Toggle navigation
Patchwork
OpenVPN 2
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: Submitter =
Arne Schwabe
| Archived =
No
| 1061 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Search
Archived
No
Yes
Both
Delegate
------
Nobody
samuli
ordex
dazo
selvanair
syzzer
cron2
arne
flichtenheld
d12fk
Apply
«
1
2
...
8
9
10
11
»
Patch
Series
A/R/T
S/W/F
Date
Submitter
Delegate
State
[Openvpn-devel,v3,1/3] Check return values in md_ctx_init and hmac_ctx_init
[Openvpn-devel,v3,1/3] Check return values in md_ctx_init and hmac_ctx_init
1 - -
-
-
-
2021-02-01
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/3] Move dco_installed from sock->info to sock->info.lsa.actual
[Openvpn-devel,v3,1/3] Move dco_installed from sock->info to sock->info.lsa.actual
- - -
-
-
-
2022-11-24
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/3] Refactor key_state_export_keying_material functions
[Openvpn-devel,v3,1/3] Refactor key_state_export_keying_material functions
1 - -
-
-
-
2020-08-14
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/3] Use dedicated multi->dco_peer_id for DCO instead of multi->peer_id
[Openvpn-devel,v3,1/3] Use dedicated multi->dco_peer_id for DCO instead of multi->peer_id
1 - -
-
-
-
2022-11-27
Arne Schwabe
Accepted
[Openvpn-devel,v3,14/14] Remove frame.extra_frame and frame.extra_buffer
Big buffer/frame refactoring patch set v3
- - -
-
-
-
2022-01-01
Arne Schwabe
Superseded
[Openvpn-devel,v3,14/21,OSSL,3.0] Use TYPE_do_all_provided function for listing cipher/digest
OpenSSL 3.0 improvements for OpenVPN
- - -
-
-
-
2021-10-19
Arne Schwabe
Superseded
[Openvpn-devel,v3,1/4] Simplify --compress parsing in options.c
[Openvpn-devel,v3,1/4] Simplify --compress parsing in options.c
1 - -
-
-
-
2023-03-23
Arne Schwabe
Accepted
[Openvpn-devel,v3,15/21,OSSL,3.0] Do not allow CTS ciphers
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/5] Extract update_session_cipher into standalone function
[Openvpn-devel,v3,1/5] Extract update_session_cipher into standalone function
- - -
-
-
-
2022-06-25
Arne Schwabe
Superseded
[Openvpn-devel,v3,1/5] Implement parsing and sending INFO and INFO_PRE control messages
Implement additional two step authentication methods
1 - -
-
-
-
2020-05-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/5] Only announce IV_NCP=2 when we are willing to support these ciphers
[Openvpn-devel,v3,1/5] Only announce IV_NCP=2 when we are willing to support these ciphers
1 - -
-
-
-
2020-02-17
Arne Schwabe
Superseded
[Openvpn-devel,v3,16/21] Add message when decoding PKCS12 file fails.
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,17/21] Add small unit test for testing HMAC
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/7] Write key to stdout if filename is not given
Auth token patches v3
1 - -
-
-
-
2019-05-10
Arne Schwabe
dazo
Accepted
[Openvpn-devel,v3,18/21] Fix error when BF-CBC is not available
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,19/21] Add insecure tls-cert-profile options
OpenSSL 3.0 improvements for OpenVPN
- - -
-
-
-
2021-10-19
Arne Schwabe
Superseded
[Openvpn-devel,v3,1/9] Implement optional cipher in --data-ciphers prefixed with ?
[Openvpn-devel,v3,1/9] Implement optional cipher in --data-ciphers prefixed with ?
