====== VPN Service Provider ====== VPN service providers like 'Hide My Ass' and 'Torguard' enjos great popularity in the DD-WRT community. Unfortunately most providers did not update their instructions for the new DD-WRT NXT firmware yet. So if you are planning to switch to a router running DD-WRT NXT, you should check the support area of your vpn provider first. The following section should give you a brief introduction how to use your vpn-account with dd-wrt nxt. ===== General instructions ===== NXT hast the ability to generate common -server/-client configurations from a handful of options set \\ through the WebUI. Sadly the UI does not offer all options required to get the most VPN-Accounts to work so the \\ configuration needs to be done manually by uploading a configuration file. ==== Prepare VPN configuration ==== === Get needed configuration options === The openvpn configuration contains provider specific client options and certificates. First step is to collect all data required to establish a working connection to your vpn-provider. Normally these information can be found in the support-/faq-area of the respective vpn-provider. We already did this for a few, ceck our our 'prepared vpn configuration' section at the bottom of this site. === Edit configuration file === Although most of the settings are mandatory there are a few options which needs to be adjusted: ^ Option ((https://openvpn.net/index.php/open-source/documentation/manuals/65-openvpn-20x-manpage.html)) ^ Action ^ | remote | set vpn-server of your choice | | proto | set protocol of your choice | | dev | delete option as it gets selected throug UI | | auth-user-pass | set to '/etc/vpnuserpass.conf' | ==== Upload configuration file ==== - Navigate to 'Network Services' -> 'OpenVPN' - Set first dropdown box to 'Enabled' - Select 'Upload configuration file' as configuration type - Choose device-type 'TUN' {{:documentation:general:vpn:openvpn-enabled.png?600|}} {{:documentation:general:vpn:openvpn-certificates.png?600|}} ==== Create authentication file ==== For using an authentication file change the Operation Mode to 'Use Custom Configutation File'. Create an Empty text-file on your Computer with an Editor of Choice(e.g. Notepad) * this must not be an .docx, .rtf or other binary format file, but a plain text-file The first line of the created file, should contain the Username, for your VPN access The second line should contain the according password for the VPN access Save and Close the file, then copy the text-file to the router as for [[:ssh_and_scp|SSH and SCP]] to the router at the location "/etc/vpnuserpass.conf" ===== Pre-Configs ===== ==== Hide My Ass ==== remote 173.234.157.210 443 client resolv-retry infinite nobind persist-key persist-tun script-security 2 proto tcp-client cipher bf-cbc auth sha1 comp-lzo no tun-mtu 1500 mtu-disc yes ns-cert-type server tun-ipv6 -----BEGIN CERTIFICATE----- MIIE0DCCA7igAwIBAgIJAIaWiJ8tvvfkMA0GCSqGSIb3DQEBBQUAMIGgMQswCQYD VQQGEwJHQjEPMA0GA1UECBMGTG9uZG9uMQ8wDQYDVQQHEwZMb25kb24xEzARBgNV BAoTClByaXZheCBMdGQxFDASBgNVBAsTC0hNQSBQcm8gVlBOMRYwFAYDVQQDEw1o aWRlbXlhc3MuY29tMQwwCgYDVQQpEwNITUExHjAcBgkqhkiG9w0BCQEWD2luZm9A cHJpdmF4LmNvbTAeFw0xNDA1MTMwNzQ1NThaFw0yNDA1MTAwNzQ1NThaMIGgMQsw CQYDVQQGEwJHQjEPMA0GA1UECBMGTG9uZG9uMQ8wDQYDVQQHEwZMb25kb24xEzAR BgNVBAoTClByaXZheCBMdGQxFDASBgNVBAsTC0hNQSBQcm8gVlBOMRYwFAYDVQQD Ew1oaWRlbXlhc3MuY29tMQwwCgYDVQQpEwNITUExHjAcBgkqhkiG9w0BCQEWD2lu Zm9AcHJpdmF4LmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMyQ vosRoQjE/qNBzpVzU3Td0jS8z1h96BvqzNfVIK+yOuoe+/qv59q4Eo1R+kUnUlM9 KznYDmHxIBBID24Kak0nzBSLDHrK7RO70DYgj8jWteQYWk4G+Eu5kfO/ru6WYDcU Wq1ifHDEKbAJ8t2SgneAVCYcqwBRPJqsqkkMnrgNxdPU9yMVX4gxRqVvD0KIYgwl 4te7aF2i3tElM8fDatTmWqeIgoU1kOEqaZFT5lzeZP7sh0Q5h0QAJOKYPs6qgCH4 zv+74DCCSSR5Oh6oF5ssCX4GADaWqVH+pdDudLo3wxu81PN2K95jk7r25Dung7F9 a65cp+b/okLmWwZoyeMCAwEAAaOCAQkwggEFMB0GA1UdDgQWBBQjV1wN2kwuVDRa DQpk4p4HThtF4zCB1QYDVR0jBIHNMIHKgBQjV1wN2kwuVDRaDQpk4p4HThtF46GB pqSBozCBoDELMAkGA1UEBhMCR0IxDzANBgNVBAgTBkxvbmRvbjEPMA0GA1UEBxMG TG9uZG9uMRMwEQYDVQQKEwpQcml2YXggTHRkMRQwEgYDVQQLEwtITUEgUHJvIFZQ TjEWMBQGA1UEAxMNaGlkZW15YXNzLmNvbTEMMAoGA1UEKRMDSE1BMR4wHAYJKoZI hvcNAQkBFg9pbmZvQHByaXZheC5jb22CCQCGloifLb735DAMBgNVHRMEBTADAQH/ MA0GCSqGSIb3DQEBBQUAA4IBAQBtuQXAuxPkZH5hLUeK45dNHOj2TAtWs1WM+Kje SBPfzn1RQE8xwClcBEdpfiUi4lZ1X9OIq3Jri0T27YAaUk3bMqvk6Pzmida96yWY lxQjzitXsH7KyCCWmNBSIxF2M/sb2OX9vWdAINDawiFeEzNcqwx/LLyriZ+WxFyU