• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Auto create users for OpenVPN while authenticate against LDAP

General pfSense Questions
2
4
907
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • H
    hiddenbit
    last edited by May 16, 2017, 7:27 AM

    Hey guys, I configured my pfSense to authenticate users against LDAP (Active Directory). This seems to work, but while usings this accounts with OpenVPN and certificate-based authentication, they need to exist locally. Is there any preferred way to do this automatically?

    1 Reply Last reply Reply Quote 0
    • J
      jimp Rebel Alliance Developer Netgate
      last edited by May 17, 2017, 8:18 PM

      You do not need local accounts to use with LDAP and Certificates.

      You only need to make certificates under System > Cert Manager on the Certificates tab, using the same CA as the OpenVPN server.

      There is not a way to automate making the certificates, however.

      Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

      Need help fast? Netgate Global Support!

      Do not Chat/PM for help!

      1 Reply Last reply Reply Quote 0
      • H
        hiddenbit
        last edited by May 24, 2017, 8:44 AM

        Hey jimp, thanks for your response. I got it working, but realized a disappointing point. After login with a remote user, I am able to see, use and download also certificates from other users (see attached pic). Is there a way to work around that?

        Auswahl_205.png
        Auswahl_205.png_thumb

        1 Reply Last reply Reply Quote 0
        • J
          jimp Rebel Alliance Developer Netgate
          last edited by May 24, 2017, 11:27 AM

          The export package is not intended to be used by end-users. There is no way for a user to login and download just their own client.

          Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

          Need help fast? Netgate Global Support!

          Do not Chat/PM for help!

          1 Reply Last reply Reply Quote 0
          3 out of 4
          • First post
            3/4
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.