As of this writing (Day-2), there are quite few accurate guidelines as to how to mitigate Logjam for Apache and other web servers, such as this page:
https://weakdh.org/sysadmin.html
What are the similar instructions for OpenVPN servers?
Is OpenVPN affected at all? (I guess yes since it is a TLS protocol issue).
Best Answer
The attacks only affect OpenVPN in very limited ways, because:
To be on the safe side, use DH params of at least 2048 bits. Updating DH parameters is easy and only needs a change on the server. Generate new params using e.g.
then update your server config to use these new parameters
and restart the server.