Hi Boris Am 15.02.2016 um 14:00 schrieb Boris: > Thank you Erich and Mark, > > ...>> > > No. I use the geode version for my alix box. But yes, I use easyrsa. > > [Snip] > >> >> Indeed there does not appear to be a build-key.... in the package, and I >> _believe_ the syntax may have changed. But there is a pkitool in the >> package. >> >> The documentation does not suggest the use of a build-key...whatever , >> if I understand this right. >> > > I went another way - lazy as I am.... I simply took the keys and certs > from my 3.x-Box and put them into the right place on the new router. I > could go with that until 2020 - the cert's valid lifetime. And I don't > have to change anything on the clients. > > I think having those scripts available again in future would be helpful, > especially for those, who follow the Bering-docs to build the vpn. >
I used easyrsa when I first installed openvpn. I found it unsatisfactory for a production system and the idea of having the CA and the keys on the same machine is just plain wrong. I then used tinyCA on a virtual machine for a while and switched to xca portable in the end. cheers ET ------------------------------------------------------------------------------ Site24x7 APM Insight: Get Deep Visibility into Application Performance APM + Mobile APM + RUM: Monitor 3 App instances at just $35/Month Monitor end-to-end web transactions and take corrective actions now Troubleshoot faster and improve end-user experience. Signup Now! http://pubads.g.doubleclick.net/gampad/clk?id=272487151&iu=/4140 ------------------------------------------------------------------------ leaf-user mailing list: leaf-user@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/leaf-user Support Request -- http://leaf-project.org/