
OpenVPN Access Server (50 Connected Devices) / Self-Hosted VPN
Secure remote access has protected critical data and now simplifies role-based user management
What is our primary use case?
One of the main use cases for OpenVPN Access Server is managing secure remote access for our internal teams and technical engineers who need to connect to our private cloud infrastructure and staging environments.
We rely heavily on it to establish stable and secure connections so the team can access the database, internal applications, and server data safely from the server dashboard anywhere in the world.
The web admin UI makes it straightforward to manage user access and it integrates well with our existing authentication setup, which saves us a lot of time on the IT support side.
Our main way of using OpenVPN Access Server is primarily for security, where it saves us from hacking and prevents data from going outside of our secure connection by using this VPN.
What is most valuable?
The best features OpenVPN Access Server offers include security, which protects our data so that no one can access our connection.
We have one secure connection which we are using with OpenVPN, and providing secure remote access for our technical teams to connect to our infrastructure is definitely the main way that we use it in day-to-day life.
The admin web UI is at the top of the list because it makes managing user access incredibly simple without having to use the command line.
Another best feature is its built-in client portal where users can log in and download their own pre-configured profiles, which saves the IT team a ton of manual setup work.
Lastly, the authentication flexibility, specifically how smoothly it integrates with Active Directory and multi-factor authentication, gives us exactly the kind of enterprise-grade security we need.
The web UI and the authentication integration have massively improved our team's daily productivity.
On the IT management side, we do not have to waste time manually writing configuration files or handling complex command line setups just to onboard someone into the company.
Since it syncs seamlessly with our existing authentication and multi-factor setup, user management is basically automated.
For the rest of the team, they can log in to the portal, get what they need, and connect in seconds.
It has cut down on connection-related support tickets, letting everyone focus on their actual work without any technical issues.
OpenVPN Access Server has positively impacted our organization by giving us a highly reliable, stable environment for remote work.
Since we handle critical infrastructure, having a secure gateway that does not drop connections unexpectedly is a huge win.
It has greatly improved our security posture without adding administrative headaches because our engineers and technical teams can securely connect to private cloud resources and databases from anywhere without a glitch.
It ensures our support and operational workflows run smoothly around the clock, giving us total peace of mind regarding work access security.
What needs improvement?
An area for improvement is the pricing model. The concurrent user licenses get expensive pretty quickly as your organization grows, so more flexible pricing options would be a huge plus.
Another area is configurational disconnect. While the admin web UI handles about 90% of what you need, the moment you have to do deep, advanced routing customization, you still have to drop back to the command line interface to make those changes.
It would be great to see those deeper configurations completely integrated into the web portal.
Lastly, it would be awesome to see native support for newer, lighter protocols through WireGuard built straight into the platform alongside standard OpenVPN for better performance efficiency.
For how long have I used the solution?
I have been working in the current field for 2.8 years.
What do I think about the stability of the solution?
I have never faced any network or internet connection speed issues when I am connected to OpenVPN Access Server compared to other VPN solutions. I feel that it is highly stable and perfectly fine for day-to-day corporate work.
For tasks involving accessing databases, managing server infrastructure, or using our internal applications, I really do not notice any lag.
Compared to older VPN protocols through IPsec, it feels much smoother and establishes connections faster.
I do not feel any connection speed issues when using OpenVPN Access Server. Everything looks simple and smooth, and I have not encountered any issues.
OpenVPN Access Server is 100% stable in my experience.
What do I think about the scalability of the solution?
The scalability of OpenVPN Access Server is very natural and incredibly stable. In my experience, we rarely ever deal with unexpected service drops.
It just sits there and does its job, which gives us a lot of peace of mind when our teams are accessing critical infrastructure.
From a purely technical standpoint, it scales very well. You can easily upgrade the underlying hardware resources or spin up additional nodes in a cluster configuration if you need to handle a massive surge in concurrent users.
The only real constraint to its scalability is not technical; it is financial because of the concurrent user licensing model.
Scaling up to support much larger teams gets expensive quickly. So while the software handles growth seamlessly, the budget is really the main thing that we have to plan around as we scale.
How are customer service and support?
It is very easy to raise a ticket with them. We also have email support and a direct help desk we can contact via their service desk number and email, and we can raise tickets using their website portal. It is very easy.
I would definitely rate customer support 10 out of 10. They really respond to our queries so fast and help us in resolving issues.
How was the initial setup?
Installing and setting it up is very easy, especially compared to the community edition of OpenVPN. For example, when we deployed it in our environment, we did not have to build it from scratch or manually script out the installation.
We just pulled a pre-configured image directly onto our virtual machine, and the initial setup wizard walked us through the core settings including setting up the admin password and configuring the primary network interface right in the terminal.
From there, we immediately transitioned over to the web UI to handle the rest of the configuration including setting up our routing paths and subnets.
It took less than an hour to get the fully functioning server up, which is massive time saved for our engineering team.
