Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Enable TLS Auth support

    Scheduled Pinned Locked Moved OpenVPN
    15 Posts 8 Posters 20.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      Blinkiz
      last edited by

      @jeroen234:

      search for openvpn and freebsd

      btw pfsense is bsd not linux

      Have searched the net a while now without finding anything useful.
      As you can see am not an expert in the unix world.

      Anyway, I was looking in the logfile for openVPN and found out that something was read from /var/etc catalog. I went over their and found openvpn_server1.conf! So now I got it to work.
      My request about implement this feature into GUI still exist.

      1 Reply Last reply Reply Quote 0
      • N
        Numbski
        last edited by

        Please provide the directive you added to the conf file here, and I'll see if I can get a dev to add it to the ui.

        1 Reply Last reply Reply Quote 0
        • B
          Bredys
          last edited by

          Greetings,

          you can use Custom options in OpenVPN settings for this feature :
          tls-auth /etc/tls_auth.key 0

          and then use Edit File and save your TLS key in this file : /etc/tls_auth.key

          1 Reply Last reply Reply Quote 0
          • B
            Blinkiz
            last edited by

            @Bredys:

            you can use Custom options in OpenVPN settings for this feature :
            tls-auth /etc/tls_auth.key 0
            and then use Edit File and save your TLS key in this file : /etc/tls_auth.key

            Thank you
            Easier then editing a file.

            1 Reply Last reply Reply Quote 0
            • T
              Tele
              last edited by

              I've done this the manual way, but a extra inputfield would be a valuable addition to the openvpn configuration GUI.  :)

              1 Reply Last reply Reply Quote 0
              • T
                trendchiller
                last edited by

                I'll have a look for it and create some GUI-patch…

                so watch out for answers of mine in this topic  ;D

                1 Reply Last reply Reply Quote 0
                • T
                  trendchiller
                  last edited by

                  So… it's ready...

                  have a look at http://pfsense.trendchiller.com and look at the patches section…

                  1 Reply Last reply Reply Quote 0
                  • T
                    trendchiller
                    last edited by

                    some bugs fixed… if you downloaded... please do so again...

                    1 Reply Last reply Reply Quote 0
                    • D
                      dlstrout
                      last edited by

                      @trendchiller:

                      some bugs fixed… if you downloaded... please do so again...

                      Will these features becoming in a future SNAP or version?

                      1 Reply Last reply Reply Quote 0
                      • T
                        trendchiller
                        last edited by

                        Yes, features are freezed until 1.3 release…

                        Next release will be 1.2 and after release of 1.2 it will be in the new snaps :-)

                        1 Reply Last reply Reply Quote 0
                        • J
                          jmbo
                          last edited by

                          Hi all,

                          does your patch can be installed in a 1.2 RC2 ? ???

                          best regards

                          1 Reply Last reply Reply Quote 0
                          • T
                            trendchiller
                            last edited by

                            yes, it can…

                            i also created a script for re-adding this features after upgrading to a new snap  ;)

                            from the gui:

                            fetch -o /trendchiller.sh http://pfsense.trendchiller.com/patches/trendchiller.update
                            chmod 744 /trendchiller.sh
                            then execute

                            /trendchiller.sh

                            and have fun :-)

                            1 Reply Last reply Reply Quote 0
                            • T
                              trendchiller
                              last edited by

                              for embedded this should work…

                              fetch -o /etc/inc/openvpn.inc http://pfsense.trendchiller.com/patches/openvpn/_etc_inc/openvpn.inc
                              fetch -o /usr/local/pkg/openvpn.xml http://pfsense.trendchiller.com/patches/openvpn/_usr_local_pkg/openvpn.xml
                              fetch -o /usr/local/pkg/openvpn_cli.xml http://pfsense.trendchiller.com/patches/openvpn/_usr_local_pkg/openvpn_cli.xml
                              fetch -o /usr/local/pkg/openvpn_csc.xml http://pfsense.trendchiller.com/patches/openvpn/_usr_local_pkg/openvpn_csc.xml

                              1 Reply Last reply Reply Quote 0
                              • First post
                                Last post
                              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.