{"id":15775,"date":"2026-06-02T16:05:45","date_gmt":"2026-06-02T13:05:45","guid":{"rendered":"https:\/\/www.ihs.com.tr\/blog\/?p=15775"},"modified":"2026-06-02T16:05:45","modified_gmt":"2026-06-02T13:05:45","slug":"kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard","status":"publish","type":"post","link":"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/","title":{"rendered":"Kendi VPN Sunucunuzu Kurma Rehberi (OpenVPN &#038; WireGuard)"},"content":{"rendered":"<p>\u0130nternet d\u00fcnyas\u0131nda gizlilik ve g\u00fcvenlik her zamankinden daha \u00f6nemli hale geldi. \u00c7evrimi\u00e7i aktivitelerinizi izlenmekten korumak, herkese a\u00e7\u0131k Wi-Fi a\u011flar\u0131nda verilerinizi g\u00fcvence alt\u0131na almak veya co\u011frafi k\u0131s\u0131tlamalar\u0131 a\u015fmak i\u00e7in bir Sanal \u00d6zel A\u011f (VPN) kullanmak en etkili y\u00f6ntemlerden biridir. Piyasada \u00e7ok say\u0131da ticari VPN hizmeti bulunsa da, tam kontrol, maksimum gizlilik ve daha d\u00fc\u015f\u00fck maliyetler arayanlar i\u00e7in kendi VPN sunucusunu kurmak cazip bir alternatiftir. Bu rehberde, size \u00f6zel bir VPN sunucusunu nas\u0131l kurabilece\u011finizi, pop\u00fcler protokoller olan OpenVPN ve WireGuard aras\u0131ndaki farklar\u0131 ve bu s\u00fcre\u00e7te ihtiyac\u0131n\u0131z olan t\u00fcm teknik ad\u0131mlar\u0131 detayl\u0131 bir \u015fekilde anlataca\u011f\u0131z. Kendi dijital kalenizi in\u015fa etmeye haz\u0131rsan\u0131z, ba\u015flayal\u0131m.<\/p>\n<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_77 counter-hierarchy ez-toc-counter ez-toc-grey ez-toc-container-direction\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">\u0130\u00e7erik Tablosu<\/p>\n<label for=\"ez-toc-cssicon-toggle-item-6a1efffec0b95\" class=\"ez-toc-cssicon-toggle-label\"><span class=\"\"><span class=\"eztoc-hide\" style=\"display:none;\">Toggle<\/span><span class=\"ez-toc-icon-toggle-span\"><svg style=\"fill: #999;color:#999\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" class=\"list-377408\" width=\"20px\" height=\"20px\" viewBox=\"0 0 24 24\" fill=\"none\"><path d=\"M6 6H4v2h2V6zm14 0H8v2h12V6zM4 11h2v2H4v-2zm16 0H8v2h12v-2zM4 16h2v2H4v-2zm16 0H8v2h12v-2z\" fill=\"currentColor\"><\/path><\/svg><svg style=\"fill: #999;color:#999\" class=\"arrow-unsorted-368013\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"10px\" height=\"10px\" viewBox=\"0 0 24 24\" version=\"1.2\" baseProfile=\"tiny\"><path d=\"M18.2 9.3l-6.2-6.3-6.2 6.3c-.2.2-.3.4-.3.7s.1.5.3.7c.2.2.4.3.7.3h11c.3 0 .5-.1.7-.3.2-.2.3-.5.3-.7s-.1-.5-.3-.7zM5.8 14.7l6.2 6.3 6.2-6.3c.2-.2.3-.5.3-.7s-.1-.5-.3-.7c-.2-.2-.4-.3-.7-.3h-11c-.3 0-.5.1-.7.3-.2.2-.3.5-.3.7s.1.5.3.7z\"\/><\/svg><\/span><\/span><\/label><input type=\"checkbox\" id=\"ez-toc-cssicon-toggle-item-6a1efffec0b95\" aria-label=\"Toggle\" \/><nav><ul class='ez-toc-list ez-toc-list-level-1 ' ><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#VPNe-Giris-ve-Temel-Kavramlar\" >VPN&#8217;e Giri\u015f ve Temel Kavramlar<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#VPN-Nedir-ve-Nasil-Calisir\" >VPN Nedir ve Nas\u0131l \u00c7al\u0131\u015f\u0131r?<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Kendi-VPN-Sunucunu-Kurmanin-Avantajlari\" >Kendi VPN Sunucunu Kurman\u0131n Avantajlar\u0131<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-4\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Ticari-VPN-Hizmetleri-ile-Kendi-Sunucun-Arasindaki-Farklar\" >Ticari VPN Hizmetleri ile Kendi Sunucun Aras\u0131ndaki Farklar<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-5\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Potansiyel-Riskler-ve-Sorumluluklar\" >Potansiyel Riskler ve Sorumluluklar<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-6\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Kurulum-Oncesi-Hazirlik-ve-Gereksinimler\" >Kurulum \u00d6ncesi Haz\u0131rl\u0131k ve Gereksinimler<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-7\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Sunucu-Secimi-Sanal-Sunucu-VPSVDS-vs-Fiziksel-Sunucu\" >Sunucu Se\u00e7imi: Sanal Sunucu (VPS\/VDS) vs. Fiziksel Sunucu<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-8\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Gerekli-Minimum-Sunucu-Ozellikleri-CPU-RAM-Bant-Genisligi\" >Gerekli Minimum Sunucu \u00d6zellikleri (CPU, RAM, Bant Geni\u015fli\u011fi)<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-9\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Isletim-Sistemi-Secimi-Ubuntu-Debian-CentOS-Onerileri\" >\u0130\u015fletim Sistemi Se\u00e7imi (Ubuntu, Debian, CentOS \u00d6nerileri)<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-10\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#SSH-ile-Sunucuya-Guvenli-Baglanti-Kurma\" >SSH ile Sunucuya G\u00fcvenli Ba\u011flant\u0131 Kurma<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-11\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Sunucunun-Ilk-Yapilandirmasi-ve-Guvenlik-Adimlari\" >Sunucunun \u0130lk Yap\u0131land\u0131rmas\u0131 ve G\u00fcvenlik Ad\u0131mlar\u0131<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-12\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#VPN-Protokolu-Secimi-OpenVPN-vs-WireGuard\" >VPN Protokol\u00fc Se\u00e7imi: OpenVPN vs. WireGuard<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-13\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#OpenVPN-Genel-Bakis-Artilari-ve-Eksileri\" >OpenVPN: Genel Bak\u0131\u015f, Art\u0131lar\u0131 ve Eksileri<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-14\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#WireGuard-Genel-Bakis-Artilari-ve-Eksileri\" >WireGuard: Genel Bak\u0131\u015f, Art\u0131lar\u0131 ve Eksileri<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-15\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Performans-Guvenlik-ve-Kurulum-Kolayligi-Acisindan-Karsilastirma\" >Performans, G\u00fcvenlik ve Kurulum Kolayl\u0131\u011f\u0131 A\u00e7\u0131s\u0131ndan Kar\u015f\u0131la\u015ft\u0131rma<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-16\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Ihtiyaclariniza-Gore-Hangi-Protokolu-Secmelisiniz\" >\u0130htiya\u00e7lar\u0131n\u0131za G\u00f6re Hangi Protokol\u00fc Se\u00e7melisiniz?<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-17\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Adim-Adim-OpenVPN-Sunucu-Kurulumu-UbuntuDebian\" >Ad\u0131m Ad\u0131m OpenVPN Sunucu Kurulumu (Ubuntu\/Debian)<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-18\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Sunucu-Paketlerini-Guncelleme-ve-Gerekli-Bagimliliklari-Yukleme\" >Sunucu Paketlerini G\u00fcncelleme ve Gerekli Ba\u011f\u0131ml\u0131l\u0131klar\u0131 Y\u00fckleme<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-19\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Easy-RSA-ile-Sertifika-Otoritesi-CA-Olusturma\" >Easy-RSA ile Sertifika Otoritesi (CA) Olu\u015fturma<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-20\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Sunucu-Sertifikasi-ve-Anahtarini-Olusturma\" >Sunucu Sertifikas\u0131 ve Anahtar\u0131n\u0131 Olu\u015fturma<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-21\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Diffie-Hellman-Parametrelerini-Olusturma\" >Diffie-Hellman Parametrelerini Olu\u015fturma<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-22\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#OpenVPN-Sunucu-Yapilandirma-Dosyasini-serverconf-Hazirlama\" >OpenVPN Sunucu Yap\u0131land\u0131rma Dosyas\u0131n\u0131 (server.conf) Haz\u0131rlama<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-23\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Ag-ve-Guvenlik-Duvari-FirewallUFW-Ayarlari\" >A\u011f ve G\u00fcvenlik Duvar\u0131 (Firewall\/UFW) Ayarlar\u0131<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-24\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#OpenVPN-Servisini-Baslatma-ve-Test-Etme\" >OpenVPN Servisini Ba\u015flatma ve Test Etme<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-25\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Istemci-Client-icin-Yapilandirma-Dosyasi-Olusturma\" >\u0130stemci (Client) i\u00e7in Yap\u0131land\u0131rma Dosyas\u0131 Olu\u015fturma<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-26\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Adim-Adim-WireGuard-Sunucu-Kurulumu-UbuntuDebian\" >Ad\u0131m Ad\u0131m WireGuard Sunucu Kurulumu (Ubuntu\/Debian)<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-27\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Sunucu-Paketlerini-Guncelleme-ve-WireGuard-Kurulumu\" >Sunucu