What about the implementation team?
We use a local authentication method, which is primarily using SAML authentication integration to tie everything into our primary identity provider. We also utilize local authentication for emergency administrator backup accounts.
In terms of effectiveness, I would rate the SAML integration a solid 9 out of 10. It makes mapping user roles and enforcing multi-factor authentication incredibly smooth, meaning our users get a seamless single sign-on experience.
The only tiny friction point is that setting up the initial attribute mapping for custom security groups can be a little tedious in the interface, but once it is logged in, it runs flawlessly and completely automates our lifecycle management for access easier.
I have utilized the access control features of OpenVPN Access Server, and I would rate it 9.5 out of 10.
Instead of letting everyone onto the entire network once they connect, we can use the access control list to restrict access strictly by group or user roles.
Our engineering groups are given precise routing rules so they can hit specific staging subnets and databases, while other teams are restricted to only the internal applications they need for daily work.
It allows us to implement the zero trust principle very effectively at the network level without making the configuration overly complicated for our administrators.
What was our ROI?
We definitely see a clear return on investment from using OpenVPN Access Server, mostly driven by operational time savings and efficiency.
From a technical administrative perspective, the biggest metric is the reduction in manual onboarding time.
It used to take our engineers around 20 to 30 minutes per user to generate keys and distribute profile configurations manually.
Now, with the SAML and Active Directory integration, the process is down to under two minutes, which frees up our senior staff to focus on critical infrastructure tasks instead of managing access tickets.
Additionally, the client portal is so user-friendly that we have seen a massive reduction in routing IT support tickets related to connection drops or profile issues.
While the user licensing cost can add up, the savings in engineering hours and reduction in overhead for support make it a net positive investment for our organization.
What's my experience with pricing, setup cost, and licensing?
I use it for a client, so I do not have much information regarding the pricing, setup cost, and licensing.
But from what I have gathered, the pricing and setup costs are a little more expensive compared to any other VPN solutions, according to some of my seniors who have been working on this tool for the last five to six years.
The only thing I can advise is that the licensing cost is quite expensive, but it saves a lot of time for our IT engineers so that your senior IT engineers can focus on other ongoing IT issues in the company culture or any other tools they have.
It mainly saves time in configuring user profiles, as everything is automated. It is very easy to configure the rules of our organization, and it blindly follows them in order to create user profiles.
The user-friendly interface allows everyone to understand it easily, and it is easy to install.
What other advice do I have?
We purchase it from AWS Marketplace.
We use the role-defining features, and it has had a huge impact on how we enforce least privilege. Because it integrates so well with our identity provider via SAML, users are automatically placed into their respective groups based on their actual roles the moment they authenticate.
This makes enforcing least privilege practically effortless on our end. Instead of an administrator having to manually assign permissions to individual users every single time, the server reads the group role and immediately locks down or opens up access to a specific subnet based on the profile.
It ensures our security policy is strictly followed without creating any extra manual work or friction for our IT team or support team.
The user interface for OpenVPN Access Server is very user-friendly, very easy to understand, very easy to configure, and very easy to install in our virtual machines.
On the end-user side, the client web portal is completely foolproof. It is incredibly simple, allowing users to log in, see exactly what they need, and download their pre-configured connection profiles without any confusion.
On the administrative side, the admin web UI is highly organized and straightforward. It moves away from complex command-line configuration and lays out user management, routing rules, and authentication settings in a very logical menu system.
My only real critique is that it looks a bit traditional or dated compared to some modern SaaS dashboards, but from a purely functional perspective, it gets the job done cleanly and makes managing an entire team really intuitive.
Regarding AI capabilities, OpenVPN Access Server does not actually have built-in AI features right now. It is primarily a straightforward core networking and security tool.
However, looking at its overall governance and traditional security, it is exceptionally solid. The platform excels at access control, encryption standards, and secure logging, which gives us great oversight and compliance tracking for who is accessing our network infrastructure.
Regarding the accuracy and reliability of its output, OpenVPN Access Server does not actually have any native or built-in AI capabilities right now.
It is strictly a dedicated virtual private network and secure routing platform.
But if we look at the accuracy and reliability of its output from a pure networking standpoint, meaning connection stability, correct routing rules, and steady traffic management, it is incredibly reliable.
When you configure an access rule or subnet mapping, it works exactly as intended without bugs or random drops.
The platform is rock-solid on performance and does exactly what it is configured to do. It does not use artificial intelligence to get that done.
I would rate this product an overall 8 out of 10.
Secure remote access has transformed daily ticket resolution and reduced downtime for staff
What is our primary use case?
In my day-to-day work, we deal with customer tickets related to VPN access, such as VPN password resets, regardless of the region they are from.
Beyond user support, we typically handle these tickets with a single request every three days, provide secure encrypted options, give remote access, and utilize multi-factor authentication, along with cross-platform support that includes Windows, Linux, and macOS, while also implementing split tunneling to manage company traffic through the VPN.
