Actions
Feature #14924
closedAdd Option for auth-gen-token to OpenVPN Server and OpenVPN Client Export
Status:
Duplicate
Priority:
Normal
Assignee:
-
Category:
OpenVPN
Target version:
-
Start date:
Due date:
% Done:
0%
Estimated time:
Plus Target Version:
Release Notes:
Default
Description
For 2FA deployments customers either use reneg-sec 0 to disable data-channel renegotiation or auth-gen-token to use a token to deal with the fact that Password+TOTP that has changed by the time the default 60 minute timer has expired. We should expose a GUI element that allows auth-gen-token be used and automatically add a config line item to the exported OpenVPN Client Export config files when it's enabled on the server.
Creating a separate redmine related to the same request for reneg-sec here: https://redmine.pfsense.org/issues/12466
Related issues
Actions