Welcome, Guest. Please login or register.
Did you miss your activation email?
+  pfSense Forum
|-+  pfSense English Support» OpenVPN» WARNING: No server certificate verification method has been enabled. See http:/
Username:
Password:
 
 

Pages: [1]   Go Down
  Print  
Author Topic: WARNING: No server certificate verification method has been enabled. See http:/  (Read 7984 times)
0 Members and 1 Guest are viewing this topic.
Nachtfalke
Hero Member
*****
Online Online

Posts: 2422


View Profile
« on: May 01, 2011, 05:40:10 am »

Hi,

every time I connect to my pfsense server I got this message

Code:
WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.

My knowledge about OpenVPN isn't really good but I didn't found a possibility in pfsense Cert Manager to get this working:

Code:
You can build your server certificates with the build-key-server script (see the easy-rsa documentation for more info). This will designate the certificate as a server-only certificate by setting the right attributes. Now add the following line to your client configuration:

remote-cert-tls server

Did I miss something in the Cert Manager config options or isn't there a possibility in there till now ?
Logged
jimp
Administrator
Hero Member
*****
Offline Offline

Posts: 12808



View Profile
« Reply #1 on: May 02, 2011, 02:01:49 pm »

I have looked into that, but building keys that way requires some extra openssl.cnf mojo that is tricky to work out when trying to use PHP's OpenSSL functions like we do.
Logged

Need help fast? Commercial Support!

Co-Author of pfSense: The Definitive Guide. - Check the Doc Wiki for FAQs.

Do not PM for help!

Donate to the project | My Wish List
Nachtfalke
Hero Member
*****
Online Online

Posts: 2422


View Profile
« Reply #2 on: May 02, 2011, 02:13:26 pm »

Hi jimp,

thanks for feedback. Just wanted to be sure that I didn't miss anything in the pfsense config.
Logged
Pages: [1]   Go Up
  Print  
 
Jump to:  

 

Page created in 0.025 seconds with 19 queries.