Community Support Forum
 
  OpenVPN.net  •  Forum Index  •  FAQ  

It is currently Thu Feb 23, 2012 4:01 am




Post new topic Reply to topic  [ 4 posts ] 
 Adding new users/certs fails? 
Author Message
 Post subject: Adding new users/certs fails?
PostPosted: Fri Jan 27, 2012 8:04 am 
OpenVPN User

Joined: Tue Nov 15, 2011 11:31 pm
Posts: 16
Hello,

I run OpenVPN server on Windows Server 08.

I have multiple clients, it works great. The issue is, if I reboot the server, and go to add more clients, it fails. ca.key is missing everytime. Generates errors.

So, to resolve the issue, i run this from the easy-ra directory.

vars
clean-all
build-ca

Next, I generate new client certs:

build-key client20

If I attempt to connect with any of those new certs, it fails. Says, "self signed certificate detected" and won't ever let them connect. Clients who were already added from before can still connect fine. Nothing seems to fix it except completely remove, re install and start from 0.

Any hints or help on my mistake?


Offline
 Profile  
 
 Post subject: Re: Adding new users/certs fails?
PostPosted: Fri Jan 27, 2012 10:53 am 
I should be on the dev team.
User avatar

Joined: Wed Jan 12, 2011 9:23 am
Posts: 1068
Location: Athens,Greece
are you using x64 version of win8?

also you can always copy your keys to another pc and build them there..

i always create my keys in linux but some servers use win xp ;)

Michael.

_________________
Amiga 500 , Zx +2 owner
Long live Dino Dini (Kick off 2 Creator)
Mitsubishi Evo IX Rules! (HKS EVC-S ,HKS GT extention+Hi-power409 ,HKS suction kit ,Walbro 255 ,Ecu reflash)

Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)


Offline
 Profile  
 
 Post subject: Re: Adding new users/certs fails?
PostPosted: Sat Jan 28, 2012 6:27 am 
OpenVPN User

Joined: Tue Nov 15, 2011 11:31 pm
Posts: 16
Hello - Win Server 2008 64 bit.

Any ideas on how to fix this / or how to generate certs on another machine? I have no idea.


Offline
 Profile  
 
 Post subject: Re: Adding new users/certs fails?
PostPosted: Sat Jan 28, 2012 6:38 am 
OpenVPN User

Joined: Tue Nov 15, 2011 11:31 pm
Posts: 16
Exact error is:

Sat Jan 28 00:35:27 2012 VERIFY ERROR: depth=1, error=self signed certificate in certificate chain:
Sat Jan 28 00:35:27 2012 TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
Sat Jan 28 00:35:27 2012 TLS Error: TLS object -> incoming plaintext read error
Sat Jan 28 00:35:27 2012 TLS Error: TLS handshake failed
Sat Jan 28 00:35:27 2012 TCP/UDP: Closing socket


Offline
 Profile  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 4 posts ] 


 Who is online 

Users browsing this forum: No registered users and 0 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Jump to:  


phpBB SEO
[ Time : 0.070s | 11 Queries | GZIP : On ]

 
Index  |  FAQ


Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group