{"id":348,"date":"2026-06-07T13:16:58","date_gmt":"2026-06-07T05:16:58","guid":{"rendered":"http:\/\/climbing.top\/index.php\/2026\/06\/07\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\/"},"modified":"2026-06-07T13:16:58","modified_gmt":"2026-06-07T05:16:58","slug":"kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian","status":"publish","type":"post","link":"https:\/\/climbing.top\/index.php\/2026\/06\/07\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\/","title":{"rendered":"\u5f00\u6e90VPN\u5b9e\u6218\uff08\u56db\uff09\uff1aPritunl \u591a\u4e91\u7ad9\u70b9\u5230\u7ad9\u70b9\u4e92\u8054"},"content":{"rendered":"<h2>\u7cfb\u5217\u6587\u7ae0\u56de\u987e<\/h2>\n<p>\u8fd9\u662f\u300c\u5f00\u6e90VPN\u5b9e\u6218\u300d\u7cfb\u5217\u7684\u7b2c\u56db\u7bc7\u3002\u524d\u4e09\u7bc7\u6211\u4eec\u4ecb\u7ecd\u4e86 Pritunl \u7684\u5b89\u88c5\u90e8\u7f72\u3001\u5b89\u5168\u52a0\u56fa\u548c SSO \u96c6\u6210\uff0c\u672c\u7bc7\u5c06\u6df1\u5165\u8bb2\u89e3\u5982\u4f55\u4f7f\u7528 Pritunl Link \u5b9e\u73b0\u591a\u4e91\u73af\u5883\u7684\u7ad9\u70b9\u5230\u7ad9\u70b9\u4e92\u8054\u3002<\/p>\n<p><strong>\u7cfb\u5217\u6587\u7ae0<\/strong>\uff1a<\/p>\n<ul>\n<li>\u7b2c\u4e00\u7bc7\uff1aPritunl \u5165\u95e8\u4e0e\u5b89\u88c5\u914d\u7f6e<\/li>\n<li>\u7b2c\u4e8c\u7bc7\uff1a\u5b89\u5168\u529f\u80fd\u8be6\u89e3<\/li>\n<li>\u7b2c\u4e09\u7bc7\uff1aSSO\u5355\u70b9\u767b\u5f55\u4f01\u4e1a\u96c6\u6210<\/li>\n<li><strong>\u7b2c\u56db\u7bc7\uff1a\u591a\u4e91\u7ad9\u70b9\u5230\u7ad9\u70b9\u4e92\u8054<\/strong>\uff08\u672c\u6587\uff09<\/li>\n<li>\u7b2c\u4e94\u7bc7\uff1a\u9ad8\u53ef\u7528\u4e0e\u8fd0\u7ef4\u5b9e\u6218<\/li>\n<\/ul>\n<h2>\u4e3a\u4ec0\u4e48\u9700\u8981\u7ad9\u70b9\u5230\u7ad9\u70b9\u4e92\u8054\uff1f<\/h2>\n<p>\u5728\u4f01\u4e1a\u591a\u4e91\u67b6\u6784\u4e2d\uff0c\u4e0d\u540c\u4e91\u5e73\u53f0\u3001\u4e0d\u540c\u533a\u57df\u7684\u7f51\u7edc\u9700\u8981\u4e92\u901a\uff1a<\/p>\n<p><!--more--><\/p>\n<ul>\n<li><strong>\u591a\u4e91\u90e8\u7f72<\/strong>\uff1aAWS\u3001Azure\u3001Google Cloud \u6df7\u5408\u4f7f\u7528<\/li>\n<li><strong>\u591a\u533a\u57df\u90e8\u7f72<\/strong>\uff1a\u540c\u4e00\u4e91\u5546\u7684\u4e0d\u540c\u533a\u57df<\/li>\n<li><strong>\u6df7\u5408\u4e91<\/strong>\uff1a\u4e91\u4e0a\u4e0e IDC \u673a\u623f\u4e92\u8054<\/li>\n<li><strong>\u5206\u652f\u673a\u6784<\/strong>\uff1a\u603b\u90e8\u4e0e\u5206\u652f\u673a\u6784\u7f51\u7edc\u4e92\u901a<\/li>\n<\/ul>\n<h2>Pritunl Link \u67b6\u6784<\/h2>\n<h3>\u6838\u5fc3\u7ec4\u4ef6<\/h3>\n<p><strong>Pritunl Link \u5ba2\u6237\u7aef<\/strong>\uff1a<\/p>\n<ul>\n<li>\u90e8\u7f72\u5728\u6bcf\u4e2a\u9700\u8981\u4e92\u8054\u7684\u7f51\u7edc\u4e2d<\/li>\n<li>\u901a\u8fc7 HTTPS \u4e0e Pritunl \u96c6\u7fa4\u901a\u4fe1<\/li>\n<li>\u81ea\u52a8\u5efa\u7acb IPsec \u96a7\u9053<\/li>\n<li>\u652f\u6301\u81ea\u52a8\u6545\u969c\u8f6c\u79fb<\/li>\n<\/ul>\n<p><strong>Pritunl \u670d\u52a1\u5668\u96c6\u7fa4<\/strong>\uff1a<\/p>\n<ul>\n<li>\u7ba1\u7406\u6240\u6709 Link \u5ba2\u6237\u7aef<\/li>\n<li>\u4e0b\u53d1\u914d\u7f6e\u548c\u8def\u7531<\/li>\n<li>\u76d1\u63a7\u8fde\u63a5\u72b6\u6001<\/li>\n<\/ul>\n<h3>\u5de5\u4f5c\u539f\u7406<\/h3>\n<ol>\n<li><strong>\u914d\u7f6e\u7ba1\u7406<\/strong>\uff1a\u5728 Pritunl Web \u63a7\u5236\u53f0\u914d\u7f6e Link \u548c\u8def\u7531<\/li>\n<li><strong>\u5ba2\u6237\u7aef\u6ce8\u518c<\/strong>\uff1aLink \u5ba2\u6237\u7aef\u901a\u8fc7 URI \u6ce8\u518c\u5230\u96c6\u7fa4<\/li>\n<li><strong>\u96a7\u9053\u5efa\u7acb<\/strong>\uff1a\u5ba2\u6237\u7aef\u4e4b\u95f4\u81ea\u52a8\u5efa\u7acb IPsec \u96a7\u9053<\/li>\n<li><strong>\u8def\u7531\u540c\u6b65<\/strong>\uff1a\u81ea\u52a8\u540c\u6b65\u8def\u7531\u8868\u5230\u4e91\u5e73\u53f0<\/li>\n<\/ol>\n<h3>\u5173\u952e\u7279\u6027<\/h3>\n<ul>\n<li><strong>\u81ea\u52a8\u6545\u969c\u8f6c\u79fb<\/strong>\uff1a\u6bcf\u4e2a\u7ad9\u70b9\u53ef\u90e8\u7f72\u591a\u4e2a\u5ba2\u6237\u7aef<\/li>\n<li><strong>\u81ea\u52a8\u8def\u7531<\/strong>\uff1a\u652f\u6301 AWS\u3001Google Cloud\u3001Ubiquiti \u8def\u7531\u8868\u81ea\u52a8\u66f4\u65b0<\/li>\n<li><strong>\u9ad8\u6027\u80fd\u52a0\u5bc6<\/strong>\uff1a\u652f\u6301 AES-128-GCM\u3001ChaCha20 \u7b49\u73b0\u4ee3\u52a0\u5bc6\u7b97\u6cd5<\/li>\n<li><strong>\u4e3b\u673a\u68c0\u67e5<\/strong>\uff1a\u68c0\u6d4b\u7f51\u7edc\u5206\u533a\uff0c\u9009\u62e9\u6700\u4f73\u6fc0\u6d3b\u94fe\u8def<\/li>\n<\/ul>\n<h2>\u914d\u7f6e\u524d\u51c6\u5907<\/h2>\n<h3>1. \u5b89\u88c5 Pritunl Link \u5ba2\u6237\u7aef<\/h3>\n<p>\u5728\u6bcf\u4e2a\u9700\u8981\u4e92\u8054\u7684\u7f51\u7edc\u4e2d\u5b89\u88c5 pritunl-link\uff1a<\/p>\n<p><code>`<\/code>bash<\/p>\n<p># AlmaLinux\/Rocky Linux<\/p>\n<p>sudo tee \/etc\/yum.repos.d\/pritunl.repo &lt;&lt; EOF<\/p>\n<p>[pritunl]<\/p>\n<p>name=Pritunl Repository<\/p>\n<p>baseurl=https:\/\/repo.pritunl.com\/stable\/yum\/almalinux\/9\/<\/p>\n<p>gpgcheck=1<\/p>\n<p>enabled=1<\/p>\n<p>gpgkey=https:\/\/raw.githubusercontent.com\/pritunl\/pgp\/master\/pritunl_repo_pub.asc<\/p>\n<p>EOF<\/p>\n<p>sudo