client dev tun proto tcp resolv-retry infinite nobind persist-key persist-tun $OPENVPN_NCP_DISABLE cipher $OPENVPN_CIPHER auth $OPENVPN_HASH verb 3 tls-client tls-version-min 1.2 key-direction 1 remote-cert-tls server redirect-gateway def1 bypass-dhcp dhcp-option DNS $PRIMARY_DNS dhcp-option DNS $SECONDARY_DNS block-outside-dns socks-proxy 127.0.0.1 $SHADOWSOCKS_LOCAL_PORT route $REMOTE_HOST 255.255.255.255 net_gateway remote $REMOTE_HOST $OPENVPN_PORT $OPENVPN_ADDITIONAL_CLIENT_CONFIG $OPENVPN_CA_CERT $OPENVPN_CLIENT_CERT $OPENVPN_PRIV_KEY $OPENVPN_TA_KEY