40
pfSense OpenVPN Server

pfSense OpenVPN ServerThe Admin User Needs to Use the Client Certificate or Client Export Will Not Work 6-1-2 OpenVPN Server Creative Commons: Attribution & Share Alike 20

  • Upload
    others

  • View
    51

  • Download
    0

Embed Size (px)

Citation preview

pfSenseOpenVPN Server

Login

6-1-2 OpenVPN Server 1Creative Commons: Attribution & Share Alike

Configure OpenVPN

6-1-2 OpenVPN Server 2Creative Commons: Attribution & Share Alike

Use the Wizard

6-1-2 OpenVPN Server 3Creative Commons: Attribution & Share Alike

Local Authentication

6-1-2 OpenVPN Server 4Creative Commons: Attribution & Share Alike

Certificate Parameters

6-1-2 OpenVPN Server 5Creative Commons: Attribution & Share Alike

The Server’s Certificate

6-1-2 OpenVPN Server 6Creative Commons: Attribution & Share Alike

External Interface

6-1-2 OpenVPN Server 7Creative Commons: Attribution & Share Alike

Same as VPN Name

Crypto Settings

6-1-2 OpenVPN Server 8Creative Commons: Attribution & Share Alike

Client Tunnel Parms

6-1-2 OpenVPN Server 9Creative Commons: Attribution & Share Alike

What We Tell Client

6-1-2 OpenVPN Server 10Creative Commons: Attribution & Share Alike

I Ignore the Rest

That is the Coreof the VPN

Hit Next

6-1-2 OpenVPN Server 11Creative Commons: Attribution & Share Alike

Enable NAT & Firewall

6-1-2 OpenVPN Server 12Creative Commons: Attribution & Share Alike

OpenVPN Almost Works

6-1-2 OpenVPN Server 13Creative Commons: Attribution & Share Alike

But we Need toGenerate a

User Certificatefor the

VPN Cl4ients6-1-2 OpenVPN Server 14Creative Commons: Attribution & Share Alike

Use Cert Manager

6-1-2 OpenVPN Server 15Creative Commons: Attribution & Share Alike

4

And Certificate Creator

6-1-2 OpenVPN Server 16Creative Commons: Attribution & Share Alike

Make a New Certificate

6-1-2 OpenVPN Server 17Creative Commons: Attribution & Share Alike

Client Certificate

6-1-2 OpenVPN Server 18Creative Commons: Attribution & Share Alike

Be Sure the Two NamesAre the Same

The Certificates

6-1-2 OpenVPN Server 19Creative Commons: Attribution & Share Alike

Web Server

VPN Server

Web Client

The Admin UserNeeds to Use theClient Certificateor Client ExportWill Not Work

6-1-2 OpenVPN Server 20Creative Commons: Attribution & Share Alike

Go to User Manager

6-1-2 OpenVPN Server 21Creative Commons: Attribution & Share Alike

Edit Admin User

6-1-2 OpenVPN Server 22Creative Commons: Attribution & Share Alike

Set User Certificate

6-1-2 OpenVPN Server 23Creative Commons: Attribution & Share Alike

Use the Client Cert

6-1-2 OpenVPN Server 24Creative Commons: Attribution & Share Alike

To Generate ClientPackages, We Needto Enable a Package

6-1-2 OpenVPN Server 25Creative Commons: Attribution & Share Alike

Go to Package Manager

6-1-2 OpenVPN Server 26Creative Commons: Attribution & Share Alike

Available Packages

6-1-2 OpenVPN Server 27Creative Commons: Attribution & Share Alike

6-1-2 OpenVPN Server 28Creative Commons: Attribution & Share Alike

Install Export Utility

6-1-2 OpenVPN Server 29Creative Commons: Attribution & Share Alike

6-1-2 OpenVPN Server 30Creative Commons: Attribution & Share Alike

Check and Then

6-1-2 OpenVPN Server 31Creative Commons: Attribution & Share Alike

Try Client Export

6-1-2 OpenVPN Server 32Creative Commons: Attribution & Share Alike

6-1-2 OpenVPN Server 33Creative Commons: Attribution & Share Alike

Client Export

6-1-2 OpenVPN Server 34Creative Commons: Attribution & Share Alike

And You Should Get the List

6-1-2 OpenVPN Server 35Creative Commons: Attribution & Share Alike

Make Export Package

6-1-2 OpenVPN Server 36Creative Commons: Attribution & Share Alike

This Should DroppfSense-udp-443-bt.vpn.rg.net-install.exe

On Your Desktop

6-1-2 OpenVPN Server 37Creative Commons: Attribution & Share Alike

Give it to theClient User toInstall on Their

Laptop

6-1-2 OpenVPN Server 38Creative Commons: Attribution & Share Alike

The Client User canUse the Package

a la2-3-1.openvpn.pdf

6-1-2 OpenVPN Server 39Creative Commons: Attribution & Share Alike