Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Openvpn Client Export - not show user/cert

    Scheduled Pinned Locked Moved OpenVPN
    8 Posts 3 Posters 2.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • F
      foxx155
      last edited by

      Cert for OpenVPN:
      Devcenter OpenVPN cert
      Server Certificate
      CA: No
      Server: Yes
      Internal Certificate Authority ..................
      CN=Devcenter OpenVPN cert, C=HU
      Valid From: Wed, 18 May 2016 22:48:20 +0200
      Valid Until: Sat, 16 May 2026 22:48:20 +0200

      OpenVPN Config:
      GW Group WANCsoport UDP4 / 1198 192.168.99.0/27
      Crypto: AES-256-CBC/SHA1
      D-H Params: 2048 bits client (tun)
      Backend for authentication: Windows_AD
      SSL+User auth
      Server certificate: Devcenter OpenVPN cert

      I conected the pf to my Windows AD. Backend for authentication settings only for Windows_AD.
      And the Client Export empty.
      The cert assigned to local "admin" user.

      0_1548168882038_Screenshot 2019-01-22 at 15.54.31.png

      K 1 Reply Last reply Reply Quote 0
      • RicoR
        Rico LAYER 8 Rebel Alliance
        last edited by

        Did you pick the correct Server from the list?

        0_1548169407381_openvpn_client-export_server-list.png

        -Rico

        F 1 Reply Last reply Reply Quote 0
        • K
          Konstanti @foxx155
          last edited by Konstanti

          @foxx155
          Another option-client certificate created ???
          System/User Manager/Users/ Edit
          0_1548183906379_0fcd5fcb-5b39-4bd5-8044-296341121fe9-image.png

          Openvpn Server settings

          0_1548184036462_13a36082-ee80-4b3d-b63d-4eadd4109669-image.png

          Openvpn /client export utility
          Post Rico

          0_1548184259272_01b91125-9d93-49a5-a7de-89f60f18f508-image.png

          0_1548184187321_e5fa2cdd-f75e-43d7-ba81-16ed770469a9-image.png

          F 1 Reply Last reply Reply Quote 0
          • F
            foxx155 @Rico
            last edited by

            @rico said in Openvpn Client Export - not show user/cert:

            pick the correct Server

            Yes i pick the correct Server.

            1 Reply Last reply Reply Quote 0
            • F
              foxx155 @Konstanti
              last edited by

              @konstanti

              I use AD backand authentication only, dont use local database auth.
              AD groupe name "pfsense_vpnuser" and pfsense group"pfsense_vpnuser" with correct permission.

              if I manually download the cert and I did the ovpn filet then it works.

              1 Reply Last reply Reply Quote 0
              • F
                foxx155
                last edited by

                0_1548233574845_Screenshot 2019-01-23 at 9.47.48.png 0_1548233580802_Screenshot 2019-01-23 at 9.48.33.png0_1548233620885_Screenshot 2019-01-23 at 9.48.55.png 0_1548233625902_Screenshot 2019-01-23 at 9.50.13.png 0_1548233631045_Screenshot 2019-01-23 at 9.50.41.png 0_1548233635282_Screenshot 2019-01-23 at 9.50.56.png 0_1548233639618_Screenshot 2019-01-23 at 9.51.21.png

                1 Reply Last reply Reply Quote 0
                • RicoR
                  Rico LAYER 8 Rebel Alliance
                  last edited by Rico

                  Your Certificate Tab only shows a Server Cert for OpenVPN, you also need to create User Certificates in SSL/TLS + User Auth Mode.
                  After creating a Cert per User they will show up in the Client Export.
                  ATM they do not show up because your configuration is not complete.

                  -Rico

                  1 Reply Last reply Reply Quote 0
                  • F
                    foxx155
                    last edited by

                    thanks Rico, its work. :)

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.