On Fri, Aug 11, 2006 at 11:39:18AM +0200, Christian Michallek wrote:
> In most cases i use the Downgrade privileges to drop openvpn to user nobody.
> this can cause problems, because when the push options are changed on 
> the server the clients will terminate.
> 
[snip]
> 
> /dev/net/tun is owned by root, so openvpn cant reopen the device.
> 
> btw, i havent restarted the server by myself, the connection broke 
> because the dsl line disconnected, so this can happen often.
> 
> its not very serious, you can run openvpn as root, or create the 
> user/group for this yourself, perhaps its even a security problem to 
> give the user access to tun, i dont know that.
> In case its not a security problem, i would really recommend this to be 
> default.


Hi, 

Have you tried the --persist-tun option? Other --persist-* may be useful
too.

Regards,

Alberto


-- 
Alberto Gonzalez Iniesta    | Formación, consultoría y soporte técnico
agi@(inittab.org|debian.org)| en GNU/Linux y software libre
Encrypted mail preferred    | http://inittab.com

Key fingerprint = 9782 04E7 2B75 405C F5E9  0C81 C514 AF8E 4BA4 01C3

Reply via email to