OPNsense Forum

Archive => 23.7 Legacy Series => Topic started by: cygofi on December 24, 2023, 04:18:38 AM

Title: OpenVPN-Instance: UNDEF instead of username / Option --username-as-common-name
Post by: cygofi on December 24, 2023, 04:18:38 AM
I have created an OpenVPN server in OPNsense 23.7.10 via the new "Instance" page.
I am using user authentication without user certificates (Verify Client Certificate = none).

The connection establishment from the client works without problems, but the server only states that UNDEF is connected instead of the user name.

In order for the user name to be displayed instead of UNDEF, the option --username-as-common-name must be set for the OpenVPN server, but I cannot find an option for this.

How can I define this so that I can see in the OpenVPN server which users are connected instead of just UNDEF?

I would have expected the selection for this under "Options", but unfortunately there is nothing there.




In previous versions of OPNsense, when I defined the OpenVPN server via the "Server" page, I know that it worked to display the user names. I don't know if this option was implicitly set, by configuring with user authentication and without user certificate. But it worked.
Title: Re: OpenVPN-Instance: UNDEF instead of username / Option --username-as-common-name
Post by: urfin73 on December 25, 2023, 07:28:36 AM
Hello. Use the "Advanced" switch in instance setup. (top left corner)
After check " Username as CN" and duplicate-cn, if need.
Title: Re: OpenVPN-Instance: UNDEF instead of username / Option --username-as-common-name
Post by: cygofi on December 27, 2023, 09:01:40 AM
Thank you for pointing out the "Advanced" mode switch.
Hidden behind it was exactly the option I needed.