[OpenVPN home] [Date Prev] [Date Index] [Date Next]
[OpenVPN mailing lists] [Thread Prev] [Thread Index] [Thread Next]
Google
 
Web openvpn.net

Re: [Openvpn-users] Re: error=self signed certificate


  • Subject: Re: [Openvpn-users] Re: error=self signed certificate
  • From: Kevin DeGraaf <kevin@xxxxxxxxxxxxxxxx>
  • Date: Sun, 12 Dec 2004 20:15:06 -0500 (EST)

> It's nice that we know how you're generating the keys. Please post the
> config file too, so we can see how you're using them.

I didn't think it was relevant, since I've made zero changes to the
configuration (i.e. diff would have no output) and the key names are
fairly straightforward.  :-)

However, the relevant portion of the server config is:

  tls-server
  tls-auth /etc/openvpn/tls-auth-hmac.key
  ca /etc/ssl/CertAuth/cacert.pem
  dh /etc/ssl/CertAuth/dh2048.pem
  cert /etc/openvpn/linux112.crt  # server.crt in my earlier post
  key /etc/openvpn/linux112.key   # server.key

The full configuration file is here:

  http://www.kevindegraaf.net/ovpn-config

Similarly for the client:

  tls-client
  tls-auth "/home/kevin/.openvpn/tls-auth-hmac.key"
  ca "/home/kevin/.openvpn/cacert.pem"
  cert "/home/kevin/.openvpn/kevind.crt"  # username.crt
  key "/home/kevin/.openvpn/kevind.key"   # username.key

--
Kevin DeGraaf

____________________________________________
Openvpn-users mailing list
Openvpn-users@xxxxxxxxxxxxxxxxxxxxx
https://lists.sourceforge.net/lists/listinfo/openvpn-users