- - -
-
-
-
2021-12-06
Arne Schwabe
Not Applicable
[Openvpn-devel,v3,20/21] Add macos OpenSSL 3.0 and ASAN builds
OpenSSL 3.0 improvements for OpenVPN
1 - -
-
-
-
2021-10-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,21/21] Always use 8192 bytes for ERR_BUF_SIZE
OpenSSL 3.0 improvements for OpenVPN
- - -
-
-
-
2021-10-19
Arne Schwabe
Not Applicable
[Openvpn-devel,v3,2/2] Document different behaviour of dynamic cipher negotiation
[Openvpn-devel,v3,1/2] Rework NCP compability logic and drop BF-CBC support by default
- - -
-
-
-
2020-08-09
Arne Schwabe
Superseded
[Openvpn-devel,v3,2/3] Add support for OpenSSL TLS 1.3 when using management-external-key
Untitled series #378
- - -
-
-
-
2018-10-10
Arne Schwabe
Superseded
[Openvpn-devel,v3,2/3] Prefer TLS libraries TLS PRF function, fix OpenVPN in FIPS mode
[Openvpn-devel,v3,1/3] Check return values in md_ctx_init and hmac_ctx_init
- - -
-
-
-
2021-02-01
Arne Schwabe
Superseded
[Openvpn-devel,v3,2/4] Refuse connection if server pushes an option contradicting allow-compress
[Openvpn-devel,v3,1/4] Simplify --compress parsing in options.c
1 - -
-
-
-
2023-03-23
Arne Schwabe
Accepted
[Openvpn-devel,v3,25/28] Ensure that control channel packet are respecting tls-mtu
Untitled series #1742
- - -
-
-
-
2022-08-24
Arne Schwabe
Superseded
[Openvpn-devel,v3,2/5] Allow tun-mtu to be pushed
[Openvpn-devel,v3,1/5] Extract update_session_cipher into standalone function
- - -
-
-
-
2022-06-25
Arne Schwabe
Superseded
[Openvpn-devel,v3,2/5] Implement dynamic NCP negotiation
[Openvpn-devel,v3,1/5] Only announce IV_NCP=2 when we are willing to support these ciphers
1 - -
-
-
-
2020-02-17
Arne Schwabe
Superseded
[Openvpn-devel,v3,2/5] Implement support for signalling IV_SSO to server
Implement additional two step authentication methods
1 - -
-
-
-
2020-05-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,26/28] Allow setting control channel packet size with tls-mtu
Untitled series #1561
- - -
-
-
-
2022-05-11
Arne Schwabe
Superseded
[Openvpn-devel,v3,2/7] Implement --genkey type keyfile syntax and migrate tls-crypt-v2
Auth token patches v3
- - -
-
-
-
2019-05-10
Arne Schwabe
dazo
Superseded
[Openvpn-devel,v3,3/3] Add better support for showing TLS 1.3 ciphersuites in --show-tls
Untitled series #374
- - -
-
-
-
2018-10-10
Arne Schwabe
Superseded
[Openvpn-devel,v3,3/3] Handle the unlikely case that PRF generation fails
[Openvpn-devel,v3,1/3] Check return values in md_ctx_init and hmac_ctx_init
- - -
-
-
-
2021-02-01
Arne Schwabe
Superseded
[Openvpn-devel,v3,3/3] Implement generating data channel keys via EKM/RFC 5705
Untitled series #878
- - -
-
-
-
2020-08-14
Arne Schwabe
Superseded
[Openvpn-devel,v3,3/3] Implement the nopadding option to management-external-key for mbed TLS
Untitled series #377
- - -
-
-
-
2018-10-10
Arne Schwabe
Deferred
[Openvpn-devel,v3,3/3] Implement tls-groups option to specify eliptic curves/groups
Untitled series #742
- - -
-
-
-
2020-06-04
Arne Schwabe
Superseded
[Openvpn-devel,v3,3/3] Implement tls-groups option to specify eliptic curves/groups
Untitled series #741
- - -
-
-
-
2020-06-04
Arne Schwabe
Superseded
[Openvpn-devel,v3,3/4] Add 'allow-compression stub-only' internally for DCO
[Openvpn-devel,v3,1/4] Simplify --compress parsing in options.c
- - -
-
-
-
2023-03-23
Arne Schwabe
Changes Requested
[Openvpn-devel,v3,3/4] Check if the -wrap argument is actually supported by the platform's ld
Untitled series #2180
1 - -
-
-
-
2023-07-12
Arne Schwabe
Accepted
[Openvpn-devel,v3,3/5] Implement sending response to challenge via CR_RESPONSE
Implement additional two step authentication methods
1 - -
-
-
-
2020-05-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,3/5] Move NCP related function into a seperate file and add unit tests
[Openvpn-devel,v3,1/5] Only announce IV_NCP=2 when we are willing to support these ciphers
- - -
-
-
-
2020-02-17
Arne Schwabe
Superseded
[Openvpn-devel,v3,3/5] Push server mtu to client when support and support occ mtu
[Openvpn-devel,v3,1/5] Extract update_session_cipher into standalone function
1 - -
-
-
-
2022-06-25
Arne Schwabe
Superseded
[Openvpn-devel,v3,3/5] Support fingerprint authentication without CA certificate
Untitled series #1074
1 - -
-
-
-
2021-03-21
Arne Schwabe
ordex
Accepted
[Openvpn-devel,v3,3/7] Add pem_read_key_file variant that allows a random key
Auth token patches v3
- - -
-
-
-
2019-05-10
Arne Schwabe
dazo
Superseded
[Openvpn-devel,v3,4/4] Allow scripts and plugins to set a custom AUTH_FAILED message
Untitled series #1741
1 - -
-
-
-
2022-08-24
Arne Schwabe
Accepted
[Openvpn-devel,v3,4/4] Parse compression options and bail out when compression is disabled
[Openvpn-devel,v3,1/4] Simplify --compress parsing in options.c
- - -
-
-
-
2023-03-23
Arne Schwabe
Changes Requested
[Openvpn-devel,v3,4/5] Implement a function to calculate the default MTU
[Openvpn-devel,v3,1/5] Extract update_session_cipher into standalone function
- - -
-
-
-
2022-06-25
Arne Schwabe
Deferred
[Openvpn-devel,v3,4/5] Implement sending AUTH_PENDING challenges to clients
Implement additional two step authentication methods
1 - -
-
-
-
2020-05-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,4/5] Normalise ncp-ciphers option and restrict it to 127 bytes
[Openvpn-devel,v3,1/5] Only announce IV_NCP=2 when we are willing to support these ciphers
- - -
-
-
-
2020-02-17
Arne Schwabe
Superseded
[Openvpn-devel,v3,4/7] Rewrite auth-token-gen to be based on HMAC based tokens
Auth token patches v3
- - -
-
-
-
2019-05-10
Arne Schwabe
dazo
Superseded
[Openvpn-devel,v3,4/9] Make waiting on auth an explicit state in the context state machine
Untitled series #1189
- - -
-
-
-
2021-06-04
Arne Schwabe
Superseded
[Openvpn-devel,v3,5/5] Change default MTU in server mode to 1420
[Openvpn-devel,v3,1/5] Extract update_session_cipher into standalone function
- - -
-
-
-
2022-06-25
Arne Schwabe
Deferred
[Openvpn-devel,v3,5/5] Deprecate the --verify-hash option
Untitled series #1075
1 - -
-
-
-
2021-03-21
Arne Schwabe
ordex
Accepted
[Openvpn-devel,v3,5/5] Implement forwarding client CR_RESPONSE messages to management
Implement additional two step authentication methods
1 - -
-
-
-
2020-05-19
Arne Schwabe
Accepted
[Openvpn-devel,v3,5/7] Implement a permanent session id in auth-token
Auth token patches v3
- - -
-
-
-
2019-05-10
Arne Schwabe
dazo
Superseded
[Openvpn-devel,v3,5/9] Remove key-method 1
Untitled series #836
1 - -
-
-
-
2020-07-21
Arne Schwabe
dazo
Accepted
[Openvpn-devel,v3,6/7] Sent indication that a session is expired to clients
Auth token patches v3
- - -
-
-
-
2019-05-10
Arne Schwabe
dazo
Superseded
[Openvpn-devel,v3,6/9] Introduce S_GENERATED_KEYS state and generate keys only when authenticated
Untitled series #1217
1 - -
-
-
-
2021-07-05
Arne Schwabe
Accepted
[Openvpn-devel,v3,7/7] Implement unit tests for auth-gen-token
Auth token patches v3
- - -
-
-
-
2019-05-10
Arne Schwabe
dazo
Superseded
[Openvpn-devel,v3,7/9] Cleanup handling of initial auth token
Untitled series #1218
- - -
-
-
-
2021-07-06
Arne Schwabe
Superseded
[Openvpn-devel,v3,7/9] Remove cipher_kt_t and change type to const char* in API
Untitled series #1377
1 - -
-
-
-
2021-12-10
Arne Schwabe
Changes Requested
[Openvpn-devel,v3] Add Apache2 linking with for new commits
[Openvpn-devel,v3] Add Apache2 linking with for new commits
1 - -
-
-
-
2023-04-26
Arne Schwabe
Accepted
[Openvpn-devel,v3] Add connect-freq-initial option to limit initial connection responses
[Openvpn-devel,v3] Add connect-freq-initial option to limit initial connection responses
- - -
-
-
-
2023-01-09
Arne Schwabe
Superseded
[Openvpn-devel,v3] Add detailed man page section to setup a OpenVPN setup with peer-fingerprint
[Openvpn-devel,v3] Add detailed man page section to setup a OpenVPN setup with peer-fingerprint
1 - -
-
-
-
2021-07-28
Arne Schwabe
Accepted
[Openvpn-devel,v3] Add example script demonstrating TOTP via auth-pending
[Openvpn-devel,v3] Add example script demonstrating TOTP via auth-pending
- - -
-
-
-
2021-08-01
Arne Schwabe
Accepted
[Openvpn-devel,v3] Add example script demonstrating TOTP via auth-pending
[Openvpn-devel,v3] Add example script demonstrating TOTP via auth-pending
1 - -
-
-
-
2021-03-04
Arne Schwabe
Superseded
[Openvpn-devel,v3] Add missing check for nl_socket_alloc failure
[Openvpn-devel,v3] Add missing check for nl_socket_alloc failure
1 - -
-
-
-
2023-11-21
Arne Schwabe
Accepted
[Openvpn-devel,v3] Add OpenSSL compat definition for RSA_meth_set_sign
[Openvpn-devel,v3] Add OpenSSL compat definition for RSA_meth_set_sign
1 - -
-
-
-
2018-10-05
Arne Schwabe
Accepted
[Openvpn-devel,v3] Add OpenSSL compat definition for RSA_meth_set_sign
[Openvpn-devel,v3] Add OpenSSL compat definition for RSA_meth_set_sign
- - -
-
-
-
2018-10-05
Arne Schwabe
Rejected
[Openvpn-devel,v3] Add support for tls-ciphersuites for TLS 1.3
[Openvpn-devel,v3] Add support for tls-ciphersuites for TLS 1.3
1 - -
-
-
-
2018-10-07
Arne Schwabe
Superseded
[Openvpn-devel,v3] Allow 'none' cipher being specified in --data-ciphers
[Openvpn-devel,v3] Allow 'none' cipher being specified in --data-ciphers
1 - -
-
-
-
2020-10-08
Arne Schwabe
Accepted
[Openvpn-devel,v3] Allow running a default configuration with TLS libraries without BF-CBC
[Openvpn-devel,v3] Allow running a default configuration with TLS libraries without BF-CBC
- - -
-
-
-
2021-02-15
Arne Schwabe
Superseded
[Openvpn-devel,v3] Always disable TLS renegotiations
[Openvpn-devel,v3] Always disable TLS renegotiations
1 - -
-
-
-
2021-04-01
Arne Schwabe
Accepted
[Openvpn-devel,v3] Always disable TLS renegotiations
[Openvpn-devel,v3] Always disable TLS renegotiations
- - -
-
-
-
2021-03-31
Arne Schwabe
Superseded
[Openvpn-devel,v3] Change exit signal in P2P to be a SIGUSR1 and delay CC exit in P2MP
[Openvpn-devel,v3] Change exit signal in P2P to be a SIGUSR1 and delay CC exit in P2MP
1 - -
-
-
-
2022-10-16
Arne Schwabe
Accepted
[Openvpn-devel,v3] Change parameter of send_auth_pending_messages from context to tls_multi
[Openvpn-devel,v3] Change parameter of send_auth_pending_messages from context to tls_multi
- - -
-
-
-
2021-02-01
Arne Schwabe
Superseded
[Openvpn-devel,v3] Change parameter of send_auth_pending_messages from context to tls_multi
[Openvpn-devel,v3] Change parameter of send_auth_pending_messages from context to tls_multi
- - -
-
-
-
2021-02-01
Arne Schwabe
Superseded
[Openvpn-devel,v3] Cleanup print_details and add signature/ED certificate print
[Openvpn-devel,v3] Cleanup print_details and add signature/ED certificate print
1 - -
-
-
-
2021-03-26
Arne Schwabe
Accepted
[Openvpn-devel,v3] Do not write extra 0 byte for --gen-key with auth-token/tls-crypt-v2
[Openvpn-devel,v3] Do not write extra 0 byte for --gen-key with auth-token/tls-crypt-v2
- - -
-
-
-
2020-04-26
Arne Schwabe
Superseded
[Openvpn-devel,v3] Extend verify-hash to allow multiple hashes
[Openvpn-devel,v3] Extend verify-hash to allow multiple hashes
1 - -
-
-
-
2021-03-21
Arne Schwabe
ordex
Accepted
[Openvpn-devel,v3] Fix memory leaks in HMAC initial packet id
[Openvpn-devel,v3] Fix memory leaks in HMAC initial packet id
1 - -
-
-
-
2023-03-15
Arne Schwabe
Accepted
[Openvpn-devel,v3] Fix memory leaks in HMAC initial packet id and dco open tun
[Openvpn-devel,v3] Fix memory leaks in HMAC initial packet id and dco open tun
- - -
-
-
-
2023-03-14
Arne Schwabe
Superseded
[Openvpn-devel,v3] Fix OpenSSL error stack handling of tls_ctx_add_extra_certs
