# Certificates config
dh pub/dh.pem
ca pub/cacert.pem
cert pub/cert.pem
key priv/key.pem
tls-server

{

$OUT .= "tls-auth priv/takey.pem 0\n" if 
    (-e "/etc/openvpn/bridge/priv/takey.pem" && 
    !-z "/etc/openvpn/bridge/priv/takey.pem");

}

# CRL file for certificates verification
crl-verify pub/cacrl.pem