Paketlerini G\u00fcncelleme ve WireGuard Kurulumu<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-28\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Sunucu-icin-Ozel-ve-Genel-Anahtar-PrivatePublic-Key-Olusturma\" >Sunucu i\u00e7in \u00d6zel ve Genel Anahtar (Private\/Public Key) Olu\u015fturma<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-29\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#WireGuard-Sunucu-Yapilandirma-Dosyasini-wg0conf-Hazirlama\" >WireGuard Sunucu Yap\u0131land\u0131rma Dosyas\u0131n\u0131 (wg0.conf) Haz\u0131rlama<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-30\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Agda-IP-Yonlendirme-IP-Forwarding-Ayarlarini-Etkinlestirme\" >A\u011fda IP Y\u00f6nlendirme (IP Forwarding) Ayarlar\u0131n\u0131 Etkinle\u015ftirme<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-31\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Guvenlik-Duvari-FirewallUFW-Kurallarini-Yapilandirma\" >G\u00fcvenlik Duvar\u0131 (Firewall\/UFW) Kurallar\u0131n\u0131 Yap\u0131land\u0131rma<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-32\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#WireGuard-Servisini-Baslatma-ve-Otomatik-Baslatmayi-Ayarlama\" >WireGuard Servisini Ba\u015flatma ve Otomatik Ba\u015flatmay\u0131 Ayarlama<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-33\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Istemci-Client-icin-Yapilandirma-Dosyasi-ve-QR-Kod-Olusturma\" >\u0130stemci (Client) i\u00e7in Yap\u0131land\u0131rma Dosyas\u0131 ve QR Kod Olu\u015fturma<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-34\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Istemci-Client-Cihazlarin-Yapilandirilmasi\" >\u0130stemci (Client) Cihazlar\u0131n Yap\u0131land\u0131r\u0131lmas\u0131<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-35\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Windows-icin-OpenVPN-ve-WireGuard-Istemci-Kurulumu\" >Windows i\u00e7in OpenVPN ve WireGuard \u0130stemci Kurulumu<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-36\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#macOS-icin-OpenVPN-ve-WireGuard-Istemci-Kurulumu\" >macOS i\u00e7in OpenVPN ve WireGuard \u0130stemci Kurulumu<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-37\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Linux-icin-OpenVPN-ve-WireGuard-Istemci-Kurulumu\" >Linux i\u00e7in OpenVPN ve WireGuard \u0130stemci Kurulumu<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-38\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Android-ve-iOS-Mobil-Cihazlari-icin-Yapilandirma\" >Android ve iOS Mobil Cihazlar\u0131 i\u00e7in Yap\u0131land\u0131rma<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-39\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Yeni-Kullanici-Ekleme-ve-Mevcut-Kullanicilari-Yonetme\" >Yeni Kullan\u0131c\u0131 Ekleme ve Mevcut Kullan\u0131c\u0131lar\u0131 Y\u00f6netme<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-40\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Gelismis-Yapilandirma-ve-Bakim\" >Geli\u015fmi\u015f Yap\u0131land\u0131rma ve Bak\u0131m<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-41\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#VPN-Sunucusunu-Guncel-Tutma-Stratejileri\" >VPN Sunucusunu G\u00fcncel Tutma Stratejileri<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-42\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#DNS-Sizintilarini-DNS-Leaks-Onleme-Yontemleri\" >DNS S\u0131z\u0131nt\u0131lar\u0131n\u0131 (DNS Leaks) \u00d6nleme Y\u00f6ntemleri<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-43\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Kill-Switch-Nedir-ve-Istemcide-Nasil-Yapilandirilir\" >Kill Switch Nedir ve \u0130stemcide Nas\u0131l Yap\u0131land\u0131r\u0131l\u0131r?<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-44\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Sunucu-Performansini-ve-Baglanti-Loglarini-Izleme\" >Sunucu Performans\u0131n\u0131 ve Ba\u011flant\u0131 Loglar\u0131n\u0131 \u0130zleme<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-45\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#VPN-Uzerinden-Reklam-ve-Takipci-Engelleme-Pi-hole-Entegrasyonu\" >VPN \u00dczerinden Reklam ve Takip\u00e7i Engelleme (Pi-hole Entegrasyonu)<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-46\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Kendi-VPN-Sunucunuzu-Kurmak-Icin-Neden-IHS-Telekomu-Tercih-Etmelisiniz\" >Kendi VPN Sunucunuzu Kurmak \u0130\u00e7in Neden \u0130HS Telekom&#8217;u Tercih Etmelisiniz?<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-47\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Yuksek-Performansli-ve-Guvenilir-Sanal-Sunucu-VDSVPS-Altyapisi\" >Y\u00fcksek Performansl\u0131 ve G\u00fcvenilir Sanal Sunucu (VDS\/VPS) Altyap\u0131s\u0131<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-48\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Turkiye-Lokasyonlu-Sunucular-ile-Dusuk-Gecikme-Suresi-Latency\" >T\u00fcrkiye Lokasyonlu Sunucular ile D\u00fc\u015f\u00fck Gecikme S\u00fcresi (Latency)<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-49\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Ihtiyaca-Yonelik-Esnek-ve-Olceklenebilir-Sunucu-Paketleri\" >\u0130htiyaca Y\u00f6nelik Esnek ve \u00d6l\u00e7eklenebilir Sunucu Paketleri<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-50\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#724-Uzman-Teknik-Destek-Ekibi\" >7\/24 Uzman Teknik Destek Ekibi<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-51\" href=\"https:\/\/www.ihs.com.tr\/blog\/kendi-vpn-sunucunuzu-kurma-rehberi-openvpn-wireguard\/#Kolay-Yonetim-Paneli-ve-Hizli-Sunucu-Teslimati\" >Kolay Y\u00f6netim Paneli ve H\u0131zl\u0131 Sunucu Teslimat\u0131<\/a><\/li><\/ul><\/li><\/ul><\/nav><\/div>\n<h2><span class=\"ez-toc-section\" id=\"VPNe-Giris-ve-Temel-Kavramlar\"><\/span>VPN&#8217;e Giri\u015f ve Temel Kavramlar<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>Kendi VPN sunucunuzu kurma yolculu\u011funa \u00e7\u0131kmadan \u00f6nce, temel kavramlar\u0131 ve bu teknolojinin arkas\u0131ndaki mant\u0131\u011f\u0131 anlamak \u00f6nemlidir. Bu b\u00f6l\u00fcmde, VPN&#8217;in ne oldu\u011fu, nas\u0131l \u00e7al\u0131\u015ft\u0131\u011f\u0131, kendi sunucunuzu kurman\u0131n avantajlar\u0131 ve ticari hizmetlerle aras\u0131ndaki farklar gibi temel konulara de\u011finece\u011fiz.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"VPN-Nedir-ve-Nasil-Calisir\"><\/span>VPN Nedir ve Nas\u0131l \u00c7al\u0131\u015f\u0131r?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>VPN (Virtual Private Network), kelime anlam\u0131yla &#8220;Sanal \u00d6zel A\u011f&#8221; demektir. Temel i\u015flevi, internet ba\u011flant\u0131n\u0131z\u0131 \u015fifreleyerek g\u00fcvenli bir t\u00fcnel \u00fczerinden ba\u015fka bir sunucuya y\u00f6nlendirmektir. Bu s\u00fcre\u00e7te, t\u00fcm internet trafi\u011finiz (web siteleri, e-postalar, uygulamalar) bu \u015fifreli t\u00fcnel i\u00e7inden ge\u00e7er. Ba\u011fland\u0131\u011f\u0131n\u0131z VPN sunucusu, sizin ad\u0131n\u0131za internete \u00e7\u0131kar ve sizin ger\u00e7ek IP adresiniz yerine kendi IP adresini kullan\u0131r. Bu sayede, internet servis sa\u011flay\u0131c\u0131n\u0131z (\u0130SS), h\u00fck\u00fcmetler veya potansiyel bilgisayar korsanlar\u0131 \u00e7evrimi\u00e7i aktivitelerinizi g\u00f6remez; sadece \u015fifrelenmi\u015f bir veri ak\u0131\u015f\u0131 g\u00f6r\u00fcrler. <a href=\"https:\/\/www.ihs.com.tr\/blog\/vpn-nedir-nasil-calisir\/\" target=\"_blank\">VPN nedir<\/a> sorusunun en basit cevab\u0131, dijital d\u00fcnyadaki gizlilik ve g\u00fcvenlik kalkan\u0131n\u0131zd\u0131r.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Kendi-VPN-Sunucunu-Kurmanin-Avantajlari\"><\/span>Kendi VPN Sunucunu Kurman\u0131n Avantajlar\u0131<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Kendi VPN sunucunuzu y\u00f6netmek, size ticari hizmetlerin sunamad\u0131\u011f\u0131 bir\u00e7ok avantaj sa\u011flar. \u0130\u015fte bunlardan baz\u0131lar\u0131:<\/p>\n<ul>\n<li><strong>Tam Kontrol ve Gizlilik:<\/strong> Sunucu tamamen sizin kontrol\u00fcn\u00fczdedir. Hangi verilerin g\u00fcnl\u00fc\u011fe kaydedilece\u011fine (veya kaydedilmeyece\u011fine) siz karar verirsiniz. Ticari hizmetlerde ise \u015firketin gizlilik politikas\u0131na g\u00fcvenmek zorundas\u0131n\u0131z.