Toggle navigation
Patchwork
OpenVPN 2
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: Submitter =
Arne Schwabe
| 1067 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Search
Archived
No
Yes
Both
Delegate
------
Nobody
samuli
ordex
dazo
selvanair
syzzer
cron2
arne
flichtenheld
d12fk
Apply
«
1
2
...
8
9
10
11
»
Patch
Series
A/R/T
S/W/F
Date
Submitter
Delegate
State
[Openvpn-devel,1/8,OSSL,3.0] Use new EVP_MAC API for HMAC implementation
[Openvpn-devel,1/8,OSSL,3.0] Use new EVP_MAC API for HMAC implementation
- - -
-
-
-
2021-09-19
Arne Schwabe
Superseded
[Openvpn-devel,v3] Modernise OpenVPN defaults and introduce '--compat-mode'
[Openvpn-devel,v3] Modernise OpenVPN defaults and introduce '--compat-mode'
- - -
-
-
-
2021-08-05
Arne Schwabe
Superseded
[Openvpn-devel,v2] Modernise OpenVPN defaults and introduce '--compat-mode'
[Openvpn-devel,v2] Modernise OpenVPN defaults and introduce '--compat-mode'
- - -
-
-
-
2021-08-02
Arne Schwabe
Superseded
[Openvpn-devel] Modernise OpenVPN defaults and introduce '--compat-mode'
[Openvpn-devel] Modernise OpenVPN defaults and introduce '--compat-mode'
- - -
-
-
-
2021-08-02
Arne Schwabe
Superseded
[Openvpn-devel,v2] Fix OpenVPN querying user/password if auth-token with user expires
[Openvpn-devel,v2] Fix OpenVPN querying user/password if auth-token with user expires
- - -
-
-
-
2021-07-22
Arne Schwabe
Superseded
[Openvpn-devel] Fix OpenVPN querying user/password if auth-token with user expires
[Openvpn-devel] Fix OpenVPN querying user/password if auth-token with user expires
- - -
-
-
-
2021-07-22
Arne Schwabe
Superseded
[Openvpn-devel,v5] Cleanup handling of initial auth token
[Openvpn-devel,v5] Cleanup handling of initial auth token
- - -
-
-
-
2021-07-13
Arne Schwabe
Superseded
[Openvpn-devel,v4] Cleanup handling of initial auth token
[Openvpn-devel,v4] Cleanup handling of initial auth token
- - -
-
-
-
2021-07-11
Arne Schwabe
Superseded
[Openvpn-devel,v3,7/9] Cleanup handling of initial auth token
Untitled series #1218
- - -
-
-
-
2021-07-06
Arne Schwabe
Superseded
[Openvpn-devel] Silence warning about format string in check_ca_required
[Openvpn-devel] Silence warning about format string in check_ca_required
- - -
-
-
-
2021-06-08
Arne Schwabe
Superseded
[Openvpn-devel,v3,4/9] Make waiting on auth an explicit state in the context state machine
Untitled series #1189
- - -
-
-
-
2021-06-04
Arne Schwabe
Superseded
[Openvpn-devel,v2,9/9] Support NCP in pure P2P VPN setups
[Openvpn-devel,v2,1/9] Move auth_token_state from multi to key_state
- - -
-
-
-
2021-05-20
Arne Schwabe
ordex
Superseded
[Openvpn-devel,v2,6/9] Introduce S_GENERATED_KEYS state and generate keys only when authenticated
[Openvpn-devel,v2,1/9] Move auth_token_state from multi to key_state
1 - -
-
-
-
2021-05-20
Arne Schwabe
ordex
Superseded
[Openvpn-devel,v2,4/9] Make waiting on auth an explicit state in the context state machine
[Openvpn-devel,v2,1/9] Move auth_token_state from multi to key_state
- - -
-
-
-
2021-05-20
Arne Schwabe
Superseded
[Openvpn-devel,v2,2/2] Add detailed man page section to setup a OpenVPN setup with peer-fingerprint
[Openvpn-devel,v2,1/2] Move examples into openvpn-examples(5) man page
1 - -
-
-
-
2021-05-20
Arne Schwabe
Superseded
