[Easy-RSA 3] Do I need 2 CA roots for 2 servers?

Support forum for Easy-RSA certificate management suite.

Moderators: TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech

Post Reply
cakemaker
OpenVpn Newbie
Posts: 16
Joined: Mon Aug 16, 2010 10:09 am

[Easy-RSA 3] Do I need 2 CA roots for 2 servers?

Post by cakemaker » Tue Apr 24, 2018 1:52 pm

After reading the well written tutorial on https://community.openvpn.net/openvpn/w ... nVPN-Howto, I have no problem generating and signing basic key pair for my own usage.

For learning purpose, to clarify my concept, if I sign 2 server-keys and 6 client-keys by a single CA root, will all 6 clients be able to connect to the 2 servers? If I want client A,B,C use server I, client D,E,F use server II; do I need 2 CA root each for one of the group? Or there are other option under the easyrsa command to handle this?

Post Reply