Results 1 to 9 of 9

Thread: VPN clients

  1. #1
    Senior Member
    Join Date
    Sep 2005
    Posts
    587
    Thanks
    7
    Thanked
    7 times in 7 posts

    VPN clients

    Hello, I was reading this informative guide on how to set up OpenVPN server/clients and I have a question that maybe someone here knows.

    It says you have to make a clientX.ovpn certificate for every client that you want. E.g.: client1.ovpn, client2.ovpn, client3.ovpn, etc.

    My question is, what is this based on? Do you really need a unique one for each separate PC? If I want to just have an "anon" account, can't I just make an anon.ovpn and give it to all the clients?

    Thanks

  2. #2
    Administrator Moby-Dick's Avatar
    Join Date
    Jul 2003
    Location
    There's no place like ::1 (IPv6 version)
    Posts
    10,665
    Thanks
    53
    Thanked
    384 times in 313 posts

    Re: VPN clients

    not delt with OpenVPN before , but I'm pretty sure that in a PKI type setup each client needs its own key ?

    you coudl alwasy got for a PPTP type VPN or one based on a shared secret
    my Virtualisation Blog http://jfvi.co.uk Virtualisation Podcast http://vsoup.net

  3. #3
    Senior Member
    Join Date
    Sep 2005
    Posts
    587
    Thanks
    7
    Thanked
    7 times in 7 posts

    Re: VPN clients

    I've never used either so it's all new to me

    Hmm, but how could it tell that it wasn't the same client that just moved to a different location?

  4. #4
    Senior Member
    Join Date
    Mar 2006
    Location
    London
    Posts
    296
    Thanks
    16
    Thanked
    8 times in 7 posts

    Re: VPN clients

    Quote Originally Posted by latrosicarius View Post
    I've never used either so it's all new to me

    Hmm, but how could it tell that it wasn't the same client that just moved to a different location?
    I don't think that's the point. The certificate is used to make sure the device authenticating has got a certificate that has been allowed by the VPN server. I don't think the server cares what device it is as long as the certificate is valid.

  5. #5
    Senior Member
    Join Date
    Sep 2005
    Posts
    587
    Thanks
    7
    Thanked
    7 times in 7 posts

    Re: VPN clients

    Quote Originally Posted by gman1981 View Post
    I don't think that's the point. The certificate is used to make sure the device authenticating has got a certificate that has been allowed by the VPN server. I don't think the server cares what device it is as long as the certificate is valid.
    So what does that mean? That I can use the same client cert on all my clients?
    Thanks

  6. #6
    Senior Member
    Join Date
    Mar 2006
    Location
    London
    Posts
    296
    Thanks
    16
    Thanked
    8 times in 7 posts

    Re: VPN clients

    I think so. I think I'm right in saying that the certificate is not checked against the client but against the authenticating server. Therefore the server probably doesn't care whether the certificate is for a particular client or not.
    Although having thought about it I'm now not 100% sure

  7. #7
    Senior Member
    Join Date
    Sep 2005
    Posts
    587
    Thanks
    7
    Thanked
    7 times in 7 posts

    Re: VPN clients

    Okay, the answer is no. I just tried it out, and, for whatever reasson, OpenVPN will disconnect the first computer connected by client1, if another computer logs in with client1.

    thanks for your inputs

  8. #8
    Member
    Join Date
    Nov 2006
    Location
    nr Glasgow
    Posts
    176
    Thanks
    2
    Thanked
    4 times in 4 posts

    Re: VPN clients

    Quote Originally Posted by latrosicarius View Post
    Hello, I was reading this informative guide on how to set up OpenVPN server/clients and I have a question that maybe someone here knows.

    It says you have to make a clientX.ovpn certificate for every client that you want. E.g.: client1.ovpn, client2.ovpn, client3.ovpn, etc.

    My question is, what is this based on? Do you really need a unique one for each separate PC? If I want to just have an "anon" account, can't I just make an anon.ovpn and give it to all the clients?

    Thanks
    Interesting link am thinking about setting up some VPN myself so files can be accessed when i'm away from home etc. So let us know how this goes, i'm watching keenly.

  9. #9
    Senior Member
    Join Date
    Sep 2005
    Posts
    587
    Thanks
    7
    Thanked
    7 times in 7 posts

    Re: VPN clients

    mountainmachine, it works, but here's the deal:

    Each client has a certificate and a key file, which corresponds to the same file on the server.

    So for instance, mine is called "client1". It works great, but only one computer can be logged in as client1 at any given time. If a second computer logs in as client1, it will disconnect the first.

    Therefore you will have to do "client2" instead on the other computer, if you plan on connecting both at the same time.

    Here is my current problem... I have 2 people who connect to my server. According to the online info I was reading, they are both supposed to have a full internet connection, but it will be routed THROUGH the server's internet connection.

    The problem I have is one of the people's computer connects to the server fine, but maintains it's current IP address so it's not routing all traffic through my server ???

    And the other person's computer connects to the server fine as well, but loses all other internet connectivity.

    I believe these are both common problems, but I have yet to find an answer that will make them both route thru my server's connection like they are supposed to.

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. Start VPN connection before logon/Services timeout error 1053
    By dwarfer16 in forum Help! Quick Relief From Tech Headaches
    Replies: 0
    Last Post: 20-07-2007, 12:35 PM
  2. Plusnet - beware of the firewall for VPN!
    By Taz in forum Networking and Broadband
    Replies: 0
    Last Post: 21-02-2007, 06:32 PM
  3. VPN over ADSL
    By 8bit in forum Networking and Broadband
    Replies: 10
    Last Post: 13-04-2005, 01:17 PM
  4. ADSL modem router & VPN Questions
    By rc55 in forum Networking and Broadband
    Replies: 0
    Last Post: 05-10-2004, 04:26 PM
  5. VPN features
    By comtree in forum Networking and Broadband
    Replies: 3
    Last Post: 07-01-2004, 04:35 PM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •