REVOKED CERTIFICATE STILL WORK

Hi,
I have set up a OVPN server and i tested it with certificate, but when i revoke the certificate it steal work , what is the problem ?

i found that i should add
/certificate
sign ca-template ca-crl-host=xxx.xxx.xxx.xxx name=CA_OM
but i don’t know which adresse i should put in it.
Thanks a lot

crl host is where crl list will be stored. It cab be routers address, where CA is generated.

Thanks for your reply ,

the question is which adresse IP Public or Local or Remote adresse ?

Whatever address will be reachable by the client.

so if i have maked the router is the DMZ i will use a IP ADRESS PUBLIC ?

i have put in it the local adresse of profile VPN but not working the revoked certificate still work