Windows
Installing
Download the Windows OpenVPN installer from:
https://openvpn.net/index.php/open-source/downloads.html
Run the installer
During the installation process, a second installer for the TAP/TUN driver will start. You also need to install this driver.
When asked to select components of the OpenVPN installation, you do NOT need the easy-rsa component.
You may also want to check, under Advanced, to not remember passwords.
Whether or not to have the OpenVPN gui start at login is up to you.
If you wish to be able to run OpenVPN as a non-administrative user
:
Add the user to the "OpenVPN Administrators" group
For Windows10, login as an administrative user.
Right click the Start menu
Choose "Computer Management"
In the left tab, expand Computer Management, System Tools, Local Users and Groups, Groups
In the right tab, double click "OpenVPN Administrators"
Click "Add"
Type in the username or domain\username and click "OK"
Again click "OK"
The user will need to re-login if already login'ed to the computer
Reboot the PC (necessary to start the "OpenVPN Interactive" service
Login as the user who will be running OpenVPN (administrative or otherwise)
Create a new folder:
C:\users\[username]\openvpn\config
Copy the config and key files to the folder just created.
Connecting
Login as the user to start OpenVPN
Double click the "OpenVPN GUI" icon on the desktop. This will not do anything other than to put the OpenVPN systray icon in the systray.
In the systray, double click the OpenVPN icon. This will start OpenVPN on the config files you created earlier.
For AUTH username, enter your netid
For AUTH password, enter in a code from your DUO token, or enter in an alias for the device you want DUO to call or push via the DUO app
Aliases for devices can be found at:
https://twostep.netid.cornell.edu
To disconnect, again double click the OpenVPN icon in the system tray.
Click "Disconnect"