• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Management Interface OpenVPNManager

OpenVPN
3
9
7.7k
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • L
    lucky
    last edited by Aug 21, 2013, 6:02 PM

    Hi all,

    I was doing some research on how to get around needing Admin to add routes on Windows 7 systems. Initially, I was running a TAP OpenVPN instance and creating IP aliases that were redirected to hosts on other networks (messy). Then I happened to notice this option on the OpenVPN client export: "Management Interface OpenVPNManager". This sounded like what I needed - a nice and clean solution. I've tried using this, but am running into problems.

    I used the installer directly from pfSense. It successfully installs OpenVPN and the OpenVPN Manager. However, when I try to start the config that gets packaged with the installer, I get an error. A screen shot is attached.

    If I try to run the config as a normal config in the OpenVPN config directory, OpenVPN Manager pops up a UAC prompt for launching OpenVPN (which is what I'm trying to avoid).

    Does anyone have experience with using OpenVPN and OpenVPN Manager with the Management Interface option selected? I'm running out of things to try.

    Thanks.
    openvpn-manager_error.png_thumb
    openvpn-manager_error.png

    1 Reply Last reply Reply Quote 0
    • D
      doktornotor Banned
      last edited by Aug 21, 2013, 6:08 PM

      Try with latest version from here: http://openvpn.jowisoftware.de/downloads/

      1 Reply Last reply Reply Quote 0
      • L
        lucky
        last edited by Aug 21, 2013, 7:45 PM

        Thanks for the tip. I tried that, but it didn't help.

        However, I did find the issue. For whatever reason, the installer package gets messed up because my user's cert has a CN= with spaces in it (e.g., cn=Bob Smith). Even exporting the standard config archive is busted (it makes a broken zip file). As soon as I made a cert with no spaces in any of the values, it worked fine. Arg!

        1 Reply Last reply Reply Quote 0
        • D
          doktornotor Banned
          last edited by Aug 21, 2013, 7:57 PM Aug 21, 2013, 7:53 PM

          @lucky:

          However, I did find the issue. For whatever reason, the installer package gets messed up because my user's cert has a CN= with spaces in it (e.g., cn=Bob Smith). Even exporting the standard config archive is busted (it makes a broken zip file). As soon as I made a cert with no spaces in any of the values, it worked fine. Arg!

          I am pretty sure this has been fixed a couple of weeks ago, reported the issue myself.

          https://github.com/pfsense/pfsense-packages/commit/5bb3bd5007f0c9b14b077e85b686aa7950d27963

          1 Reply Last reply Reply Quote 0
          • L
            lucky
            last edited by Aug 21, 2013, 8:06 PM

            Awesome, thanks for letting me know…saves me the time of tracking it down.

            1 Reply Last reply Reply Quote 0
            • L
              lucky
              last edited by Aug 21, 2013, 9:01 PM

              @doktornotor:

              Try with latest version from here: http://openvpn.jowisoftware.de/downloads/

              By the way, after fixing the cert issue, I went back and tried the latest version. It failed to work. Seems like between 0.0.3.7 and 0.0.3.8, the author changed the way the service works. If I use 0.0.3.8, it gets that same error as before (can't connect to management interface). I don't think this is related to pfSense or OpenVPN.

              Also, if I try to start a second VPN connection after one is active, the application generates an exception.

              Now that things are going…I loaded up more configs and tried them out too. I noticed that openvpn manager seems to "get confused" as to which VPN connection I want to start. For example, I have 3 connections. Two require user certs, the other a username and password. After connecting to the one with a username and password, and then disconnecting...when I try to connect to one that only requires a cert, openvpn manager is prompting me for a password, and if i put one in, it's trying to connect to the previous connection. This seems to be related to the fact that pfSense always generates configs with:

              management "127.0.0.1 166"
              

              Changing each config to have it's own port fixes the issue. Perhaps this is just the way it is, I'm just mentioning it to hopefully benefit others who might run into the same issues.

              1 Reply Last reply Reply Quote 0
              • D
                doktornotor Banned
                last edited by Aug 22, 2013, 2:50 AM

                @lucky:

                By the way, after fixing the cert issue, I went back and tried the latest version. It failed to work. Seems like between 0.0.3.7 and 0.0.3.8, the author changed the way the service works. If I use 0.0.3.8, it gets that same error as before (can't connect to management interface). I don't think this is related to pfSense or OpenVPN.

                Also, if I try to start a second VPN connection after one is active, the application generates an exception.

                I briefly tested the thing… I hated it and abandoned it altogether. I found it to be simply retarded with the way it insisted on either shuffling the configs out of the OpenVPN directory or self-destructing the service part of itself.

                @lucky:

                I noticed that openvpn manager seems to "get confused" as to which VPN connection I want to start.

                I vaguely recall the same.

                1 Reply Last reply Reply Quote 0
                • L
                  lucky
                  last edited by Aug 22, 2013, 2:55 AM

                  So actually…0.0.3.8 is just fine - it was me that was messing it up. I updated configs and did not restart the service properly. 0.0.3.8 is working fine now.

                  And since I changed the management ports, I've got multiple vpn connections up and running with no issues....finally lol :)

                  1 Reply Last reply Reply Quote 0
                  • P
                    phil.davis
                    last edited by Aug 22, 2013, 5:14 PM

                    For more discussion on the "management ports" issue of having multiple OpenVPN client configs in OpenVPN manager, and the user selecting one to start, but OpenVPN Manager getting confused and starting a different one, see: https://github.com/jochenwierum/openvpn-manager/issues/17

                    As the Greek philosopher Isosceles used to say, "There are 3 sides to every triangle."
                    If I helped you, then help someone else - buy someone a gift from the INF catalog http://secure.inf.org/gifts/usd/

                    1 Reply Last reply Reply Quote 0
                    7 out of 9
                    • First post
                      7/9
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.