For example, if an employee is working from home, they need OpenVPN Access Server to connect to the office network, which allows them to handle database servers and other resources securely while working from anywhere in the country, improving security through encrypted access.
OpenVPN Access Server governs secure and compliant VPN access through centralized user management, allowing admins to manage user accounts, monitor activity, and enforce access policies efficiently.
In my organization, OpenVPN Access Server is deployed as a centralized VPN gateway in my Azure cloud, which is a public cloud environment, enabling secure access to company resources.
What is most valuable?
The best features OpenVPN Access Server offers include the ability to grant employees access to office applications quickly; without OpenVPN Access Server, employees would need to travel, but once access is granted, they can reach all office resources within a minute, reducing the resolution time from one to two hours to just one minute.
We reduce VPN bandwidth consumption by providing OpenVPN Access Server connection access based on specific geographical regions, with separate VPN access for West, Central, and Canada, ultimately lowering our overall bandwidth usage.
I find the verification of credentials against Active Directory crucial; if credentials are not verified, access policies should define user groups, IP restrictions, and route-based access meticulously.
What needs improvement?
Regarding other features, I believe we can improve OpenVPN Access Server by implementing high availability through load balancing between multiple servers, which increases access control and user administration capabilities, while also adding stronger multi-factor authentication and continuous monitoring using tools like Splunk.
While it is easy to use, I would suggest regular updates to OpenVPN Access Server software, particularly before SSL certificate expirations or OS upgrades to protect against vulnerabilities while optimizing split tunneling for efficient bandwidth usage.
For how long have I used the solution?
I have been using OpenVPN Access Server for four years in my current company, PowerSchool.
How was the initial setup?
The setup process in my organization was straightforward as it was already pre-set up when I joined, and I experienced no complex issues during installation.
What was our ROI?
In terms of cost savings, there are tangible benefits, although specific numeric values were not specified.
What other advice do I have?
OpenVPN Access Server has positively impacted our organization by enabling remote issue resolution in minutes where previously critical alerts required hours of travel to fix, alongside improved productivity as employees can quickly access internal resources, file servers, and collaborate with teams.
I would rate OpenVPN Access Server as a 10 out of 10 because it significantly reduces downtime, enabling employees to address issues promptly.
For instance, if each engineer saves one hour daily on commuting, granting access with OpenVPN Access Server leads to significant productivity gains of around 300 hours saved monthly for the organization.
My overall review rating for this product is 10 out of 10.
Expanded secure access for education but purchasing and licensing have created ongoing obstacles
What is our primary use case?
I use the solution for higher education resources.
How has it helped my organization?
The solution does its job and it is easy to customize.
What is most valuable?
The core VPN functionality is reliable and relatively easy to administer once it is deployed.
What needs improvement?
The licensing and purchasing workflow needs serious improvement. OpenVPN should provide clear documentation for customers who need multiple Access Server instances, different connection counts, AWS Marketplace subscriptions, PAYG licensing, and BYOL licensing under the same organization. Support and sales also need a clearer internal escalation path. We received guidance that pointed us back to AWS, then AWS clarified that OpenVPN needed to amend or handle the agreement, then OpenVPN proposed BYOL, then the BYOL setup ran into another account conflict. This was embarrassing for a paid enterprise product.
The product should include clearer in-app and portal-level guidance explaining what account types, billing models, and subscription models are compatible. Customers should not have to discover these limitations through a long email chain.
For how long have I used the solution?
I have been using the solution for 7 months.
Which solution did I use previously and why did I switch?
We have used OpenVPN Access Server previously and were trying to expand our existing deployment. The issue was not that we were switching from another vendor. The issue was that expanding an existing OpenVPN setup became unexpectedly difficult.
What's my experience with pricing, setup cost, and licensing?
Do not assume the pricing or purchasing path will be straightforward, especially through AWS Marketplace. Confirm in writing whether your intended setup requires PAYG, BYOL, a Marketplace amendment, a separate AWS account, or a separate OpenVPN account. Also, budget staff time for the licensing process itself. The sticker price may look clear, but the real cost includes the time spent untangling subscription limitations, account conflicts, sales handoffs, and unclear guidance.
Which other solutions did I evaluate?
We considered continuing with OpenVPN because we already had operational familiarity with it and expected the expansion path to be simple.
What other advice do I have?
The technical product is usable. The purchasing and licensing experience was the problem. Our organization needed a simple answer to a simple question: how do we run one 10-connection server and one 50-connection server? Instead of a clear path, we got days of back-and-forth, repeated explanations, conflicting assumptions, AWS/OpenVPN finger-pointing, delayed responses, and a final BYOL path that still ran into account conflicts. For an infrastructure product, that is not acceptable.
Customers should not need to coordinate between vendor sales, vendor support, AWS Marketplace, AWS account teams, and internal billing just to buy more capacity. OpenVPN should make this process dramatically clearer, faster, and more accountable.
