Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Client Wizard Export for AD users

    Scheduled Pinned Locked Moved OpenVPN
    5 Posts 2 Posters 959 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • H
      Heimire
      last edited by

      Using OpenVPN with Microsoft AD.
      I want to make this as simple as possible for the users.

      Do each user in AD need a client certificate?
      If yes, how do I generate?

      If no, then how to I create a generic config file for the client?

      yes, I am new to OpenVPN :)

      Thanks.

      H.

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        If you use certificates, you'll have to make them under System > Cert Manager. Make the CN the same as the username.

        Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • H
          Heimire
          last edited by

          Thanks.

          Do I have to use a certificate for each user?

          We have clients that needs to connection to the OpenVPN server.
          Want to make it as easy form them to setup and connect.
          But at the same time easy for us to manage.

          They have AD accounts they use to log into a shared server.

          I really appreciate your help.

          1 Reply Last reply Reply Quote 0
          • jimpJ
            jimp Rebel Alliance Developer Netgate
            last edited by

            If you choose to use certificates (Server mode "Remote Access (SSL/TLS + User Auth) then each user must have their own certificate.

            If you change the mode to User Auth only, then it will have one installer which can be used by anybody with an AD account. It is more convenient to manage, but you lose the extra security gained by having certificates.

            Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 0
            • H
              Heimire
              last edited by

              Jim,

              I got it.ย  We dont have that many users so I think we will use the certificates.
              Thank you for taking the time.

              H.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.