OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 16.1 Legacy Series »
  • Can't connect to VPN
« previous next »
  • Print
Pages: [1]

Author Topic: Can't connect to VPN  (Read 5005 times)

mircsicz

  • Full Member
  • ***
  • Posts: 108
  • Karma: 3
    • View Profile
Can't connect to VPN
« on: May 17, 2016, 06:04:50 pm »
I've manually converted my pfSense 2.3 Setup on a Version 2 APU to OPNsense. Everything works as expected except the OpenVPN Tunnel's...

I've reimported all the old certificate's but it seem's the CA doesn't recognize the reimported Cert's as member's of itself...



Any hints are welcome
« Last Edit: May 17, 2016, 06:11:29 pm by mircsicz »
Logged

chemlud

  • Hero Member
  • *****
  • Posts: 2051
  • Karma: 93
    • View Profile
Re: Can't connect to VPN
« Reply #1 on: May 17, 2016, 06:17:12 pm »
Hmm, I would generate new certs on the server and distribute them safely to the clients....
Logged
kind regards
chemlud
____
"The price of reliability is the pursuit of the utmost simplicity."
C.A.R. Hoare

mircsicz

  • Full Member
  • ***
  • Posts: 108
  • Karma: 3
    • View Profile
Re: Can't connect to VPN
« Reply #2 on: May 17, 2016, 06:55:46 pm »
No chance to go that route, there are client's I can only reach through VPN...
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 13693
  • Karma: 1176
    • View Profile
Re: Can't connect to VPN
« Reply #3 on: May 17, 2016, 08:06:37 pm »
Hi there,

If you can provide a server and client cert I will look into it right away. PM or email (franco@project.tdl) for details.

Maybe it's just a fixup of the config that is needed after import, but for the sake of UX, the import should be fixed if possible.


Cheers,
Franco
Logged

mircsicz

  • Full Member
  • ***
  • Posts: 108
  • Karma: 3
    • View Profile
Re: Can't connect to VPN
« Reply #4 on: May 18, 2016, 06:27:24 am »
Hey Franco,

it seems you got a typo in your mailadress...
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 13693
  • Karma: 1176
    • View Profile
Re: Can't connect to VPN
« Reply #5 on: May 18, 2016, 07:54:46 am »
Right, I did not want to explicitly name "opnsense.org" for email crawling reasons, sorry. :)
Logged

mircsicz

  • Full Member
  • ***
  • Posts: 108
  • Karma: 3
    • View Profile
Re: Can't connect to VPN
« Reply #6 on: May 18, 2016, 12:26:09 pm »
LOL & Arghhh

I've created a new CA and a server & client cert. But even that new CA doesn't recognize the 2 certs I created within the Web GUI! So for me it looks like I hit a bug?!?


Sent with Tapatalk from my iOS Device
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 13693
  • Karma: 1176
    • View Profile
Re: Can't connect to VPN
« Reply #7 on: May 18, 2016, 12:35:13 pm »
Can you run me through your steps in order to reproduce? I'm seeing created certs in my local install with OpenVPN so far.
Logged

mircsicz

  • Full Member
  • ***
  • Posts: 108
  • Karma: 3
    • View Profile
Re: Can't connect to VPN
« Reply #8 on: May 18, 2016, 06:40:32 pm »
hi Franco,

dropped you a mail... Let me know if you still need the cert's.
« Last Edit: May 18, 2016, 06:45:44 pm by mircsicz »
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 13693
  • Karma: 1176
    • View Profile
Re: Can't connect to VPN
« Reply #9 on: May 18, 2016, 07:34:35 pm »
At least the cert count issue is fixed. Thanks for your help so far.
Logged

mircsicz

  • Full Member
  • ***
  • Posts: 108
  • Karma: 3
    • View Profile
Re: Can't connect to VPN
« Reply #10 on: May 18, 2016, 08:12:28 pm »
Thank you so much franco, that kind of trapped me yesterday... I'll upgrade next week and see how that changes the picture!

I'll report back
Logged

franco

  • Administrator
  • Hero Member
  • *****
  • Posts: 13693
  • Karma: 1176
    • View Profile
Re: Can't connect to VPN
« Reply #11 on: May 18, 2016, 08:43:01 pm »
You can patch your running install, the patch is harmless:

# cd /usr/local/www
# fetch https://raw.githubusercontent.com/opnsense/core/7aa0cd11ab/src/www/system_camanager.php


Cheers,
Franco
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 16.1 Legacy Series »
  • Can't connect to VPN
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2023 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2