Migrate from Shared key to TLS without outage?
-
You can't switch back **.
You just said the GUI is inaccessible. You need a working GUI to change OpenVPN settings (back).The client GUI becomes inaccessible after switching the server to TLS for that client connection. The connection is green though and traffic is being transmitted. Just the GUI of the client becomes unavailable.
I aim to switch from Shared Key to TLS without needing to be onsite at the client's remote location. Is there a way to achieve this switch without risking being locked out?
Here's my current approach:
- I first change the client's configuration to include the required TLS settings, which naturally causes a disconnect.
- I then configure the server for the VPN tunnel.
After these steps, the VPN link is reestablished and shows as green. However, the GUI access to the client remains inaccessible.
Can you provide any guidance or suggestions on how to address this issue or another perhaps 'proper' way of migrating from shared to TLS without the need to be at the client locaions?