Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - purpleimpala

#1
Yes, I can see and select the field as expected with this patch. Thanks!
#2
Yes, it is 16.1.16, and yes, the TOTP server is configured and present.  The point is, the OpenVPN "Add Server" dialog doesn't have a field for selecting the backend.

BTW this is a fresh install of OPNsense.

OPNsense 16.1.16-amd64
FreeBSD 10.2-RELEASE-p18
OpenSSL 1.0.2h 3 May 2016
#3
I'm using OPNsense 6.1.16-amd64, and following the instructions at https://docs.opnsense.org/manual/how-tos/sslvpn_client.html .  I am trying to set up 2FA.

(Aside: there's some material missing in Step 0: Preparation in the section entitled "Create a Certificate" where it says "Fill in the form with (leave the rest default):".  Here it needs to mention that the certificate to be created is a Server certificate called "SSLVPN Server Certificate" (for example, to match the text later).)

My problem comes in Step 1: Add SSL server.  When you click the orange box saying "+ Add Server", the form doesn't include a field to select the Backend Authenticator.  This means that when you click "Save", you get an error message at the top of the form pointing out that you must select a Backend Authentication method, but you can't.

If you use the Wizard to add a server (which took me a bit of working out - it's not so obvious that you can click on the magic wand) then at least you can add a server, because the first step is to set up a new Authentication Backend of one of three types (but none of them are OTP unfortunately).

Is there a workaround for this?