For real-world production use, its better to use the openvpn-auth-pam plugin, because it has several advantages over the script:
client dev tap dev-node MyTAP If you renamed your TAP interface or have more than one TAP interface then remove the at the beginning and change MyTAP to its name proto udp remote 1194 You will need to enter you dyndns account or static IP address here. The number following it is the port you set in the servers config route vpngateway 3 This it the IP address scheme and subnet of your normal network your server is on. Your router would usually be resolv-retry infinite nobind persist-key persist-tun ca C:Program cert C:Program Change the next two lines to match the files in the keys directory. This should be be different for each client. key C:Program This file should be kept secret ns-cert-type server cipher BF-CBC Blowfish default encrytion comp-lzo verb 1