User management has simplified internal VPN access and now provides clear visibility and control
What is our primary use case?
My use case for OpenVPN Access Server is infrastructure VPN for internal company usage. The main reason we use it is because of the user management UI and the visual representation of all the data related to it.
What is most valuable?
Overall, my best feature of OpenVPN Access Server is the user management, which is very nice because OpenVPN can be quite painful and not very visible. This tool gives absolute visibility and full control over the users, their access, and provides them with some dashboards. The administrator can see everything related to the VPN system.
I primarily utilize OpenVPN Access Server access control features for personal working desktops to access the infrastructure. We provide the key pair generated automatically, which I control, but I know that it has other features to deliver those credentials as well.
What needs improvement?
I find that connection speed with OpenVPN Access Server loses in comparison to WireGuard, which is very fast. However, compared to any other solution, they are pretty much the same, and they do not require a lot of system resources for encrypting traffic, so it's average—not bad.
I think speed has room for improvement in OpenVPN Access Server. If they can make adjustments to the protocol for better speed, identical to WireGuard for example, that would be really good.
For how long have I used the solution?
I have been using OpenVPN Access Server for about a month, but with OpenVPN products in general, I have worked for several years.
What do I think about the stability of the solution?
I would rate the stability of OpenVPN Access Server about an eight or nine; it is pretty stable.
What do I think about the scalability of the solution?
Our size of organization did not allow us to discuss scalability for OpenVPN Access Server, but one server handles everything, especially since it's for internal traffic. It is hard to say, but I doubt it should have any issues with this.
How are customer service and support?
I would rate technical support for OpenVPN Access Server as not applicable because I have never talked with them. The documentation was absolutely fine for me; it was well-structured, and I did not have any difficulties with this solution, so I did not need the support.
Which solution did I use previously and why did I switch?
I have tried other solutions including Cisco, FortiGate, and native IPsec solutions from Windows platforms, as well as an open-source version of OpenVPN without dashboards and the WireGuard open-source solution.
How was the initial setup?
I find it extremely easy to install and set up OpenVPN Access Server.
As far as I remember, it takes about 10 or 15 minutes maximum to have a server ready.
OpenVPN Access Server requires really minimal maintenance, as it is basically dockerized and everything is automated, so it is even updated. It's absolutely simple to install.
What's my experience with pricing, setup cost, and licensing?
Regarding pricing for OpenVPN Access Server, I don't remember all the details exactly, but I believe it is really flexible and even provides something like free trials, so anyone can try it. It was reasonable as far as I remember.
Which other solutions did I evaluate?
I compare OpenVPN Access Server to other solutions by noting that it is extremely easy to set up. Even someone who is non-technical or possesses technical knowledge will be able to install it and use it in a few minutes, which is almost not possible with any other solution, as they are much more complicated.
What other advice do I have?
I do not use any role defining features because it is a really small organization, so it wasn't required, but it is there if needed.
I have seen OpenVPN Access Server integrations such as LDAP, RADIUS, PAM, and SAML, but again, due to the size of the company, it wasn't necessary and we didn't have it inside the company. However, it was nice that it is already embedded inside.
We haven't used much in terms of integrations with OpenVPN Access Server, so it's hard to say. We only used basic features there.
My advice for others looking to implement OpenVPN Access Server is that it is at least worth trying if you need a fast and easy implementation solution without technical overhead and you just need VPN access, which is supported by all operating systems and mobile operating system vendors. It is definitely worth a try.
OpenVPN Access Server was purchased directly from the website, not on the AWS marketplace or through a partner purchase. I would rate this product an overall eight out of ten.
Secure access to private servers has improved user control but still needs better value
What is our primary use case?
My current use case for OpenVPN Access Server is for the security aspect, so I access the servers through the VPN. I disable the public access and only enable the private access.
What is most valuable?
In my opinion, the most useful function in OpenVPN Access Server is the user management feature, which I regularly use to manage the users and the concurrent sessions. When I have a very small number of connections and users, I used to manage it from OpenVPN Access Server from the UI, discarding or canceling the open connections and unused connections.
I am satisfied with the access control features of OpenVPN Access Server; that access control is a good feature for OpenVPN Access Server.
I have been using the role-defining feature with OpenVPN Access Server. There are different roles: the admin role and the normal roles, so I provide the regular operations roles to the regular users, and admin access is restricted to a few people.
I find the user interface of OpenVPN Access Server to be good; it is an intuitive user interface, so I appreciate that.
What needs improvement?
At the moment, I do not have any improvements I could think of on top of my head, but it is good; I do not have any improvements or suggestions on the product at the moment.
For how long have I used the solution?
I have been working with OpenVPN Access Server for around seven to eight years so far.
What do I think about the stability of the solution?
I would rate the stability of OpenVPN Access Server as six out of ten.
What do I think about the scalability of the solution?