<\/li>\n<li><strong>Daha Y\u00fcksek G\u00fcvenlik:<\/strong> Sunucunun yap\u0131land\u0131rmas\u0131 ve g\u00fcvenlik ayarlar\u0131 tamamen sizin elinizdedir. Kendi g\u00fcvenlik duvar\u0131 kurallar\u0131n\u0131z\u0131 belirleyebilir, eri\u015fimi k\u0131s\u0131tlayabilir ve en g\u00fcncel g\u00fcvenlik yamalar\u0131n\u0131 an\u0131nda uygulayabilirsiniz.<\/li>\n<li><strong>Maliyet Etkinli\u011fi:<\/strong> Ayl\u0131k y\u00fcksek abonelik \u00fccretleri \u00f6demek yerine, uygun fiyatl\u0131 bir sanal sunucu kiralayarak kendi VPN&#8217;inizi \u00e7ok daha ucuza getirebilirsiniz. Genellikle birden fazla kullan\u0131c\u0131y\u0131 tek bir sunucu \u00fczerinden ek maliyet olmadan ba\u011flayabilirsiniz.<\/li>\n<li><strong>Reklam ve Takip\u00e7i Engelleme:<\/strong> Kendi sunucunuza Pi-hole gibi ek yaz\u0131l\u0131mlar kurarak t\u00fcm ba\u011fl\u0131 cihazlarda reklamlar\u0131 ve takip\u00e7ileri a\u011f d\u00fczeyinde engelleyebilirsiniz.<\/li>\n<li><strong>Sabit (Statik) IP Adresi:<\/strong> Size \u00f6zel bir IP adresine sahip olursunuz. Bu, baz\u0131 \u00e7evrimi\u00e7i hizmetlere veya kendi ev a\u011f\u0131n\u0131za uzaktan g\u00fcvenli eri\u015fim i\u00e7in kullan\u0131\u015fl\u0131d\u0131r.<\/li>\n<\/ul>\n<h3><span class=\"ez-toc-section\" id=\"Ticari-VPN-Hizmetleri-ile-Kendi-Sunucun-Arasindaki-Farklar\"><\/span>Ticari VPN Hizmetleri ile Kendi Sunucun Aras\u0131ndaki Farklar<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Hem ticari VPN hizmetlerinin hem de kendi sunucunuzu kurman\u0131n kendine \u00f6zg\u00fc art\u0131 ve eksileri vard\u0131r. Se\u00e7im, b\u00fcy\u00fck \u00f6l\u00e7\u00fcde teknik bilginize, ihtiya\u00e7lar\u0131n\u0131za ve \u00f6nceliklerinize ba\u011fl\u0131d\u0131r.<\/p>\n<div class=\"karsilastirma\">\n<table>\n<thead>\n<tr>\n<th>\u00d6zellik<\/th>\n<th>Ticari VPN Hizmetleri<\/th>\n<th>Kendi VPN Sunucun<\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td><strong>Kurulum ve Kullan\u0131m<\/strong><\/td>\n<td>\u00c7ok kolay. Genellikle bir uygulama indirip giri\u015f yapmak yeterlidir.<\/td>\n<td>Teknik bilgi gerektirir. Sunucu kurulumu ve yap\u0131land\u0131rmas\u0131 yap\u0131lmal\u0131d\u0131r.<\/td>\n<\/tr>\n<tr>\n<td><strong>Gizlilik<\/strong><\/td>\n<td>\u015eirketin &#8220;kay\u0131t tutmama&#8221; politikas\u0131na g\u00fcvenmeniz gerekir.<\/td>\n<td>Maksimum gizlilik. Kay\u0131t politikas\u0131 tamamen sizin kontrol\u00fcn\u00fczdedir.<\/td>\n<\/tr>\n<tr>\n<td><strong>Maliyet<\/strong><\/td>\n<td>Genellikle ayl\u0131k\/y\u0131ll\u0131k abonelik \u00fccreti vard\u0131r. Cihaz say\u0131s\u0131 artt\u0131k\u00e7a maliyet artabilir.<\/td>\n<td>D\u00fc\u015f\u00fck maliyetli bir sanal sunucu kiras\u0131. Genellikle tek sunucu maliyetiyle \u00e7ok say\u0131da cihaz ba\u011flanabilir.<\/td>\n<\/tr>\n<tr>\n<td><strong>Sunucu Konumu<\/strong><\/td>\n<td>Onlarca \u00fclkede y\u00fczlerce sunucu se\u00e7ene\u011fi sunar.<\/td>\n<td>Se\u00e7ti\u011finiz lokasyonda tek bir sunucu. Farkl\u0131 lokasyonlar i\u00e7in ek sunucular gerekir.<\/td>\n<\/tr>\n<tr>\n<td><strong>Kontrol ve Esneklik<\/strong><\/td>\n<td>S\u0131n\u0131rl\u0131d\u0131r. Sadece sunulan \u00f6zellikleri kullanabilirsiniz.<\/td>\n<td>Tam kontrol. \u0130stedi\u011finiz ek yaz\u0131l\u0131mlar\u0131 (reklam engelleme vb.) kurabilirsiniz.<\/td>\n<\/tr>\n<tr>\n<td><strong>Bak\u0131m<\/strong><\/td>\n<td>Hizmet sa\u011flay\u0131c\u0131 taraf\u0131ndan yap\u0131l\u0131r.<\/td>\n<td>Sunucu g\u00fcncellemeleri ve bak\u0131m\u0131 tamamen sizin sorumlulu\u011funuzdad\u0131r.<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div>\n<h3><span class=\"ez-toc-section\" id=\"Potansiyel-Riskler-ve-Sorumluluklar\"><\/span>Potansiyel Riskler ve Sorumluluklar<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Kendi VPN sunucunuzu kurmak b\u00fcy\u00fck bir g\u00fc\u00e7 ve esneklik sunsa da, beraberinde baz\u0131 sorumluluklar\u0131 da getirir. Sunucunun g\u00fcvenli\u011fini sa\u011flamak tamamen sizin g\u00f6revinizdir. \u0130\u015fletim sistemini ve VPN yaz\u0131l\u0131m\u0131n\u0131 d\u00fczenli olarak g\u00fcncellemek, olas\u0131 g\u00fcvenlik a\u00e7\u0131klar\u0131na kar\u015f\u0131 proaktif olmak zorundas\u0131n\u0131z. Yanl\u0131\u015f yap\u0131land\u0131r\u0131lm\u0131\u015f bir <a href=\"https:\/\/www.ihs.com.tr\/blog\/firewall-nedir-ne-ise-yarar\/\" target=\"_blank\">g\u00fcvenlik duvar\u0131 (firewall)<\/a>, sunucunuzu sald\u0131r\u0131lara a\u00e7\u0131k hale getirebilir. Ayr\u0131ca, sunucunuzun bulundu\u011fu \u00fclkenin yasal d\u00fczenlemelerine uymak ve sunucu \u00fczerinden yasa d\u0131\u015f\u0131 faaliyetler yap\u0131lmamas\u0131n\u0131 sa\u011flamak da sizin sorumlulu\u011funuzdad\u0131r.<\/p>\n<h2><span class=\"ez-toc-section\" id=\"Kurulum-Oncesi-Hazirlik-ve-Gereksinimler\"><\/span>Kurulum \u00d6ncesi Haz\u0131rl\u0131k ve Gereksinimler<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>VPN sunucunuzu kurmaya ba\u015flamadan \u00f6nce do\u011fru donan\u0131m ve yaz\u0131l\u0131m temelini olu\u015fturman\u0131z gerekir. Bu a\u015fama, sunucunuzun performans\u0131, g\u00fcvenli\u011fi ve stabilitesi i\u00e7in kritik \u00f6neme sahiptir. Sunucu se\u00e7iminden i\u015fletim sistemi yap\u0131land\u0131rmas\u0131na kadar atman\u0131z gereken ad\u0131mlar\u0131 inceleyelim.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Sunucu-Secimi-Sanal-Sunucu-VPSVDS-vs-Fiziksel-Sunucu\"><\/span>Sunucu Se\u00e7imi: Sanal Sunucu (VPS\/VDS) vs. Fiziksel Sunucu<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>VPN sunucusu kurmak i\u00e7in iki ana se\u00e7ene\u011finiz vard\u0131r: fiziksel bir sunucu veya sanal bir sunucu. Fiziksel bir <a href=\"https:\/\/www.ihs.com.tr\/sunucu-kiralama\/\" target=\"_blank\">sunucu<\/a>, evinizde veya bir veri merkezinde bar\u0131nd\u0131rd\u0131\u011f\u0131n\u0131z size ait donan\u0131md\u0131r. Ancak y\u00fcksek ba\u015flang\u0131\u00e7 maliyeti, bak\u0131m zorlu\u011fu, elektrik ve internet ihtiyac\u0131 gibi nedenlerle \u00e7o\u011fu ki\u015fisel kullan\u0131m senaryosu i\u00e7in pratik de\u011fildir. Bu noktada sanal sunucular devreye girer. Bir Sanal \u00d6zel Sunucu (VPS) veya Sanal Atanm\u0131\u015f Sunucu (VDS), bir servis sa\u011flay\u0131c\u0131 taraf\u0131ndan y\u00f6netilen g\u00fc\u00e7l\u00fc bir fiziksel sunucunun kaynaklar\u0131n\u0131n sanalla\u015ft\u0131rma teknolojisi ile b\u00f6l\u00fcnmesiyle olu\u015fturulur. Kendi VPN&#8217;inizi kurmak i\u00e7in en ideal, esnek ve maliyet etkin \u00e7\u00f6z\u00fcm bir <a href=\"https:\/\/www.ihs.com.tr\/sunucu-kiralama\/vds-sunucu.html\" target=\"_blank\">VDS<\/a> kiralamakt\u0131r.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Gerekli-Minimum-Sunucu-Ozellikleri-CPU-RAM-Bant-Genisligi\"><\/span>Gerekli Minimum Sunucu \u00d6zellikleri (CPU, RAM, Bant Geni\u015fli\u011fi)<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>VPN sunucular\u0131, san\u0131ld\u0131\u011f\u0131 kadar y\u00fcksek kaynaklara ihtiya\u00e7 duymaz. \u00d6zellikle WireGuard gibi modern protokoller olduk\u00e7a verimlidir. Ba\u015flang\u0131\u00e7 i\u00e7in a\u015fa\u011f\u0131daki \u00f6zellikler fazlas\u0131yla yeterli olacakt\u0131r:<\/p>\n<ul>\n<li><strong>CPU:<\/strong> 1 \u00e7ekirdek (Core)<\/li>\n<li><strong>RAM:<\/strong> 512 MB veya 1 GB (Birden fazla kullan\u0131c\u0131 ve ek servisler i\u00e7in 1 GB \u00f6nerilir)<\/li>\n<li><strong>Depolama:<\/strong> 10-20 GB SSD (SSD, genel sistem performans\u0131n\u0131 art\u0131r\u0131r)<\/li>\n<li><strong>Bant Geni\u015fli\u011fi (Trafik):<\/strong> Kullan\u0131m\u0131n\u0131za ba\u011fl\u0131d\u0131r. Video ak\u0131\u015f\u0131 gibi yo\u011fun kullan\u0131m planl\u0131yorsan\u0131z, ayl\u0131k en az 1 TB trafik sunan bir paket se\u00e7mek mant\u0131kl\u0131d\u0131r. Ba\u011flant\u0131 h\u0131z\u0131 da \u00f6nemlidir; en az 100 Mbps, ideal olarak 1 Gbps port h\u0131z\u0131 aray\u0131n.<\/li>\n<\/ul>\n<h3><span class=\"ez-toc-section\" id=\"Isletim-Sistemi-Secimi-Ubuntu-Debian-CentOS-Onerileri\"><\/span>\u0130\u015fletim Sistemi Se\u00e7imi (Ubuntu, Debian, CentOS \u00d6nerileri)<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>VPN sunucusu kurulumu i\u00e7in en pop\u00fcler ve stabil platform Linux&#8217;tur. Geni\u015f topluluk deste\u011fi, zengin dok\u00fcmantasyonu ve g\u00fcvenlik odakl\u0131 yap\u0131s\u0131yla \u00f6ne \u00e7\u0131kar. Yeni ba\u015flayanlar i\u00e7in en iyi se\u00e7enekler \u015funlard\u0131r:<\/p>\n<ul>\n<li><strong>Ubuntu Server:<\/strong> En pop\u00fcler se\u00e7eneklerden biridir. Geni\u015f bir kullan\u0131c\u0131 taban\u0131na ve devasa bir dok\u00fcmantasyon havuzuna sahiptir. Sorun ya\u015fad\u0131\u011f\u0131n\u0131zda \u00e7\u00f6z\u00fcm bulman\u0131z \u00e7ok kolayd\u0131r.