• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Openvpn Client Export - not show user/cert

Scheduled Pinned Locked Moved OpenVPN
8 Posts 3 Posters 2.2k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • F
    foxx155
    last edited by Jan 22, 2019, 2:59 PM

    Cert for OpenVPN:
    Devcenter OpenVPN cert
    Server Certificate
    CA: No
    Server: Yes
    Internal Certificate Authority ..................
    CN=Devcenter OpenVPN cert, C=HU
    Valid From: Wed, 18 May 2016 22:48:20 +0200
    Valid Until: Sat, 16 May 2026 22:48:20 +0200

    OpenVPN Config:
    GW Group WANCsoport UDP4 / 1198 192.168.99.0/27
    Crypto: AES-256-CBC/SHA1
    D-H Params: 2048 bits client (tun)
    Backend for authentication: Windows_AD
    SSL+User auth
    Server certificate: Devcenter OpenVPN cert

    I conected the pf to my Windows AD. Backend for authentication settings only for Windows_AD.
    And the Client Export empty.
    The cert assigned to local "admin" user.

    0_1548168882038_Screenshot 2019-01-22 at 15.54.31.png

    K 1 Reply Last reply Jan 22, 2019, 7:03 PM Reply Quote 0
    • R
      Rico LAYER 8 Rebel Alliance
      last edited by Jan 22, 2019, 3:03 PM

      Did you pick the correct Server from the list?

      0_1548169407381_openvpn_client-export_server-list.png

      -Rico

      F 1 Reply Last reply Jan 23, 2019, 8:41 AM Reply Quote 0
      • K
        Konstanti @foxx155
        last edited by Konstanti Jan 22, 2019, 7:11 PM Jan 22, 2019, 7:03 PM

        @foxx155
        Another option-client certificate created ???
        System/User Manager/Users/ Edit
        0_1548183906379_0fcd5fcb-5b39-4bd5-8044-296341121fe9-image.png

        Openvpn Server settings

        0_1548184036462_13a36082-ee80-4b3d-b63d-4eadd4109669-image.png

        Openvpn /client export utility
        Post Rico

        0_1548184259272_01b91125-9d93-49a5-a7de-89f60f18f508-image.png

        0_1548184187321_e5fa2cdd-f75e-43d7-ba81-16ed770469a9-image.png

        F 1 Reply Last reply Jan 23, 2019, 8:43 AM Reply Quote 0
        • F
          foxx155 @Rico
          last edited by Jan 23, 2019, 8:41 AM

          @rico said in Openvpn Client Export - not show user/cert:

          pick the correct Server

          Yes i pick the correct Server.

          1 Reply Last reply Reply Quote 0
          • F
            foxx155 @Konstanti
            last edited by Jan 23, 2019, 8:43 AM

            @konstanti

            I use AD backand authentication only, dont use local database auth.
            AD groupe name "pfsense_vpnuser" and pfsense group"pfsense_vpnuser" with correct permission.

            if I manually download the cert and I did the ovpn filet then it works.

            1 Reply Last reply Reply Quote 0
            • F
              foxx155
              last edited by Jan 23, 2019, 8:54 AM

              0_1548233574845_Screenshot 2019-01-23 at 9.47.48.png 0_1548233580802_Screenshot 2019-01-23 at 9.48.33.png0_1548233620885_Screenshot 2019-01-23 at 9.48.55.png 0_1548233625902_Screenshot 2019-01-23 at 9.50.13.png 0_1548233631045_Screenshot 2019-01-23 at 9.50.41.png 0_1548233635282_Screenshot 2019-01-23 at 9.50.56.png 0_1548233639618_Screenshot 2019-01-23 at 9.51.21.png

              1 Reply Last reply Reply Quote 0
              • R
                Rico LAYER 8 Rebel Alliance
                last edited by Rico Jan 23, 2019, 9:34 AM Jan 23, 2019, 9:29 AM

                Your Certificate Tab only shows a Server Cert for OpenVPN, you also need to create User Certificates in SSL/TLS + User Auth Mode.
                After creating a Cert per User they will show up in the Client Export.
                ATM they do not show up because your configuration is not complete.

                -Rico

                1 Reply Last reply Reply Quote 0
                • F
                  foxx155
                  last edited by Jan 23, 2019, 9:54 AM

                  thanks Rico, its work. :)

                  1 Reply Last reply Reply Quote 0
                  3 out of 8
                  • First post
                    3/8
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                    This community forum collects and processes your personal information.
                    consent.not_received