You are not logged in.

#1 2011-07-26 14:58:40

clovenhoof
Member
From: Bulgaria
Registered: 2010-09-16
Posts: 82

Cannot source vars file on OpenVPN

I installed OpenVPN from pacman.

I followed instructions from Wiki.

1. Copy /usr/share/openvpn/easy-rsa to /etc/openvpn/easy-rsa
2. Edit vars file.
3. source vars file (. ./vars)
4. ./clean-all
5. .. and so on

When I call ./clean-all it always says:

[stefan@archhost easy-rsa]$ sudo ./clean-all
Please source the vars script first (i.e. "source ./vars")
Make sure you have edited it to reflect your configuration.


Could you please tell me what is wrong with my vars file:

# easy-rsa parameter settings

# NOTE: If you installed from an RPM,
# don't edit this file in place in
# /usr/share/openvpn/easy-rsa --
# instead, you should copy the whole
# easy-rsa directory to another location
# (such as /etc/openvpn) so that your
# edits will not be wiped out by a future
# OpenVPN package upgrade.

# This variable should point to
# the top level of the easy-rsa
# tree.
export EASY_RSA="/etc/openvpn/easy-rsa"

#
# This variable should point to
# the requested executables
#
export OPENSSL="openssl"
export PKCS11TOOL="pkcs11-tool"
export GREP="grep"


# This variable should point to
# the openssl.cnf file included
# with easy-rsa.
export KEY_CONFIG="/etc/openvpn/easy-rsa/whichopensslcnf"

# Edit this variable to point to
# your soon-to-be-created key
# directory.
#
# WARNING: clean-all will do
# a rm -rf on this directory
# so make sure you define
# it correctly!
export KEY_DIR="/etc/openvpn/easy-rsa/keys"

# Issue rm -rf warning
echo NOTE: If you run ./clean-all, I will be doing a rm -rf on $KEY_DIR

# PKCS11 fixes
export PKCS11_MODULE_PATH="dummy"
export PKCS11_PIN="dummy"

# Increase this to 2048 if you
# are paranoid.  This will slow
# down TLS negotiation performance
# as well as the one-time DH parms
# generation process.
export KEY_SIZE=1024

# In how many days should the root CA key expire?
export CA_EXPIRE=3650

# In how many days should certificates expire?
export KEY_EXPIRE=3650

# These are the default values for fields
# which will be placed in the certificate.
# Don't leave any of these fields blank.
export KEY_COUNTRY="BG"
export KEY_PROVINCE="VN"
export KEY_CITY="bla"
export KEY_ORG="bla"
export KEY_EMAIL="bla"

Offline

#2 2011-07-26 15:40:32

Lone_Wolf
Member
From: Netherlands, Europe
Registered: 2005-10-04
Posts: 11,868

Re: Cannot source vars file on OpenVPN

[stefan@archhost easy-rsa]$ sudo ./clean-all

Did you run the source command with sudo also ?


Disliking systemd intensely, but not satisfied with alternatives so focusing on taming systemd.


(A works at time B)  && (time C > time B ) ≠  (A works at time C)

Offline

#3 2011-07-26 16:06:12

clovenhoof
Member
From: Bulgaria
Registered: 2010-09-16
Posts: 82

Re: Cannot source vars file on OpenVPN

Yes, with sudo of course.

When I call ./clean-all it always says:
[stefan@archhost easy-rsa]$ sudo ./clean-all
Please source the vars script first (i.e. "source ./vars")
Make sure you have edited it to reflect your configuration.

Offline

#4 2011-07-27 07:04:13

clovenhoof
Member
From: Bulgaria
Registered: 2010-09-16
Posts: 82

Re: Cannot source vars file on OpenVPN

The problem fixed. smile

I must be root when sourcing file vars.

Offline

Board footer

Powered by FluxBB