[Openvpn-devel,v3] Implement --client-crresponse script options and plugin interface
[Openvpn-devel,v3] Implement --client-crresponse script options and plugin interface
- - -
-
-
-
2021-05-18
Arne Schwabe
Superseded
[Openvpn-devel,9/9] Add detailed man page section to setup a OpenVPN setup with peer-fingerprint
Miscellaneous cleanup patches/small fixes
- - -
-
-
-
2021-05-12
Arne Schwabe
Superseded
[Openvpn-devel] Add connection_established as state in tls_multi->context_auth
[Openvpn-devel] Add connection_established as state in tls_multi->context_auth
1 - -
-
-
-
2021-05-01
Arne Schwabe
ordex
Superseded
[Openvpn-devel,v2,5/7] Extracting key_state deferred auth status update into function
Untitled series #1148
- - -
-
-
-
2021-04-28
Arne Schwabe
Superseded
[Openvpn-devel,7/7] Move auth_token_state_flags to tls_session and cleanup initial_token
[Openvpn-devel,1/7] Move tls_select_primary_key into its own function
- - -
-
-
-
2021-04-22
Arne Schwabe
ordex
Superseded
[Openvpn-devel,6/7] Introduce S_GENERATED_KEYS state and generate keys only when authenticated
[Openvpn-devel,1/7] Move tls_select_primary_key into its own function
- - -
-
-
-
2021-04-22
Arne Schwabe
ordex
Superseded
[Openvpn-devel,5/7] Extracting key_state deferred auth status update into function
[Openvpn-devel,1/7] Move tls_select_primary_key into its own function
- - -
-
-
-
2021-04-22
Arne Schwabe
Superseded
[Openvpn-devel,4/7] Make waiting on auth an explicit state in the context state machine
[Openvpn-devel,1/7] Move tls_select_primary_key into its own function
- - -
-
-
-
2021-04-22
Arne Schwabe
ordex
Superseded
[Openvpn-devel,2/3] Remove --ncp-disable option
P2P NCP support patch set
- - -
-
-
-
2021-04-08
Arne Schwabe
Superseded
[Openvpn-devel,v3] Always disable TLS renegotiations
[Openvpn-devel,v3] Always disable TLS renegotiations
- - -
-
-
-
2021-03-31
Arne Schwabe
Superseded
[Openvpn-devel] Remove support for non ISO C99 vararg support
[Openvpn-devel] Remove support for non ISO C99 vararg support
1 - -
-
-
-
2021-03-28
Arne Schwabe
Superseded
[Openvpn-devel] Remove flexible array member autoconf check
[Openvpn-devel] Remove flexible array member autoconf check
1 - -
-
-
-
2021-03-28
Arne Schwabe
Superseded
[Openvpn-devel] Always disable SSL renegotiations
[Openvpn-devel] Always disable SSL renegotiations
- - -
-
-
-
2021-03-25
Arne Schwabe
Superseded
[Openvpn-devel,1/2] Deprecate non TLS mode in OpenVPN
[Openvpn-devel,1/2] Deprecate non TLS mode in OpenVPN
- - -
-
-
-
2021-03-24
Arne Schwabe
Superseded
[Openvpn-devel,2/2] Remove deprecated option '--keysize'
[Openvpn-devel,1/2] Deprecate non TLS mode in OpenVPN
- - -
-
-
-
2021-03-24
Arne Schwabe
Superseded
[Openvpn-devel,1/2] Deprecate non TLS mode in OpenVPN
[Openvpn-devel,1/2] Deprecate non TLS mode in OpenVPN
- - -
-
-
-
2021-03-24
Arne Schwabe
Superseded
[Openvpn-devel,2/2] Implement '--compress migrate' to migrate to non-compression setup
[Openvpn-devel,1/2] Move extract_iv_proto to ssl_util.c/h
- - -
-
-
-
2021-03-19
Arne Schwabe
Superseded
[Openvpn-devel,v2,5/5] Deprecate the --verify-hash option
[Openvpn-devel,v2,1/5] Extend verify-hash to allow multiple hashes
- - -
-
-
-
2021-03-19
Arne Schwabe
ordex
Superseded
[Openvpn-devel,v2,3/5] