Skip to content
Snippets Groups Projects
Commit 4b8f774e authored by Florian Meissner's avatar Florian Meissner
Browse files

fix(vpn_uni): Use Zapf script

parent 48a1df05
Branches
No related tags found
No related merge requests found
#!/bin/bash #!/bin/bash
VPN_USER=meissnerfl73755 MTU=1284
VPN_PASSWORD_FILE=$(dirname $0)/pws/vpn_uni VPNUSER=meissnerfl73755
#VPN_PASSWORD_FILE=/home/ra1n/scripts/pws/vpn_uni VPNPASSWORD=$(cat pws/vpn_uni)
VPN_SERVER=vpn2.ohmportal.de HIREPORT=/usr/libexec/openconnect/hipreport.sh
DEADPEERSSECS=30
_uid=1000 IFACE=vpn0
echo $(dirname $0)
set +o histexpand
args=( # set protocol to globalprotect - probably don't change this echo $VPNPASSWORD | sudo /usr/sbin/openconnect \
--protocol=gp --protocol gp \
--syslog \
# drop privs after connect --disable-ipv6 \
--setuid=$_uid --csd-wrapper $HIREPORT \
# drop privs during vpn script --interface $IFACE \
--csd-user=$_uid --mtu $MTU \
--force-dpd $DEADPEERSSECS \
# vpn user name --user $VPNUSER \
-u $VPN_USER --passwd-on-stdin \
# does what it says vpn.ohmportal.de
# --passwd-on-stdin
# override routing for common servers
# but servers are not used anymore
# and anyway this setting has never worked
# --resolve fsin.th-nuernberg.de:141.75.149.145
# --resolve fstest.th-nuernberg.de:141.75.149.143
# --servercert 'pin-sha256:lm+C0Qgm7ZTPMLZ7KJlRLk5teQGc9qhmGfZavlRv3eQ='
--disable-ipv6
)
#openconnect "${args[@]}" $VPN_SERVER
cat $VPN_PASSWORD_FILE | openconnect "${args[@]}" $VPN_SERVER
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment