proto tcp dev tun ca /etc/openvpn/easyrsa/pki/ca.crt key /etc/openvpn/easyrsa/pki/private/server.key cert /etc/openvpn/easyrsa/pki/issued/server.crt tls-crypt /etc/openvpn/easyrsa/pki/ta.key dh none ifconfig-pool-persist /tmp/openvpn-ipp.txt push "redirect-gateway def1 bypass-dhcp" push "dhcp-option DNS 208.67.222.222" push "dhcp-option DNS 208.67.220.220" keepalive 10 120 cipher AES-256-GCM auth SHA256 user nobody group nogroup persist-key persist-tun status /tmp/openvpn-status.log verb 4