Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    what setting do i have wrong "Certificate (SSL/TLS, no Auth)"

    Scheduled Pinned Locked Moved OpenVPN
    6 Posts 3 Posters 742 Views 1 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C Offline
      comet424
      last edited by comet424

      hi i setting up on my sisters pfsense openvpn remote access i thought i duplicated my setup but when i goto export

      i get "Certificate (SSL/TLS, no Auth)" beside the user name so i dont need a password.. where on mine i need to add a password and i dont have that... i guessing you want Authorization to make it secure... and my sisters user id has a password..

      so what am i doing wrong.. and when do you want a password and when do you want "Certificate (SSL/TLS, no Auth)"

      i know on hers i have a site to site vpn setup and using the same server ca i guess it is... and even when i create new using wizard its no authorization etc

      J 1 Reply Last reply Reply Quote 0
      • J Offline
        Jarhead @comet424
        last edited by

        @comet424 Really hard to read your post and determine what you're actually asking but I'll take a try.
        Edit the OpenVPN server config, then hit the drop down for "Server Mode".
        That might be what you're looking for.

        C 1 Reply Last reply Reply Quote 0
        • C Offline
          comet424 @Jarhead
          last edited by

          @jarhead

          sorry my dislexia gets best of me

          so on my pfsense box when i remote access into the Server i have to add a password.. like in your cell

          and under "Client Export" its just username

          under my sisters under "Client Export"
          it goes
          "userid Certificate (SSL/TLS, no Auth)"

          and doesnt require me to add the password to login just logs right in like it was doing site to site vpn (so my and her pfsense's are linked together) so i can access her network like i was there..

          my dyslexia gets best of me and where it sounds fine to me.. doesnt for others...

          if the servers section i have it set for "Remote Access (SSL/TLS) but since i dont use openvpn much except setting up site to site like 2.5 yrs ago i know its probably simple and i just dont notice it... i set it and forget it kinda thing..

          where is the "Server Mode" like the openvpn server config is that the CA certtificates? or under the VPN under Servers?

          1 Reply Last reply Reply Quote 0
          • C Offline
            comet424
            last edited by

            im sure its something simple i missing.... doesnt help i dont use it every day then id remember lol

            bingo600B 1 Reply Last reply Reply Quote 0
            • bingo600B Offline
              bingo600 @comet424
              last edited by

              @comet424

              Under OpenVPN Server you might want to select SSL/TLS + User Auth

              886bb29c-550f-4cf1-a35d-f59c800f652c-image.png

              If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

              pfSense+ 23.05.1 (ZFS)

              QOTOM-Q355G4 Quad Lan.
              CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
              LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

              1 Reply Last reply Reply Quote 0
              • C Offline
                comet424
                last edited by

                ok i got it working i did have that the "SSL/TLS + User Auth"
                what i noticed i didnt notice before

                for both site to site and remote access

                the description is "openvpn remote access" i had for both..

                i did not know that under Client Export under "Remote Access Server" it goes by description

                and when i read it saying "openvpn remote access" thought i was fine.. when i clicked it i had 2 "openvpn remote access" i never knew that was "Description" and not name of the certificate...

                i know if i used openvpn alot i wouldnt make mistakes like that....

                too bad for newbs they didnt offer a little note under Client Export
                under Remote Access Server.. Server name is from Description Name from Server Tab... or under the Servers.. when you write Description.. like it say "This will be Remote Access Server Name"

                i never clued in at all till i found i had both desc same and that made the difference... didnt even know

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.