• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Open VPN with LDAP not working when multiple users connect simultaneously.

Scheduled Pinned Locked Moved OpenVPN
3 Posts 2 Posters 323 Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • Z
    zo718
    last edited by Oct 22, 2018, 3:19 PM

    Hello,

    I have a pFsense Firewall running 2.4.3-RELEASE-p1 (amd64). I set up open VPN to work with LDAP for authentication. I used the wizard to set it up.
    Everything works great until multiple users tried to connect simultaneously. The last user that connects to VPN can authenticate, but they can't reach anything in the internal network. Ping doesn't work, they are unable to reach an internal website or other resources.

    Any ideas?

    Thank you.

    1 Reply Last reply Reply Quote 0
    • V
      viragomann
      last edited by Oct 22, 2018, 4:26 PM

      If the the server is configured for TLS, have you assigned a unique certificate to each user?

      1 Reply Last reply Reply Quote 0
      • Z
        zo718
        last edited by Oct 23, 2018, 4:13 PM

        Yes TLS is configured. I disabled it and created a new profile, and the issue replicates. But here is something I am still having trouble figuring it out.

        There is only one local account in the pFsense. In my team, I am the only one able to authenticate and ping/or connect to internal resources. Everyone else can only authenticate, but can't ping anything or access any internal resources. We all are using LDAP authentication.

        1 Reply Last reply Reply Quote 0
        1 out of 3
        • First post
          1/3
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
          This community forum collects and processes your personal information.
          consent.not_received