What's new
  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

2 separate clients on OpenVPN server

mekabe remain

Regular Contributor
Hi,

I have OpenVPN server running on my Asus RT88AX
One client is accessing with CN = client
and a subnet is routed to this client.
Now I need to connect another client. But when I try the same configuration file on the new client, it also uses the same CN (=client)
And I believe same subnet is being routed to the new client.
How can I select another CN for the new connecting client ?
 
Hi,

I have OpenVPN server running on my Asus RT88AX
One client is accessing with CN = client
and a subnet is routed to this client.
Now I need to connect another client. But when I try the same configuration file on the new client, it also uses the same CN (=client)
And I believe same subnet is being routed to the new client.
How can I select another CN for the new connecting client ?
There are two ways spelled out in other posts. The first method is to generate unique certificates with different CNs for each client. That is done outside the GUI with the resources in the firmware. The second is to use the same certificates but differentiate based on the username (how you login), and insert in the custom configuration the directive to use the username as the common name. The first is preferable (because the certificates can be revoked for users without upsetting the whole shebang) while the second is easier if you have total control of all the users (more a home setup).
 
There are two ways spelled out in other posts. The first method is to generate unique certificates with different CNs for each client. That is done outside the GUI with the resources in the firmware. The second is to use the same certificates but differentiate based on the username (how you login), and insert in the custom configuration the directive to use the username as the common name. The first is preferable (because the certificates can be revoked for users without upsetting the whole shebang) while the second is easier if you have total control of all the users (more a home setup).
thank you. second one is easier and suitable for my home use. I don'T think I will have to revoke certs anyway. So how can I do that ? What is the custom configuration to use username as CN ?
 
Yes, put that in the custom configuration box on the advanced settings page of the VPN server.
 

Latest threads

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Back
Top