2 things are not clear :
1. I'm connect to the unit using VPN - so how could it be that it say "Failed to start OpenVPN connection to client"
2. why it say "cannot stat file '/home/pi/Documents/CRT/client.key': No such file or directory (errno=2)" ? the files are there 100000%
The "Failed to start OpenVPN connection to client" error means that the OpenVPN service couldn't start the connection specified in the
client.conf file. If you had called the file
myserver.conf it would have reported "Failed to start OpenVPN connection to
myserver".
The certificate errors are to do with the permissions on the files and can be resolved by running the following commands:
sudo cp /home/pi/Documents/CRT/ca.crt /etc/openvpn/ca.crt
sudo cp /home/pi/Documents/CRT/client.crt /etc/openvpn/client.crt
sudo cp /home/pi/Documents/CRT/client.key /etc/openvpn/client.key
sudo chown root:root /etc/openvpn/ca.crt /etc/openvpn/client.crt /etc/openvpn/client.key
sudo chmod 444 /etc/openvpn/ca.crt /etc/openvpn/client.crt
sudo chmod 400 /etc/openvpn/client.key
sudo chmod go-rwx /etc/openvpn/.secrets
You will then need to edit the
client.conf file and replace the following lines:
ca /home/pi/Documents/CRT/ca.crt
cert /home/pi/Documents/CRT/client.crt
key /home/pi/Documents/CRT/client.key
With these:
ca /etc/openvpn/ca.crt
cert /etc/openvpn/client.crt
key /etc/openvpn/client.key
I hope this helps.
--
Backups are your friend. Always make a backup!
/system backup save encryption=aes-sha256 name=MyBackup