Solved

Secondary OpenVPN server needs to trust client certificates

Posted on 2014-07-24
2
394 Views
Last Modified: 2014-07-25
I have an OpenVPN server set up on W2K3 and working fine with certificate (static) authentication.  I am setting up a second OpenVPN server for failover.  How do I get the secondary server to trust the client certificates that were generated on the primary server (with easy-rsa)?  I do not have a separate CA and don't want to use one so that the secondary server will still work if it can't connect to a CA (or the failed primary).

Thanks,
-Rich
0
Comment
Question by:rdyaz
2 Comments
 
LVL 33

Accepted Solution

by:
Dave Howe earned 500 total points
ID: 40218996
OpenVPN servers need to have the CA cert (Not the key, just the cert) for the issuer of each client cert they must trust.
Just copy it from the config of the first server.
0
 

Author Comment

by:rdyaz
ID: 40220315
Ok it worked--that was a lot easier than I was making it.  Thanks!
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Let’s list some of the technologies that enable smooth teleworking. 
SSL stands for “Secure Sockets Layer” and an SSL certificate is a critical component to keeping your website safe, secured, and compliant. Any ecommerce website must have an SSL certificate to ensure the safe handling of sensitive information like…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

831 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question