- Profiler: when not root, render server.conf to the staging dir and let the root helper validate (directive allowlist) and install it; control the openvpn service through the helper (doas, fixed commands). - Add ovpmon-helper and doas rules under DOCS/General/privilege-separation. - Document the design, rollout, results and limitations. Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com>
33 lines
1.8 KiB
Markdown
33 lines
1.8 KiB
Markdown
# OpenVPN Monitor & Profiler Documentation
|
|
|
|
Welcome to the documentation for the OpenVPN Monitor suite.
|
|
|
|
## 📚 General
|
|
- [Deployment: Docker](Deployment_Docker.md): containers with docker-compose.
|
|
- [Deployment: system services](Deployment_Native.md): systemd/OpenRC, HTTPS, host hardening.
|
|
- [Deployment Guide](Deployment.md): generic native install notes.
|
|
- [Service Management](Service_Management.md): Setting up systemd/OpenRC services.
|
|
- [Nginx Configuration](Nginx_Configuration.md)
|
|
- [Security Architecture](Security_Architecture.md): Details on Authentication, 2FA, and Security features.
|
|
|
|
## 🛠 Changes and results
|
|
- [Security hardening (2026-09-30)](../Changes/2026-09-30_Security_Hardening.md)
|
|
- [Admin username change (2026-09-30)](../Changes/2026-09-30_Admin_Username_Change.md)
|
|
- [Settings validation (2026-09-30)](../Changes/2026-09-30_Settings_Validation.md)
|
|
- [Privilege separation (2026-09-30)](../Changes/2026-09-30_Privilege_Separation.md)
|
|
- [Egress via Hysteria2 (2026-09-30)](../Changes/2026-09-30_Egress_via_Hysteria2.md)
|
|
|
|
## 🔍 Core Monitoring (`APP_CORE`)
|
|
The core module responsible for log parsing, real-time statistics, and the primary API.
|
|
- [API Reference](../Core_Monitoring/API_Reference.md): Endpoints for monitoring data.
|
|
- [Authentication](../Core_Monitoring/Authentication.md): How the Login and 2FA flows work.
|
|
- [Data Architecture](../Core_Monitoring/Data_Architecture.md): Internals of the Data Gatherer and TSDB.
|
|
|
|
## ⚙️ Profiler Management (`APP_PROFILER`)
|
|
The management module for PKI, Certificates, and User Profiles.
|
|
- [Overview](../Profiler_Management/Overview.md): Features and usage of the Profiler API.
|
|
|
|
## 💻 User Interface (`APP_UI`)
|
|
The Vue.js frontend application.
|
|
- [Architecture](../UI/Architecture.md): UI Tech stack and project structure.
|