Changes

Jump to navigation Jump to search
274 bytes added ,  20:00, 4 May 2009
Add screenshots for the creation of the certificate
Line 89: Line 89:  
**'''Certificate life''': How-long the certificate will be valid. Enter what you want, but remember, when the certificate expires, you'll have to create another one, and update it in OpenVPN Bridge panel.
 
**'''Certificate life''': How-long the certificate will be valid. Enter what you want, but remember, when the certificate expires, you'll have to create another one, and update it in OpenVPN Bridge panel.
 
**'''Key size''': you can enter what you want (I use 2048 in general). The bigger, the stronger, but will use a bit more CPU power when the session key is negotiated (at the connection, and once an hour)
 
**'''Key size''': you can enter what you want (I use 2048 in general). The bigger, the stronger, but will use a bit more CPU power when the session key is negotiated (at the connection, and once an hour)
**'''Certificate Use''': you should use "VPN Server Only". '''This is important'''. If you don't choose this type of certificates, clients may be enable to connect, or may be enable to proceed as some other certificate uses won't allow an empty password.
+
**'''Certificate Use''': you should use "VPN Server Only". '''This is important'''. If you don't choose this type of certificates, clients may be unable to connect, or you may be unable to proceed as some other certificate uses won't allow an empty password.
 +
 
 +
Here's an example:
 +
[[File:Phpki_ovpn_bridge_server_crt.png|768px|thumb|center|Create a new certificate for the server side]]
 +
Now, confirm you want to create this certificate:
 +
[[File:Phpki_confirm_crt.png|768px|thumb|center|Confirm the creation of the new certificate]]
    
=== Configure openvpn with the newly created certificates ===
 
=== Configure openvpn with the newly created certificates ===

Navigation menu