dnf -y install pritunl-link<\/p>\n<p>sudo systemctl enable pritunl-link<\/p>\n<p><code>`<\/code><\/p>\n<p><code>`<\/code>bash<\/p>\n<p># Ubuntu 24.04<\/p>\n<p>sudo tee \/etc\/apt\/sources.list.d\/pritunl.list &lt;&lt; EOF<\/p>\n<p>deb [ signed-by=\/usr\/share\/keyrings\/pritunl.gpg ] https:\/\/repo.pritunl.com\/stable\/apt noble main<\/p>\n<p>EOF<\/p>\n<p>curl -fsSL https:\/\/raw.githubusercontent.com\/pritunl\/pgp\/master\/pritunl_repo_pub.asc | sudo gpg -o \/usr\/share\/keyrings\/pritunl.gpg &#8211;dearmor &#8211;yes<\/p>\n<p>sudo apt update<\/p>\n<p>sudo apt -y install pritunl-link<\/p>\n<p>sudo systemctl enable pritunl-link<\/p>\n<p><code>`<\/code><\/p>\n<h3>2. \u521b\u5efa Link \u914d\u7f6e<\/h3>\n<p>\u5728 Pritunl Web \u63a7\u5236\u53f0\uff1a<\/p>\n<ol>\n<li>\u5bfc\u822a\u5230 Link \u9875\u9762<\/li>\n<li>\u70b9\u51fb &#8220;Add Link&#8221;<\/li>\n<li>\u4e3a\u6bcf\u4e2a\u7f51\u7edc\u521b\u5efa Location<\/li>\n<li>\u4e3a\u6bcf\u4e2a Location \u6dfb\u52a0\u8def\u7531\uff08\u5b50\u7f51\uff09<\/li>\n<\/ol>\n<h3>3. \u6dfb\u52a0 Host<\/h3>\n<ol>\n<li>\u70b9\u51fb &#8220;Add Host&#8221;<\/li>\n<li>\u8bb0\u5f55\u751f\u6210\u7684 URI<\/li>\n<li>\u5728 Link \u5ba2\u6237\u7aef\u4e0a\u6267\u884c URI<\/li>\n<\/ol>\n<h3>4. \u63a8\u8350\u52a0\u5bc6\u7b97\u6cd5<\/h3>\n<p><code>`<\/code>bash<\/p>\n<p># AES 128 GCM\uff08\u63a8\u8350\uff0c\u6027\u80fd\u6700\u4f73\uff09<\/p>\n<p>IKE=aes128-sha256-x25519 ESP=aes128gcm128-x25519<\/p>\n<p># AES 256 GCM\uff08\u66f4\u9ad8\u5b89\u5168\u6027\uff09<\/p>\n<p>IKE=aes256-sha256-x25519 ESP=aes256gcm128-x25519<\/p>\n<p># ChaCha20\uff08\u65e0 AES \u786c\u4ef6\u52a0\u901f\u65f6\u63a8\u8350\uff09<\/p>\n<p>IKE=chacha20poly1305-prfsha256-x25519 ESP=chacha20poly1305-x25519<\/p>\n<p><code>`<\/code><\/p>\n<p>\u5728\u670d\u52a1\u5668\u8bbe\u7f6e\u4e2d\u542f\u7528 &#8220;Force Preferred Cipher&#8221; \u5f3a\u5236\u4f7f\u7528\u63a8\u8350\u7b97\u6cd5\u3002<\/p>\n<h2>AWS \u7ad9\u70b9\u5230\u7ad9\u70b9\u914d\u7f6e<\/h2>\n<h3>\u573a\u666f\u793a\u4f8b<\/h3>\n<p>\u5047\u8bbe\u6709\u4e24\u4e2a VPC \u9700\u8981\u4e92\u8054\uff1a<\/p>\n<ul>\n<li><strong>VPC-A<\/strong>\uff1a<code>10.0.0.0\/16<\/code>\uff08us-east-1\uff09<\/li>\n<li><strong>VPC-B<\/strong>\uff1a<code>10.1.0.0\/16<\/code>\uff08us-west-2\uff09<\/li>\n<\/ul>\n<h3>\u6b65\u9aa4 1\uff1a\u521b\u5efa IAM \u89d2\u8272<\/h3>\n<p>\u521b\u5efa\u5177\u6709 VPC \u8def\u7531\u8868\u4fee\u6539\u6743\u9650\u7684 IAM \u89d2\u8272\uff1a<\/p>\n<p><code>`<\/code>json<\/p>\n<p>{<\/p>\n<p>  &#8220;Version&#8221;: &#8220;2012-10-17&#8221;,<\/p>\n<p>  &#8220;Statement&#8221;: [<\/p>\n<p>    {<\/p>\n<p>      &#8220;Effect&#8221;: &#8220;Allow&#8221;,<\/p>\n<p>      &#8220;Action&#8221;: [<\/p>\n<p>        &#8220;ec2:DescribeRouteTables&#8221;,<\/p>\n<p>        &#8220;ec2:CreateRoute&#8221;,<\/p>\n<p>        &#8220;ec2:ReplaceRoute&#8221;,<\/p>\n<p>        &#8220;ec2:DeleteRoute&#8221;<\/p>\n<p>      ],<\/p>\n<p>      &#8220;Resource&#8221;: &#8220;*&#8221;<\/p>\n<p>    }<\/p>\n<p>  ]<\/p>\n<p>}<\/p>\n<p><code>`<\/code><\/p>\n<h3>\u6b65\u9aa4 2\uff1a\u521b\u5efa\u5b89\u5168\u7ec4<\/h3>\n<p>\u5f00\u653e\u4ee5\u4e0b\u7aef\u53e3\uff1a<\/p>\n<ul>\n<li><strong>UDP 500<\/strong>\uff1aIKE<\/li>\n<li><strong>UDP 4500<\/strong>\uff1aIPsec NAT-T<\/li>\n<li><strong>TCP 9790<\/strong>\uff1a\u4e3b\u673a\u68c0\u67e5\uff08\u53ef\u9009\uff09<\/li>\n<\/ul>\n<h3>\u6b65\u9aa4 3\uff1a\u542f\u52a8 Link \u5ba2\u6237\u7aef\u5b9e\u4f8b<\/h3>\n<p>\u5728 VPC-A \u4e2d\u542f\u52a8 Amazon Linux 2023 \u5b9e\u4f8b\uff1a<\/p>\n<ol>\n<li>\u9009\u62e9\u521b\u5efa\u7684 IAM \u89d2\u8272<\/li>\n<li>\u914d\u7f6e User Data \u542f\u52a8\u811a\u672c<\/li>\n<\/ol>\n<p><code>`<\/code>bash<\/p>\n<p>#!\/bin\/bash<\/p>\n<p># \u7981\u7528 SSL \u8bc1\u4e66\u9a8c\u8bc1\uff08\u5982\u679c Pritunl \u4f7f\u7528\u81ea\u7b7e\u540d\u8bc1\u4e66\uff09<\/p>\n<p>sudo pritunl-link verify-off<\/p>\n<p># \u8bbe\u7f6e\u4e91\u63d0\u4f9b\u5546<\/p>\n<p>sudo pritunl-link set-provider aws<\/p>\n<p># \u6dfb\u52a0 Link URI\uff08\u4ece Pritunl Web \u63a7\u5236\u53f0\u83b7\u53d6\uff09<\/p>\n<p>sudo pritunl-link add-uri PRLINK_URI<\/p>\n<p><code>`<\/code><\/p>\n<h3>\u6b65\u9aa4 4\uff1a\u9a8c\u8bc1\u8fde\u63a5<\/h3>\n<p><code>`<\/code>bash<\/p>\n<p># \u68c0\u67e5 pritunl-link \u72b6\u6001<\/p>\n<p>sudo systemctl status pritunl-link<\/p>\n<p># \u67e5\u770b\u65e5\u5fd7<\/p>\n<p>sudo journalctl -u pritunl-link -f<\/p>\n<p># \u9a8c\u8bc1\u8def\u7531\u8868\u66f4\u65b0<\/p>\n<p>aws ec2 describe-route-tables &#8211;filters &#8220;Name=vpc-id,Values=vpc-xxxxxxxx&#8221;<\/p>\n<p><code>`<\/code><\/p>\n<h3>\u6b65\u9aa4 5\uff1a\u6d4b\u8bd5\u8fde\u901a\u6027<\/h3>\n<p>\u4ece VPC-A \u7684\u5b9e\u4f8b ping VPC-B \u7684\u5b9e\u4f8b\uff1a<\/p>\n<p><code>`<\/code>bash<\/p>\n<p># \u5047\u8bbe VPC-B \u4e2d\u6709\u5b9e\u4f8b 10.1.0.100<\/p>\n<p>ping 10.1.0.100<\/p>\n<p><code>`<\/code><\/p>\n<h2>Azure \u7ad9\u70b9\u5230\u7ad9\u70b9\u914d\u7f6e<\/h2>\n<h3>\u573a\u666f\u793a\u4f8b<\/h3>\n<ul>\n<li><strong>Azure VNet-A<\/strong>\uff1a<code>10.0.0.0\/16<\/code>\uff08East US\uff09<\/li>\n<li><strong>AWS VPC-B<\/strong>\uff1a<code>10.1.0.0\/16<\/code>\uff08us-west-2\uff09<\/li>\n<\/ul>\n<h3>\u6b65\u9aa4 1\uff1a\u521b\u5efa Azure \u865a\u62df\u673a<\/h3>\n<ol>\n<li>\u521b\u5efa Ubuntu 22.04 \u865a\u62df\u673a<\/li>\n<li>\u914d\u7f6e\u7f51\u7edc\u5b89\u5168\u7ec4\uff08NSG\uff09<\/li>\n<\/ol>\n<h3>\u6b65\u9aa4 2\uff1a\u914d\u7f6e\u7f51\u7edc\u5b89\u5168\u7ec4<\/h3>\n<p>\u5f00\u653e\u7aef\u53e3\uff1a<\/p>\n<ul>\n<li><strong>UDP 500<\/strong><\/li>\n<li><strong>UDP 4500<\/strong><\/li>\n<li><strong>TCP 9790<\/strong>\uff08\u53ef\u9009\uff09<\/li>\n<\/ul>\n<h3>\u6b65\u9aa4 3\uff1a\u542f\u7528 IP \u8f6c\u53d1<\/h3>\n<p>\u5728 Azure \u95e8\u6237\uff1a<\/p>\n<ol>\n<li>\u5bfc\u822a\u5230\u865a\u62df\u673a &gt; \u7f51\u7edc<\/li>\n<li>\u9009\u62e9\u7f51\u7edc\u63a5\u53e3<\/li>\n<li>\u542f\u7528 IP \u8f6c\u53d1<\/li>\n<\/ol>\n<p>\u6216\u4f7f\u7528 Azure CLI\uff1a<\/p>\n<p><code>`<\/code>bash<\/p>\n<p>az network nic update <\/p>\n<p>  &#8211;resource-group myResourceGroup <\/p>\n<p>  &#8211;name myNic <\/p>\n<p>  &#8211;ip-forwarding true<\/p>\n<p><code>`<\/code><\/p>\n<h3>\u6b65\u9aa4 4\uff1a\u914d\u7f6e\u8def\u7531\u8868<\/h3>\n<p><code>`<\/code>bash<\/p>\n<p># \u521b\u5efa\u8def\u7531\u8868<\/p>\n<p>az network route-table create <\/p>\n<p>  &#8211;resource-group myResourceGroup <\/p>\n<p>  &#8211;name myRouteTable<\/p>\n<p># \u6dfb\u52a0\u5230 AWS VPC \u7684\u8def\u7531<\/p>\n<p>az network route-table route create <\/p>\n<p>  &#8211;resource-group myResourceGroup <\/p>\n<p>  &#8211;route-table-name myRouteTable <\/p>\n<p>  &#8211;name route-to-aws <\/p>\n<p>  &#8211;address-prefix 10.1.0.0\/16 <\/p>\n<p>  &#8211;next-hop-type VirtualAppliance <\/p>\n<p>  &#8211;next-hop-ip-address 10.0.0.100<\/p>\n<p># \u5173\u8054\u5230\u5b50\u7f51<\/p>\n<p>az network vnet subnet update <\/p>\n<p>  &#8211;resource-group myResourceGroup <\/p>\n<p>  &#8211;vnet-name myVNet <\/p>\n<p>  &#8211;name mySubnet <\/p>\n<p>  &#8211;route-table myRouteTable<\/p>\n<p><code>`<\/code><\/p>\n<h3>\u6b65\u9aa4 5\uff1a\u5b89\u88c5\u5e76\u914d\u7f6e Link<\/h3>\n<p><code>`<\/code>bash<\/p>\n<p># \u5b89\u88c5 pritunl-link<\/p>\n<p>sudo apt update<\/p>\n<p>sudo apt -y install pritunl-link<\/p>\n<p># \u7981\u7528 SSL \u9a8c\u8bc1<\/p>\n<p>sudo pritunl-link verify-off<\/p>\n<p># \u8bbe\u7f6e\u63d0\u4f9b\u5546<\/p>\n<p>sudo pritunl-link set-provider azure<\/p>\n<p># \u6dfb\u52a0 Link URI<\/p>\n<p>sudo pritunl-link add-uri PRLINK_URI<\/p>\n<p><code>`<\/code><\/p>\n<h2>Google Cloud \u7ad9\u70b9\u5230\u7ad9\u70b9\u914d\u7f6e<\/h2>\n<h3>\u573a\u666f\u793a\u4f8b<\/h3>\n<ul>\n<li><strong>GCP VPC-A<\/strong>\uff1a<code>10.0.0.0\/16<\/code>\uff08us-central1\uff09<\/li>\n<li><strong>AWS VPC-B<\/strong>\uff1a<code>10.1.0.0\/16<\/code>\uff08us-west-2\uff09<\/li>\n<\/ul>\n<h3>\u6b65\u9aa4 1\uff1a\u521b\u5efa\u9632\u706b\u5899\u89c4\u5219<\/h3>\n<p><code>`<\/code>bash<\/p>\n<p># \u5141\u8bb8 IPsec \u6d41\u91cf<\/p>\n<p>gcloud compute firewall-rules create allow-ipsec <\/p>\n<p>  &#8211;network my-vpc <\/p>\n<p>  &#8211;allow udp:500,udp:4500 <\/p>\n<p>  &#8211;source-ranges 0.0.0.0\/0<\/p>\n<p># \u5141\u8bb8\u4e3b\u673a\u68c0\u67e5\uff08\u53ef\u9009\uff09<\/p>\n<p>gcloud compute firewall-rules create allow-link-check <\/p>\n<p>  &#8211;network my-vpc <\/p>\n<p>  &#8211;allow tcp:9790 <\/p>\n<p>  &#8211;source-ranges 10.0.0.0\/8<\/p>\n<p><code>`<\/code><\/p>\n<h3>\u6b65\u9aa4 2\uff1a\u521b\u5efa\u5b9e\u4f8b\u5e76\u542f\u7528 IP \u8f6c\u53d1<\/h3>\n<p><code>`<\/code>bash<\/p>\n<p># \u521b\u5efa\u5b9e\u4f8b\u65f6\u542f\u7528 IP \u8f6c\u53d1<\/p>\n<p>gcloud compute instances create link-client <\/p>\n<p>  &#8211;zone us-central1-a <\/p>\n<p>  &#8211;machine-type e2-medium <\/p>\n<p>  &#8211;image-family ubuntu-2204-lts <\/p>\n<p>  &#8211;image-project ubuntu-os-cloud <\/p>\n<p>  &#8211;can-ip-forward <\/p>\n<p>  &#8211;network my-vpc <\/p>\n<p>  &#8211;subnet my-subnet<\/p>\n<p><code>`<\/code><\/p>\n<h3>\u6b65\u9aa4 3\uff1a\u914d\u7f6e\u8def\u7531<\/h3>\n<p><code>`<\/code>bash<\/p>\n<p># \u521b\u5efa\u8def\u7531\u5230 AWS VPC<\/p>\n<p>gcloud compute routes create route-to-aws <\/p>\n<p>  &#8211;network my-vpc <\/p>\n<p>  &#8211;destination-range 10.1.0.0\/16 <\/p>\n<p>  &#8211;next-hop-instance link-client <\/p>\n<p>  &#8211;next-hop-instance-zone us-central1-a<\/p>\n<p><code>`<\/code><\/p>\n<h3>\u6b65\u9aa4 4\uff1a\u5b89\u88c5\u5e76\u914d\u7f6e Link<\/h3>\n<p><code>`<\/code>bash<\/p>\n<p># SSH \u5230\u5b9e\u4f8b<\/p>\n<p>gcloud compute ssh link-client &#8211;zone us-central1-a<\/p>\n<p># \u5b89\u88c5 pritunl-link<\/p>\n<p>sudo apt update<\/p>\n<p>sudo apt -y install pritunl-link<\/p>\n<p># \u7981\u7528 SSL \u9a8c\u8bc1<\/p>\n<p>sudo pritunl-link