[Openvpn-users] Restrict access to VPN Server by CN

I've got a box with more than one vpn server instance running.

Now i've got the scenario, that i need to restrict the access to these
instances based on the CN of the certificate.
Is this possible?
CN=A should have Access to VPN instance 1 - but not to the second one.
CN=B should have access to both.
How could this be done?

All the certificates are still valid - CRL is no choice - i only have to
make sure, that each CN can only access the vpn he is allowed to connect


