summaryrefslogtreecommitdiff
path: root/data/templates/openvpn/server.conf.j2
diff options
context:
space:
mode:
authorDaniil Baturin <daniil@baturin.org>2023-08-09 19:59:15 +0100
committerDaniil Baturin <daniil@baturin.org>2023-08-09 20:21:44 +0100
commitfa2518576638532aa3b23d4d72d77abc0c3f21d3 (patch)
treedefae52bce201a6245b879c34139f99dab63778c /data/templates/openvpn/server.conf.j2
parentdaf8f26f0d7cd67ad015e280ce297bc794800a7f (diff)
downloadvyos-1x-fa2518576638532aa3b23d4d72d77abc0c3f21d3.tar.gz
vyos-1x-fa2518576638532aa3b23d4d72d77abc0c3f21d3.zip
openvpn: T5271: add peer certificate fingerprint option
Diffstat (limited to 'data/templates/openvpn/server.conf.j2')
-rw-r--r--data/templates/openvpn/server.conf.j28
1 files changed, 8 insertions, 0 deletions
diff --git a/data/templates/openvpn/server.conf.j2 b/data/templates/openvpn/server.conf.j2
index d144529f3..a9bd45370 100644
--- a/data/templates/openvpn/server.conf.j2
+++ b/data/templates/openvpn/server.conf.j2
@@ -200,6 +200,14 @@ tls-client
{% elif tls.role is vyos_defined('passive') %}
tls-server
{% endif %}
+
+{% if peer_fingerprint is vyos_defined %}
+<peer-fingerprint>
+{% for fp in peer_fingerprint %}
+{{ fp }}
+{% endfor %}
+</peer-fingerprint>
+{% endif %}
{% endif %}
# Encryption options