Line 168: Line 168:
 # cp $HOME/easy-rsa/easyrsa3/pki/private/server1.key \ # cp $HOME/easy-rsa/easyrsa3/pki/private/server1.key \
 > /etc/openvpn/keys/ > /etc/openvpn/keys/
-If you want to run the server as a daemon on system boot, it's necessary to remove the pass-phrase from the server1.key file first.  Don't forget to set permissions on the key to avoid it being world-readable. 
-# cd /etc/openvpn/keys 
-# openssl rsa -in server1.key -out tmp.key 
-# mv tmp.key server1.key 
-# chmod 600 server1.key 
 </code> </code>
Line 898: Line 889:
 fi fi
 </code> </code>
 +An alternate method (albeit less secure) is to remove the passphrase from server1.key file altogether.  Don't forget to set permissions on the key to avoid it being world-readable.
 +# cd /etc/openvpn/keys
 +# openssl rsa -in server1.key -out tmp.key
 +# mv tmp.key server1.key
 +# chmod 600 server1.key
 ===== 11. IP Routing ===== ===== 11. IP Routing =====

