Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    OpenVPN roadwarrior setup

    2.0-RC Snapshot Feedback and Problems - RETIRED
    2
    4
    1.7k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      mgaudette
      last edited by

      Hi,

      I can't find how to create a road warrior setup on 2.0 and OpenVPN.  I should be using PKI, but it's not in the UI (it's peer-to-peer now, right?)

      I succeeded with Remote Access (SSL/TLS), but removing client certificates doesn't disable the clients (they're VPN users for life I guess).

      Where should I be looking? Where do I configure the removal of active client certificates?

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        It's Remote Access (SSL/TLS).

        CRL support isn't in the GUI yet, so you can't yet remove a VPN user, but if you did enable TLS you can change their password or remove their account and cut off VPN access.

        There's an open ticket to add CRL support, it's just a little tricky in way the GUI is setup now.

        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • M
          mgaudette
          last edited by

          Thanks.  I enabled Auth (that's what you meant right?) but I don't know how to prompt the user to log in.  The OpenVPN client (for Windows) simply fails to connect to my VPN. Without Auth it works fine.

          1 Reply Last reply Reply Quote 0
          • jimpJ
            jimp Rebel Alliance Developer Netgate
            last edited by

            You'd really want SSL/TLS+User Auth

            It should prompt automatically if you have the proper client config. If you install the OpenVPN Client Export package it can generate a client config file for you.

            Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.