diff options
author | Gert Doering <gert@greenie.muc.de> | 2015-07-14 09:09:54 +0200 |
---|---|---|
committer | Gert Doering <gert@greenie.muc.de> | 2015-07-14 10:13:24 +0200 |
commit | b6ec7fbe96f4e200b8962ef6bb572bbb2228133e (patch) | |
tree | 79ead92aecb5eb2ababf405ce0dc03f79c4b83d2 /doc | |
parent | 4e1e3ba1d8582a1e95dd6f9564e97c99784959a7 (diff) | |
download | openvpn-b6ec7fbe96f4e200b8962ef6bb572bbb2228133e.tar.gz openvpn-b6ec7fbe96f4e200b8962ef6bb572bbb2228133e.tar.xz openvpn-b6ec7fbe96f4e200b8962ef6bb572bbb2228133e.zip |
Document --daemon changes and consequences (--askpass, --auth-nocache).
Trac #574, #576
Signed-off-by: Gert Doering <gert@greenie.muc.de>
Acked-by: Steffan Karger <steffan.karger@fox-it.com>
Message-Id: <1436857794-29419-1-git-send-email-gert@greenie.muc.de>
URL: http://article.gmane.org/gmane.network.openvpn.devel/9923
Diffstat (limited to 'doc')
-rw-r--r-- | doc/openvpn.8 | 16 |
1 files changed, 16 insertions, 0 deletions
diff --git a/doc/openvpn.8 b/doc/openvpn.8 index 3eb2493..0692a80 100644 --- a/doc/openvpn.8 +++ b/doc/openvpn.8 @@ -2208,6 +2208,22 @@ openvpn command for a fairly reliable indication of whether the command has correctly initialized and entered the packet forwarding event loop. In OpenVPN, the vast majority of errors which occur after initialization are non-fatal. + +Note: as soon as OpenVPN has daemonized, it can not ask for usernames, +passwords, or key pass phrases anymore. This has certain consequences, +namely that using a password-protected private key will fail unless the +.B \-\-askpass +option is used to tell OpenVPN to ask for the pass phrase (this +requirement is new in 2.3.7, and is a consequence of calling daemon() +before initializing the crypto layer). + +Further, using +.B \-\-daemon +together with +.B \-\-auth-user-pass +(entered on console) and +.B \-\-auth-nocache +will fail as soon as key renegotiation (and reauthentication) occurs. .\"********************************************************* .TP .B \-\-syslog [progname] |