Search icon
Arrow left icon
All Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Newsletters
Free Learning
Arrow right icon
Troubleshooting OpenVPN

You're reading from  Troubleshooting OpenVPN

Product type Book
Published in Mar 2017
Publisher Packt
ISBN-13 9781786461964
Pages 178 pages
Edition 1st Edition
Languages
Concepts
Author (1):
Eric F Crist Eric F Crist
Profile icon Eric F Crist

Certificate authentication


Since the release of OpenVPN 2.x, certificate authentication has been the most prolific deployment of OpenVPN in the wild. The earlier static key only supported two remote endpoints, neither really being a client nor a server. This is not useful when more than a single remote client is desired.

Certificate chain overview

X.509 is a notable standard for Public Key Infrastructure (PKI), defining a hierarchical topology of CAs and their signed child certificates. The general concept is that, at that root of the chain, is an authority certificate, the CA. This CA certificate can be used to sign child certificates. Anyone (or thing, system, and so on) that trusts the root, inherently trusts the child certificates.

CA has the ability to sign child certificates with varying capabilities. Some will have differing key usage or KU; others might have subordinate CA rights. With cascading trust, subordinate CAs are generally given the same trust as their parent CA in a given...

lock icon The rest of the chapter is locked
Register for a free Packt account to unlock a world of extra content!
A free Packt account unlocks extra newsletters, articles, discounted offers, and much more. Start advancing your knowledge today.
Unlock this book and the full library FREE for 7 days
Get unlimited access to 7000+ expert-authored eBooks and videos courses covering every tech area you can think of
Renews at €14.99/month. Cancel anytime}