{{ ansible_managed|comment }}
# Mode: {{ vpn_mode }}
# Subnet: {{ vpn_subnet }}
client
dev tap
remote {{ vpn_server_ip }} 1194 udp
resolv-retry infinite
persist-key
persist-tun
nobind
float
mssfix
keepalive 30 90
daemon
ca /etc/openvpn/keys/ca.{{ ca_name|lower }}.crt
cert /etc/openvpn/keys/{{ vpc_region }}-client.{{ ca_name|lower }}.crt
key /etc/openvpn/keys/{{ vpc_region }}-client.{{ ca_name|lower }}.key
tls-server
tls-version-min 1.2
key-direction 0
{{ ta_secret }}