i new to this program
so i getting frustrated..
but i import a CA from PIA VPN in the Authorites but it wont Self Sign as an issuer... google AI isnt helping much
i continue the video to setup the VPN client it wont connect.. i guessing because its not self signed
and i currently running OpenSense as a VM to set this up to transition from Pfsense eventually.. so not sure if the self sign is a issue because its running as a VM i dunno.. but im stuck
i also asked helped in the IRC channel no one replies.. think i been using IRC for 37 years now so many people there no one talks.. guess everyone on discord
Don't know anything about PIA, but did you import
- a certificate only
- a certificate and a private key
?
Only with the latter you will be able to use that combination to sign more certificates. If it was the former, that is so your OPNsense can verify the peer of your VPN connection. How you get your client certificate - no idea, that's up to PIA I guess.
so from this video
https://www.youtube.com/watch?v=wDEHo9XJjeA
all you do is copy the CA out of the open vpn file
i choose import and i paste the ca begin and end of the cert in data
i save and its supposed to show instantly self signed
i have the same problem when i imported all my authorities from pfsense 0 self signed like in pfsense things are different and in opensense you have less features in openvpn as a client compared to pfsense i noticed as well..
here is the signed in pfsense
and all i do is copy the auth but that didnt work either none of my other auth are self signed
what i wonder is if its because im running on a vm on unraid and really need to just move to a real machine to setup that might be causing issues?
seems maybe opnsense has a bug in it..
if i create a new authority give it a name leave it as create new internal cert and leave the issuer as self-signed it fails to create a self-signed issuer so i guessing its not working
but if you do the same create a new authority give it a name and create a new internal cert.. but you change the issuer to one of those other authoritys i have in the screen shot.. then it will show up as issuer of that other authority...so thats kinda messed up... and if its blank i guess thats why its not working with openvpn for pia vpn