In general, end-users should never need to explicitly use this option, as it is automatically added by the OpenVPN service wrapper when a given OpenVPN configuration is being run as a service.exit-event is the name of a Windows global event object, and OpenVPN will continuously monitor the state of this event object and exit when it becomes

@peterh-ReinstateMonica Thanks. I just started working with OpenVPN (or any VPN) this week. So other than for apparent reasons, I have no idea how and why this works, but it did the trick for me so I wanted to share it. – stupid anon May 8 at 9:58

With --duplicate-cn, two connections with same common name are allowed, so one cert can be used by more than one connection/users. Without --duplicate-cn, every vpn cert must have their own CN, so every connection/user have one unique cert.

Jan 06, 2017 · set interfaces openvpn vtun0 openvpn-option --duplicate-cn commit save Setup firewall. We’ll need to open a port in the firewall for OpenVPN. If you’re not using the standard port (1194 Hello! After connecting, i recieve a message: Wed Mar 11 22:58:56 2015 Successful ARP Flush on interface [57] {AF13632B-87D1-40D1-9533-4FB5FFC42FAC} Wed Mar 11 22:59:01 2015 ROUTE: route addition failed using CreateIpForwardEntry: The object already exists. The EdgeRouter OpenVPN server provides access to the LAN ( for authenticated OpenVPN clients. CLI: Access the Command Line Interface. You can do this using the CLI button in the Web UI or by using a program such as PuTTY. wonder if there's a bug in openvpn. Our openvpn server "tests" incoming clients to ensure they comply with our openvpn client standards - killing their session if they don't (basically client-less NAC). One thing we're doing is allowing "duplicate-cn", but using our NAC test to reject clients using the same cert (get better logging of the