eWVPl6cUKQBNoDGXZdRKWePT+QNIrtLBHRhB+UpwtoXn6qVl3t8YbycgYczd6lBe 9GiAKvfqLuxkfDe9ZgLMKnQZfjfUyUPpYODOJSGewqiHOYAO4ix26heq3K6rFVpH Y2MwKmFME0eL8tHlPAWEkGOICiuwX6ir0tPhhq4WAUY1K9kj -----END CERTIFICATE----- -----BEGIN RSA PRIVATE KEY----- MIIEpAIBAAKCAQEAq/bV9X2lw9rusZ+A+NDx5eX5I82wHo9/th0HUNd5LwDqPvdB d8oLlqIITBzgDYHhYVe981SyqaUJeL3LJpniVGeNd3oYJRvxkoAw9eSeZXDzW4Sz r669qMsChkzXSDoSVBAVMVbRnbJ8htgpeHLjumMHMbjxyXk5gC2YW4R6xsFSR5l2 ylzZNikn8p1pKm3jEqxO0cJhGQs4oRudZF0ssDNQrmDT1zRq1vRxoF9rGjMOrVIl ynb8yp3Maef3Fnr53/tm1CebmrcE1C7R7HV173E378Wn/b0ZOujHUEimAlKiorZw CrFogd4Fnk6aY4JNPqc55Ok/0bWLh6fGcj8WowIDAQABAoIBAQCBRTMeMnAURVY+ LHuVj+zoN/ML2SnWL2WAD15ahUBR90wgPVr3o+kGOZQnM2WygbpdpMnkS/1qzefK 3lIDGJctgBK2iA/yhYkZ6kfj8RKpizlFyQISxTdJ1iJ1tvn3D8CLdPOZfXxiIbS+ 4Wx7YVKT4LGdzTvlir2Q/7WSxopNMfZeu2qWjccltvVlZIZdiwF8Va1o5iZAvWGp ZGhyZYHsrRlk0e/8K7lu2bbA5i++Wj+DA5ID3RVnXX68Pe9C3ZcyDA/Rq9C5MUj7 CYuVUi8nGd74gBGXOSYD2+QL2VwDZ5qZX49ARSxIk9LglWR7OmadoPI2BGmmQBqx vh/64AOhAoGBAOEWD3u9QlKk5isjN4/K5OxDdMmMXSL3vuwKUa8qW/g9nlcDzX74 Z7/Lc4NRMuz/hls41CY6j3vReM5JiHFGZ2jDlpEdjdw/Zem8iXUmXdFoxlRGlL+/ Uir7xfgcuCYGp/i++TO4reM3clMsg7kZW0e7zLe5RAz55iIUduVy2f8JAoGBAMOV BzGcv2plVO4CYlkbmiM9twc8yvA2YEWHSGCyTIH5o2upqhjyPC6x50S9tEdKgFCo Izlro5JI7xX/4eu31igohp8qAwr6Z/f0FHH9rEj4pdk5jyLXPIrOK1eYQtZHaN5I qRob4xfObSz11sjNMrQdzxZ/n9Z4cF304se9DydLAoGAPqwt0353IRvZGtnLdrY/ 16lQs23p4Pqqpn6ZD/TzdsNxezkL1vbDrJuxpjbNvz/G4U+Jgrt7iDZjNM00uJWp 5XnQSse34EOm1NYyT/RG2zAZSQ3+DQXwkxdXoCYfADeKPbCvIr+ha0rdAlu6sadl yyt3bRCg6hwLACJCmNDJ8kECgYEAngolZvyPXE0HhM/eYrzAH6v14t5H6jU2M9iu LpzE3942JIBT15ad9OmCxHQ6YcUczJAg7nxBD6rprzA2gX/qiEa/CYwsK0nOi3jq sHXYKprpgQ9Wz0N3Q353XW/Gylmnrr6uDk/sgEcox0TbyySszQitVzPHl8l4myOP wPDPduMCgYA8P05GXiTVMDE1xnmUath0M8+DY9YUHMrIdlSPnyiBn9MRZYa2XFqK ibutukOECVrdf82r9mqEqKyGYKKbC14y4kY4fLhR15/p8FNJBJcREW3yX5VC5raC isiaZEXblIAyaylPGUJBosKVuPTmtIpXpZ/Qez/CJHu2rxWG317T+w== -----END RSA PRIVATE KEY----- -----BEGIN CERTIFICATE----- MIIFAjCCA+qgAwIBAgIBAjANBgkqhkiG9w0BAQUFADCBoDELMAkGA1UEBhMCR0Ix DzANBgNVBAgTBkxvbmRvbjEPMA0GA1UEBxMGTG9uZG9uMRMwEQYDVQQKEwpQcml2 YXggTHRkMRQwEgYDVQQLEwtITUEgUHJvIFZQTjEWMBQGA1UEAxMNaGlkZW15YXNz LmNvbTEMMAoGA1UEKRMDSE1BMR4wHAYJKoZIhvcNAQkBFg9pbmZvQHByaXZheC5j b20wHhcNMTQwNTEzMDgyMjM0WhcNMjQwNTEwMDgyMjM0WjCBjDELMAkGA1UEBhMC R0IxDzANBgNVBAgTBkxvbmRvbjEPMA0GA1UEBxMGTG9uZG9uMRMwEQYDVQQKEwpQ cml2YXggTHRkMRQwEgYDVQQLEwtITUEgUHJvIFZQTjEQMA4GA1UEAxMHaG1hdXNl cjEeMBwGCSqGSIb3DQEJARYPaW5mb0Bwcml2YXguY29tMIIBIjANBgkqhkiG9w0B AQEFAAOCAQ8AMIIBCgKCAQEAq/bV9X2lw9rusZ+A+NDx5eX5I82wHo9/th0HUNd5 LwDqPvdBd8oLlqIITBzgDYHhYVe981SyqaUJeL3LJpniVGeNd3oYJRvxkoAw9eSe ZXDzW4Szr669qMsChkzXSDoSVBAVMVbRnbJ8htgpeHLjumMHMbjxyXk5gC2YW4R6 xsFSR5l2ylzZNikn8p1pKm3jEqxO0cJhGQs4oRudZF0ssDNQrmDT1zRq1vRxoF9r GjMOrVIlynb8yp3Maef3Fnr53/tm1CebmrcE1C7R7HV173E378Wn/b0ZOujHUEim AlKiorZwCrFogd4Fnk6aY4JNPqc55Ok/0bWLh6fGcj8WowIDAQABo4IBVzCCAVMw CQYDVR0TBAIwADAtBglghkgBhvhCAQ0EIBYeRWFzeS1SU0EgR2VuZXJhdGVkIENl cnRpZmljYXRlMB0GA1UdDgQWBBRKkMJmNATxpSybS6W7ezGWucjeRjCB1QYDVR0j BIHNMIHKgBQjV1wN2kwuVDRaDQpk4p4HThtF46GBpqSBozCBoDELMAkGA1UEBhMC R0IxDzANBgNVBAgTBkxvbmRvbjEPMA0GA1UEBxMGTG9uZG9uMRMwEQYDVQQKEwpQ cml2YXggTHRkMRQwEgYDVQQLEwtITUEgUHJvIFZQTjEWMBQGA1UEAxMNaGlkZW15 YXNzLmNvbTEMMAoGA1UEKRMDSE1BMR4wHAYJKoZIhvcNAQkBFg9pbmZvQHByaXZh eC5jb22CCQCGloifLb735DATBgNVHSUEDDAKBggrBgEFBQcDAjALBgNVHQ8EBAMC B4AwDQYJKoZIhvcNAQEFBQADggEBAKFRIKJpyfOz9Y78np4DyboZ/u52P8Cpj+Yj kmT6FvWg+fy4CP5/c8umx2ypVi/dl90SAHOTxwD4J90MK3v3BD+rL852nI8Ag8Ga wUBnCI8aD/V5o5ESNk0afEPd/8gLa59bUtgUkjY/KoeBs0WGXBgfDnpUuksCpDJi QK8/oB5KpiRWJwOUqAgI+WrNccTfJnsgtwkA/IK2EIMMno61oRdV0BfC3faCgdtj 6+RxQfEnNXArDP/vtDX5PophcUP6SOvaB/lzO8jLSwRXgGWb3JTc68BqevNpLKXG IMkIcd3EuAwXZMNiLjARvJt9xTqloFjAOiXPywnRB6WlaDkzqKo= -----END CERTIFICATE----- ==== Torguard ==== remote ny.east.usa.torguardvpnaccess.com 443 client management 127.0.0.1 5001 management-log-cache 50 proto udp comp-lzo adaptive fast-io script-security 2 mtu-disc yes verb 4 mute 5 cipher bf-cbc auth sha1 tun-mtu 1500 resolv-retry infinite nobind persist-key persist-tun tls-client remote-cert-tls server -----BEGIN CERTIFICATE----- MIIDqzCCAxSgAwIBAgIJAP/g7Ah3SNNHMA0GCSqGSIb3DQEBBQUAMIGWMQswCQYD VQQGEwJVUzELMAkGA1UECBMCRkwxEDAOBgNVBAcTB09ybGFuZG8xETAPBgNVBAoT CFRvckd1YXJkMQwwCgYDVQQLEwNWUE4xEzARBgNVBAMTClRHLU9WUE4tQ0ExDDAK BgNVBCkTA1ZQTjEkMCIGCSqGSIb3DQEJARYVc3lzYWRtaW5AdG9yZ3VhcmQubmV0 MB4XDTE0MDQwOTE0NDIyMloXDTI0MDQwNjE0NDIyMlowgZYxCzAJBgNVBAYTAlVT MQswCQYDVQQIEwJGTDEQMA4GA1UEBxMHT3JsYW5kbzERMA8GA1UEChMIVG9yR3Vh cmQxDDAKBgNVBAsTA1ZQTjETMBEGA1UEAxMKVEctT1ZQTi1DQTEMMAoGA1UEKRMD