_ALG_SUPPORT=+MD5"
to /usr/lib/systemd/system/openvpn@.service
systemctl daemon-reload
systemctl restart openvpn@service.service
Written by Chris Turnbull
Related protips
Have a fresh tip? Share with Coderwall community!
Post
Post a tip
Best
#Openvpn
Authors
data:image/s3,"s3://crabby-images/7cdfe/7cdfed58443ce1030e32af8abcb601d2773e6ab0" alt=""
christurnbull
4.535K
data:image/s3,"s3://crabby-images/ab874/ab8740521e0e1c675d8864c1cad0c38ce1e84977" alt=""
lukaszsagol
1.721K
Sponsored by #native_company# — Learn More
#native_title#
#native_desc#