The ability to scale with OpenVPN Access Server is again a six out of ten.
I do not have any complexities with scalability; it is not complex to scale or to increase the number of users or devices.
Which solution did I use previously and why did I switch?
In my opinion, I have no idea about competitors; I have not considered any other options to compare OpenVPN Access Server.
How was the initial setup?
The initial setup for OpenVPN Access Server is simple.
What was our ROI?
I confirm that I purchased the product directly from the vendor, OpenVPN.
What's my experience with pricing, setup cost, and licensing?
I rate the price for OpenVPN as overpriced at the moment.
What other advice do I have?
I can recommend OpenVPN Access Server to other users. I would rate this review a six out of ten.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Secure remote access has enabled single sign-on and centralized control for all company users
What is our primary use case?
I am currently working with OpenVPN Access Server for approximately 20 users. We use OpenVPN Access Server to connect to our company services from one IP address to secure these connections. OpenVPN Access Server is very lightweight, and the installation process is equally lightweight.
Single sign-on is very important for me because it is one of the principles of zero-trust architecture. In this architecture, each user has minimum privilege and uses one login and one password to connect to any services.
How has it helped my organization?
It is very easy to install and set up OpenVPN Access Server within the organization. Installing and using this service is very easy. OpenVPN Access Server provides a very detailed guide for installing it on your own server and integrating it with Google or Microsoft, making the process straightforward.
What is most valuable?
The best feature of OpenVPN Access Server is single sign-on, which is a very secure feature for information security.
Access control is effective in providing precise access to user groups and devices. In our company, we use a couple of services to control devices and users. One of these is a mobile device management solution such as Miradore or JumpCloud, and another solution to secure the channel to connect to company services is OpenVPN Access Server. Through the admin console, we can manage user rights and connections to company services.
What needs improvement?
I have no answer regarding what I would like to see improved in OpenVPN Access Server. I am not aware of future features, but the current features in the interface and the functionality of OpenVPN Access Server are very good. Everything in OpenVPN Access Server is very good, but the price is expensive.
For how long have I used the solution?
I have been working with OpenVPN Access Server for around three years across two companies where I worked.
What do I think about the stability of the solution?
I find it very stable. All the issues were from my own mistakes, not from OpenVPN Access Server.
What do I think about the scalability of the solution?
I find OpenVPN Access Server scalable and have not seen any limitations with it. The stability was very good, and I have no issues or problems. When we deploy and install OpenVPN Access Server, the principle is to install and forget.
How are customer service and support?
Regarding technical support for OpenVPN Access Server, it is very good and very fast. Any issue was solved in five to ten minutes, or they sent me a description to solve my issue when I could not determine the problem myself. The technical support is very fast and very good.
Which solution did I use previously and why did I switch?
I previously used L2TP/IPsec on my home router, and I am currently testing WireGuard for my home network because WireGuard is faster than OpenVPN Access Server.
How was the initial setup?
The user interface of OpenVPN Access Server is very easy. It has two buttons: a download button and a cancel button, along with a checkbox to download only the profile. There are no additional settings, only log out and download options with the checkbox. This is a very simple interface that is very good for users, very good for admins, and very good for security.
What about the implementation team?
We purchased OpenVPN Access Server directly from the OpenVPN market. I found it on the internet, researched it, connected to the company, and after testing, my chief decided to buy this solution for secure connection to our services. Our first purchase was from OpenVPN Access Server, and the next purchase was for the admin panel of OpenVPN Access Server, which was deployed on our rented server as a standalone server.
What was our ROI?
The main benefits that I have seen from using OpenVPN Access Server are that it is simple, easy, and secure.
What's my experience with pricing, setup cost, and licensing?
I find it not cost-effective. It is not worth the money from a pricing perspective. However, it is a good investment for security and company information security. It is a good investment overall.
Which other solutions did I evaluate?
Apart from speed considerations, I use OpenVPN Access Server only for enterprise use and do not have a plan to use it for my home network. This is an enterprise solution and enterprise service, but not for a home user.
What other advice do I have?
For authentication, we use SAML to authenticate users from Microsoft Entra ID or Google Workspace. SAML and single sign-on serve the same purpose. We use SAML and local authentication for the admin, and the admin can authenticate through SAML with a checkbox in the admin panel or user panel.
I have a recommendation that I can share with other organizations considering OpenVPN Access Server. From my previous job, we used OpenVPN Access Server, and when I moved to a new job, I proposed using OpenVPN Access Server, and the chief decided to implement it. In the future, when I see that my friends or friendly corporations or friendly structures want to use a VPN, I will recommend OpenVPN Access Server.
Secure access for remote teams has enabled private network work and compliance
What is our primary use case?
My main use case for OpenVPN Access Server is to allow our employees to access the private network and external web services that are whitelisted to our network.
A specific example of how my team uses OpenVPN Access Server is that developers are accessing private development services, microservices, or resources on AWS, while the business team or sales has access to some specific services launched and implemented on our private network that are closed from internet access.
