OPNsense Forum

English Forums => 25.1 Production Series => Topic started by: osmom on March 24, 2025, 06:35:25 PM

Title: Certificate for a new OPNVPN User not fond
Post by: osmom on March 24, 2025, 06:35:25 PM
In the Versions befor 25.x it was posible to crate a user-certificate for OPNVPN on System\Access\User\(UserName) Lower Area of the Dialog.
Now in the  25.1.3 it is not longer posible to create the User-certificate. Also in System\Trust\certificates I didn`t fond the right dialog.

Can somware tel me the rigt way to create a new opnvpn user (RoadWarior)? Thank you.
Title: Re: Certificate for a new OPNVPN User not fond
Post by: viragomann on March 24, 2025, 06:50:38 PM
According the docs, you have to create the client certificate in System: Trust: Certificates.

Ensure to select "client certificate" as type and the proper CA. State the username as common name.
Title: Re: Certificate for a new OPNVPN User not fond
Post by: osmom on March 25, 2025, 04:14:59 PM
For Information off other, Sysem-Access-User- Name must the same entry as the common name on client certificate in System: Trust: Certificates.
Title: Re: Certificate for a new OPNVPN User not fond
Post by: viragomann on March 25, 2025, 04:50:43 PM
What do you mean by "linked to the user"?

If you're talking about the OpenVPN Client Export, mine shows up the certificates which were issued by the CA, the selected server uses a certificate from, with linked users.
And I created all client certs in System: Trust: Certificates. Never knew an other way in OPNsense.

As mentioned, the common name in the certificate have to be identical to the username.