OPNsense Forum

Archive => 19.1 Legacy Series => Topic started by: sulci on April 26, 2019, 02:03:42 PM

Title: OpenVPN : Certificate is not intended for server use
Post by: sulci on April 26, 2019, 02:03:42 PM
Hey Everyone!

I have self signed certs for vpn connections, and after upgrading from 18.7.10 to 19.1.4 the vpn connection stopped working, and when i try to update the config it says : "The following input errors were detected: certificate is not intended for server use". Before the upgrade i used these certs. Could you tell me what changed, and how should i fix that problem?
Thanks in advance!
Title: Re: OpenVPN : Certificate is not intended for server use
Post by: qinohe on May 02, 2019, 02:02:23 PM
Hi sulci,

Don't know if you have already solved this on your own, but, nothing obvious has changed according creating certificates and the config.
Well, there have been changes, but, they should not have hit you if your VPN was setup correct in the first place  ;) no pun intended.
Last week I needed a tunnel for my new Android phone, I exported the client file from OPNsense, uploaded the file to the phone and I was in business. It had been a while since I used the server, at least from 18.7, but everything works as expected without having to 'tweak' any part on the server side  ;-)
Oh since you didn't mention, I'm talking OpenVPN....

Check your chain again, or even create a new one following the wiki and try again.

Greetings mark
Title: Re: OpenVPN : Certificate is not intended for server use
Post by: iam on May 13, 2019, 11:25:41 PM
I've observed the same issue.
Title: Re: OpenVPN : Certificate is not intended for server use
Post by: Vincent Chen on May 21, 2019, 03:28:20 AM
please take a look at this topic

https://forum.opnsense.org/index.php?topic=12092.0

seem the same issue, it might help