External parties or partners whitelist our IP addresses, and our employees use VPN to access those services as well.
What is most valuable?
I believe the best features OpenVPN Access Server offers are 2FA authorization and its connection with Google Workspace, which allows for good synchronization.
I use the 2FA authentication and Google Workspace synchronization, and the benefits of these features for my team are that Google accounts of our employees can be synchronized and authorized through SSO, which makes it easier to set up and configure VPN for our employees. If they have a Google account, they can connect to VPN easily. 2FA adds an additional layer of authorization that enhances security.
OpenVPN Access Server has positively impacted my organization by allowing access to our private services, enhancing security, and enabling remote work from anywhere, as I just need to connect to the VPN to have encrypted traffic to our private resources.
What needs improvement?
I think the most difficult part of OpenVPN Access Server that I would improve is the management of the network, particularly the configuration on the admin side of the network and subnets, which is quite complicated.
Some services, such as YouTube, occasionally become unavailable because it seems to be a bot detection issue from YouTube related to the VPN, and I believe that can be improved to ensure other services do not misidentify OpenVPN Access Server as a bot.
I would describe the user interface of OpenVPN Access Server as fine, but sometimes it requires reloading the whole page to see changes, which can be annoying. In cluster mode, I cannot see what node the user is connected to from the cluster without checking each node individually, which could be improved.
For how long have I used the solution?
I have been working in my current field for seven years.
What do I think about the stability of the solution?
OpenVPN Access Server is stable.
What do I think about the scalability of the solution?
OpenVPN Access Server's scalability is somewhat hard to manage, but it remains scalable overall, primarily due to its cluster mode.
Which solution did I use previously and why did I switch?
We did not use a previous solution; however, I could mention WireGuard, which could have been an option but lacked 2FA authorization and Google authorization and operates only on Layer 3, while OpenVPN Access Server works on Layer 7, which is important for business users.
How was the initial setup?
I find it easy to install OpenVPN Access Server, and there are no issues. It is just a couple of clicks or using the package from the Ubuntu package registry, and the documentation is clear on how to do that.
What about the implementation team?
I did not purchase OpenVPN Access Server through the AWS Marketplace; it was set up manually as a self-hosted solution.
What was our ROI?
I have not seen a return on investment in terms of fewer employees needed, money saved, or time saved.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing, setup cost, and licensing for OpenVPN Access Server is that the license was for 10 people and it was fine on a yearly basis.
Which other solutions did I evaluate?
WireGuard was another option considered before choosing OpenVPN Access Server.
What other advice do I have?
OpenVPN Access Server remains stable and works well despite a couple of things that can be improved or enhanced, and the documentation is good with no issues on that side. My impression of the connection speed when using OpenVPN Access Server compared to other VPN solutions is that it is medium; it is not fast and it is not slow, but in some cases, it could be slow.
My advice for others looking into using OpenVPN Access Server is to consider if they need a VPN or just zero trust network access. If they want to route traffic to specific domains, OpenVPN Access Server may not be suitable, but for a secure, safe, and stable VPN with good service integrations such as Google for SAML authorization, it works well and I would recommend it. I would rate OpenVPN Access Server an eight on a scale of one to ten.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Secure remote access has protected diverse users while access controls provide precise permissions
What is our primary use case?
My primary use case for OpenVPN Access Server is providing secure, centralized access to hybrid cloud environments. Whenever I set up hybrid cloud infrastructure for clients, deploying Access Server is a natural next step. It acts as a gateway, allowing us to securely connect to the private network for routine administration, system updates, and accessing internal dashboards and tools.
How has it helped my organization?
The main benefit I have seen from using OpenVPN Access Server is secure access to private resources over the public internet. That is the key benefit whenever it is set up, and it applies to all types of users. It applies to technical users who want to administer servers, internal users who are working, and executives who want to view internal dashboards. OpenVPN Access Server allows users to feel secure, and indeed, a lot of their traffic is secure. At the same time, if you configure OpenVPN Access Server correctly, users can continue to access non-corporate websites over the public internet, which is beneficial. If they are using Facebook or other personal activities on their phone, they can continue to do that, and that traffic will not be transferred over OpenVPN Access Server. Only when they try to access internal resources will that be accessed over OpenVPN Access Server. I really appreciate that aspect of OpenVPN Access Server.
What is most valuable?
The best features in OpenVPN Access Server for me are the integrations with single sign-on providers so that users can maintain a single corporate identity. I also appreciate the administration dashboard, which allows you to fairly easily provision subnets for different groups. Performance-wise, it is quite performant. OpenVPN Access Server supports both TCP and UDP protocols, and you can decide which to turn on or off. It is fairly performant and reliable. You can trust that once you are in the network, you will access your resources.
What needs improvement?
