Two OpenVPN problems: 2FA support and Perfect Forward Security disabled

OK i see. Made a fast one. If i use ‘auth-user-pass’ on client side, i get an

2023-03-23 13:53:50 [ipfire.local] Peer Connection Initiated with [AF_INET]192.168.234.1:1194
2023-03-23 13:53:52 SENT CONTROL [ipfire.local]: 'PUSH_REQUEST' (status=1)
2023-03-23 13:53:52 AUTH: Received control message: AUTH_FAILED,CRV1:R,E:dGVzdG5vZXhwaXJpbmdydw==:VE9UUA==:One Time Token: 
2023-03-23 13:53:52 SIGUSR1[soft,auth-failure (auth-token)] received, process restarting
2023-03-23 13:53:52 Restart pause, 5 second(s)
CHALLENGE: One Time Token:  

so the “CHALLENGE” from openvpn-authenticator comes up whereby i entered the 6 digit OTP and failed

CHALLENGE: One Time Token:  145669
🔐 Enter Private Key Password: *********  

which is clear since the authentication failed even before i could enter the OTP and a SIGUSR1 restarts the process. Seems that openvpn-authenticator have a problem somewhere here.
Also, the processes OpenVPN and openvpn-authenticator can not be stopped via WUI, need to kill them manually if i want to make changes in WUI otherwise i get an address in use error message!

Some more infos. Best,

Erik

1 Like