- `OPENVPN_ENCRYPTED_KEY` environment variable - `OPENVPN_ENCRYPTED_KEY_SECRETFILE` environment variable - `OPENVPN_KEY_PASSPHRASE` environment variable - `OPENVPN_KEY_PASSPHRASE_SECRETFILE` environment variable - `PREMIUM_ONLY` environment variable - OpenVPN user and password not required for vpnsecure provider
52 lines
1.7 KiB
Go
52 lines
1.7 KiB
Go
package vpn
|
|
|
|
import (
|
|
"context"
|
|
"fmt"
|
|
|
|
"github.com/qdm12/gluetun/internal/configuration/settings"
|
|
"github.com/qdm12/gluetun/internal/openvpn"
|
|
"github.com/qdm12/gluetun/internal/provider"
|
|
"github.com/qdm12/golibs/command"
|
|
)
|
|
|
|
// setupOpenVPN sets OpenVPN up using the configurators and settings given.
|
|
// It returns a serverName for port forwarding (PIA) and an error if it fails.
|
|
func setupOpenVPN(ctx context.Context, fw Firewall,
|
|
openvpnConf OpenVPN, providerConf provider.Provider,
|
|
settings settings.VPN, starter command.Starter, logger openvpn.Logger) (
|
|
runner *openvpn.Runner, serverName string, err error) {
|
|
connection, err := providerConf.GetConnection(settings.Provider.ServerSelection)
|
|
if err != nil {
|
|
return nil, "", fmt.Errorf("failed finding a valid server connection: %w", err)
|
|
}
|
|
|
|
lines := providerConf.OpenVPNConfig(connection, settings.OpenVPN)
|
|
|
|
if err := openvpnConf.WriteConfig(lines); err != nil {
|
|
return nil, "", fmt.Errorf("failed writing configuration to file: %w", err)
|
|
}
|
|
|
|
if *settings.OpenVPN.User != "" {
|
|
err := openvpnConf.WriteAuthFile(*settings.OpenVPN.User, *settings.OpenVPN.Password)
|
|
if err != nil {
|
|
return nil, "", fmt.Errorf("failed writing auth to file: %w", err)
|
|
}
|
|
}
|
|
|
|
if *settings.OpenVPN.KeyPassphrase != "" {
|
|
err := openvpnConf.WriteAskPassFile(*settings.OpenVPN.KeyPassphrase)
|
|
if err != nil {
|
|
return nil, "", fmt.Errorf("writing askpass file: %w", err)
|
|
}
|
|
}
|
|
|
|
if err := fw.SetVPNConnection(ctx, connection, settings.OpenVPN.Interface); err != nil {
|
|
return nil, "", fmt.Errorf("failed allowing VPN connection through firewall: %w", err)
|
|
}
|
|
|
|
runner = openvpn.NewRunner(settings.OpenVPN, starter, logger)
|
|
|
|
return runner, connection.ServerName, nil
|
|
}
|