Skip to content

Connect a data warehouse through OpenVPN

Supersimple can connect to a supported database or data warehouse that is available only through OpenVPN.

Assisted setup

OpenVPN connections are currently set up with your Supersimple onboarding team. If you are already using Supersimple, contact support to get started.

What to provide

  • A dedicated OpenVPN client profile that can run unattended on Linux and reconnect without interactive authentication (no MFA/OTP or SSO login). If the .ovpn profile references separate certificates, keys, or credentials, include those too.
  • The expiry or rotation policy for the profile's certificates or credentials, so renewals can be coordinated ahead of time.
  • The private IP address or hostname of the database, and its port.
  • The standard connection details for your data warehouse and a dedicated read-only user. You can enter the password directly in Supersimple once the VPN connection is ready.
  • Details of any private certificate authority used by the database endpoint.

The VPN identity should be dedicated to Supersimple and, where possible, limited to the database endpoint. Supersimple only initiates outbound connections to the data warehouse. If you restrict access to your VPN endpoint by source IP, allow Supersimple's outbound IP addresses 35.228.195.204 and 35.228.203.89.