verify-off<\/p>\n<p># \u8bbe\u7f6e\u63d0\u4f9b\u5546<\/p>\n<p>sudo pritunl-link set-provider google<\/p>\n<p># \u6dfb\u52a0 Link URI<\/p>\n<p>sudo pritunl-link add-uri PRLINK_URI<\/p>\n<p><code>`<\/code><\/p>\n<h2>Oracle Cloud \u7ad9\u70b9\u5230\u7ad9\u70b9\u914d\u7f6e<\/h2>\n<h3>\u573a\u666f\u793a\u4f8b<\/h3>\n<ul>\n<li><strong>OCI VCN-A<\/strong>\uff1a<code>10.0.0.0\/16<\/code>\uff08us-phoenix-1\uff09<\/li>\n<li><strong>AWS VPC-B<\/strong>\uff1a<code>10.1.0.0\/16<\/code>\uff08us-west-2\uff09<\/li>\n<\/ul>\n<h3>\u6b65\u9aa4 1\uff1a\u914d\u7f6e\u5b89\u5168\u5217\u8868<\/h3>\n<p>\u5728 OCI \u63a7\u5236\u53f0\uff1a<\/p>\n<ol>\n<li>\u5bfc\u822a\u5230 Networking &gt; Virtual Cloud Networks<\/li>\n<li>\u9009\u62e9 VCN &gt; Security Lists<\/li>\n<li>\u6dfb\u52a0 Ingress Rules\uff1a<\/li>\n<\/ol>\n<ul>\n<li><strong>UDP 500<\/strong>\uff1a\u6e90 <code>0.0.0.0\/0<\/code><\/li>\n<li><strong>UDP 4500<\/strong>\uff1a\u6e90 <code>0.0.0.0\/0<\/code><\/li>\n<\/ul>\n<h3>\u6b65\u9aa4 2\uff1a\u521b\u5efa\u5b9e\u4f8b<\/h3>\n<ol>\n<li>\u521b\u5efa Ubuntu 22.04 \u5b9e\u4f8b<\/li>\n<li>\u5206\u914d\u516c\u7f51 IP<\/li>\n<li>\u914d\u7f6e VNIC \u4ee5\u542f\u7528\u6e90\/\u76ee\u6807\u68c0\u67e5\u7981\u7528<\/li>\n<\/ol>\n<p><code>`<\/code>bash<\/p>\n<p># \u7981\u7528 VNIC \u6e90\/\u76ee\u6807\u68c0\u67e5<\/p>\n<p>oci network vnic update <\/p>\n<p>  &#8211;vnic-id ocid1.vnic.oc1&#8230; <\/p>\n<p>  &#8211;skip-source-dest-check true<\/p>\n<p><code>`<\/code><\/p>\n<h3>\u6b65\u9aa4 3\uff1a\u914d\u7f6e\u8def\u7531<\/h3>\n<p><code>`<\/code>bash<\/p>\n<p># \u521b\u5efa\u8def\u7531\u8868<\/p>\n<p>oci network route-table create <\/p>\n<p>  &#8211;compartment-id ocid1.compartment.oc1&#8230; <\/p>\n<p>  &#8211;vcn-id ocid1.vcn.oc1&#8230; <\/p>\n<p>  &#8211;route-rules &#8216;[{<\/p>\n<p>    &#8220;destination&#8221;: &#8220;10.1.0.0\/16&#8221;,<\/p>\n<p>    &#8220;destinationType&#8221;: &#8220;CIDR_BLOCK&#8221;,<\/p>\n<p>    &#8220;networkEntityId&#8221;: &#8220;ocid1.privateip.oc1&#8230;&#8221;<\/p>\n<p>  }]&#8217;<\/p>\n<p># \u5173\u8054\u5230\u5b50\u7f51<\/p>\n<p>oci network subnet update <\/p>\n<p>  &#8211;subnet-id ocid1.subnet.oc1&#8230; <\/p>\n<p>  &#8211;route-table-id ocid1.routetable.oc1&#8230;<\/p>\n<p><code>`<\/code><\/p>\n<h3>\u6b65\u9aa4 4\uff1a\u5b89\u88c5\u5e76\u914d\u7f6e Link<\/h3>\n<p><code>`<\/code>bash<\/p>\n<p># SSH \u5230\u5b9e\u4f8b<\/p>\n<p>ssh -i key.pem ubuntu@<\/p>\n<p># \u5b89\u88c5 pritunl-link<\/p>\n<p>sudo apt update<\/p>\n<p>sudo apt -y install pritunl-link<\/p>\n<p># \u7981\u7528 SSL \u9a8c\u8bc1<\/p>\n<p>sudo pritunl-link verify-off<\/p>\n<p># \u8bbe\u7f6e\u63d0\u4f9b\u5546<\/p>\n<p>sudo pritunl-link set-provider oracle<\/p>\n<p># \u6dfb\u52a0 Link URI<\/p>\n<p>sudo pritunl-link add-uri PRLINK_URI<\/p>\n<p><code>`<\/code><\/p>\n<h2>Ubiquiti EdgeRouter \u914d\u7f6e<\/h2>\n<h3>\u9002\u7528\u573a\u666f<\/h3>\n<p>\u5c06 Ubiquiti EdgeRouter \u9632\u706b\u5899\u8fde\u63a5\u5230\u4e91\u4e0a Pritunl Link\u3002<\/p>\n<h3>\u914d\u7f6e\u6b65\u9aa4<\/h3>\n<ol>\n<li><strong>\u83b7\u53d6 Pritunl Link URI<\/strong><\/li>\n<li><strong>\u767b\u5f55 EdgeRouter CLI<\/strong><\/li>\n<li><strong>\u5b89\u88c5 pritunl-link<\/strong><\/li>\n<\/ol>\n<p><code>`<\/code>bash<\/p>\n<p># \u8fdb\u5165\u914d\u7f6e\u6a21\u5f0f<\/p>\n<p>configure<\/p>\n<p># \u914d\u7f6e IPsec<\/p>\n<p>set vpn ipsec esp-group Pritunl compression &#8216;disable&#8217;<\/p>\n<p>set vpn ipsec esp-group Pritunl lifetime &#8216;3600&#8217;<\/p>\n<p>set vpn ipsec esp-group Pritunl mode &#8216;tunnel&#8217;<\/p>\n<p>set vpn ipsec esp-group Pritunl pfs &#8216;enable&#8217;<\/p>\n<p>set vpn ipsec esp-group Pritunl proposal 1 encryption &#8216;aes128gcm128&#8217;<\/p>\n<p>set vpn ipsec esp-group Pritunl proposal 1 hash &#8216;sha256&#8217;<\/p>\n<p>set vpn ipsec ike-group Pritunl ikev2-reauth &#8216;no&#8217;<\/p>\n<p>set vpn ipsec ike-group Pritunl key-exchange &#8216;ikev2&#8217;<\/p>\n<p>set vpn ipsec ike-group Pritunl lifetime &#8216;28800&#8217;<\/p>\n<p>set vpn ipsec ike-group Pritunl proposal 1 dh-group &#8217;25&#8217;<\/p>\n<p>set vpn ipsec ike-group Pritunl proposal 1 encryption &#8216;aes128&#8217;<\/p>\n<p>set vpn ipsec ike-group Pritunl proposal 1 hash &#8216;sha256&#8217;<\/p>\n<p># \u914d\u7f6e site-to-site peer<\/p>\n<p>set vpn ipsec site-to-site peer  authentication id &#8221;<\/p>\n<p>set vpn ipsec site-to-site peer  authentication mode &#8216;pre-shared-secret&#8217;<\/p>\n<p>set vpn ipsec site-to-site peer  authentication pre-shared-secret &#8221;<\/p>\n<p>set vpn ipsec site-to-site peer  connection-type &#8216;initiate&#8217;<\/p>\n<p>set vpn ipsec site-to-site peer  ike-group &#8216;Pritunl&#8217;<\/p>\n<p>set vpn ipsec site-to-site peer  local-address &#8221;<\/p>\n<p># \u6dfb\u52a0\u96a7\u9053<\/p>\n<p>set vpn ipsec site-to-site peer  tunnel 1 allow-nat-networks &#8216;disable&#8217;<\/p>\n<p>set vpn ipsec site-to-site peer  tunnel 1 allow-public-networks &#8216;disable&#8217;<\/p>\n<p>set vpn ipsec site-to-site peer  tunnel 1 esp-group &#8216;Pritunl&#8217;<\/p>\n<p>set vpn ipsec site-to-site peer  tunnel 1 local prefix &#8216;10.0.0.0\/16&#8217;<\/p>\n<p>set vpn ipsec site-to-site peer  tunnel 1 remote prefix &#8216;10.1.0.0\/16&#8217;<\/p>\n<p># \u63d0\u4ea4\u5e76\u4fdd\u5b58<\/p>\n<p>commit<\/p>\n<p>save<\/p>\n<p><code>`<\/code><\/p>\n<h2>\u9ad8\u7ea7\u914d\u7f6e<\/h2>\n<h3>\u4e3b\u673a\u68c0\u67e5<\/h3>\n<p>\u4e3b\u673a\u68c0\u67e5\u7528\u4e8e\u68c0\u6d4b\u7f51\u7edc\u5206\u533a\u548c\u9009\u62e9\u6700\u4f73\u6fc0\u6d3b\u94fe\u8def\uff1a<\/p>\n<p><code>`<\/code>bash<\/p>\n<p># \u5728\u6240\u6709 Link \u5ba2\u6237\u7aef\u4e0a<\/p>\n<p># \u786e\u4fdd TCP \u7aef\u53e3 9790 \u53ef\u8bbf\u95ee<\/p>\n<p># \u68c0\u67e5\u4e3b\u673a\u68c0\u67e5\u72b6\u6001<\/p>\n<p>sudo pritunl-link status<\/p>\n<p><code>`<\/code><\/p>\n<h3>\u81ea\u52a8\u9632\u706b\u5899<\/h3>\n<p>\u81ea\u52a8\u914d\u7f6e iptables \u4ec5\u5141\u8bb8\u5176\u4ed6 Link \u4e3b\u673a\u8bbf\u95ee IPsec \u7aef\u53e3\uff1a<\/p>\n<p><code>`<\/code>bash<\/p>\n<p># \u542f\u7528\u81ea\u52a8\u9632\u706b\u5899<\/p>\n<p>sudo pritunl-link firewall-on<\/p>\n<p># \u5916\u90e8\u9632\u706b\u5899\u4ecd\u9700\u5f00\u653e UDP 500\/4500<\/p>\n<p># \u4f46 iptables \u4f1a\u8fdb\u4e00\u6b65\u9650\u5236\u6e90 IP<\/p>\n<p><code>`<\/code><\/p>\n<h3>\u8def\u7531\u79fb\u9664<\/h3>\n<p>\u9ed8\u8ba4\u4e0d\u81ea\u52a8\u79fb\u9664\u8def\u7531\uff0c\u53ef\u624b\u52a8\u542f\u7528\uff1a<\/p>\n<p><code>`<\/code>bash<\/p>\n<p># \u542f\u7528\u81ea\u52a8\u8def\u7531\u79fb\u9664<\/p>\n<p>sudo pritunl-link remove-routes-on<\/p>\n<p><code>`<\/code><\/p>\n<h3>\u4e3b\u673a\u4f18\u5148\u7ea7<\/h3>\n<p>\u5728 Web \u63a7\u5236\u53f0\u8bbe\u7f6e\u4e3b\u673a\u4f18\u5148\u7ea7\uff1a<\/p>\n<ul>\n<li>\u4f18\u5148\u7ea7\u9ad8\u7684\u4e3b\u673a\u4f18\u5148\u4f7f\u7528<\/li>\n<li>\u7528\u4e8e\u6545\u969c\u8f6c\u79fb\u573a\u666f<\/li>\n<li>\u7528\u4e8e\u975e\u5bf9\u79f0\u7f51\u7edc\u62d3\u6251<\/li>\n<\/ul>\n<h3>\u4e3b\u673a\u8d85\u65f6<\/h3>\n<p>\u914d\u7f6e\u6545\u969c\u8f6c\u79fb\u8d85\u65f6\uff1a<\/p>\n<ul>\n<li>\u9ed8\u8ba4 30 \u79d2<\/li>\n<li>\u6545\u969c\u8f6c\u79fb\u65f6\u95f4 \u2248 3 \u79d2 + \u8d85\u65f6\u65f6\u95f4<\/li>\n<li>\u8f83\u4f4e\u8d85\u65f6 = \u66f4\u5feb\u6545\u969c\u8f6c\u79fb\uff0c\u4f46\u53ef\u80fd\u8bef\u89e6\u53d1<\/li>\n<\/ul>\n<h2>\u6027\u80fd\u4f18\u5316<\/h2>\n<h3>\u52a0\u5bc6\u7b97\u6cd5\u9009\u62e9<\/h3>\n<table>\n<tr>\n<th>\u7b97\u6cd5<\/th>\n<th>\u6027\u80fd<\/th>\n<th>\u5b89\u5168\u6027<\/th>\n<th>\u63a8\u8350\u573a\u666f<\/th>\n<\/tr>\n<\/table>\n<p>|&#8212;&#8212;|&#8212;&#8212;|&#8212;&#8212;&#8211;|&#8212;&#8212;&#8212;-|<\/p>\n<table>\n<tr>\n<th>AES-128-GCM<\/th>\n<th>\u2b50\u2b50\u2b50\u2b50\u2b50<\/th>\n<th>\u2b50\u2b50\u2b50\u2b50<\/th>\n<th>\u9ed8\u8ba4\u63a8\u8350<\/th>\n<\/tr>\n<tr>\n<td>AES-256-GCM<\/td>\n<td>\u2b50\u2b50\u2b50\u2b50<\/td>\n<td>\u2b50\u2b50\u2b50\u2b50\u2b50<\/td>\n<td>\u9ad8\u5b89\u5168\u9700\u6c42<\/td>\n<\/tr>\n<tr>\n<td>ChaCha20<\/td>\n<td>\u2b50\u2b50\u2b50\u2b50<\/td>\n<td>\u2b50\u2b50\u2b50\u2b50<\/td>\n<td>\u65e0 AES \u786c\u4ef6<\/td>\n<\/tr>\n<\/table>\n<h3>\u786c\u4ef6\u52a0\u901f<\/h3>\n<p>\u652f\u6301 Mellanox ConnectX-6 DX \u7b49\u7f51\u5361\u7684\u786c\u4ef6\u5378\u8f7d\uff1a<\/p>\n<ul>\n<li>\u5355\u8fde\u63a5\uff1a12.8 Gbit\/sec<\/li>\n<li>10 \u8fde\u63a5\uff1a13.2 Gbit\/sec<\/li>\n<\/ul>\n<h3>MTU \u4f18\u5316<\/h3>\n<p><code>`<\/code>bash<\/p>\n<p># \u68c0\u67e5\u8def\u5f84 MTU<\/p>\n<p>ping -M do -s 1400 <\/p>\n<p># \u8c03\u6574 Link MTU\uff08\u5982\u9700\u8981\uff09<\/p>\n<p>sudo pritunl-link set-mtu 1400<\/p>\n<p><code>`<\/code><\/p>\n<h2>\u6545\u969c\u6392\u9664<\/h2>\n<h3>Q1: Link \u72b6\u6001\u663e\u793a\u79bb\u7ebf<\/h3>\n<p><strong>\u68c0\u67e5<\/strong>\uff1a<\/p>\n<ol>\n<li>\u9632\u706b\u5899\u662f\u5426\u5f00\u653e UDP 500\/4500<\/li>\n<li>Link \u5ba2\u6237\u7aef\u662f\u5426\u6b63\u5e38\u8fd0\u884c<\/li>\n<li>URI \u662f\u5426\u6b63\u786e<\/li>\n<\/ol>\n<p><strong>\u8bca\u65ad<\/strong>\uff1a<\/p>\n<p><code>`<\/code>bash<\/p>\n<p>sudo systemctl status pritunl-link<\/p>\n<p>sudo journalctl -u pritunl-link -f<\/p>\n<p><code>`<\/code><\/p>\n<h3>Q2: \u8def\u7531\u672a\u81ea\u52a8\u66f4\u65b0<\/h3>\n<p><strong>\u68c0\u67e5<\/strong>\uff1a<\/p>\n<ol>\n<li>IAM \u89d2\u8272\u6743\u9650\u662f\u5426\u6b63\u786e<\/li>\n<li>\u4e91\u63d0\u4f9b\u5546\u662f\u5426\u914d\u7f6e\u6b63\u786e<\/li>\n<li>\u8def\u7531\u8868\u662f\u5426\u53ef\u5199<\/li>\n<\/ol>\n<h3>Q3: \u7f51\u7edc\u4e0d\u901a<\/h3>\n<p><strong>\u68c0\u67e5<\/strong>\uff1a<\/p>\n<ol>\n<li>\u5b89\u5168\u7ec4\/\u9632\u706b\u5899\u89c4\u5219<\/li>\n<li>\u8def\u7531\u8868\u914d\u7f6e<\/li>\n<li>\u5b50\u7f51\u5173\u8054<\/li>\n<\/ol>\n<p><strong>\u8bca\u65ad<\/strong>\uff1a<\/p>\n<p><code>`<\/code>bash<\/p>\n<p># \u68c0\u67e5\u8def\u7531<\/p>\n<p>ip route show<\/p>\n<p># \u68c0\u67e5 IPsec \u72b6\u6001<\/p>\n<p>sudo