I have to admit ... I'm having a bit of trouble understanding this as well.
Mine is a complete new install.
You have this in OpenVpn:
- A master Certificate (used to verify clients certificates)
The server certificate (used by clients to verify the server)
The server private key associated with the certificate
Diffie-Helman parameters (Used to exchange the session key)
An optional key generate by openvpn to add TLS authentication
Then in Certificate Manager:
- E-Mail, SSL Client
E-Mail, SSL Client, Code Signing
SSL Server
VPN Client Only
VPN Server Only
VPN Client, VPN Server
Time Stamping
I'm not quite sure what ties up with what ... except the VPN server and vpn client cert of course but the rest I'm a bit baffled with as well.
I could use a bit of guidance as well please.
Regards,
Tib