-
Notifications
You must be signed in to change notification settings - Fork 833
UDPspeeder openvpn config guide
wangyu- edited this page Feb 24, 2018
·
26 revisions
./speederv2 -s -l0.0.0.0:8855 -r 127.0.0.1:7777 -f20:10
assume server ip is 45.66.77.88
./speederv2 -c -l0.0.0.0:3333 -r 45.66.77.88:8855 -f20:10
client
dev tun100
proto udp
remote 127.0.0.1 3333
resolv-retry infinite
nobind
persist-key
persist-tun
ca /root/add-on/openvpn/ca.crt
cert /root/add-on/openvpn/client.crt
key /root/add-on/openvpn/client.key
keepalive 3 20
verb 3
mute 20
comp-lzo no
fragment 1200 ##### very important you can turn it up a bit. but, the lower the safer
mssfix 1200 ##### very important
sndbuf 2000000 ##### important
rcvbuf 2000000 ##### important
txqueuelen 4000 ##### suggested
local 0.0.0.0
port 7777
proto udp
dev tun
ca /etc/openvpn/easy-rsa/2.0/keys/ca.crt
cert /etc/openvpn/easy-rsa/2.0/keys/server.crt
key /etc/openvpn/easy-rsa/2.0/keys/server.key
dh /etc/openvpn/easy-rsa/2.0/keys/dh1024.pem
server 10.222.2.0 255.255.255.0
ifconfig 10.222.2.1 10.222.2.6
client-to-client
duplicate-cn
keepalive 10 60
max-clients 50
persist-key
persist-tun
status /etc/openvpn/openvpn-status.log
verb 3
mute 20
comp-lzo no
fragment 1200 ##### very important you can turn it up a bit. but, the lower the safer
mssfix 1200 ##### very important
sndbuf 2000000 ##### important
rcvbuf 2000000 ##### important
txqueuelen 4000 ##### suggested
to redirect all traffic,check: https://github.com/wangyu-/tinyfecVPN/wiki/redirect-all-traffic-through-tinyfecVPN
To redirect all traffic you can also use the redirect-gateway
option of OpenVPN, but you still need an extra step.
You need to add a route exception for your remote server ip at client side. Otherwise OpenVPN may hijack UDPspeeder 's traffic.
For example, depend on your network environment, the command may looks like:
ip route add 44.55.66.77 via <your_gateway>
(run at client side)
You can also use tinyfecVPN,a lightweight VPN with build-in FEC support: