Toggle navigation
Patchwork
OpenVPN 2
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: Submitter =
Arne Schwabe
| Archived =
No
| 1061 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Search
Archived
No
Yes
Both
Delegate
------
Nobody
samuli
ordex
dazo
selvanair
syzzer
cron2
arne
flichtenheld
d12fk
Apply
«
1
2
3
4
…
10
11
»
Patch
Series
A/R/T
S/W/F
Date
Submitter
Delegate
State
[Openvpn-devel,v3] Add connect-freq-initial option to limit initial connection responses
[Openvpn-devel,v3] Add connect-freq-initial option to limit initial connection responses
- - -
-
-
-
2023-01-09
Arne Schwabe
Superseded
[Openvpn-devel,v3] Add Apache2 linking with for new commits
[Openvpn-devel,v3] Add Apache2 linking with for new commits
1 - -
-
-
-
2023-04-26
Arne Schwabe
Accepted
[Openvpn-devel,v3,7/9] Remove cipher_kt_t and change type to const char* in API
Untitled series #1377
1 - -
-
-
-
2021-12-10
Arne Schwabe
Changes Requested
[Openvpn-devel,v3,7/9] Cleanup handling of initial auth token
Untitled series #1218
- - -
-
-
-
2021-07-06
Arne Schwabe
Superseded
[Openvpn-devel,v3,7/7] Implement unit tests for auth-gen-token
Auth token patches v3
- - -
-
-
-
2019-05-10
Arne Schwabe
dazo
Superseded
[Openvpn-devel,v3,6/9] Introduce S_GENERATED_KEYS state and generate keys only when authenticated
Untitled series #1217
1 - -
-
-
-
2021-07-05
Arne Schwabe
Accepted
[Openvpn-devel,v3,6/7] Sent indication that a session is expired to clients
Auth token patches v3
- - -
-
-
-
2019-05-10
Arne Schwabe
dazo
Superseded
[Openvpn-devel,v3,5/9] Remove key-method 1
Untitled series #836
1 - -
-
-
-
2020-07-21
Arne Schwabe
dazo
Accepted
[Openvpn-devel,v3,5/7] Implement a permanent session id in auth-token
Auth token patches v3
- - -
-
-
-
2019-05-10
Arne Schwabe
dazo
Superseded
[Openvpn-devel,v3,5/5] Implement forwarding client CR_RESPONSE messages to management
Implement additional two step authentication methods
1 - -
-
-
-
2020-05-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,5/5] Deprecate the --verify-hash option
Untitled series #1075
1 - -
-
-
-
2021-03-21
Arne Schwabe
ordex
Accepted
[Openvpn-devel,v3,5/5] Change default MTU in server mode to 1420
[Openvpn-devel,v3,1/5] Extract update_session_cipher into standalone function
- - -
-
-
-
2022-06-25
Arne Schwabe
Deferred
[Openvpn-devel,v3,4/9] Make waiting on auth an explicit state in the context state machine
Untitled series #1189
- - -
-
-
-
2021-06-04
Arne Schwabe
Superseded
[Openvpn-devel,v3,4/7] Rewrite auth-token-gen to be based on HMAC based tokens
Auth token patches v3
- - -
-
-
-
2019-05-10
Arne Schwabe
dazo
Superseded
[Openvpn-devel,v3,4/5] Normalise ncp-ciphers option and restrict it to 127 bytes
[Openvpn-devel,v3,1/5] Only announce IV_NCP=2 when we are willing to support these ciphers
- - -
-
-
-
2020-02-17
Arne Schwabe
Superseded
[Openvpn-devel,v3,4/5] Implement sending AUTH_PENDING challenges to clients
Implement additional two step authentication methods
1 - -
-
-
-
2020-05-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,4/5] Implement a function to calculate the default MTU
[Openvpn-devel,v3,1/5] Extract update_session_cipher into standalone function
- - -
-
-
-
2022-06-25
Arne Schwabe
Deferred
[Openvpn-devel,v3,4/4] Parse compression options and bail out when compression is disabled
[Openvpn-devel,v3,1/4] Simplify --compress parsing in options.c
- - -
-
-
-
2023-03-23
Arne Schwabe
Changes Requested
[Openvpn-devel,v3,4/4] Allow scripts and plugins to set a custom AUTH_FAILED message
Untitled series #1741
1 - -
-
-
-
2022-08-24
Arne Schwabe
Accepted
[Openvpn-devel,v3,3/7] Add pem_read_key_file variant that allows a random key
Auth token patches v3
- - -
-
-
-
2019-05-10
Arne Schwabe
dazo
Superseded
[Openvpn-devel,v3,3/5] Support fingerprint authentication without CA certificate
Untitled series #1074
1 - -
-
-
-
2021-03-21
Arne Schwabe
ordex
Accepted
[Openvpn-devel,v3,3/5] Push server mtu to client when support and support occ mtu
[Openvpn-devel,v3,1/5] Extract update_session_cipher into standalone function
1 - -
-
-
-
2022-06-25
Arne Schwabe
Superseded
[Openvpn-devel,v3,3/5] Move NCP related function into a seperate file and add unit tests
[Openvpn-devel,v3,1/5] Only announce IV_NCP=2 when we are willing to support these ciphers
- - -
-
-
-
2020-02-17
Arne Schwabe
Superseded
[Openvpn-devel,v3,3/5] Implement sending response to challenge via CR_RESPONSE
Implement additional two step authentication methods
1 - -
-
-
-
2020-05-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,3/4] Check if the -wrap argument is actually supported by the platform's ld
Untitled series #2180
1 - -
-
-
-
2023-07-12
Arne Schwabe
Accepted
[Openvpn-devel,v3,3/4] Add 'allow-compression stub-only' internally for DCO
[Openvpn-devel,v3,1/4] Simplify --compress parsing in options.c
- - -
-
-
-
2023-03-23
Arne Schwabe
Changes Requested
[Openvpn-devel,v3,3/3] Implement tls-groups option to specify eliptic curves/groups
Untitled series #741
- - -
-
-
-
2020-06-04
Arne Schwabe
Superseded
[Openvpn-devel,v3,3/3] Implement tls-groups option to specify eliptic curves/groups
Untitled series #742
- - -
-
-
-
2020-06-04
Arne Schwabe
Superseded
[Openvpn-devel,v3,3/3] Implement the nopadding option to management-external-key for mbed TLS
Untitled series #377
- - -
-
-
-
2018-10-10
Arne Schwabe
Deferred
[Openvpn-devel,v3,3/3] Implement generating data channel keys via EKM/RFC 5705
Untitled series #878
- - -
-
-
-
2020-08-14
Arne Schwabe
Superseded
[Openvpn-devel,v3,3/3] Handle the unlikely case that PRF generation fails
[Openvpn-devel,v3,1/3] Check return values in md_ctx_init and hmac_ctx_init
- - -
-
-
-
2021-02-01
Arne Schwabe
Superseded
[Openvpn-devel,v3,3/3] Add better support for showing TLS 1.3 ciphersuites in --show-tls
Untitled series #374
- - -
-
-
-
2018-10-10
Arne Schwabe
Superseded
[Openvpn-devel,v3,2/7] Implement --genkey type keyfile syntax and migrate tls-crypt-v2
Auth token patches v3
- - -
-
-
-
2019-05-10
Arne Schwabe
dazo
Superseded
[Openvpn-devel,v3,26/28] Allow setting control channel packet size with tls-mtu
Untitled series #1561
- - -
-
-
-
2022-05-11
Arne Schwabe
Superseded
[Openvpn-devel,v3,2/5] Implement support for signalling IV_SSO to server
Implement additional two step authentication methods
1 - -
-
-
-
2020-05-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,2/5] Implement dynamic NCP negotiation
[Openvpn-devel,v3,1/5] Only announce IV_NCP=2 when we are willing to support these ciphers
1 - -
-
-
-
2020-02-17
Arne Schwabe
Superseded
[Openvpn-devel,v3,2/5] Allow tun-mtu to be pushed
[Openvpn-devel,v3,1/5] Extract update_session_cipher into standalone function
- - -
-
-
-
2022-06-25
Arne Schwabe
Superseded
[Openvpn-devel,v3,25/28] Ensure that control channel packet are respecting tls-mtu
Untitled series #1742
- - -
-
-
-
2022-08-24
Arne Schwabe
Superseded
[Openvpn-devel,v3,2/4] Refuse connection if server pushes an option contradicting allow-compress
[Openvpn-devel,v3,1/4] Simplify --compress parsing in options.c
1 - -
-
-
-
2023-03-23
Arne Schwabe
Accepted
[Openvpn-devel,v3,2/3] Prefer TLS libraries TLS PRF function, fix OpenVPN in FIPS mode
[Openvpn-devel,v3,1/3] Check return values in md_ctx_init and hmac_ctx_init
- - -
-
-
-
2021-02-01
Arne Schwabe
Superseded
[Openvpn-devel,v3,2/3] Add support for OpenSSL TLS 1.3 when using management-external-key
Untitled series #378
- - -
-
-
-
2018-10-10
Arne Schwabe
Superseded
[Openvpn-devel,v3,2/2] Document different behaviour of dynamic cipher negotiation
[Openvpn-devel,v3,1/2] Rework NCP compability logic and drop BF-CBC support by default
- - -
-
-
-
2020-08-09
Arne Schwabe
Superseded
[Openvpn-devel,v3,21/21] Always use 8192 bytes for ERR_BUF_SIZE
OpenSSL 3.0 improvements for OpenVPN
- - -
-
-
-
2021-10-19
Arne Schwabe
Not Applicable
[Openvpn-devel,v3,20/21] Add macos OpenSSL 3.0 and ASAN builds
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/9] Implement optional cipher in --data-ciphers prefixed with ?
[Openvpn-devel,v3,1/9] Implement optional cipher in --data-ciphers prefixed with ?
- - -
-
-
-
2021-12-06
Arne Schwabe
Not Applicable
[Openvpn-devel,v3,19/21] Add insecure tls-cert-profile options
OpenSSL 3.0 improvements for OpenVPN
- - -
-
-
-
2021-10-19
Arne Schwabe
Superseded
[Openvpn-devel,v3,18/21] Fix error when BF-CBC is not available
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/7] Write key to stdout if filename is not given
Auth token patches v3
1 - -
-
-
-
2019-05-10
Arne Schwabe
dazo
Accepted
[Openvpn-devel,v3,17/21] Add small unit test for testing HMAC
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,16/21] Add message when decoding PKCS12 file fails.
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/5] Only announce IV_NCP=2 when we are willing to support these ciphers
[Openvpn-devel,v3,1/5] Only announce IV_NCP=2 when we are willing to support these ciphers
1 - -
-
-
-
2020-02-17
Arne Schwabe
Superseded
[Openvpn-devel,v3,1/5] Implement parsing and sending INFO and INFO_PRE control messages
Implement additional two step authentication methods
1 - -
-
-
-
2020-05-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/5] Extract update_session_cipher into standalone function
[Openvpn-devel,v3,1/5] Extract update_session_cipher into standalone function
- - -
-
-
-
2022-06-25
Arne Schwabe
Superseded
[Openvpn-devel,v3,15/21,OSSL,3.0] Do not allow CTS ciphers
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/4] Simplify --compress parsing in options.c
[Openvpn-devel,v3,1/4] Simplify --compress parsing in options.c
1 - -
-
-
-
2023-03-23
Arne Schwabe
Accepted
[Openvpn-devel,v3,14/21,OSSL,3.0] Use TYPE_do_all_provided function for listing cipher/digest
OpenSSL 3.0 improvements for OpenVPN
- - -
-
-
-
2021-10-19
Arne Schwabe
Superseded
[Openvpn-devel,v3,14/14] Remove frame.extra_frame and frame.extra_buffer
Big buffer/frame refactoring patch set v3
- - -
-
-
-
2022-01-01
Arne Schwabe
Superseded
[Openvpn-devel,v3,1/3] Use dedicated multi->dco_peer_id for DCO instead of multi->peer_id
[Openvpn-devel,v3,1/3] Use dedicated multi->dco_peer_id for DCO instead of multi->peer_id
1 - -
-
-
-
2022-11-27
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/3] Refactor key_state_export_keying_material functions
[Openvpn-devel,v3,1/3] Refactor key_state_export_keying_material functions
1 - -
-
-
-
2020-08-14
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/3] Move dco_installed from sock->info to sock->info.lsa.actual
[Openvpn-devel,v3,1/3] Move dco_installed from sock->info to sock->info.lsa.actual
- - -
-
-
-
2022-11-24
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/3] Check return values in md_ctx_init and hmac_ctx_init
[Openvpn-devel,v3,1/3] Check return values in md_ctx_init and hmac_ctx_init
1 - -
-
-
-
2021-02-01
Arne Schwabe
Accepted
[Openvpn-devel,v3,13/21,OSSL,3.0] Remove dependency on BF-CBC existance from test_ncp
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,13/14] Remove frame->link_mtu
Big buffer/frame refactoring patch set v3
- - -
-
-
-
2022-01-01
Arne Schwabe
Superseded
[Openvpn-devel,v3,13/13] client-connect: Add documentation for the deferred client connect feature
Deferred client-connect patch set
- - -
-
-
-
2018-11-12
Arne Schwabe
Superseded
[Openvpn-devel,v3,1/2] Rework NCP compability logic and drop BF-CBC support by default
[Openvpn-devel,v3,1/2] Rework NCP compability logic and drop BF-CBC support by default
1 - -
-
-
-
2020-08-09
Arne Schwabe
Accepted
[Openvpn-devel,v3,12/21,OSSL,3.0] Allow loading of non default providers
OpenSSL 3.0 improvements for OpenVPN
- - -
-
-
-
2021-10-19
Arne Schwabe
Superseded
[Openvpn-devel,v3,12/14] Replace TUN_MTU_SIZE with frame->tun_mtu
Big buffer/frame refactoring patch set v3
- - -
-
-
-
2022-01-01
Arne Schwabe
Superseded
[Openvpn-devel,v3,12/13] client-connect: Implement deferred connect support for plugin API v2
Deferred client-connect patch set
- - -
-
-
-
2018-11-12
Arne Schwabe
Superseded
[Openvpn-devel,v3,11/21,OSSL,3.0] USe EVP_MD_get0_name instead EV_MD_name
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,11/14] Remove extra_link from frame
Big buffer/frame refactoring patch set v3
- - -
-
-
-
2022-01-01
Arne Schwabe
Superseded
[Openvpn-devel,v3,11/13] client-connect: Add deferred support to the client-connect plugin v1 handl…
Deferred client-connect patch set
- - -
-
-
-
2018-11-12
Arne Schwabe
Superseded
[Openvpn-devel,v3,10/21,OSSL,3.0] Replace EVP_get_cipherbyname with EVP_CIPHER_fetch
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,10/14] Use new frame header methods to calculate OCC_MTU_LOAD payload size
Big buffer/frame refactoring patch set v3
- - -
-
-
-
2022-01-01
Arne Schwabe
Superseded
[Openvpn-devel,v3,10/13] client-connect: Also use inotify for the deferred client-connect status fi…
Deferred client-connect patch set
- - -
-
-
-
2018-11-12
Arne Schwabe
Superseded
[Openvpn-devel,v3,09/21] Refactor early initialisation and uninitialisation into methods
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Superseded
[Openvpn-devel,v3,09/14] Add mtu paramter to --fragment and change fragment calculation
Big buffer/frame refactoring patch set v3
- - -
-
-
-
2022-01-01
Arne Schwabe
Superseded
[Openvpn-devel,v3,09/13] client-connect: Move adding inotify watch into its own function
Deferred client-connect patch set
- - -
-
-
-
2018-11-12
Arne Schwabe
Superseded
[Openvpn-devel,v3,08/21,OSSL,3.0] Use EVP_PKEY_get_group_name to query group name
OpenSSL 3.0 improvements for OpenVPN
- - -
-
-
-
2021-10-19
Arne Schwabe
Superseded
[Openvpn-devel,v3,08/14] Remove link_mtu parameter when running up/down scripts
Big buffer/frame refactoring patch set v3
1 - -
-
-
-
2022-01-01
Arne Schwabe
Accepted
[Openvpn-devel,v3,08/13] client-connect: Add deferred support to the client-connect script handler
Deferred client-connect patch set
- - -
-
-
-
2018-11-12
Arne Schwabe
Superseded
[Openvpn-devel,v3,0/7] Auth token patches v3
- - -
-
-
-
2019-05-10
Arne Schwabe
None
[Openvpn-devel,v3,07/21,OSSL,3.0] Remove DES key fixup code
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,07/14] Change the default for mssfix to mssfix 1492 mtu
Big buffer/frame refactoring patch set v3
- - -
-
-
-
2022-01-01
Arne Schwabe
Superseded
[Openvpn-devel,v3,07/13] client-connect: Add CC_RET_DEFERRED and cope with deferred client-connect
Deferred client-connect patch set
- - -
-
-
-
2018-11-12
Arne Schwabe
Superseded
[Openvpn-devel,v3,06/21,OSSL,3.0] Deprecate --ecdh-curve with OpenSSL 3.0 and adjust mbed TLS messa…
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,06/14] Update fragment and mssfix related warnings
Big buffer/frame refactoring patch set v3
- - -
-
-
-
2022-01-01
Arne Schwabe
Superseded
[Openvpn-devel,v3,06/13] client-connect: Change connection_established_flag from bool to enum
Deferred client-connect patch set
- - -
-
-
-
2018-11-12
Arne Schwabe
Superseded
[Openvpn-devel,v3,0/5] Implement additional two step authentication methods
- - -
-
-
-
2020-05-19
Arne Schwabe
None
[Openvpn-devel,v3,05/21,OSSL,3.0] Use EVP_PKEY based API for loading DH keys
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,05/14] Implement optional mtu parameter for mssfix
Big buffer/frame refactoring patch set v3
1 - -
-
-
-
2022-01-01
Arne Schwabe
Accepted
[Openvpn-devel,v3,05/13] client-connect: Refactor client-connect handling to calling a bunch of hoo…
Deferred client-connect patch set
- - -
-
-
-
2018-11-12
Arne Schwabe
Superseded
[Openvpn-devel,v3,04/21,OSSL,3.0] Remove DES check with OpenSSL 3.0
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,04/14] Fix datagram_overhead and assorted functions
Big buffer/frame refactoring patch set v3
1 - -
-
-
-
2022-01-01
Arne Schwabe
Accepted
[Openvpn-devel,v3,04/13] client-connect: Refactor to use return values instead of modifying a passe…
Deferred client-connect patch set
- - -
-
-
-
2018-11-12
Arne Schwabe
Superseded
[Openvpn-devel,v3,03/21,OSSL,3.0] Implement DES ECB encrypt via EVP_CIPHER api
OpenSSL 3.0 improvements for OpenVPN
- - -
-
-
-
2021-10-19
Arne Schwabe
Superseded
[Openvpn-devel,v3,03/14] Change buffer allocation calculation and checks to be more static
Big buffer/frame refactoring patch set v3
- - -
-
-
-
2022-01-01
Arne Schwabe
Superseded
[Openvpn-devel,v3,03/13] client-connect: Move multi_client_connect_setenv into early_setup
Deferred client-connect patch set
- - -
-
-
-
2018-11-12
Arne Schwabe
Superseded
[Openvpn-devel,v3,02/21,OSSL,3.0] Add --with-openssl-engine autoconf option (auto|yes|no)
OpenSSL 3.0 improvements for OpenVPN
- - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,02/14] Fix mssfix and frame calculation in CBC mode
Big buffer/frame refactoring patch set v3
1 - -
-
-
-
2022-01-01
Arne Schwabe
Accepted
[Openvpn-devel,v3,02/13] client-connect: Refactor multi_client_connect_source_ccd
Deferred client-connect patch set
- - -
-
-
-
2018-11-12
Arne Schwabe
Superseded
«
1
2
3
4
…
10
11
»