A research team from the University of New Mexico discovered a vulnerability currently being tracked as CVE-2019-14899 which claims that VPN connections can be hijacked on Linux and Unix systems. The report mentioned the OpenVPN protocol. As part of good security principles, we are looking into this and any possible attack vectors, however we have found no flaws in the OpenVPN software.

Introduction. This page contains instructions for using OpenVPN project's own software repositories. For a list of unofficial repositories (e.g. EPEL) please refer to the Unofficial OpenVPN software repositories page.. For OpenVPN 3 Linux, see the dedicated OpenVPN 3 Linux page.. Latest OpenVPN releases are available in the OpenVPN project's apt repositories. Installing A Valid Web Certificate | OpenVPN This tutorial steps through how to replace the self-signed certificate that ships with Access Server with your own, valid web certificate. OpenVPN download | SourceForge.net

Using the conntrack system under Netfilter on Linux, it is possible to identify traffic that was initially sent via the physical interface and keep it routed back out that direction. Remember to integrated the above samples properly into your distro startup. The route/rule setup should have a place in your networking configuration files.

How to configure Linux OpenVPN client with certificate Apr 18, 2012 routing - Unix & Linux Stack Exchange push "route 1" From the OpenVPN man page:--route network/IP [netmask] [gateway] [metric] This tells the server config to "push" to the client, the route command which sets a networking route of the subnet via the gateway with a metric of 1. Metrics are used to give "preference" if multiple routes exist (such that the lowest cost wins).