<\/li>\n<li><strong>Debian:<\/strong> Stabilitesi ve g\u00fcvenilirli\u011fi ile tan\u0131n\u0131r. Ubuntu&#8217;nun temel ald\u0131\u011f\u0131 da\u011f\u0131t\u0131md\u0131r. &#8220;Kur ve unut&#8221; tarz\u0131 bir sistem arayanlar i\u00e7in m\u00fckemmeldir.<\/li>\n<li><strong>CentOS Stream:<\/strong> Red Hat Enterprise Linux (RHEL) tabanl\u0131d\u0131r ve kurumsal d\u00fcnyada yayg\u0131n olarak kullan\u0131l\u0131r. Farkl\u0131 bir paket y\u00f6neticisi (YUM\/DNF) kullan\u0131r ancak son derece stabildir.<\/li>\n<\/ul>\n<p>Bu rehberdeki kurulum ad\u0131mlar\u0131 Ubuntu ve Debian odakl\u0131 olacakt\u0131r, \u00e7\u00fcnk\u00fc bu da\u011f\u0131t\u0131mlar ba\u015flang\u0131\u00e7 seviyesi kullan\u0131c\u0131lar i\u00e7in daha yayg\u0131nd\u0131r.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"SSH-ile-Sunucuya-Guvenli-Baglanti-Kurma\"><\/span>SSH ile Sunucuya G\u00fcvenli Ba\u011flant\u0131 Kurma<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Sunucunuzu kiralad\u0131ktan sonra onu y\u00f6netmek i\u00e7in komut sat\u0131r\u0131na eri\u015fmeniz gerekir. Bunu yapman\u0131n en g\u00fcvenli yolu <a href=\"https:\/\/www.ihs.com.tr\/blog\/ssh-nedir\/\" target=\"_blank\">SSH<\/a> (Secure Shell) protokol\u00fcn\u00fc kullanmakt\u0131r. SSH, bilgisayar\u0131n\u0131z ile sunucunuz aras\u0131nda \u015fifrelenmi\u015f bir ba\u011flant\u0131 kurarak t\u00fcm komutlar\u0131n\u0131z\u0131n ve verilerinizin g\u00fcvenli bir \u015fekilde iletilmesini sa\u011flar. Windows kullan\u0131c\u0131lar\u0131 PuTTY veya Windows Terminal gibi ara\u00e7lar\u0131, macOS ve Linux kullan\u0131c\u0131lar\u0131 ise do\u011frudan kendi terminal uygulamalar\u0131n\u0131 kullanarak sunucular\u0131na SSH ile ba\u011flanabilirler.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Sunucunun-Ilk-Yapilandirmasi-ve-Guvenlik-Adimlari\"><\/span>Sunucunun \u0130lk Yap\u0131land\u0131rmas\u0131 ve G\u00fcvenlik Ad\u0131mlar\u0131<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>VPN kurulumuna ge\u00e7meden \u00f6nce sunucunuzun temel yap\u0131land\u0131rmas\u0131n\u0131 ve g\u00fcvenli\u011fini sa\u011flaman\u0131z hayati \u00f6nem ta\u015f\u0131r. Bu ad\u0131mlar, sunucunuzu olas\u0131 tehditlere kar\u015f\u0131 koruman\u0131n temelini olu\u015fturur.<\/p>\n<ul>\n<li><strong>Paketleri G\u00fcncelleme:<\/strong> Sunucuya ilk ba\u011fland\u0131\u011f\u0131n\u0131zda yapman\u0131z gereken ilk \u015fey, t\u00fcm y\u00fckl\u00fc paketleri en son s\u00fcr\u00fcmlerine g\u00fcncellemektir. Bu, bilinen g\u00fcvenlik a\u00e7\u0131klar\u0131n\u0131 kapat\u0131r. `sudo apt update &#038;&#038; sudo apt upgrade -y` komutu bu i\u015fi yapar.<\/li>\n<li><strong>Yeni Bir Kullan\u0131c\u0131 Olu\u015fturma:<\/strong> G\u00fcvenlik nedeniyle sunucuyu s\u00fcrekli olarak `root` (ana y\u00f6netici) kullan\u0131c\u0131s\u0131yla y\u00f6netmekten ka\u00e7\u0131n\u0131n. Kendi ad\u0131n\u0131za `sudo` yetkilerine sahip yeni bir kullan\u0131c\u0131 olu\u015fturun.<\/li>\n<li><strong>SSH G\u00fcvenli\u011fini Art\u0131rma:<\/strong> Varsay\u0131lan SSH portu olan 22&#8217;yi de\u011fi\u015ftirmek ve root kullan\u0131c\u0131s\u0131n\u0131n SSH ile giri\u015fini engellemek, otomatik sald\u0131r\u0131 denemelerini b\u00fcy\u00fck \u00f6l\u00e7\u00fcde azalt\u0131r.<\/li>\n<li><strong>Temel G\u00fcvenlik Duvar\u0131 Kurulumu:<\/strong> UFW (Uncomplicated Firewall) gibi bir ara\u00e7la, sadece ihtiyac\u0131n\u0131z olan portlara (SSH, VPN portlar\u0131) izin verip di\u011fer t\u00fcm gelen ba\u011flant\u0131lar\u0131 engelleyerek sunucunuzun g\u00fcvenli\u011fini \u00f6nemli \u00f6l\u00e7\u00fcde art\u0131rabilirsiniz. <a href=\"https:\/\/www.ihs.com.tr\/blog\/firewall-guvenlik-duvari-kurulumu-ve-yapilandirmasi-iptables-ve-ufw-rehberi\/\" target=\"_blank\">Firewall kurulumu<\/a> bu s\u00fcrecin en kritik ad\u0131mlar\u0131ndan biridir.<\/li>\n<\/ul>\n<h2><span class=\"ez-toc-section\" id=\"VPN-Protokolu-Secimi-OpenVPN-vs-WireGuard\"><\/span>VPN Protokol\u00fc Se\u00e7imi: OpenVPN vs. WireGuard<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>VPN sunucunuzu kurarken vermeniz gereken en \u00f6nemli kararlardan biri, hangi VPN protokol\u00fcn\u00fc kullanaca\u011f\u0131n\u0131zd\u0131r. Piyasada bir\u00e7ok protokol bulunsa da, modern, g\u00fcvenli ve a\u00e7\u0131k kaynakl\u0131 iki se\u00e7enek \u00f6ne \u00e7\u0131k\u0131yor: OpenVPN ve WireGuard. Her ikisi de m\u00fckemmel se\u00e7eneklerdir ancak farkl\u0131 g\u00fc\u00e7l\u00fc ve zay\u0131f y\u00f6nlere sahiptirler. \u0130htiya\u00e7lar\u0131n\u0131za en uygun olan\u0131 se\u00e7mek i\u00e7in bu iki protokol\u00fc kar\u015f\u0131la\u015ft\u0131ral\u0131m.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"OpenVPN-Genel-Bakis-Artilari-ve-Eksileri\"><\/span>OpenVPN: Genel Bak\u0131\u015f, Art\u0131lar\u0131 ve Eksileri<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>OpenVPN, uzun y\u0131llard\u0131r end\u00fcstri standard\u0131 olarak kabul edilen, son derece g\u00fcvenilir ve esnek bir VPN protokol\u00fcd\u00fcr. A\u00e7\u0131k kaynak kodlu olmas\u0131, g\u00fcvenlik uzmanlar\u0131 taraf\u0131ndan s\u00fcrekli denetlenmesine olanak tan\u0131r. G\u00fcvenlik i\u00e7in OpenSSL k\u00fct\u00fcphanesini kullan\u0131r ve AES-256 gibi g\u00fc\u00e7l\u00fc \u015fifreleme algoritmalar\u0131n\u0131 destekler. TCP veya UDP protokolleri \u00fczerinden \u00e7al\u0131\u015fabilmesi, onu farkl\u0131 a\u011f ko\u015fullar\u0131na uyumlu hale getirir.<\/p>\n<ul>\n<li><strong>Art\u0131lar\u0131:<\/strong> Son derece g\u00fcvenli ve test edilmi\u015f, yap\u0131land\u0131r\u0131labilirli\u011fi y\u00fcksek, g\u00fcvenlik duvarlar\u0131n\u0131 ve k\u0131s\u0131tlay\u0131c\u0131 a\u011flar\u0131 a\u015fmada ba\u015far\u0131l\u0131 (TCP port 443 \u00fczerinden \u00e7al\u0131\u015ft\u0131r\u0131labilir), geni\u015f platform deste\u011fi.<\/li>\n<li><strong>Eksileri:<\/strong> Kurulumu ve yap\u0131land\u0131rmas\u0131 WireGuard&#8217;a g\u00f6re daha karma\u015f\u0131k, kod taban\u0131 daha b\u00fcy\u00fck, performans\u0131 WireGuard&#8217;dan daha yava\u015f, mobil cihazlarda pil t\u00fcketimi daha y\u00fcksek.<\/li>\n<\/ul>\n<h3><span class=\"ez-toc-section\" id=\"WireGuard-Genel-Bakis-Artilari-ve-Eksileri\"><\/span>WireGuard: Genel Bak\u0131\u015f, Art\u0131lar\u0131 ve Eksileri<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>WireGuard, modern, basit ve h\u0131zl\u0131 olmas\u0131 amac\u0131yla tasarlanm\u0131\u015f yeni nesil bir VPN protokol\u00fcd\u00fcr. OpenVPN&#8217;e k\u0131yasla \u00e7ok daha k\u00fc\u00e7\u00fck bir kod taban\u0131na (yakla\u015f\u0131k 4.000 sat\u0131r) sahiptir, bu da onu denetlemeyi kolayla\u015ft\u0131r\u0131r ve potansiyel g\u00fcvenlik a\u00e7\u0131\u011f\u0131 y\u00fczeyini azalt\u0131r. En son kriptografi tekniklerini kullan\u0131r ve performans\u0131 ile \u00f6ne \u00e7\u0131kar. 2020&#8217;den itibaren Linux \u00e7ekirde\u011fine dahil edilmesi, pop\u00fclaritesini ve benimsenmesini h\u0131zland\u0131rm\u0131\u015ft\u0131r.<\/p>\n<ul>\n<li><strong>Art\u0131lar\u0131:<\/strong> \u0130nan\u0131lmaz derecede h\u0131zl\u0131 performans ve d\u00fc\u015f\u00fck gecikme s\u00fcresi, basit kurulum ve y\u00f6netim, k\u00fc\u00e7\u00fck ve denetlenebilir kod taban\u0131, modern ve g\u00fc\u00e7l\u00fc kriptografi, mobil cihazlar i\u00e7in m\u00fckemmel pil verimlili\u011fi.<\/li>\n<li><strong>Eksileri:<\/strong> Hen\u00fcz OpenVPN kadar uzun s\u00fcredir test edilmedi (ancak olduk\u00e7a olgunla\u015fm\u0131\u015f durumda), OpenVPN kadar esnek yap\u0131land\u0131rma se\u00e7enekleri sunmuyor, varsay\u0131lan olarak sadece UDP \u00fczerinde \u00e7al\u0131\u015f\u0131yor.<\/li>\n<\/ul>\n<h3><span class=\"ez-toc-section\" id=\"Performans-Guvenlik-ve-Kurulum-Kolayligi-Acisindan-Karsilastirma\"><\/span>Performans, G\u00fcvenlik ve Kurulum Kolayl\u0131\u011f\u0131 A\u00e7\u0131s\u0131ndan Kar\u015f\u0131la\u015ft\u0131rma<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>\u0130htiya\u00e7lar\u0131n\u0131za en uygun protokol\u00fc se\u00e7menize yard\u0131mc\u0131 olmak i\u00e7in bu \u00fc\u00e7 kritik alan\u0131 bir tabloyla kar\u015f\u0131la\u015ft\u0131ral\u0131m.<\/p>\n<div class=\"karsilastirma\">\n<table>\n<thead>\n<tr>\n<th>Kriter<\/th>\n<th>OpenVPN<\/th>\n<th>WireGuard<\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td><strong>Performans<\/strong><\/td>\n<td>G\u00fcvenilir ancak daha yava\u015f. \u00d6zellikle y\u00fcksek h\u0131zl\u0131 ba\u011flant\u0131larda bant geni\u015fli\u011fi kayb\u0131 daha belirgin olabilir.<\/td>\n<td>\u00c7ok y\u00fcksek h\u0131z ve d\u00fc\u015f\u00fck gecikme. OpenVPN&#8217;den g\u00f6zle g\u00f6r\u00fcl\u00fcr derecede daha h\u0131zl\u0131d\u0131r ve i\u015flemciyi daha az yorar.