Page 1 of 1

Openvpn replace sophos customized vpn client

Posted: Mon Mar 30, 2020 7:14 pm
by standerby
Hello, My company is using Sophos router for remote access. The Sophos software will create a customized installation package for each user with server cert/user cert/password already configured. However my win10 will loose internet connection after 2 or 3 hours. If I exit Sophos VPN client my internet will get restored sometime. Or I have to restart my computer. So I expect it's the Sophos software issue. I looked at the client log. It's using OpenVPN 2.1.1. So I installed latest OpenVPN client and copied over the configuration file and cert files. For some reason I got following error when I try to connect, mbed TLS: SSL read error: X509 - Certificate verification failed. e.g. CRL. CA or signature check failed. The Sophos vpn client can connect with no issue with same configuration file and cert file. What could be wrong or how can I overcome this cert issue? Thanks

Re: Openvpn replace sophos customized vpn client

Posted: Mon Mar 30, 2020 7:20 pm
by Pippin
Update.
If not possible contact Sophos.

Re: Openvpn replace sophos customized vpn client

Posted: Tue Mar 31, 2020 3:29 pm
by standerby
Dose latest OpenVPN still support RSA 1024 key? After some research I think this may be the reason for cert failure.