[OpenVPN home] [Date Prev] [Date Index] [Date Next]
[OpenVPN mailing lists] [Thread Prev] [Thread Index] [Thread Next]
Google
 
Web openvpn.net

Re: [Openvpn-users] Securing the OpenVPN on windows: How to? (repeated)


  • Subject: Re: [Openvpn-users] Securing the OpenVPN on windows: How to? (repeated)
  • From: Jon Bendtsen <jon.bendtsen@xxxxxxxxxx>
  • Date: Wed, 5 Apr 2006 08:24:27 +0200

Den mandag 3.apr kl. 23:28 skrev ÐÐÐÐÑÐÐ ÐÑÑÐÐÐ:

Hello openvpn-users,

  I've installed the OpenVPN v2.1b11 client on a winXP-SP2 box.
  I use it with OpenVPN GUI and eToken. The account is non-admin one.

eToken? is that some hardware thing that stores the certificate? Does the GUI actually ask for a password for that thing? Because i could not get the GUI to ask for mine.


  I'm trying to secure this installation and so far I see some strange
  things:
  1) "ta.key" file must be accessible for a non-admin user. Why? I
     thought this file is for openvpn.exe's use as the service. It
     should not be user-accessible, should it?
  2) no matter OpenVPN is v2.1b11 - it takes to add a user to the
     "Network Configuration Operators" group to be able to control the
     TAP-Win32 instance in "tap" mode. The v2.1x changelog says the
     plain mortal now is capable of controlling it. What I did wrong?

Please CC me, I'm not subscribed to the list now.

thats pretty risky, as this information might be cutted out when people remove old text.



JonB

-------------------------------------------------------
This SF.Net email is sponsored by xPML, a groundbreaking scripting language
that extends applications into web and mobile media. Attend the live webcast
and join the prime developer group breaking into this new coding territory!
Openvpn-users mailing list
Openvpn-users@xxxxxxxxxxxxxxxxxxxxx
https://lists.sourceforge.net/lists/listinfo/openvpn-users


Warning: require_once(../../../archive_common.php) [function.require-once]: failed to open stream: No such file or directory in /home/openvpn/domains/openvpn.net/public_html/archive/openvpn-users/2006-04/msg00070.html on line 197

Fatal error: require_once() [function.require]: Failed opening required '../../../archive_common.php' (include_path='/usr/local/lib/php') in /home/openvpn/domains/openvpn.net/public_html/archive/openvpn-users/2006-04/msg00070.html on line 197