[Openvpn-devel,v3] Fix OpenSSL error stack handling of tls_ctx_add_extra_certs
1 - -
-
-
-
2020-04-01
Arne Schwabe
Accepted
[Openvpn-devel,v3] Fix OpenVPN querying user/password if auth-token with user expires
[Openvpn-devel,v3] Fix OpenVPN querying user/password if auth-token with user expires
2 - -
-
-
-
2022-02-17
Arne Schwabe
Accepted
[Openvpn-devel,v3] Implement AUTH_FAIL, TEMP message support
[Openvpn-devel,v3] Implement AUTH_FAIL, TEMP message support
1 - -
-
-
-
2022-08-24
Arne Schwabe
Superseded
[Openvpn-devel,v3] Implement block-ipv6
[Openvpn-devel,v3] Implement block-ipv6
- - -
-
-
-
2017-11-12
Arne Schwabe
ordex
Changes Requested
[Openvpn-devel,v3] Implement --client-crresponse script options and plugin interface
[Openvpn-devel,v3] Implement --client-crresponse script options and plugin interface
- - -
-
-
-
2021-05-18
Arne Schwabe
Superseded
[Openvpn-devel,v3] Implement deferred auth for scripts
[Openvpn-devel,v3] Implement deferred auth for scripts
- - -
-
-
-
2021-02-26
Arne Schwabe
Changes Requested
[Openvpn-devel,v3] Implement ED448 and ED25519 support in xkey_provider
[Openvpn-devel,v3] Implement ED448 and ED25519 support in xkey_provider
1 - -
-
-
-
2022-05-16
Arne Schwabe
Accepted
[Openvpn-devel,v3] Implement exit notification via control channel
[Openvpn-devel,v3] Implement exit notification via control channel
1 - -
-
-
-
2022-08-19
Arne Schwabe
Superseded
[Openvpn-devel,v3] Implement HMAC based session id for tls-crypt v2
[Openvpn-devel,v3] Implement HMAC based session id for tls-crypt v2
- - -
-
-
-
2022-05-02
Arne Schwabe
Superseded
[Openvpn-devel,v3] Implement peer-fingerprint to check fingerprint of peer certificate
[Openvpn-devel,v3] Implement peer-fingerprint to check fingerprint of peer certificate
1 - -
-
-
-
2021-03-21
Arne Schwabe
ordex
Accepted
[Openvpn-devel,v3] Implement server side of AUTH_PENDING with extending timeout
[Openvpn-devel,v3] Implement server side of AUTH_PENDING with extending timeout
1 - -
-
-
-
2021-03-03
Arne Schwabe
Accepted
[Openvpn-devel,v3] Implement server side of AUTH_PENDING with extending timeout
[Openvpn-devel,v3] Implement server side of AUTH_PENDING with extending timeout
- - -
-
-
-
2021-02-01
Arne Schwabe
Superseded
[Openvpn-devel,v3] Implement stateless, HMAC basedsesssion id three way handshake
[Openvpn-devel,v3] Implement stateless, HMAC basedsesssion id three way handshake
1 - -
-
-
-
2022-05-02
Arne Schwabe
Accepted
[Openvpn-devel,v3] Improve data key id not found error message
[Openvpn-devel,v3] Improve data key id not found error message
1 - -
-
-
-
2022-09-14
Arne Schwabe
Accepted
[Openvpn-devel,v3] Introduce dynamic tls-crypt for secure soft_reset/session renegotiation
[Openvpn-devel,v3] Introduce dynamic tls-crypt for secure soft_reset/session renegotiation
- - -
-
-
-
2022-10-19
Arne Schwabe
Superseded
[Openvpn-devel,v3] Introduce get_key_by_management_key_id helper function
[Openvpn-devel,v3] Introduce get_key_by_management_key_id helper function
- - -
-
-
-
2023-07-11
Arne Schwabe
Not Applicable
[Openvpn-devel,v3] Introduce get_key_by_management_key_id helper function
[Openvpn-devel,v3] Introduce get_key_by_management_key_id helper function
- - -
-
-
-
2023-07-10
Arne Schwabe
New
[Openvpn-devel,v3] Introduce webauth auth pending method and deprecate openurl
[Openvpn-devel,v3] Introduce webauth auth pending method and deprecate openurl
1 - -
-
-
-
2021-08-13
Arne Schwabe
Accepted
[Openvpn-devel,v3] Make compression asymmetric by default and add warnings
[Openvpn-devel,v3] Make compression asymmetric by default and add warnings
- - -
-
-
-
2018-10-23
Arne Schwabe
Superseded
[Openvpn-devel,v3] Modernise OpenVPN defaults and introduce '--compat-mode'
[Openvpn-devel,v3] Modernise OpenVPN defaults and introduce '--compat-mode'
- - -
-
-
-
2021-08-05
Arne Schwabe
Superseded
«
1
2
...
8
9
10
11
»