ipsec status<\/p>\n<p># \u68c0\u67e5\u8fde\u63a5<\/p>\n<p>sudo ipsec statusall<\/p>\n<p><code>`<\/code><\/p>\n<h3>Q4: \u6545\u969c\u8f6c\u79fb\u4e0d\u5de5\u4f5c<\/h3>\n<p><strong>\u68c0\u67e5<\/strong>\uff1a<\/p>\n<ol>\n<li>\u4e3b\u673a\u68c0\u67e5\u7aef\u53e3 9790 \u662f\u5426\u5f00\u653e<\/li>\n<li>\u4e3b\u673a\u4f18\u5148\u7ea7\u914d\u7f6e<\/li>\n<li>\u8d85\u65f6\u8bbe\u7f6e<\/li>\n<\/ol>\n<h2>\u6700\u4f73\u5b9e\u8df5<\/h2>\n<h3>1. \u9ad8\u53ef\u7528\u8bbe\u8ba1<\/h3>\n<ul>\n<li>\u6bcf\u4e2a\u7ad9\u70b9\u90e8\u7f72 2+ Link \u5ba2\u6237\u7aef<\/li>\n<li>\u914d\u7f6e\u4e0d\u540c\u7684\u4f18\u5148\u7ea7<\/li>\n<li>\u542f\u7528\u4e3b\u673a\u68c0\u67e5<\/li>\n<\/ul>\n<h3>2. \u5b89\u5168\u5efa\u8bae<\/h3>\n<ul>\n<li>\u4f7f\u7528\u63a8\u8350\u7684\u52a0\u5bc6\u7b97\u6cd5<\/li>\n<li>\u542f\u7528\u81ea\u52a8\u9632\u706b\u5899<\/li>\n<li>\u9650\u5236\u8def\u7531\u8303\u56f4<\/li>\n<\/ul>\n<h3>3. \u76d1\u63a7\u5efa\u8bae<\/h3>\n<ul>\n<li>\u76d1\u63a7 Link \u72b6\u6001<\/li>\n<li>\u8bbe\u7f6e\u8fde\u63a5\u544a\u8b66<\/li>\n<li>\u8bb0\u5f55\u5ba1\u8ba1\u65e5\u5fd7<\/li>\n<\/ul>\n<h3>4. \u6027\u80fd\u5efa\u8bae<\/h3>\n<ul>\n<li>\u9009\u62e9\u5408\u9002\u7684\u52a0\u5bc6\u7b97\u6cd5<\/li>\n<li>\u542f\u7528\u786c\u4ef6\u52a0\u901f\uff08\u5982\u53ef\u7528\uff09<\/li>\n<li>\u4f18\u5316 MTU \u8bbe\u7f6e<\/li>\n<\/ul>\n<h2>\u6df7\u5408\u4e91\u4e92\u8054\u65b9\u6848<\/h2>\n<h3>\u65b9\u6848 1\uff1aAWS + Azure + Google Cloud<\/h3>\n<p><code>`<\/code><\/p>\n<p>AWS VPC (10.0.0.0\/16)<\/p>\n<p>    \u2195 Pritunl Link<\/p>\n<p>Azure VNet (10.1.0.0\/16)<\/p>\n<p>    \u2195 Pritunl Link<\/p>\n<p>Google Cloud VPC (10.2.0.0\/16)<\/p>\n<p><code>`<\/code><\/p>\n<h3>\u65b9\u6848 2\uff1a\u4e91\u4e0a + IDC<\/h3>\n<p><code>`<\/code><\/p>\n<p>AWS VPC (10.0.0.0\/16)<\/p>\n<p>    \u2195 Pritunl Link<\/p>\n<p>IDC (192.168.0.0\/16)<\/p>\n<ul>\n<li>EdgeRouter\/Firewall<\/li>\n<li>pritunl-link<\/li>\n<\/ul>\n<p><code>`<\/code><\/p>\n<h3>\u65b9\u6848 3\uff1a\u591a\u533a\u57df\u90e8\u7f72<\/h3>\n<p><code>`<\/code><\/p>\n<p>AWS us-east-1 (10.0.0.0\/16)<\/p>\n<p>    \u2195 Pritunl Link<\/p>\n<p>AWS us-west-2 (10.1.0.0\/16)<\/p>\n<p>    \u2195 Pritunl Link<\/p>\n<p>AWS eu-west-1 (10.2.0.0\/16)<\/p>\n<p><code>`<\/code><\/p>\n<h2>\u4e0b\u4e00\u7bc7\u9884\u544a<\/h2>\n<p><strong>\u7b2c\u4e94\u7bc7\uff1a\u9ad8\u53ef\u7528\u4e0e\u8fd0\u7ef4\u5b9e\u6218<\/strong><\/p>\n<p>\u5c06\u8be6\u7ec6\u4ecb\u7ecd\uff1a<\/p>\n<ul>\n<li>MongoDB \u526f\u672c\u96c6\u914d\u7f6e<\/li>\n<li>Pritunl \u96c6\u7fa4\u90e8\u7f72<\/li>\n<li>\u76d1\u63a7\u4e0e\u544a\u8b66\uff08InfluxDB + Grafana\uff09<\/li>\n<li>\u5907\u4efd\u4e0e\u6062\u590d<\/li>\n<li>\u6027\u80fd\u8c03\u4f18<\/li>\n<li>\u63d2\u4ef6\u5f00\u53d1<\/li>\n<li>API \u4f7f\u7528<\/li>\n<\/ul>\n<hr>\n<p><strong>\u76f8\u5173\u8d44\u6e90<\/strong>\uff1a<\/p>\n<ul>\n<li>Link \u6587\u6863\uff1ahttps:\/\/docs.pritunl.com\/kb\/vpn\/link<\/li>\n<li>AWS \u6559\u7a0b\uff1ahttps:\/\/docs.pritunl.com\/kb\/vpn\/tutorials\/pritunl-link<\/li>\n<li>IPsec \u89c4\u683c\uff1ahttps:\/\/wiki.strongswan.org\/projects\/strongswan\/wiki\/IKEv2CipherSuites<\/li>\n<\/ul>\n<p>*\u672c\u6587\u57fa\u4e8e Pritunl \u5b98\u65b9\u6587\u6863\u6574\u7406\uff0c\u66f4\u591a\u6280\u672f\u7ec6\u8282\u8bf7\u8bbf\u95ee\u5b98\u65b9\u6587\u6863\u3002*<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u7cfb\u5217\u6587\u7ae0\u56de\u987e \u8fd9\u662f\u300c\u5f00\u6e90VPN\u5b9e\u6218\u300d\u7cfb\u5217\u7684\u7b2c\u56db\u7bc7\u3002\u524d\u4e09\u7bc7\u6211\u4eec\u4ecb\u7ecd\u4e86 Pritunl \u7684\u5b89\u88c5\u90e8\u7f72\u3001\u5b89\u5168\u52a0\u56fa\u548c S [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[95],"tags":[],"class_list":["post-348","post","type-post","status-publish","format-standard","hentry","category-jishu"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.7 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>\u5f00\u6e90VPN\u5b9e\u6218\uff08\u56db\uff09\uff1aPritunl \u591a\u4e91\u7ad9\u70b9\u5230\u7ad9\u70b9\u4e92\u8054 - \u6500\u5ca9\u8005<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"http:\/\/climbing.top\/index.php\/2026\/06\/07\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\/\" \/>\n<meta property=\"og:locale\" content=\"zh_CN\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"\u5f00\u6e90VPN\u5b9e\u6218\uff08\u56db\uff09\uff1aPritunl \u591a\u4e91\u7ad9\u70b9\u5230\u7ad9\u70b9\u4e92\u8054 - \u6500\u5ca9\u8005\" \/>\n<meta property=\"og:description\" content=\"\u7cfb\u5217\u6587\u7ae0\u56de\u987e \u8fd9\u662f\u300c\u5f00\u6e90VPN\u5b9e\u6218\u300d\u7cfb\u5217\u7684\u7b2c\u56db\u7bc7\u3002\u524d\u4e09\u7bc7\u6211\u4eec\u4ecb\u7ecd\u4e86 Pritunl \u7684\u5b89\u88c5\u90e8\u7f72\u3001\u5b89\u5168\u52a0\u56fa\u548c S [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"http:\/\/climbing.top\/index.php\/2026\/06\/07\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\/\" \/>\n<meta