<\/td>\n<\/tr>\n<tr>\n<td><strong>G\u00fcvenlik<\/strong><\/td>\n<td>Y\u0131llard\u0131r kan\u0131tlanm\u0131\u015f, son derece g\u00fcvenli. End\u00fcstri standard\u0131 \u015fifreleme algoritmalar\u0131 kullan\u0131r. G\u00fcvenilirli\u011fi \u00e7ok y\u00fcksektir.<\/td>\n<td>Modern ve g\u00fc\u00e7l\u00fc kriptografi kullan\u0131r. K\u00fc\u00e7\u00fck kod taban\u0131 sayesinde denetlenmesi daha kolay ve sald\u0131r\u0131 y\u00fczeyi daha azd\u0131r. \u00c7ok g\u00fcvenli kabul edilir.<\/td>\n<\/tr>\n<tr>\n<td><strong>Kurulum Kolayl\u0131\u011f\u0131<\/strong><\/td>\n<td>Daha karma\u015f\u0131k. Sertifika otoritesi (CA) olu\u015fturma, anahtar ve sertifika y\u00f6netimi gibi ek ad\u0131mlar gerektirir.<\/td>\n<td>\u00c7ok daha basit. SSH anahtarlar\u0131na benzer bir \u00f6zel\/genel anahtar \u00e7ifti sistemi kullan\u0131r. Yap\u0131land\u0131rma dosyalar\u0131 daha anla\u015f\u0131l\u0131rd\u0131r.<\/td>\n<\/tr>\n<tr>\n<td><strong>Mobil Kullan\u0131m<\/strong><\/td>\n<td>\u0130yi \u00e7al\u0131\u015f\u0131r ancak mobil cihazlarda daha fazla pil t\u00fcketme e\u011filimindedir. Ba\u011flant\u0131 ge\u00e7i\u015flerinde (Wi-Fi&#8217;den mobile) yava\u015f kalabilir.<\/td>\n<td>Mobil cihazlar i\u00e7in optimize edilmi\u015ftir. D\u00fc\u015f\u00fck pil t\u00fcketimi ve a\u011flar aras\u0131 h\u0131zl\u0131 ge\u00e7i\u015f (roaming) \u00f6zelli\u011fiyle \u00f6ne \u00e7\u0131kar.<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div>\n<h3><span class=\"ez-toc-section\" id=\"Ihtiyaclariniza-Gore-Hangi-Protokolu-Secmelisiniz\"><\/span>\u0130htiya\u00e7lar\u0131n\u0131za G\u00f6re Hangi Protokol\u00fc Se\u00e7melisiniz?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Karar\u0131n\u0131z\u0131 verirken \u015fu basit kural\u0131 izleyebilirsiniz: E\u011fer en y\u00fcksek h\u0131z\u0131, en kolay kurulumu ve modern bir teknolojiyi istiyorsan\u0131z, <b>WireGuard<\/b> sizin i\u00e7in en iyi se\u00e7imdir. \u00d6zellikle mobil cihazlarda veya oyun gibi d\u00fc\u015f\u00fck gecikme gerektiren durumlarda performans\u0131 rakipsizdir. E\u011fer en y\u00fcksek d\u00fczeyde esneklik, belirli a\u011f k\u0131s\u0131tlamalar\u0131n\u0131 a\u015fma (\u00f6rne\u011fin, sadece HTTPS trafi\u011fine izin veren bir a\u011fda VPN kullanma) ve y\u0131llard\u0131r kendini kan\u0131tlam\u0131\u015f bir teknolojiye g\u00fcvenme ihtiyac\u0131n\u0131z varsa, <b>OpenVPN<\/b> hala \u00e7ok g\u00fc\u00e7l\u00fc ve g\u00fcvenilir bir alternatiftir. Yeni ba\u015flayanlar i\u00e7in WireGuard&#8217;\u0131n basitli\u011fi genellikle daha \u00e7ekicidir.<\/p>\n<h2><span class=\"ez-toc-section\" id=\"Adim-Adim-OpenVPN-Sunucu-Kurulumu-UbuntuDebian\"><\/span>Ad\u0131m Ad\u0131m OpenVPN Sunucu Kurulumu (Ubuntu\/Debian)<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>OpenVPN, g\u00fcvenilirli\u011fi ve esnekli\u011fi ile bilinen pop\u00fcler bir VPN \u00e7\u00f6z\u00fcm\u00fcd\u00fcr. Kurulumu WireGuard&#8217;a g\u00f6re biraz daha fazla ad\u0131m i\u00e7erse de, bu rehberle s\u00fcreci kolayca tamamlayabilirsiniz. Bu ad\u0131mlar, Ubuntu veya Debian tabanl\u0131 bir sunucu i\u00e7in tasarlanm\u0131\u015ft\u0131r.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Sunucu-Paketlerini-Guncelleme-ve-Gerekli-Bagimliliklari-Yukleme\"><\/span>Sunucu Paketlerini G\u00fcncelleme ve Gerekli Ba\u011f\u0131ml\u0131l\u0131klar\u0131 Y\u00fckleme<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Kuruluma ba\u015flamadan \u00f6nce sunucunuzdaki paket listesini ve mevcut paketleri g\u00fcncelleyelim. Ard\u0131ndan OpenVPN ve sertifika y\u00f6netimi i\u00e7in gerekli olan `easy-rsa` paketini y\u00fckleyelim.<\/p>\n<p>Terminalinize ba\u011flan\u0131n ve \u015fu komutlar\u0131 \u00e7al\u0131\u015ft\u0131r\u0131n:<br \/>\n<strong>sudo apt update &#038;&#038; sudo apt upgrade -y<\/strong><br \/>\n<strong>sudo apt install openvpn easy-rsa -y<\/strong><\/p>\n<h3><span class=\"ez-toc-section\" id=\"Easy-RSA-ile-Sertifika-Otoritesi-CA-Olusturma\"><\/span>Easy-RSA ile Sertifika Otoritesi (CA) Olu\u015fturma<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>OpenVPN, sunucu ve istemciler aras\u0131nda g\u00fcvenli bir ba\u011flant\u0131 kurmak i\u00e7in sertifikalar\u0131 kullan\u0131r. `easy-rsa` arac\u0131, bu sertifikalar\u0131 olu\u015fturmam\u0131z\u0131 ve y\u00f6netmemizi sa\u011flar. \u00d6nce gerekli dizin yap\u0131s\u0131n\u0131 olu\u015ftural\u0131m.<\/p>\n<p><strong>make-cadir ~\/openvpn-ca<\/strong><br \/>\n<strong>cd ~\/openvpn-ca<\/strong><\/p>\n<p>\u015eimdi, `vars` dosyas\u0131n\u0131 d\u00fczenleyerek sertifika bilgilerini kendi iste\u011finize g\u00f6re doldurun. Bu ad\u0131m\u0131 atlayabilirsiniz ancak kurumsal bir yap\u0131 i\u00e7in doldurmak faydal\u0131d\u0131r. Ard\u0131ndan Sertifika Otoritesini (CA) olu\u015ftural\u0131m.<\/p>\n<p><strong>.\/easyrsa init-pki<\/strong><br \/>\n<strong>.\/easyrsa build-ca nopass<\/strong><\/p>\n<h3><span class=\"ez-toc-section\" id=\"Sunucu-Sertifikasi-ve-Anahtarini-Olusturma\"><\/span>Sunucu Sertifikas\u0131 ve Anahtar\u0131n\u0131 Olu\u015fturma<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Sertifika Otoritemiz (CA) haz\u0131r oldu\u011funa g\u00f6re, \u015fimdi VPN sunucumuz i\u00e7in bir sertifika ve \u00f6zel anahtar olu\u015fturabiliriz. `server` ad\u0131n\u0131 kullanaca\u011f\u0131z. `nopass` parametresi, \u00f6zel anahtar\u0131n parolas\u0131z olmas\u0131n\u0131 sa\u011flar, b\u00f6ylece servis yeniden ba\u015flad\u0131\u011f\u0131nda parola girmeniz gerekmez.<\/p>\n<p><strong>.\/easyrsa build-server-full server nopass<\/strong><\/p>\n<h3><span class=\"ez-toc-section\" id=\"Diffie-Hellman-Parametrelerini-Olusturma\"><\/span>Diffie-Hellman Parametrelerini Olu\u015fturma<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Diffie-Hellman algoritmas\u0131, anahtar de\u011fi\u015fimi s\u00fcrecinin g\u00fcvenli\u011fini sa\u011flamak i\u00e7in kullan\u0131l\u0131r. Bu parametrelerin olu\u015fturulmas\u0131, sunucunuzun i\u015flemci g\u00fcc\u00fcne ba\u011fl\u0131 olarak birka\u00e7 dakika s\u00fcrebilir.<\/p>\n<p><strong>.\/easyrsa gen-dh<\/strong><\/p>\n<h3><span class=\"ez-toc-section\" id=\"OpenVPN-Sunucu-Yapilandirma-Dosyasini-serverconf-Hazirlama\"><\/span>OpenVPN Sunucu Yap\u0131land\u0131rma Dosyas\u0131n\u0131 (server.conf) Haz\u0131rlama<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>\u015eimdi OpenVPN&#8217;in nas\u0131l \u00e7al\u0131\u015faca\u011f\u0131n\u0131 belirleyen yap\u0131land\u0131rma dosyas\u0131n\u0131 olu\u015fturaca\u011f\u0131z. \u00d6rnek bir yap\u0131land\u0131rma dosyas\u0131n\u0131 kopyalay\u0131p d\u00fczenlemek en kolay yoldur. Olu\u015fturdu\u011fumuz sertifikalar\u0131 ve anahtarlar\u0131 `\/etc\/openvpn\/` dizinine kopyalayal\u0131m.<\/p>\n<p><strong>sudo cp pki\/ca.crt \/etc\/openvpn\/<\/strong><br \/>\n<strong>sudo cp pki\/issued\/server.crt \/etc\/openvpn\/<\/strong><br \/>\n<strong>sudo cp pki\/private\/server.key \/etc\/openvpn\/<\/strong><br \/>\n<strong>sudo cp pki\/dh.pem \/etc\/openvpn\/<\/strong><\/p>\n<p>Ard\u0131ndan, `server.conf` dosyas\u0131n\u0131 olu\u015fturup i\u00e7ine temel yap\u0131land\u0131rmay\u0131 ekleyin. Bu dosyada port (1194), protokol (UDP), sanal IP aral\u0131\u011f\u0131, ve sertifika yollar\u0131 gibi ayarlar bulunur. \u0130nternette g\u00fcvenilir kaynaklardan bulabilece\u011finiz \u00f6rnek bir `server.conf` i\u00e7eri\u011fini kullanabilirsiniz.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Ag-ve-Guvenlik-Duvari-FirewallUFW-Ayarlari\"><\/span>A\u011f ve G\u00fcvenlik Duvar\u0131 (Firewall\/UFW) Ayarlar\u0131<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>VPN istemcilerinin sunucu \u00fczerinden internete \u00e7\u0131kabilmesi i\u00e7in IP y\u00f6nlendirmeyi (IP forwarding) etkinle\u015ftirmemiz gerekir. `sudo nano \/etc\/sysctl.conf` komutuyla dosyay\u0131 a\u00e7\u0131n ve `net.ipv4.ip_forward=1` sat\u0131r\u0131ndaki yorum i\u015faretini (`#`) kald\u0131r\u0131n. Ayar\u0131 uygulamak i\u00e7in `sudo sysctl -p` komutunu \u00e7al\u0131\u015ft\u0131r\u0131n. Ayr\u0131ca, UFW g\u00fcvenlik duvar\u0131nda OpenVPN portuna (varsay\u0131lan olarak 1194\/UDP) ve SSH&#8217;a izin vermelisiniz.<\/p>\n<p><strong>sudo ufw allow 1194\/udp<\/strong><br \/>\n<strong>sudo ufw allow OpenSSH<\/strong><br \/>\n<strong>sudo ufw enable<\/strong><\/p>\n<h3><span class=\"ez-toc-section\" id=\"OpenVPN-Servisini-Baslatma-ve-Test-Etme\"><\/span>OpenVPN Servisini Ba\u015flatma ve Test Etme<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>T\u00fcm yap\u0131land\u0131rmalar tamamland\u0131ktan sonra OpenVPN servisini ba\u015flatabilir ve sunucu her yeniden ba\u015flad\u0131\u011f\u0131nda otomatik olarak \u00e7al\u0131\u015facak \u015fekilde ayarlayabilirsiniz.