On Wed, 09 Feb 2005 18:42:38 -0600, Charles Duffy <cdu...@spamcop.net> wrote: > On Wed, 09 Feb 2005 17:26:14 -0500, Leonard Isham wrote: > > > You need to allow duplicate certificates. > > ...or to create unique client certificates. There's a lot to be said for > knowing who the connected clients are (in the logs, status files, etc) and > being able to individually revoke them; IMHO, such is a more appropriate > practice to encourage than duplicate-cn use except in unusual cases. > > In any event, this is a discussion more fit for openvpn-users than > openvpn-devel.
I assumed that he was taking "it step by step before adding in his own certs. Yes wrong list. -- Leonard Isham, CISSP Ostendo non ostento.