property=\"og:site_name\" content=\"\u6500\u5ca9\u8005\" \/>\n<meta property=\"article:published_time\" content=\"2026-06-07T05:16:58+00:00\" \/>\n<meta name=\"author\" content=\"climbing\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"\u4f5c\u8005\" \/>\n\t<meta name=\"twitter:data1\" content=\"climbing\" \/>\n\t<meta name=\"twitter:label2\" content=\"\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 \u5206\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"http:\\\/\\\/climbing.top\\\/index.php\\\/2026\\\/06\\\/07\\\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\\\/#article\",\"isPartOf\":{\"@id\":\"http:\\\/\\\/climbing.top\\\/index.php\\\/2026\\\/06\\\/07\\\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\\\/\"},\"author\":{\"name\":\"climbing\",\"@id\":\"https:\\\/\\\/climbing.top\\\/#\\\/schema\\\/person\\\/d0a903ba840c6b5b4efed8cf469bdfc6\"},\"headline\":\"\u5f00\u6e90VPN\u5b9e\u6218\uff08\u56db\uff09\uff1aPritunl \u591a\u4e91\u7ad9\u70b9\u5230\u7ad9\u70b9\u4e92\u8054\",\"datePublished\":\"2026-06-07T05:16:58+00:00\",\"mainEntityOfPage\":{\"@id\":\"http:\\\/\\\/climbing.top\\\/index.php\\\/2026\\\/06\\\/07\\\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\\\/\"},\"wordCount\":932,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/climbing.top\\\/#\\\/schema\\\/person\\\/d0a903ba840c6b5b4efed8cf469bdfc6\"},\"articleSection\":[\"\u6280\u672f\"],\"inLanguage\":\"zh-Hans\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"http:\\\/\\\/climbing.top\\\/index.php\\\/2026\\\/06\\\/07\\\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"http:\\\/\\\/climbing.top\\\/index.php\\\/2026\\\/06\\\/07\\\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\\\/\",\"url\":\"http:\\\/\\\/climbing.top\\\/index.php\\\/2026\\\/06\\\/07\\\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\\\/\",\"name\":\"\u5f00\u6e90VPN\u5b9e\u6218\uff08\u56db\uff09\uff1aPritunl \u591a\u4e91\u7ad9\u70b9\u5230\u7ad9\u70b9\u4e92\u8054 - \u6500\u5ca9\u8005\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/climbing.top\\\/#website\"},\"datePublished\":\"2026-06-07T05:16:58+00:00\",\"breadcrumb\":{\"@id\":\"http:\\\/\\\/climbing.top\\\/index.php\\\/2026\\\/06\\\/07\\\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\\\/#breadcrumb\"},\"inLanguage\":\"zh-Hans\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"http:\\\/\\\/climbing.top\\\/index.php\\\/2026\\\/06\\\/07\\\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\\\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"http:\\\/\\\/climbing.top\\\/index.php\\\/2026\\\/06\\\/07\\\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"\u9996\u9875\",\"item\":\"https:\\\/\\\/climbing.top\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"\u5f00\u6e90VPN\u5b9e\u6218\uff08\u56db\uff09\uff1aPritunl \u591a\u4e91\u7ad9\u70b9\u5230\u7ad9\u70b9\u4e92\u8054\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/climbing.top\\\/#website\",\"url\":\"https:\\\/\\\/climbing.top\\\/\",\"name\":\"\u6500\u5ca9\u8005\",\"description\":\"Just a climbing site\",\"publisher\":{\"@id\":\"https:\\\/\\\/climbing.top\\\/#\\\/schema\\\/person\\\/d0a903ba840c6b5b4efed8cf469bdfc6\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/climbing.top\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"zh-Hans\"},{\"@type\":[\"Person\",\"Organization\"],\"@id\":\"https:\\\/\\\/climbing.top\\\/#\\\/schema\\\/person\\\/d0a903ba840c6b5b4efed8cf469bdfc6\",\"name\":\"climbing\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"zh-Hans\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/1ebe96219e8a39358eb7ac4609521cc139b46bdb29387ac24634ce777483c04e?s=96&d=wp_user_avatar&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/1ebe96219e8a39358eb7ac4609521cc139b46bdb29387ac24634ce777483c04e?s=96&d=wp_user_avatar&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/1ebe96219e8a39358eb7ac4609521cc139b46bdb29387ac24634ce777483c04e?s=96&d=wp_user_avatar&r=g\",\"caption\":\"climbing\"},\"logo\":{\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/1ebe96219e8a39358eb7ac4609521cc139b46bdb29387ac24634ce777483c04e?s=96&d=wp_user_avatar&r=g\"},\"sameAs\":[\"http:\\\/\\\/49.232.220.234\\\/wordpress\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"\u5f00\u6e90VPN\u5b9e\u6218\uff08\u56db\uff09\uff1aPritunl \u591a\u4e91\u7ad9\u70b9\u5230\u7ad9\u70b9\u4e92\u8054 - \u6500\u5ca9\u8005","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"http:\/\/climbing.top\/index.php\/2026\/06\/07\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\/","og_locale":"zh_CN","og_type":"article","og_title":"\u5f00\u6e90VPN\u5b9e\u6218\uff08\u56db\uff09\uff1aPritunl \u591a\u4e91\u7ad9\u70b9\u5230\u7ad9\u70b9\u4e92\u8054 - \u6500\u5ca9\u8005","og_description":"\u7cfb\u5217\u6587\u7ae0\u56de\u987e \u8fd9\u662f\u300c\u5f00\u6e90VPN\u5b9e\u6218\u300d\u7cfb\u5217\u7684\u7b2c\u56db\u7bc7\u3002\u524d\u4e09\u7bc7\u6211\u4eec\u4ecb\u7ecd\u4e86 