The user interface of OpenVPN Access Server is good but can be improved. I would prefer to see it become more intuitive. I use Twingate as an alternative, and in Twingate, you see resources, while in OpenVPN Access Server, those would be IP addresses. You get to see dashboards and access views of who can access a particular resource or subnet. You can see who can access what resources from the user view, but you can also see the reverse, which is which resource can be accessed by what users. That reverse view would be a nice addition to have in a dashboard. Additionally, access logs associated with that resource would be helpful, so it would be beneficial to have different views for the same content.
Beyond the positive aspects, I would like to see improvements in OpenVPN Access Server. Twingate offers a different approach to the same problem by moving more towards resource-specific resources and fine-grained zero-trust access, as opposed to entire subnets and entire networks. I would prefer to see views on resources. In the same way that we can define subnets, perhaps we could have views that describe what this particular subnet does and what this particular resource does. Then we can assign those resources and subnets to individual users and groups. It is more about granularizing the resources that can be accessed rather than simply bundling them under subnets or a list of subnets, which is the current approach.
Apart from that, I would like to see UI enhancements in OpenVPN Access Server in the future. Making it more modern would be beneficial.
For how long have I used the solution?
I have been using OpenVPN Access Server for over eight years since 2018.
What do I think about the stability of the solution?
Regarding stability, I have not had any crashes, performance issues, or stability issues with OpenVPN Access Server. That is one thing I appreciate the most about OpenVPN Access Server. Once you set it up correctly, it works and continues to work reliably. I do not recall ever experiencing OpenVPN Access Server crashing or the OpenVPN Access Server client crashing personally.
What do I think about the scalability of the solution?
Regarding scalability, I find OpenVPN Access Server scalable with some caveats. It is scalable on AWS because it is a matter of increasing the instance size and increasing the number of licenses. However, sometimes your license disappears or gets wiped out when you scale the infrastructure, which can be quite annoying, and requires reaching out to support to get set up again. Inherently it is scalable, but the process of scalability can be enhanced.
How are customer service and support?
I would evaluate OpenVPN's technical support and customer service teams as providing standard support. You send a ticket or create a ticket, and somebody responds, and they seem to know what they are doing. The service is adequate. I would rate the technical support an eight on a scale of one to ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
In comparison with other products and solutions such as Twingate or other VPN services, the key differences between OpenVPN Access Server and competitors include access to resources versus subnets, focusing on fine-grained access. Another difference is the ability to see logs specific to the resource that has been accessed. Compared to other products such as Cisco, the advantages include reliability and the protocol—OpenVPN Access Server uses HTTPS and UDP, which are universal. Some of the other protocols that other VPN providers use are not guaranteed. OpenVPN Access Server has advantages there. There should be a move more towards zero trust, where you are accessing a specific resource, defining a specific server or subnet, and assigning access to those resources to individual users or groups. That approach would be better.
How was the initial setup?
The ease of installing and setting up OpenVPN Access Server within the organization depends on the skillset of the person conducting the setup. On AWS, I would say it is medium difficulty because you have to select the right license and the right instance size, and it is not inherently clear what instance size to use. On-premise, it is fairly easy to set up. The setup for clients depends on the client that the end user is using. On mobile devices, sometimes I find that Mac users and iPhone users find it easier to set up than Android users. Overall, I would characterize the setup difficulty as medium. It is not too difficult and also not too easy.
What's my experience with pricing, setup cost, and licensing?
My experience with the pricing, setup cost, and licensing cost of OpenVPN Access Server is that the licensing is fair for the value provided. My experience is mostly on AWS, and there, I think the pricing is quite fair.
What other advice do I have?
I utilize the Access Controls feature of OpenVPN Access Server by provisioning users into groups and then provisioning access to those groups. The effectiveness of OpenVPN Access Server in providing precise access to users, groups, or devices is quite effective and reliable. I would not say it is the most intuitive specifically because there are default access groups, then you have overrides, and it is not inherently clear for someone just getting started with the product. However, if you are more experienced, it is straightforward to set up. Once you set it up, it is reliable, and you have confidence that whatever access you provision for that group of users will be maintained.
I purchase OpenVPN Access Server for my clients through the AWS Marketplace. Given my extensive experience with OpenVPN Access Server, I would recommend that before any organization implements it, they really need to define what their networks and subnets are and what is connected to what. Consider whether your on-premise infrastructure is connected to your cloud and whether your cloud is connected to another cloud. It is essential to have a good understanding of your network. Make sure there are no overlapping subnets, and then decide where to provision OpenVPN Access Server. The key advice is to understand your network before you even provision this resource, because where you provision it will determine what users can access. You certainly want to have a good amount of coverage where possible so that you can access your internal resources securely. I would rate this product an eight overall.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Has improved internal app access by allowing secure user onboarding and simplified network whitelisting
What is our primary use case?
The main use case for OpenVPN Access Server is making internal web applications and using them within our organization. We have many internal apps, such as Re:dash for analytics, and internal peering and accessing different VM machines and internal servers.
