I have multiple clients, it works great. The issue is, if I reboot the server, and go to add more clients, it fails. ca.key is missing everytime. Generates errors.
So, to resolve the issue, i run this from the easy-ra directory.
vars clean-all build-ca
Next, I generate new client certs:
build-key client20
If I attempt to connect with any of those new certs, it fails. Says, "self signed certificate detected" and won't ever let them connect. Clients who were already added from before can still connect fine. Nothing seems to fix it except completely remove, re install and start from 0.
Any hints or help on my mistake?
maikcat
Post subject: Re: Adding new users/certs fails?
Posted: Fri Jan 27, 2012 10:53 am
I should be on the dev team.
Joined: Wed Jan 12, 2011 9:23 am Posts: 1068 Location: Athens,Greece
are you using x64 version of win8?
also you can always copy your keys to another pc and build them there..
i always create my keys in linux but some servers use win xp
Michael.
_________________ Amiga 500 , Zx +2 owner Long live Dino Dini (Kick off 2 Creator) Mitsubishi Evo IX Rules! (HKS EVC-S ,HKS GT extention+Hi-power409 ,HKS suction kit ,Walbro 255 ,Ecu reflash)
Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)
luis84
Post subject: Re: Adding new users/certs fails?
Posted: Sat Jan 28, 2012 6:27 am
OpenVPN User
Joined: Tue Nov 15, 2011 11:31 pm Posts: 16
Hello - Win Server 2008 64 bit.
Any ideas on how to fix this / or how to generate certs on another machine? I have no idea.
luis84
Post subject: Re: Adding new users/certs fails?
Posted: Sat Jan 28, 2012 6:38 am
OpenVPN User
Joined: Tue Nov 15, 2011 11:31 pm Posts: 16
Exact error is:
Sat Jan 28 00:35:27 2012 VERIFY ERROR: depth=1, error=self signed certificate in certificate chain: Sat Jan 28 00:35:27 2012 TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed Sat Jan 28 00:35:27 2012 TLS Error: TLS object -> incoming plaintext read error Sat Jan 28 00:35:27 2012 TLS Error: TLS handshake failed Sat Jan 28 00:35:27 2012 TCP/UDP: Closing socket
Users browsing this forum: No registered users and 0 guests
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot post attachments in this forum