Pritunl \u7684\u5b89\u88c5\u90e8\u7f72\u3001\u5b89\u5168\u52a0\u56fa\u548c S [&hellip;]","og_url":"http:\/\/climbing.top\/index.php\/2026\/06\/07\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\/","og_site_name":"\u6500\u5ca9\u8005","article_published_time":"2026-06-07T05:16:58+00:00","author":"climbing","twitter_card":"summary_large_image","twitter_misc":{"\u4f5c\u8005":"climbing","\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4":"5 \u5206"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"http:\/\/climbing.top\/index.php\/2026\/06\/07\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\/#article","isPartOf":{"@id":"http:\/\/climbing.top\/index.php\/2026\/06\/07\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\/"},"author":{"name":"climbing","@id":"https:\/\/climbing.top\/#\/schema\/person\/d0a903ba840c6b5b4efed8cf469bdfc6"},"headline":"\u5f00\u6e90VPN\u5b9e\u6218\uff08\u56db\uff09\uff1aPritunl \u591a\u4e91\u7ad9\u70b9\u5230\u7ad9\u70b9\u4e92\u8054","datePublished":"2026-06-07T05:16:58+00:00","mainEntityOfPage":{"@id":"http:\/\/climbing.top\/index.php\/2026\/06\/07\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\/"},"wordCount":932,"commentCount":0,"publisher":{"@id":"https:\/\/climbing.top\/#\/schema\/person\/d0a903ba840c6b5b4efed8cf469bdfc6"},"articleSection":["\u6280\u672f"],"inLanguage":"zh-Hans","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["http:\/\/climbing.top\/index.php\/2026\/06\/07\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\/#respond"]}]},{"@type":"WebPage","@id":"http:\/\/climbing.top\/index.php\/2026\/06\/07\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\/","url":"http:\/\/climbing.top\/index.php\/2026\/06\/07\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\/","name":"\u5f00\u6e90VPN\u5b9e\u6218\uff08\u56db\uff09\uff1aPritunl \u591a\u4e91\u7ad9\u70b9\u5230\u7ad9\u70b9\u4e92\u8054 - \u6500\u5ca9\u8005","isPartOf":{"@id":"https:\/\/climbing.top\/#website"},"datePublished":"2026-06-07T05:16:58+00:00","breadcrumb":{"@id":"http:\/\/climbing.top\/index.php\/2026\/06\/07\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\/#breadcrumb"},"inLanguage":"zh-Hans","potentialAction":[{"@type":"ReadAction","target":["http:\/\/climbing.top\/index.php\/2026\/06\/07\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\/"]}]},{"@type":"BreadcrumbList","@id":"http:\/\/climbing.top\/index.php\/2026\/06\/07\/kaiyuanvpnshizhansipritunl-duoyunzhandiandaozhandianhulian\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"\u9996\u9875","item":"https:\/\/climbing.top\/"},{"@type":"ListItem","position":2,"name":"\u5f00\u6e90VPN\u5b9e\u6218\uff08\u56db\uff09\uff1aPritunl \u591a\u4e91\u7ad9\u70b9\u5230\u7ad9\u70b9\u4e92\u8054"}]},{"@type":"WebSite","@id":"https:\/\/climbing.top\/#website","url":"https:\/\/climbing.top\/","name":"\u6500\u5ca9\u8005","description":"Just a climbing site","publisher":{"@id":"https:\/\/climbing.top\/#\/schema\/person\/d0a903ba840c6b5b4efed8cf469bdfc6"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/climbing.top\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"zh-Hans"},{"@type":["Person","Organization"],"@id":"https:\/\/climbing.top\/#\/schema\/person\/d0a903ba840c6b5b4efed8cf469bdfc6","name":"climbing","image":{"@type":"ImageObject","inLanguage":"zh-Hans","@id":"https:\/\/secure.gravatar.com\/avatar\/1ebe96219e8a39358eb7ac4609521cc139b46bdb29387ac24634ce777483c04e?s=96&d=wp_user_avatar&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/1ebe96219e8a39358eb7ac4609521cc139b46bdb29387ac24634ce777483c04e?s=96&d=wp_user_avatar&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/1ebe96219e8a39358eb7ac4609521cc139b46bdb29387ac24634ce777483c04e?s=96&d=wp_user_avatar&r=g","caption":"climbing"},"logo":{"@id":"https:\/\/secure.gravatar.com\/avatar\/1ebe96219e8a39358eb7ac4609521cc139b46bdb29387ac24634ce777483c04e?s=96&d=wp_user_avatar&r=g"},"sameAs":["http:\/\/49.232.220.234\/wordpress"]}]}},"_links":{"self":[{"href":"https:\/\/climbing.top\/index.php\/wp-json\/wp\/v2\/posts\/348","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/climbing.top\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/climbing.top\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/climbing.top\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/climbing.top\/index.php\/wp-json\/wp\/v2\/comments?post=348"}],"version-history":[{"count":0,"href":"https:\/\/climbing.top\/index.php\/wp-json\/wp\/v2\/posts\/348\/revisions"}],"wp:attachment":[{"href":"https:\/\/climbing.top\/index.php\/wp-json\/wp\/v2\/media?parent=348"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/climbing.top\/index.php\/wp-json\/wp\/v2\/categories?post=348"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/climbing.top\/index.php\/wp-json\/wp\/v2\/tags?post=348"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}