Re: [Openvpn-users] Easy-TLS and Easy-PFP

2021-05-15 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, OK, without the CA being set there is this message at the top of the log: Using certificate fingerprint to verify peer (no CA option set) So there it is! Thanks R ‐‐‐ Original Message ‐‐‐ On Saturday, 15 May 2021 20:29, tincantech wr

Re: [Openvpn-users] Easy-TLS and Easy-PFP

2021-05-15 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, I should note: I have deleted the CA certificate from both server and client configs. This is a basic test to see if openvpn is running in Peer-fingerprint mode, because there is otherwise no indication of that being the case, at verb 4. At le

Re: [Openvpn-users] Easy-TLS and Easy-PFP

2021-05-15 Thread tincantech via Openvpn-users
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Hi, ‐‐‐ Original Message ‐‐‐ On Saturday, 15 May 2021 20:04, tincantech via Openvpn-users wrote: > Hi, > > in Openvpn master branch there now exists Peer-Fingerprint mode. > This allows establishing a VPN by simply using self signed certi