# Using LetsEncrypt for OpenVPN WebSSL

Using letsencrypt for OpenVPN Access Server is nothing more than symlinking the files to letsencrypt keys and certs:

1. `<span class="pln">sudo </span><span class="pun">-</span><span class="pln">s</span>`
2. `<span class="pln">cd </span><span class="pun">/</span><span class="pln">usr</span><span class="pun">/</span><span class="kwd">local</span><span class="pun">/</span><span class="pln">openvpn_as</span><span class="pun">/</span><span class="pln">etc</span><span class="pun">/</span>`
3. `<span class="pln">mv web</span><span class="pun">-</span><span class="pln">ssl web</span><span class="pun">-</span><span class="pln">ssl</span><span class="pun">.</span><span class="pln">bak</span>`
4. `<span class="pln">mkdir web</span><span class="pun">-</span><span class="pln">ssl</span>`
5. `<span class="pln">ln </span><span class="pun">-</span><span class="pln">s </span><span class="pun">/</span><span class="pln">etc</span><span class="pun">/</span><span class="pln">letsencrypt</span><span class="pun">/</span><span class="pln">live</span><span class="pun">/<</span><span class="pln">letsencrypt domain dir</span><span class="pun">></span><span class="str">/privkey.pem web-ssl/</span><span class="pln">server</span><span class="pun">.</span><span class="pln">key</span>`
6. `<span class="pln">ln </span><span class="pun">-</span><span class="pln">s </span><span class="pun">/</span><span class="pln">etc</span><span class="pun">/</span><span class="pln">letsencrypt</span><span class="pun">/</span><span class="pln">live</span><span class="pun">/<</span><span class="pln">letsencrypt domain dir</span><span class="pun">></span><span class="str">/cert.pem web-ssl/</span><span class="pln">server</span><span class="pun">.</span><span class="pln">crt</span>`
7. `<span class="pln">ln </span><span class="pun">-</span><span class="pln">s </span><span class="pun">/</span><span class="pln">etc</span><span class="pun">/</span><span class="pln">letsencrypt</span><span class="pun">/</span><span class="pln">live</span><span class="pun">/<</span><span class="pln">letsencrypt domain dir</span><span class="pun">></span><span class="str">/fullchain.pem web-ssl/</span><span class="pln">ca</span><span class="pun">.</span><span class="pln">crt</span>`
8. `<span class="pln">systemctl restart openvpnas</span>`