<\/p>\n<p><strong>sudo systemctl start openvpn@server<\/strong><br \/>\n<strong>sudo systemctl enable openvpn@server<\/strong><br \/>\n<strong>sudo systemctl status openvpn@server<\/strong> komutuyla servisin durumunu kontrol edebilirsiniz.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Istemci-Client-icin-Yapilandirma-Dosyasi-Olusturma\"><\/span>\u0130stemci (Client) i\u00e7in Yap\u0131land\u0131rma Dosyas\u0131 Olu\u015fturma<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Sunucu \u00e7al\u0131\u015ft\u0131\u011f\u0131na g\u00f6re, art\u0131k istemcilerin (bilgisayar, telefon vb.) ba\u011flanmas\u0131 i\u00e7in yap\u0131land\u0131rma dosyalar\u0131 olu\u015fturmal\u0131y\u0131z. Her istemci i\u00e7in ayr\u0131 bir sertifika ve anahtar olu\u015fturmak en g\u00fcvenli y\u00f6ntemdir.<\/p>\n<p><strong>cd ~\/openvpn-ca<\/strong><br \/>\n<strong>.\/easyrsa build-client-full istemci1 nopass<\/strong> (istemci1 yerine istedi\u011finiz bir ismi verin)<\/p>\n<p>Son olarak, istemcinin kullanaca\u011f\u0131 `.ovpn` uzant\u0131l\u0131 bir yap\u0131land\u0131rma dosyas\u0131 olu\u015fturun. Bu dosya, sunucu IP adresini, portu ve istemci sertifikalar\u0131n\u0131\/anahtarlar\u0131n\u0131 i\u00e7ermelidir. G\u00fcvenlik i\u00e7in sertifika ve anahtar i\u00e7eriklerini do\u011frudan `.ovpn` dosyas\u0131na g\u00f6mmek yayg\u0131n bir pratiktir.<\/p>\n<h2><span class=\"ez-toc-section\" id=\"Adim-Adim-WireGuard-Sunucu-Kurulumu-UbuntuDebian\"><\/span>Ad\u0131m Ad\u0131m WireGuard Sunucu Kurulumu (Ubuntu\/Debian)<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>WireGuard, modern, h\u0131zl\u0131 ve basit yap\u0131s\u0131yla \u00f6ne \u00e7\u0131kar. Kurulumu, OpenVPN&#8217;e k\u0131yasla olduk\u00e7a basittir ve daha az ad\u0131m gerektirir. Bu ad\u0131mlar Ubuntu ve Debian sistemler i\u00e7in ge\u00e7erlidir.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Sunucu-Paketlerini-Guncelleme-ve-WireGuard-Kurulumu\"><\/span>Sunucu Paketlerini G\u00fcncelleme ve WireGuard Kurulumu<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Her zaman oldu\u011fu gibi, i\u015fe sunucu paketlerini g\u00fcncelleyerek ba\u015fl\u0131yoruz. Ard\u0131ndan WireGuard paketini ve QR kod olu\u015fturmak i\u00e7in kullanaca\u011f\u0131m\u0131z bir arac\u0131 y\u00fckl\u00fcyoruz.<\/p>\n<p><strong>sudo apt update &#038;&#038; sudo apt upgrade -y<\/strong><br \/>\n<strong>sudo apt install wireguard qrencode -y<\/strong><\/p>\n<h3><span class=\"ez-toc-section\" id=\"Sunucu-icin-Ozel-ve-Genel-Anahtar-PrivatePublic-Key-Olusturma\"><\/span>Sunucu i\u00e7in \u00d6zel ve Genel Anahtar (Private\/Public Key) Olu\u015fturma<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>WireGuard, g\u00fcvenli\u011fi sa\u011flamak i\u00e7in bir \u00e7ift anahtar kullan\u0131r: biri \u00f6zel (private), di\u011feri genel (public). SSH anahtarlar\u0131na benzer bir mant\u0131kla \u00e7al\u0131\u015f\u0131r. \u015eimdi sunucumuz i\u00e7in bu anahtarlar\u0131 olu\u015ftural\u0131m.<\/p>\n<p><strong>wg genkey | sudo tee \/etc\/wireguard\/private.key<\/strong><br \/>\n<strong>sudo chmod go= \/etc\/wireguard\/private.key<\/strong><br \/>\n<strong>sudo cat \/etc\/wireguard\/private.key | wg pubkey | sudo tee \/etc\/wireguard\/public.key<\/strong><\/p>\n<p>`private.key` dosyas\u0131n\u0131 asla kimseyle payla\u015fmay\u0131n. `public.key` ise istemcileri yap\u0131land\u0131r\u0131rken kullan\u0131lacakt\u0131r.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"WireGuard-Sunucu-Yapilandirma-Dosyasini-wg0conf-Hazirlama\"><\/span>WireGuard Sunucu Yap\u0131land\u0131rma Dosyas\u0131n\u0131 (wg0.conf) Haz\u0131rlama<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>WireGuard&#8217;\u0131n t\u00fcm yap\u0131land\u0131rmas\u0131 `\/etc\/wireguard\/` dizinindeki tek bir dosyada tutulur. `wg0.conf` ad\u0131nda yeni bir dosya olu\u015ftural\u0131m. Bu dosya sunucunun IP adresini, dinleyece\u011fi portu ve \u00f6zel anahtar\u0131n\u0131 i\u00e7erecektir.<\/p>\n<p>\u00d6rnek bir `wg0.conf` i\u00e7eri\u011fi:<br \/>\n`[Interface]`<br \/>\n`Address = 10.0.0.1\/24`<br \/>\n`SaveConfig = true`<br \/>\n`ListenPort = 51820`<br \/>\n`PrivateKey = [Buraya \/etc\/wireguard\/private.key dosyas\u0131n\u0131n i\u00e7eri\u011fi gelecek]`<br \/>\n`PostUp = iptables -A FORWARD -i %i -j ACCEPT; iptables -t nat -A POSTROUTING -o eth0 -j MASQUERADE`<br \/>\n`PostDown = iptables -D FORWARD -i %i -j ACCEPT; iptables -t nat -D POSTROUTING -o eth0 -j MASQUERADE`<\/p>\n<p><b>\u00d6nemli:<\/b> `PrivateKey` k\u0131sm\u0131n\u0131 kendi \u00f6zel anahtar\u0131n\u0131zla ve `eth0` k\u0131sm\u0131n\u0131 sunucunuzun ana a\u011f aray\u00fcz\u00fc ad\u0131yla (\u00f6rn: ens3) de\u011fi\u015ftirmeyi unutmay\u0131n.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Agda-IP-Yonlendirme-IP-Forwarding-Ayarlarini-Etkinlestirme\"><\/span>A\u011fda IP Y\u00f6nlendirme (IP Forwarding) Ayarlar\u0131n\u0131 Etkinle\u015ftirme<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>T\u0131pk\u0131 OpenVPN&#8217;de oldu\u011fu gibi, WireGuard istemcilerinin de sunucu \u00fczerinden internete \u00e7\u0131kabilmesi i\u00e7in IP y\u00f6nlendirmeyi etkinle\u015ftirmemiz gerekir. `sudo nano \/etc\/sysctl.conf` dosyas\u0131n\u0131 a\u00e7\u0131n ve `net.ipv4.ip_forward=1` sat\u0131r\u0131n\u0131n ba\u015f\u0131ndaki yorum i\u015faretini kald\u0131r\u0131n. Ard\u0131ndan `sudo sysctl -p` komutuyla ayar\u0131 hemen uygulay\u0131n.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Guvenlik-Duvari-FirewallUFW-Kurallarini-Yapilandirma\"><\/span>G\u00fcvenlik Duvar\u0131 (Firewall\/UFW) Kurallar\u0131n\u0131 Yap\u0131land\u0131rma<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>UFW g\u00fcvenlik duvar\u0131nda, WireGuard&#8217;\u0131n dinledi\u011fi porta (\u00f6rne\u011fimizde 51820\/UDP) ve SSH ba\u011flant\u0131lar\u0131na izin vermemiz gerekiyor. Bu, istemcilerin sunucunuza ba\u011flanabilmesini sa\u011flar.<\/p>\n<p><strong>sudo ufw allow 51820\/udp<\/strong><br \/>\n<strong>sudo ufw allow OpenSSH<\/strong><br \/>\n<strong>sudo ufw enable<\/strong><\/p>\n<h3><span class=\"ez-toc-section\" id=\"WireGuard-Servisini-Baslatma-ve-Otomatik-Baslatmayi-Ayarlama\"><\/span>WireGuard Servisini Ba\u015flatma ve Otomatik Ba\u015flatmay\u0131 Ayarlama<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Yap\u0131land\u0131rma tamamland\u0131\u011f\u0131nda, `wg-quick` arac\u0131yla WireGuard aray\u00fcz\u00fcn\u00fc ba\u015flatabiliriz. Ayr\u0131ca, sunucu yeniden ba\u015flad\u0131\u011f\u0131nda servisin otomatik olarak ba\u015flamas\u0131n\u0131 da sa\u011flayal\u0131m.<\/p>\n<p><strong>sudo wg-quick up wg0<\/strong><br \/>\n<strong>sudo systemctl enable wg-quick@wg0<\/strong><br \/>\nServisin durumunu kontrol etmek i\u00e7in `sudo wg` komutunu kullanabilirsiniz.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Istemci-Client-icin-Yapilandirma-Dosyasi-ve-QR-Kod-Olusturma\"><\/span>\u0130stemci (Client) i\u00e7in Yap\u0131land\u0131rma Dosyas\u0131 ve QR Kod Olu\u015fturma<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>WireGuard&#8217;da istemci eklemek \u00e7ok basittir. Her istemci i\u00e7in bir \u00f6zel\/genel anahtar \u00e7ifti olu\u015fturulur. \u0130stemcinin genel anahtar\u0131 ve alaca\u011f\u0131 IP adresi sunucudaki `wg0.conf` dosyas\u0131na eklenir. Sunucunun genel anahtar\u0131 ve adresi ise istemcinin yap\u0131land\u0131rma dosyas\u0131na eklenir.<\/p>\n<p>Mobil cihazlar i\u00e7in yap\u0131land\u0131rma dosyas\u0131n\u0131 elle girmek yerine QR kod kullanmak \u00e7ok pratiktir. `qrencode` paketini kullanarak istemci yap\u0131land\u0131rma dosyas\u0131n\u0131n i\u00e7eri\u011finden bir QR kod olu\u015fturabilir ve bunu mobil WireGuard uygulamas\u0131na okutarak ba\u011flant\u0131y\u0131 saniyeler i\u00e7inde kurabilirsiniz.<\/p>\n<h2><span class=\"ez-toc-section\" id=\"Istemci-Client-Cihazlarin-Yapilandirilmasi\"><\/span>\u0130stemci (Client) Cihazlar\u0131n Yap\u0131land\u0131r\u0131lmas\u0131<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>VPN sunucunuz art\u0131k haz\u0131r ve \u00e7al\u0131\u015f\u0131r durumda. Son ad\u0131m, ki\u015fisel cihazlar\u0131n\u0131z\u0131 bu sunucuya ba\u011flamakt\u0131r. S\u00fcre\u00e7, kulland\u0131\u011f\u0131n\u0131z i\u015fletim sistemine ve se\u00e7ti\u011finiz VPN protokol\u00fcne g\u00f6re k\u00fc\u00e7\u00fck farkl\u0131l\u0131klar g\u00f6sterse de genel mant\u0131k ayn\u0131d\u0131r: ilgili istemci yaz\u0131l\u0131m\u0131n\u0131 kurmak ve sunucudan ald\u0131\u011f\u0131n\u0131z yap\u0131land\u0131rma dosyas\u0131n\u0131 (.ovpn veya .conf) uygulamaya tan\u0131tmak.