On Wed, 09 Feb 2005 17:26:14 -0500, Leonard Isham wrote: > You need to allow duplicate certificates.
...or to create unique client certificates. There's a lot to be said for knowing who the connected clients are (in the logs, status files, etc) and being able to individually revoke them; IMHO, such is a more appropriate practice to encourage than duplicate-cn use except in unusual cases. In any event, this is a discussion more fit for openvpn-users than openvpn-devel.