{"id":667,"date":"2019-05-29T08:03:18","date_gmt":"2019-05-29T08:03:18","guid":{"rendered":"https:\/\/hq.ipas.nl\/?page_id=667"},"modified":"2019-05-29T08:04:10","modified_gmt":"2019-05-29T08:04:10","slug":"configure-purevpn-on-your-sophos-utm","status":"publish","type":"page","link":"https:\/\/hq.ipas.nl\/?page_id=667","title":{"rendered":"Configure PureVPN on your Sophos UTM"},"content":{"rendered":"<p>To step:<br \/>\n1. Download a purevpn .ovpn file.<br \/>\n2. This file must be converted to .apc format which is possible with the script: ovpn-to-apc.sh\u00a0 (Github https:\/\/github.com\/vchrizz\/ovpn-to-apc)<\/p>\n<pre>.\/ovpn-to-apc.sh purevpnsite.ovpn purevpnsite.apc purevpn_user purevpn_pass<\/pre>\n<p>This script creates the .apc file and a key file. On the UTM the key file must be copied to \/ var \/ chroot-openvpn \/ etc \/<\/p>\n<p>3. edit \/ var \/ sec \/ chroot-openvpn \/ etc \/ openvpn \/ client \/ config-default<\/p>\n<p>change line 9:<\/p>\n<pre>tls-remote \"[]\"<\/pre>\n<p>in<\/p>\n<pre>tls-auth \"[]\"<\/pre>\n<p>4. Upload the purevpnsite.apc config file in the UTM below<\/p>\n<p><strong>Site-to-Site VPN -&gt; SSL -&gt; New SSL Connection<\/strong><\/p>\n<p>Connection type: Client<br \/>\nUpload the purevpnsite.apc file.<br \/>\nSelect Automatic firewall rules: The default route is set on the tunnel.<\/p>\n<p>Enable the VPN. If this goes well an interface tun0 has been added which is visible in the shell with <strong>ifconfig -a<\/strong>. The ip address of the tun0 interface is also visible and is needed for the SNAT rules.<\/p>\n<p>5. Create a SNAT rule and SNAT the clients to the ip of the tun0 interface<\/p>\n","protected":false},"excerpt":{"rendered":"<p>To step: 1. Download a purevpn .ovpn file. 2. This file must be converted to .apc format which is possible with the script: ovpn-to-apc.sh\u00a0 (Github https:\/\/github.com\/vchrizz\/ovpn-to-apc) .\/ovpn-to-apc.sh purevpnsite.ovpn purevpnsite.apc purevpn_user purevpn_pass This script creates the .apc file and a key &hellip;<\/p>\n<p class=\"read-more\"><a href=\"https:\/\/hq.ipas.nl\/?page_id=667\">Read more &raquo;<\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"footnotes":""},"class_list":["post-667","page","type-page","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/hq.ipas.nl\/index.php?rest_route=\/wp\/v2\/pages\/667","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/hq.ipas.nl\/index.php?rest_route=\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/hq.ipas.nl\/index.php?rest_route=\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/hq.ipas.nl\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/hq.ipas.nl\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=667"}],"version-history":[{"count":1,"href":"https:\/\/hq.ipas.nl\/index.php?rest_route=\/wp\/v2\/pages\/667\/revisions"}],"predecessor-version":[{"id":668,"href":"https:\/\/hq.ipas.nl\/index.php?rest_route=\/wp\/v2\/pages\/667\/revisions\/668"}],"wp:attachment":[{"href":"https:\/\/hq.ipas.nl\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=667"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}