Re: [Openvpn-users] Updating rules while user connected

2017-01-22 Thread Scott Crooks
That's awesome! Thanks everyone. -- Scott Crooks (王虎) On Jan 19, 2017 23:32, "Gert Doering" wrote: > Hi, > > On Thu, Jan 19, 2017 at 07:25:28PM -0500, Selva Nair wrote: > > I would be interested in this too, but how do you trigger a reconnect > from > > the server side? I only know "client-kill

Re: [Openvpn-users] Updating rules while user connected

2017-01-20 Thread Selva Nair
On Fri, Jan 20, 2017 at 2:30 AM, Gert Doering wrote: > On Thu, Jan 19, 2017 at 07:25:28PM -0500, Selva Nair wrote: > > I would be interested in this too, but how do you trigger a reconnect > from > > the server side? I only know "client-kill CID" or "kill cn" but the > client > > will not notice

Re: [Openvpn-users] Updating rules while user connected

2017-01-20 Thread David Sommerseth
On 20/01/17 08:30, Gert Doering wrote: > Hi, > > On Thu, Jan 19, 2017 at 07:25:28PM -0500, Selva Nair wrote: >> I would be interested in this too, but how do you trigger a reconnect from >> the server side? I only know "client-kill CID" or "kill cn" but the client >> will not notice that until ke

Re: [Openvpn-users] Updating rules while user connected

2017-01-19 Thread Gert Doering
Hi, On Thu, Jan 19, 2017 at 07:25:28PM -0500, Selva Nair wrote: > I would be interested in this too, but how do you trigger a reconnect from > the server side? I only know "client-kill CID" or "kill cn" but the client > will not notice that until keep-alive timeout which would cause a long > disr

Re: [Openvpn-users] Updating rules while user connected

2017-01-19 Thread Selva Nair
Hi, On Thu, Jan 19, 2017 at 6:56 PM, David Sommerseth < open...@sf.lists.topphemmelig.net> wrote: > Gert is right ... > > On 19/01/17 22:33, Gert Doering wrote: > > What you can do is trigger a client disconnect/reconnect via management > > interface - that shouldn't cause more than a 2-3s hickup

Re: [Openvpn-users] Updating rules while user connected

2017-01-19 Thread David Sommerseth
Gert is right ... On 19/01/17 22:33, Gert Doering wrote: > What you can do is trigger a client disconnect/reconnect via management > interface - that shouldn't cause more than a 2-3s hickup for the > user (if the receives the same IP address)... ... and this is the "lo-tech" approach, which defi

Re: [Openvpn-users] Updating rules while user connected

2017-01-19 Thread Gert Doering
Hi, On Thu, Jan 19, 2017 at 12:58:21PM -0800, Scott Crooks wrote: > Where I run into confusion is how to push these new routes to the client? > Is this possible? Not as of today. The whole mechanics are tied to "the client has connected, so gather config data, wait for the PUSH_REQUEST from the

[Openvpn-users] Updating rules while user connected

2017-01-19 Thread Scott Crooks
Greetings, Since OpenVPN is very scriptable, I wouldn't imagine doing this would be a problem, but I'm looking to see if anyone else does this, if there are concerns with doing it, or if OpenVPN has a built-in way of doing this. Our OpenVPN set up does split-tunneling, so a client only gets acces