Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


    Cloudron Forum

    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular

    2FA in OpenVPN App

    OpenVPN
    3
    6
    97
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      sayedanowar9 last edited by

      I have enabled Two Factor Authentication for a user but when I am logging in to OpenVPN app, system is asking only username & Password, no 2FA code required.

      Can we enable it for additional security?

      1 Reply Last reply Reply Quote 1
      • nebulon
        nebulon Staff last edited by

        Indeed the app does not support 2fa yet, but since the frontend at least is developed by us at https://git.cloudron.io/cloudron/openvpn-app we can add this.

        girish S 2 Replies Last reply Reply Quote 0
        • girish
          girish Staff @nebulon last edited by

          @nebulon I think maybe @sayedanowar9 wants the 2FA on the OpenVPN connection and not the front end. It looks like OpenVPN supports it, but it's not easy to figure out how...

          1 Reply Last reply Reply Quote 0
          • S
            sayedanowar9 @nebulon last edited by

            @nebulon I wanted to enable 2FA in frontend itself. Clients are connecting using certificates, so I believe those are pretty secure.

            girish 1 Reply Last reply Reply Quote 0
            • girish
              girish Staff @sayedanowar9 last edited by

              @sayedanowar9 One issue with just using the certs is that if a cert is misplaced (it's just a file after all) or got stolen (with all these npm/gems/pip post installation scripts anything can happen!), then one can connect to the VPN.

              This is why most of the corporate VPNs have a passphrase or OTP to go along with the certificate. I have been meaning to implement this in the app for a while...

              S 1 Reply Last reply Reply Quote 0
              • S
                sayedanowar9 @girish last edited by

                @girish Yes true, 2FA in OpenVPN connect is good to have. Importantly we need 2FA in FrontEnd is necessary as that one secured by password very likely user will reuse same password in all places or can provide very weak password.

                So for now if you could enable 2FA in frontend that would be very helpful.

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Powered by NodeBB