expired error. Is it related with the upgrade of the
openvpn package? we use one from the epel repository.
Regards!
--
Mio Vlahović
--
Check out the vibrant tech community on one of the world's most
engagi
On 08.08.2017 19:59, Mio Vlahović wrote:
> Hi all,
>
> We have a problem with the clients after the server reboot.
>
> [CUT]
One update... I can no longer generate new certificates. It seemse that
whichopensslcnf scripts can't find openssl.cnf (which is there in the
same
etc/openvpn/easy-rsa/2.0/openssl.cnf
/etc/openvpn/easy-rsa/2.0
The correct version should have a comment that says: easy-rsa version 2.x"
--
Mio Vlahović
Linux/Network Administrator @ BCS d.o.o.
GSM: +385 95 6308 809
-
On 08.08.2017 21:47, David Sommerseth wrote:
> On 08/08/17 21:28, Mio Vlahović wrote:
>> On 08.08.2017 21:13, David Sommerseth wrote:
>>> On 08/08/17 20:34, Leonardo Rodrigues wrote:
>>>>
>>>> You very likely created your certificated with MD5
>>
>>>
>>> Yes I did, same result... any other hints?
>>>
>>> Regards!
>>>
>
> May I suggest running the script with shell debug enabled (sh -x build-key
> xxx) ? Sometimes it helps me to find the error
>
Yes, here is the result...
# sh -x build-key xx
+ export EASY_RSA=/etc/openvpn/easy-rsa/2.0
+ EASY_RSA=/etc/openvpn/easy-rsa/2.0
+ /etc
ould have a comment that says: easy-rsa version 2.x
How can we generate new client certificates now? The openssl-1.0.0.cnf
hasn't been touched, so I can't understand why it is not working anymore...
Regards!
--
Mio Vlahović
--
with the same result...
[root@vpn 2.0]# echo $KEY_CONFIG
/etc/openvpn/easy-rsa/2.0/openssl-1.0.0.cnf
--
Mio Vlahović
Linux/Network Administrator @ BCS d.o.o.
GSM: +385 95 6308 809
--
Check out the vibrant tech community on
On 17.08.2017 15:49, Selva wrote:
>
>
> On Thu, Aug 17, 2017 at 8:33 AM, Mio Vlahović <mailto:mio.vlaho...@bcs.hr>> wrote:
>
> On 15.08.2017 02:13, Selva wrote:
> > Hi,
> >
> > I do not use easy-rsa but the test you posted is n
.. I tried reinstalling easy-rsa with the same
results... After that, I changed "easy-rsa version 2.x" to "easy-rsa
version 2.2" and it works as before!
Thank You all for helping us out!
Regards!
--
Mio Vlahović