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Windows-icin-OpenVPN-ve-WireGuard-Istemci-Kurulumu\"><\/span>Windows i\u00e7in OpenVPN ve WireGuard \u0130stemci Kurulumu<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p><b>OpenVPN:<\/b> Resmi OpenVPN Community Client yaz\u0131l\u0131m\u0131n\u0131 web sitesinden indirin ve kurun. Kurulum tamamland\u0131ktan sonra, sunucunuzdan ald\u0131\u011f\u0131n\u0131z `.ovpn` dosyas\u0131n\u0131 program\u0131n `config` klas\u00f6r\u00fcne kopyalay\u0131n veya sistem tepsisindeki OpenVPN simgesine sa\u011f t\u0131klay\u0131p &#8220;Import file&#8221; se\u00e7ene\u011fi ile dosyay\u0131 i\u00e7e aktar\u0131n. Ard\u0131ndan ba\u011flanabilirsiniz.<\/p>\n<p><b>WireGuard:<\/b> Resmi WireGuard for Windows uygulamas\u0131n\u0131 indirin ve kurun. Uygulamay\u0131 a\u00e7t\u0131ktan sonra, &#8220;Import tunnel(s) from file&#8221; se\u00e7ene\u011fi ile sunucunuzdan ald\u0131\u011f\u0131n\u0131z `.conf` dosyas\u0131n\u0131 se\u00e7erek ba\u011flant\u0131y\u0131 kolayca ekleyebilirsiniz.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"macOS-icin-OpenVPN-ve-WireGuard-Istemci-Kurulumu\"><\/span>macOS i\u00e7in OpenVPN ve WireGuard \u0130stemci Kurulumu<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p><b>OpenVPN:<\/b> macOS i\u00e7in en pop\u00fcler ve \u00f6nerilen OpenVPN istemcisi Tunnelblick&#8217;tir. \u00dccretsiz ve a\u00e7\u0131k kaynakl\u0131d\u0131r. Tunnelblick&#8217;i indirip kurduktan sonra, `.ovpn` yap\u0131land\u0131rma dosyan\u0131z\u0131 \u00fczerine s\u00fcr\u00fckleyip b\u0131rakarak profili ekleyebilir ve ba\u011flanabilirsiniz.<\/p>\n<p><b>WireGuard:<\/b> WireGuard, App Store&#8217;da resmi bir uygulamaya sahiptir. Bu uygulamay\u0131 indirip kurun. Ard\u0131ndan, Windows&#8217;taki gibi, yap\u0131land\u0131rma dosyan\u0131z\u0131 (.conf) i\u00e7e aktararak veya QR kodunu tarayarak ba\u011flant\u0131n\u0131z\u0131 kurabilirsiniz.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Linux-icin-OpenVPN-ve-WireGuard-Istemci-Kurulumu\"><\/span>Linux i\u00e7in OpenVPN ve WireGuard \u0130stemci Kurulumu<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p><b>OpenVPN:<\/b> \u00c7o\u011fu Linux da\u011f\u0131t\u0131m\u0131 OpenVPN istemcisi ile birlikte gelir. Terminal \u00fczerinden `sudo openvpn &#8211;config dosya_adi.ovpn` komutuyla do\u011frudan ba\u011flanabilirsiniz. Ayr\u0131ca, NetworkManager entegrasyonu sayesinde grafik aray\u00fczden de VPN ba\u011flant\u0131s\u0131 eklemek m\u00fcmk\u00fcnd\u00fcr.<\/p>\n<p><b>WireGuard:<\/b> WireGuard ara\u00e7lar\u0131n\u0131 (`wireguard-tools`) paket y\u00f6neticinizle kurduktan sonra, `.conf` dosyan\u0131z\u0131 `\/etc\/wireguard\/` dizinine kopyalay\u0131p `sudo wg-quick up dosya_adi` komutuyla ba\u011flant\u0131y\u0131 ba\u015flatabilirsiniz.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Android-ve-iOS-Mobil-Cihazlari-icin-Yapilandirma\"><\/span>Android ve iOS Mobil Cihazlar\u0131 i\u00e7in Yap\u0131land\u0131rma<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Hem Android (Google Play Store) hem de iOS (App Store) i\u00e7in resmi &#8220;OpenVPN Connect&#8221; ve &#8220;WireGuard&#8221; uygulamalar\u0131 bulunmaktad\u0131r. <br \/><b>OpenVPN:<\/b> `.ovpn` dosyas\u0131n\u0131 e-posta veya ba\u015fka bir yolla telefonunuza g\u00f6nderin ve OpenVPN Connect uygulamas\u0131yla a\u00e7arak profili i\u00e7e aktar\u0131n.<br \/><b>WireGuard:<\/b> En kolay y\u00f6ntem, sunucuda olu\u015fturdu\u011funuz QR kodu WireGuard uygulamas\u0131ndaki kamera simgesine dokunarak taratmakt\u0131r. Alternatif olarak `.conf` dosyas\u0131n\u0131 da i\u00e7e aktarabilirsiniz.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Yeni-Kullanici-Ekleme-ve-Mevcut-Kullanicilari-Yonetme\"><\/span>Yeni Kullan\u0131c\u0131 Ekleme ve Mevcut Kullan\u0131c\u0131lar\u0131 Y\u00f6netme<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Zamanla yeni kullan\u0131c\u0131lar eklemek veya mevcut bir kullan\u0131c\u0131n\u0131n eri\u015fimini iptal etmek isteyebilirsiniz.<br \/><b>OpenVPN:<\/b> Yeni bir kullan\u0131c\u0131 i\u00e7in sunucuda yeni bir sertifika ve anahtar seti (`.\/easyrsa build-client-full yeni_kullanici nopass`) olu\u015fturman\u0131z ve bu kullan\u0131c\u0131ya \u00f6zel bir `.ovpn` dosyas\u0131 haz\u0131rlaman\u0131z gerekir. Bir kullan\u0131c\u0131n\u0131n eri\u015fimini iptal etmek i\u00e7in en etkili yol, o kullan\u0131c\u0131n\u0131n sertifikas\u0131n\u0131 sunucuda ge\u00e7ersiz k\u0131lmakt\u0131r (sertifika iptal listesi &#8211; CRL).<\/p>\n<p><b>WireGuard:<\/b> Yeni bir kullan\u0131c\u0131 i\u00e7in istemci taraf\u0131nda bir anahtar \u00e7ifti olu\u015fturulur. \u0130stemcinin genel anahtar\u0131 ve alaca\u011f\u0131 IP adresi, sunucudaki `wg0.conf` dosyas\u0131na `[Peer]` b\u00f6l\u00fcm\u00fc olarak eklenir. Kullan\u0131c\u0131y\u0131 silmek i\u00e7in ilgili `[Peer]` blo\u011funu yap\u0131land\u0131rma dosyas\u0131ndan kald\u0131rmak ve WireGuard servisini yeniden ba\u015flatmak yeterlidir.<\/p>\n<h2><span class=\"ez-toc-section\" id=\"Gelismis-Yapilandirma-ve-Bakim\"><\/span>Geli\u015fmi\u015f Yap\u0131land\u0131rma ve Bak\u0131m<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>VPN sunucunuzu kurup \u00e7al\u0131\u015ft\u0131rmak i\u015fin sadece yar\u0131s\u0131d\u0131r. Sunucunuzun uzun vadede g\u00fcvenli, stabil ve performansl\u0131 kalmas\u0131n\u0131 sa\u011flamak i\u00e7in d\u00fczenli bak\u0131m yapman\u0131z ve baz\u0131 geli\u015fmi\u015f \u00f6zellikleri yap\u0131land\u0131rman\u0131z \u00f6nemlidir. Bu b\u00f6l\u00fcmde, sunucu y\u00f6netimi ve g\u00fcvenli\u011fini bir \u00fcst seviyeye ta\u015f\u0131yacak konulara de\u011finece\u011fiz.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"VPN-Sunucusunu-Guncel-Tutma-Stratejileri\"><\/span>VPN Sunucusunu G\u00fcncel Tutma Stratejileri<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>T\u0131pk\u0131 ki\u015fisel bilgisayar\u0131n\u0131z gibi, VPN sunucunuzun da i\u015fletim sistemi ve \u00fczerinde \u00e7al\u0131\u015fan yaz\u0131l\u0131mlar\u0131n g\u00fcncel tutulmas\u0131 gerekir. G\u00fcncellemeler, genellikle performans iyile\u015ftirmeleri ve daha da \u00f6nemlisi, yeni ke\u015ffedilen g\u00fcvenlik a\u00e7\u0131klar\u0131na kar\u015f\u0131 yamalar i\u00e7erir. `sudo apt update &#038;&#038; sudo apt upgrade -y` komutunu d\u00fczenli olarak (\u00f6rne\u011fin haftada bir) \u00e7al\u0131\u015ft\u0131rmay\u0131 al\u0131\u015fkanl\u0131k haline getirin. Ubuntu ve Debian&#8217;da `unattended-upgrades` paketini kurarak g\u00fcvenlik g\u00fcncellemelerinin otomatik olarak y\u00fcklenmesini de sa\u011flayabilirsiniz.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"DNS-Sizintilarini-DNS-Leaks-Onleme-Yontemleri\"><\/span>DNS S\u0131z\u0131nt\u0131lar\u0131n\u0131 (DNS Leaks) \u00d6nleme Y\u00f6ntemleri<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>VPN kulland\u0131\u011f\u0131n\u0131zda bile, cihaz\u0131n\u0131z\u0131n DNS (Domain Name System) sorgular\u0131 bazen VPN t\u00fcneli d\u0131\u015f\u0131ndan, do\u011frudan internet servis sa\u011flay\u0131c\u0131n\u0131za gidebilir. Buna <a href=\"https:\/\/www.ihs.com.tr\/blog\/dns-guvenligi-nedir\/\" target=\"_blank\">DNS s\u0131z\u0131nt\u0131s\u0131<\/a> denir ve gizlili\u011finizi tehlikeye atar. Bunu \u00f6nlemek i\u00e7in, VPN sunucunuzu t\u00fcm istemcilerin DNS sorgular\u0131n\u0131 kendi \u00fczerinden y\u00f6nlendirecek \u015fekilde yap\u0131land\u0131rmal\u0131s\u0131n\u0131z. OpenVPN ve WireGuard yap\u0131land\u0131rma dosyalar\u0131na, istemcileri Google (8.8.8.8), Cloudflare (1.1.1.1) veya Quad9 (9.9.9.9) gibi gizlilik odakl\u0131 DNS sunucular\u0131n\u0131 kullanmaya zorlayan direktifler ekleyebilirsiniz.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Kill-Switch-Nedir-ve-Istemcide-Nasil-Yapilandirilir\"><\/span>Kill Switch Nedir ve \u0130stemcide Nas\u0131l Yap\u0131land\u0131r\u0131l\u0131r?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Kill Switch, VPN ba\u011flant\u0131n\u0131z herhangi bir nedenle beklenmedik bir \u015fekilde koptu\u011funda, cihaz\u0131n\u0131z\u0131n internet eri\u015fimini otomatik olarak kesen bir g\u00fcvenlik \u00f6zelli\u011fidir. Bu, VPN ba\u011flant\u0131s\u0131 olmadan internete yanl\u0131\u015fl\u0131kla ger\u00e7ek IP adresinizle \u00e7\u0131kman\u0131z\u0131 \u00f6nleyerek gizlili\u011finizi korur. Baz\u0131 ticari VPN istemcileri bu \u00f6zelli\u011fi dahili olarak sunar. Kendi sunucunuzu kullan\u0131rken, bu i\u015flevi istemci cihazdaki g\u00fcvenlik duvar\u0131 kurallar\u0131yla manuel olarak uygulayabilirsiniz. \u00d6rne\u011fin, UFW&#8217;de sadece VPN sunucunuzun IP adresine ve portuna giden trafi\u011fe izin verip di\u011fer t\u00fcm internet trafi\u011fini engelleyebilirsiniz.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Sunucu-Performansini-ve-Baglanti-Loglarini-Izleme\"><\/span>Sunucu Performans\u0131n\u0131 ve Ba\u011flant\u0131 Loglar\u0131n\u0131 \u0130zleme<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Sunucunuzun sa\u011fl\u0131\u011f\u0131n\u0131 ve performans\u0131n\u0131 izlemek, olas\u0131 sorunlar\u0131 b\u00fcy\u00fcmeden tespit etmenize yard\u0131mc\u0131 olur. `htop` veya `glances` gibi komut sat\u0131r\u0131 ara\u00e7lar\u0131 ile anl\u0131k CPU, RAM ve a\u011f kullan\u0131m\u0131n\u0131 g\u00f6rebilirsiniz. OpenVPN ve WireGuard, ba\u011flant\u0131 denemeleri ve aktif kullan\u0131c\u0131lar hakk\u0131nda loglar (kay\u0131tlar) tutabilir. Bu loglar\u0131 d\u00fczenli olarak g\u00f6zden ge\u00e7irmek, \u015f\u00fcpheli aktiviteleri veya ba\u011flant\u0131 sorunlar\u0131n\u0131 te\u015fhis etmek i\u00e7in faydal\u0131d\u0131r. Gizlili\u011fe \u00f6nem veriyorsan\u0131z, loglama seviyesini minimumda tutmay\u0131 veya tamamen kapatmay\u0131 tercih edebilirsiniz.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"VPN-Uzerinden-Reklam-ve-Takipci-Engelleme-Pi-hole-Entegrasyonu\"><\/span>VPN \u00dczerinden Reklam ve Takip\u00e7i Engelleme (Pi-hole Entegrasyonu)<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Kendi VPN sunucunuza sahip olman\u0131n en b\u00fcy\u00fck avantajlar\u0131ndan biri, onu ki\u015fisel ihtiya\u00e7lar\u0131n\u0131za g\u00f6re \u00f6zelle\u015ftirebilmektir. Pi-hole, a\u011f\u0131n\u0131zdaki t\u00fcm cihazlar i\u00e7in reklamlar\u0131 ve bilinen takip\u00e7ileri DNS seviyesinde engelleyen pop\u00fcler bir yaz\u0131l\u0131md\u0131r. VPN sunucunuza Pi-hole kurarak ve VPN istemcilerinizi DNS sunucusu olarak Pi-hole&#8217;u kullanacak \u015fekilde yap\u0131land\u0131rarak, sadece evde de\u011fil, mobil cihazlar\u0131n\u0131zla d\u0131\u015far\u0131dayken bile reklams\u0131z ve daha g\u00fcvenli bir internet deneyimi ya\u015fayabilirsiniz.<\/p>\n<h2><span class=\"ez-toc-section\" id=\"Kendi-VPN-Sunucunuzu-Kurmak-Icin-Neden-IHS-Telekomu-Tercih-Etmelisiniz\"><\/span>Kendi VPN Sunucunuzu Kurmak \u0130\u00e7in Neden \u0130HS Telekom&#8217;u Tercih Etmelisiniz?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>Kendi VPN sunucunuzu kurma karar\u0131, dijital gizlilik ve kontrol yolunda at\u0131lm\u0131\u015f \u00f6nemli bir ad\u0131md\u0131r. Bu projenin ba\u015far\u0131s\u0131, b\u00fcy\u00fck \u00f6l\u00e7\u00fcde temelini olu\u015fturan sunucu altyap\u0131s\u0131n\u0131n kalitesine ba\u011fl\u0131d\u0131r. \u0130HS Telekom, y\u00fcksek performansl\u0131, g\u00fcvenilir ve esnek sunucu \u00e7\u00f6z\u00fcmleriyle VPN projeniz i\u00e7in en do\u011fru adrestir.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Yuksek-Performansli-ve-Guvenilir-Sanal-Sunucu-VDSVPS-Altyapisi\"><\/span>Y\u00fcksek Performansl\u0131 ve G\u00fcvenilir Sanal Sunucu (VDS\/VPS) Altyap\u0131s\u0131<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>VPN performans\u0131n\u0131z, sunucunuzun i\u015flem g\u00fcc\u00fc ve a\u011f ba\u011flant\u0131s\u0131yla do\u011frudan ili\u015fkilidir. \u0130HS Telekom, en g\u00fcncel donan\u0131mlar ve g\u00fc\u00e7l\u00fc altyap\u0131 \u00fczerine kurulmu\u015f <a href=\"https:\/\/www.ihs.com.tr\/sunucu-kiralama\/vps-server.html\" target=\"_blank\">VPS<\/a> ve VDS sunucu se\u00e7enekleri sunar. Y\u00fcksek h\u0131zl\u0131 NVMe SSD depolama ve g\u00fc\u00e7l\u00fc i\u015flemciler, VPN yaz\u0131l\u0131m\u0131n\u0131z\u0131n sorunsuz \u00e7al\u0131\u015fmas\u0131n\u0131 ve \u015fifreleme i\u015flemlerinin h\u0131zl\u0131 bir \u015fekilde yap\u0131lmas\u0131n\u0131 sa\u011flar, b\u00f6ylece internet h\u0131z\u0131n\u0131zdan minimum kay\u0131p ya\u015fars\u0131n\u0131z.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Turkiye-Lokasyonlu-Sunucular-ile-Dusuk-Gecikme-Suresi-Latency\"><\/span>T\u00fcrkiye Lokasyonlu Sunucular ile D\u00fc\u015f\u00fck Gecikme S\u00fcresi (Latency)<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>VPN kullan\u0131rken en \u00f6nemli metriklerden biri gecikme s\u00fcresidir (ping). Sunucunuzun size co\u011frafi olarak yak\u0131n olmas\u0131, gecikme s\u00fcresini \u00f6nemli \u00f6l\u00e7\u00fcde d\u00fc\u015f\u00fcr\u00fcr. \u0130HS Telekom&#8217;un T\u00fcrkiye lokasyonlu veri merkezleri sayesinde, \u00f6zellikle T\u00fcrkiye i\u00e7indeki internet trafi\u011finizde \u00e7ok d\u00fc\u015f\u00fck gecikme s\u00fcreleri elde edersiniz. Bu, \u00e7evrimi\u00e7i oyunlar, video konferanslar ve h\u0131zl\u0131 web gezintisi i\u00e7in kritik bir avantajd\u0131r.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Ihtiyaca-Yonelik-Esnek-ve-Olceklenebilir-Sunucu-Paketleri\"><\/span>\u0130htiyaca Y\u00f6nelik Esnek ve \u00d6l\u00e7eklenebilir Sunucu Paketleri<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>VPN projenize ba\u015flarken b\u00fcy\u00fck kaynaklara yat\u0131r\u0131m yapman\u0131za gerek yok. \u0130HS Telekom, sadece 1 CPU ve 1 GB RAM gibi d\u00fc\u015f\u00fck kaynakl\u0131 paketlerden ba\u015flayarak, ihtiyac\u0131n\u0131z artt\u0131k\u00e7a kolayca y\u00fckseltebilece\u011finiz esnek <a href=\"https:\/\/www.ihs.com.tr\/web-hosting\/\" target=\"_blank\">hosting<\/a> paketleri sunar. \u0130ster tek ba\u015f\u0131n\u0131za kullan\u0131n, ister t\u00fcm aileniz veya k\u00fc\u00e7\u00fck i\u015fletmeniz i\u00e7in bir VPN kurun, kaynaklar\u0131n\u0131z\u0131 an\u0131nda ve kolayca \u00f6l\u00e7eklendirebilirsiniz.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"724-Uzman-Teknik-Destek-Ekibi\"><\/span>7\/24 Uzman Teknik Destek Ekibi<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Kendi sunucunuzu y\u00f6netirken, zaman zaman beklenmedik sorunlarla kar\u015f\u0131la\u015fabilirsiniz. \u0130HS Telekom&#8217;un 7\/24 hizmet veren uzman teknik destek ekibi, sunucuyla ilgili ya\u015fayabilece\u011finiz a\u011f, donan\u0131m veya eri\u015fim sorunlar\u0131nda size bir telefon kadar yak\u0131nd\u0131r. Bu, projenizi hayata ge\u00e7irirken arkan\u0131zda g\u00fcvenilir bir g\u00fcc\u00fcn oldu\u011funu bilmenin rahatl\u0131\u011f\u0131n\u0131 sunar.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Kolay-Yonetim-Paneli-ve-Hizli-Sunucu-Teslimati\"><\/span>Kolay Y\u00f6netim Paneli ve H\u0131zl\u0131 Sunucu Teslimat\u0131<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>\u0130HS Telekom, kullan\u0131c\u0131 dostu y\u00f6netim paneli sayesinde sunucunuzu yeniden ba\u015flatma, i\u015fletim sistemini yeniden kurma veya temel istatistikleri izleme gibi i\u015flemleri kolayca yapman\u0131za olanak tan\u0131r. Sipari\u015finizi verdikten sonra sunucunuz dakikalar i\u00e7inde aktif hale gelir ve projenize hemen ba\u015flayabilirsiniz. Ayr\u0131ca, g\u00fcvenli bir web sitesi i\u00e7in gerekli olan <a href=\"https:\/\/www.ihs.com.tr\/ssl\/\" target=\"_blank\">SSL sertifikas\u0131<\/a> gibi ek hizmetleri de kolayca y\u00f6netebilirsiniz. Kendi <a href=\"https:\/\/www.ihs.com.tr\/domain\/alan-adi-domain-tescili.html\" target=\"_blank\">alan ad\u0131<\/a> alt\u0131nda, \u00f6rne\u011fin `vpn.alanadiniz.com` gibi bir adresle VPN sunucunuza ba\u011flanmak isterseniz, DNS y\u00f6netimi de bu panel \u00fczerinden rahatl\u0131kla yap\u0131labilir. \u00d6zellikle bir <a href=\"https:\/\/www.ihs.com.tr\/web-hosting\/wordpress-hosting.html\" target=\"_blank\">WordPress hosting<\/a> hizmeti kullan\u0131yorsan\u0131z, t\u00fcm bu hizmetleri tek bir yerden y\u00f6netmek b\u00fcy\u00fck kolayl\u0131k sa\u011flar.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u0130nternet d\u00fcnyas\u0131nda gizlilik ve g\u00fcvenlik her zamankinden daha \u00f6nemli hale geldi. \u00c7evrimi\u00e7i aktivitelerinizi izlenmekten korumak, herkese a\u00e7\u0131k Wi-Fi a\u011flar\u0131nda verilerinizi g\u00fcvence alt\u0131na&hellip;<\/p>\n","protected":false},"author":3,"featured_media":15776,"comment_status":"open","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[414],"tags":[],"class_list":["post-15775","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-sunucu"],"amp_enabled":true,"_links":{"self":[{"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/posts\/15775","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=15775"}],"version-history":[{"count":1,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/posts\/15775\/revisions"}],"predecessor-version":[{"id":15777,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/posts\/15775\/revisions\/15777"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/media\/15776"}],"wp:attachment":[{"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=15775"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=15775"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=15775"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}