Project

General

Profile

Actions

Bug #2808

closed

OpenVPN client config with pkcs12 gets duplicated IP of client with ca,cert,key

Added by Filipe Vieira over 11 years ago. Updated over 11 years ago.

Status:
Rejected
Priority:
Normal
Assignee:
-
Category:
OpenVPN
Target version:
-
Start date:
02/10/2013
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Affected Version:
2.0.1
Affected Architecture:

Description

Hi.

I'm installing pfSense in 6 servers and connecting them with OpenVPN SSL/TLS. I ended up with a problem discussed many times in the forums, desktop clients getting the same IP of servers. I've found that if you configure the client with the pkcs12 option, they will get the same IPs already distributed to servers. The OpenVPN Export Utility does this by default, that's bad. After using ca, cert and key options in .ovpn config file everything works!

I'm posting this here because if you google around, this is a common problem with OpenVPN. I think if you mix clients of ca,cert,key with pkcs12, OpenVPN messes the address pool. Maybe it's an OpenVPN problem that you could workaround, or maybe I don't know :)

PS: The certificates are differents, it's not a problem that could be solved with duplicate-cn option.

Actions

Also available in: Atom PDF