VlBOMSQwIgYJKoZIhvcNAQkBFhVzeXNhZG1pbkB0b3JndWFyZC5uZXQwgZ8wDQYJ KoZIhvcNAQEBBQADgY0AMIGJAoGBANeCV65/6z6cbGfZ6LouGl1W7A71x6CEerxN wcFeLZx89DM0NxEBs47+gYYqhzKCR+6YCVduD29NMa5dzDwNFEmhOKrHhIposdY7 JmNC2IeXxOSEcOMjBrRexqBN+CZx0bfj6H6qtlRFtkZlDvNritINiznJjG/DbA2X jTO6J8f1AgMBAAGjgf4wgfswHQYDVR0OBBYEFPWAX1TtNU8tPbhRdYMGn98i9Hoi MIHLBgNVHSMEgcMwgcCAFPWAX1TtNU8tPbhRdYMGn98i9HoioYGcpIGZMIGWMQsw CQYDVQQGEwJVUzELMAkGA1UECBMCRkwxEDAOBgNVBAcTB09ybGFuZG8xETAPBgNV BAoTCFRvckd1YXJkMQwwCgYDVQQLEwNWUE4xEzARBgNVBAMTClRHLU9WUE4tQ0Ex DDAKBgNVBCkTA1ZQTjEkMCIGCSqGSIb3DQEJARYVc3lzYWRtaW5AdG9yZ3VhcmQu bmV0ggkA/+DsCHdI00cwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQUFAAOBgQBx 1VNcpbpAPzSz8gfT7iUiVPsSgHqhrzozEY8zpPoZkHDfo75P6AQnGwGdDHKljo6h dkl1ZCTMd0CMbQbWzseNIZNwvHbE3hcnH0zxVKaGyNB6FNdhWVDNcvOhIZYvYbPM fzWZQFXS/jfjjn1+p9UUQwPONvhoQaRhsUJOcrntug== -----END CERTIFICATE----- -----BEGIN CERTIFICATE----- MIIEwTCCA6mgAwIBAgIJAKROjebUHo0gMA0GCSqGSIb3DQEBBQUAMIGbMQswCQYD VQQGEwJVUzELMAkGA1UECBMCRkwxEDAOBgNVBAcTB09ybGFuZG8xETAPBgNVBAoT CFRvckd1YXJkMQwwCgYDVQQLEwNWUE4xEzARBgNVBAMTClRHLU9WUE4tQ0ExETAP BgNVBCkTCFRvckd1YXJkMSQwIgYJKoZIhvcNAQkBFhVzeXNhZG1pbkB0b3JndWFy ZC5uZXQwHhcNMTQwNDE3MTAwOTIzWhcNMjQwNDE0MTAwOTIzWjCBmzELMAkGA1UE BhMCVVMxCzAJBgNVBAgTAkZMMRAwDgYDVQQHEwdPcmxhbmRvMREwDwYDVQQKEwhU b3JHdWFyZDEMMAoGA1UECxMDVlBOMRMwEQYDVQQDEwpURy1PVlBOLUNBMREwDwYD VQQpEwhUb3JHdWFyZDEkMCIGCSqGSIb3DQEJARYVc3lzYWRtaW5AdG9yZ3VhcmQu bmV0MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAws1hJzlbWKlm3DEO XyQpmvtxwrsR4CIYMi8C6np5w74lTRYmGBcuuPqAT3ig2DnH9HNNFx1WWZbYO8pU a1tdn7uYErJi4EP9/t2l3uXCNgoWYVdVP1j5EXIY1oacOv9srbNZHeWpxHIb1wZr 1i4sLsdaifOibgVZI91FATXGrVdFDaQb2OjyJrFW8b4xbC8pBJxQDzqPeu9mkVpu OhBuU+dM+9h+8Bj0tpdAernEAt8CbHIywe9Rjm0JLrYmCPKuB5ldVgG3rYQWFa3X YWjrWtr//nGM4f4WKOFc2PHWA2gI3JwdynTNLsB9NQi0N7hhR6lmtCMeqHlm0oAz 4Ad4gQIDAQABo4IBBDCCAQAwHQYDVR0OBBYEFJvAPA1gnlD/majxi+43jL0XDfqQ MIHQBgNVHSMEgcgwgcWAFJvAPA1gnlD/majxi+43jL0XDfqQoYGhpIGeMIGbMQsw CQYDVQQGEwJVUzELMAkGA1UECBMCRkwxEDAOBgNVBAcTB09ybGFuZG8xETAPBgNV BAoTCFRvckd1YXJkMQwwCgYDVQQLEwNWUE4xEzARBgNVBAMTClRHLU9WUE4tQ0Ex ETAPBgNVBCkTCFRvckd1YXJkMSQwIgYJKoZIhvcNAQkBFhVzeXNhZG1pbkB0b3Jn dWFyZC5uZXSCCQCkTo3m1B6NIDAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUA A4IBAQBRG46DnL/8EAPbi/eOQli5WO7lRHYyZJdlLUMlsnwkp6Ul6BMJq8q3UX3z +pqDf3wzj94y/IpGQgE4l0fgAdwf/C7F533TSwU/vi+5PDWfwD2WmGqVmcmXn6Rp 9Fwr+oryRw8GfsVBLZHTkWF1RZrRAr8hWZhNySGFwSXlEIicvNy+9mlFhk2Nb46w ioZKc1Lc7/okeXNWHPv6Dlm39TcNBpGX/xNoWBzqs1EtA1ZGvMcQHsKLfi3Nbaab BYe08KWsfeZA+ih4BZ6y2E+x84NYHRebqijXTtHp35coyXllBL/+LBoZ86hKszEx F3pjGU0+8NzvdPUbKndhzyPPnHF1 -----END CERTIFICATE----- ==== Privateinternetaccess ==== # #Set the Server of Choice remote us-west.privateinternetaccess.com 1194 # # client management 127.0.0.1 14 management-log-cache 250 status openvpn-status.log proto udp comp-lzo adaptive fast-io script-security 2 mtu-disc yes verb 4 mute 5 cipher bf-cbc auth sha1 tun-mtu 1500 resolv-retry infinite nobind persist-key persist-tun tls-client remote-cert-tls server status-version 3 -----BEGIN CERTIFICATE----- MIID2jCCA0OgAwIBAgIJAOtqMkR2JSXrMA0GCSqGSIb3DQEBBQUAMIGlMQswCQYD VQQGEwJVUzELMAkGA1UECBMCT0gxETAPBgNVBAcTCENvbHVtYnVzMSAwHgYDVQQK ExdQcml2YXRlIEludGVybmV0IEFjY2VzczEjMCEGA1UEAxMaUHJpdmF0ZSBJbnRl cm5ldCBBY2Nlc3MgQ0ExLzAtBgkqhkiG9w0BCQEWIHNlY3VyZUBwcml2YXRlaW50 ZXJuZXRhY2Nlc3MuY29tMB4XDTEwMDgyMTE4MjU1NFoXDTIwMDgxODE4MjU1NFow gaUxCzAJBgNVBAYTAlVTMQswCQYDVQQIEwJPSDERMA8GA1UEBxMIQ29sdW1idXMx IDAeBgNVBAoTF1ByaXZhdGUgSW50ZXJuZXQgQWNjZXNzMSMwIQYDVQQDExpQcml2 YXRlIEludGVybmV0IEFjY2VzcyBDQTEvMC0GCSqGSIb3DQEJARYgc2VjdXJlQHBy aXZhdGVpbnRlcm5ldGFjY2Vzcy5jb20wgZ8wDQYJKoZIhvcNAQEBBQADgY0AMIGJ AoGBAOlVlkHcxfN5HAswpryG7AN9CvcvVzcXvSEo91qAl/IE8H0knKZkIAhe/z3m hz0t91dBHh5yfqwrXlGiyilplVB9tfZohvcikGF3G6FFC9j40GKP0/d22JfR2vJt 4/5JKRBlQc9wllswHZGmPVidQbU0YgoZl00bAySvkX/u1005AgMBAAGjggEOMIIB CjAdBgNVHQ4EFgQUl8qwY2t+GN0pa/wfq+YODsxgVQkwgdoGA1UdIwSB0jCBz4AU l8qwY2t+GN0pa/wfq+YODsxgVQmhgaukgagwgaUxCzAJBgNVBAYTAlVTMQswCQYD VQQIEwJPSDERMA8GA1UEBxMIQ29sdW1idXMxIDAeBgNVBAoTF1ByaXZhdGUgSW50 ZXJuZXQgQWNjZXNzMSMwIQYDVQQDExpQcml2YXRlIEludGVybmV0IEFjY2VzcyBD QTEvMC0GCSqGSIb3DQEJARYgc2VjdXJlQHByaXZhdGVpbnRlcm5ldGFjY2Vzcy5j b22CCQDrajJEdiUl6zAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4GBAByH atXgZzjFO6qctQWwV31P4qLelZzYndoZ7olY8ANPxl7jlP3YmbE1RzSnWtID9Gge fsKHi1jAS9tNP2E+DCZiWcM/5Y7/XKS/6KvrPQT90nM5klK9LfNvS+kFabMmMBe2 llQlzAzFiIfabACTQn84QLeLOActKhK8hFJy2Gy6 -----END CERTIFICATE-----