Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    SSL/TLS + User Auth with Local User Manager & External Cert Creation

    Scheduled Pinned Locked Moved OpenVPN
    3 Posts 2 Posters 1.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      Nucleus
      last edited by

      Is it possible to use PFS' internal 'User Manager' with OpenVPN's setting of 'SSL/TLS + User Auth' when all certs are created externally and NOT contained in the user's profile?

      I would like for OpenVPN to match the CN of the certificate with the user name in the local database and authenticate against it. How can I accomplish that?

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        Yes that works OK but you could not use the client export package with such a setup.

        The CN matching is done using the certificate presented by the client at login, it doesn't matter if it was generated by pfsense or external, it checks the CN of that cert with the username.

        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • N
          Nucleus
          last edited by

          I never did update this post…. everything is working well.
          Thanks, jimp!

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.