[OpenVPN home] [Date Prev] [Date Index] [Date Next]
[OpenVPN mailing lists] [Thread Prev] [Thread Index] [Thread Next]
Google
 
Web openvpn.net

[Openvpn-users] Fwd: Note on SSL server vs. client certs


  • Subject: [Openvpn-users] Fwd: Note on SSL server vs. client certs
  • From: "James Yonan" <jim@xxxxxxxxx>
  • Date: Sun, 1 Feb 2004 22:25:17 -0000

Forwarded From: Gordon Schumacher, whiplash at this domain: pobox.com

> Something I ran into while building RSA certificates for my VPN - it's 
> "obvious" if you've played with OpenSSL a bunch, but not so much if you 
> haven't.  You might want to add a bit on it to the FAQ (though kudos for 
> making it some thorough - it's one of the best I've seen covering RSA key 
> generation out there!)
> 
> When making the key/cert pair for the server-side machine, the user will 
> need to change nsCertType to reflect this function - it will need to be set 
> to server instead of client.  I don't know if this is a recent change in 
> 1.5, but when I tried to connect a 1.5 Win32 client to the 1.42 server that 
> ships with SuSE 9.0, the client barfed...
> 
> Anyway, thanks again!  With that change, it worked like a charm...




-------------------------------------------------------
The SF.Net email is sponsored by EclipseCon 2004
Premiere Conference on Open Tools Development and Integration
See the breadth of Eclipse activity. February 3-5 in Anaheim, CA.
http://www.eclipsecon.org/osdn
_______________________________________________
Openvpn-users mailing list
Openvpn-users@xxxxxxxxxxxxxxxxxxxxx
https://lists.sourceforge.net/lists/listinfo/openvpn-users