, ,

OpenVPN SELinux

Keys in /etc/openvpn/easy-rsa/keys

List contexts

semanage fcontext -l|grep cert

Set context

semanage fcontext -a -t home_cert_t "/etc/openvpn/easy-rsa/keys(/.*)?"
semanage fcontext -a -t openvpn_etc_t "/etc/openvpn/easy-rsa"
semanage fcontext -a -t openvpn_etc_t "/etc/openvpn/easy-rsa/keys"

restorecon -R -v /etc/openvpn/easy-rsa/keys