Re: [Openvpn-users] Re: error=self signed certificate

  Subject: Re: [Openvpn-users] Re: error=self signed certificate
  From: Kevin DeGraaf <kevin@xxxxxxxxxxxxxxxx>
  Date: Sun, 12 Dec 2004 20:15:06 -0500 (EST)

> It's nice that we know how you're generating the keys. Please post the
> config file too, so we can see how you're using them.

I didn't think it was relevant, since I've made zero changes to the
configuration (i.e. diff would have no output) and the key names are
fairly straightforward.  :-)

However, the relevant portion of the server config is:

  tls-auth /etc/openvpn/tls-auth-hmac.key
  ca /etc/ssl/CertAuth/cacert.pem
  dh /etc/ssl/CertAuth/dh2048.pem
  cert /etc/openvpn/linux112.crt  # server.crt in my earlier post
  key /etc/openvpn/linux112.key   # server.key

The full configuration file is here:


Similarly for the client:

  tls-auth "/home/kevin/.openvpn/tls-auth-hmac.key"
  ca "/home/kevin/.openvpn/cacert.pem"
  cert "/home/kevin/.openvpn/kevind.crt"  # username.crt
  key "/home/kevin/.openvpn/kevind.key"   # username.key

Kevin DeGraaf