I have hosted OpenVPN Access Server in my VM for one of those internal apps. From that VM, I have done the VPC peering to our different VPCs. And I have hosted, for example, Re:dash, an analytics tool for our internal company members. So we use VPN to whitelist them, and then they can internally use Re:dash for the analytics dashboard, querying, and connecting to the different databases and all.
What is most valuable?
The best features OpenVPN Access Server offers is whitelisting members in my company who have joined recently. It is really easy to use, and it is really easy to set up OpenVPN Access Server as an internal app.
When whitelisting members, I just add the name of the user. I go into User Permissions, add the name of the person I'm going to whitelist, and send them the credentials. They are able to log in and authenticate using an authenticator app and are easily able to onboard on OpenVPN Access Server and access internal apps.
It is easy to whitelist new apps that I'm going to host or when I've created a new VPC. I will do the VPC peering where I have hosted OpenVPN Access Server, and I can easily add the IP or CIDR of that particular new VPC or subnet which I'm going to use for my new app in the UI.
Before using OpenVPN Access Server, only developers mainly had access to databases. We can create read-only users for databases and internally give them access using OpenVPN Access Server. It has been really useful, as we don't have to give access to everyone, and just give access to OpenVPN Access Server, and they are able to access databases or internal websites.
The change has mainly led to the onboarding process being more smoothed out. It is really fast and saves developers' time. It saves my time as a DevOps engineer, setting up things for people.
What needs improvement?
The plan for OpenVPN Access Server could be improved. When adding new people, better plans for startups would be beneficial. I'm working in a startup and sometimes people think we should take the enterprise plan or not. If there was a dedicated plan for startups, it would be really helpful. For instance, providing store credit for OpenVPN Access Server through a startup program, similar to YC's program which gives credit to new startups.
UI-wise, OpenVPN Access Server is easy to manage, but the overall overview dashboard in the admin portal could be improved. Currently, you have to go through dropdowns to find where to add users or whitelist IPs. Creating an onboarding dashboard where an admin person can find these things easily would be beneficial.
For how long have I used the solution?
I have been using OpenVPN Access Server for around two years.
What do I think about the stability of the solution?
OpenVPN Access Server has been stable since the last six months with no issues.
What do I think about the scalability of the solution?
I have hosted OpenVPN Access Server in a VM. It does not utilize much memory or CPU on the VM. So far, I have been using around 40 users, and I did not need to scale it up. I think just scaling the VM would help in case it is needed.
How are customer service and support?
I haven't used customer support from OpenVPN Access Server.
Which solution did I use previously and why did I switch?
I haven't used any other solutions on the VPN side. OpenVPN Access Server was the first tool I have used for whitelisting people, but it did not give me any reason to move to any other product. It has been good.
How was the initial setup?
I found some open-source documentation for setting up OpenVPN Access Server. It was really easy to set up initially. I got some networking issues from the VPC peering side, but it was resolved from open-source references.
What about the implementation team?
I have utilized the access controls feature of OpenVPN Access Server, including an auto-login feature. For some developers who are heavily using OpenVPN Access Server, I allow an auto-login feature. For others, they still have to put the MFA code from the authenticator app.
What was our ROI?
I haven't seen exact numbers from the investment side, but OpenVPN Access Server has been really useful and saved a lot of time for developers.
What's my experience with pricing, setup cost, and licensing?
The experience with pricing, setup cost, and licensing for OpenVPN Access Server is really good, not that expensive. I am easily able to add new users from the OpenVPN Access Server official website. I would suggest adding a startup plan for small startups would be really helpful.
Which other solutions did I evaluate?
Before choosing OpenVPN Access Server, I haven't evaluated any other options. Some of my colleagues recommended OpenVPN Access Server, and I went through it, and it has been really useful.
What other advice do I have?
I would suggest for others looking into using OpenVPN Access Server, people find it difficult sometimes to self-host. Find the right documentation and go through it. Mostly it is all about networking. If your basics of networking are clear, you will be able to host it easily.
On a scale of one to ten, I rate OpenVPN Access Server a nine.
Solution enables effortless configuration and ease of working abroad in business network blocked with geofencing.
What is our primary use case?
It was exceptionally easy to install and configure. It works well.
How has it helped my organization?
It allowed me to get through geofencing to work abroad.
What is most valuable?
The configuration is easy on both the server and client side.
What needs improvement?
Currently, the solution works as it is for our requirements. We are still evaluating full scope of options and fine-tuning e.g. split VPN to allow LAN access whilst on VPN.
For how long have I used the solution?
New customer.
What do I think about the stability of the solution?
Works without issues from challenging locatios.
Which solution did I use previously and why did I switch?
None. New requirement.
What's my experience with pricing, setup cost, and licensing?
The setup cost was reasonable.
Which other solutions did I evaluate?
I considered using Norton and Nord VPN.
What other advice do I have?
I would rate it a ten out of ten.