Unauthenticated OpenVPN Server Detection

high Nessus Plugin ID 107073

Synopsis

An unauthenticated OpenVPN server is listening on the remote host.

Description

The remote host is running an OpenVPN server. Based on its responses, the remote host appears to be in unauthenticated mode. This means that the tunnel is unencrypted and authentication is disabled.

Solution

Enable authentication

See Also

https://openvpn.net/

Plugin Details

Severity: High

ID: 107073

File Name: insecure_openvpn_detect.nasl

Version: 1.4

Type: remote

Published: 2/28/2018

Updated: 4/11/2022

Configuration: Enable thorough checks

Asset Inventory: true

Supported Sensors: Nessus

Vulnerability Information

CPE: cpe:/a:openvpn:openvpn