1
Virtual private networks / ovpn site to site (server waiting, client up)
« on: January 18, 2021, 07:05:06 pm »
I've just deployed OPNSense 20.7 on two APUC2 appliances at two different sites wiith public IPs and I'm struggling to get the ovpn site-to-site server side to come up. The client is up but the server is stuck in 'waiting' connection status.
I've got a couple of questions:
#1 Followed the documentation in detail on the docs.opnsense.org site for Setup SSL VPN site to site tunnel. On the client side ... Where is the configuration for the Server Certificate SSLVPN Server Certificate (CA: SSL VPN CA) ? I cannot find where to set this configuration item.
#2 How can I resolve the issue with the status on the server and client sides that in the logs shows as
server
--snip
openvpn[21380] MANAGEMENT: Client disconnected
openvpn[21380] MANAGEMENT: CMD 'quit'
openvpn[21380] MANAGEMENT: CMD 'status 2'
--snip
client
--snip
openvpn[18974] MANAGEMENT: Client disconnected
openvpn[18974] MANAGEMENT: CMD 'status 2'
openvpn[18974] MANAGEMENT: CMD 'state all'
--snip
p.s.
1. I have the road warrier vpn working in both directions
2. Just migrated the two appliances from pfsense to opnsense
I've got a couple of questions:
#1 Followed the documentation in detail on the docs.opnsense.org site for Setup SSL VPN site to site tunnel. On the client side ... Where is the configuration for the Server Certificate SSLVPN Server Certificate (CA: SSL VPN CA) ? I cannot find where to set this configuration item.
#2 How can I resolve the issue with the status on the server and client sides that in the logs shows as
server
--snip
openvpn[21380] MANAGEMENT: Client disconnected
openvpn[21380] MANAGEMENT: CMD 'quit'
openvpn[21380] MANAGEMENT: CMD 'status 2'
--snip
client
--snip
openvpn[18974] MANAGEMENT: Client disconnected
openvpn[18974] MANAGEMENT: CMD 'status 2'
openvpn[18974] MANAGEMENT: CMD 'state all'
--snip
p.s.
1. I have the road warrier vpn working in both directions
2. Just migrated the two appliances from pfsense to opnsense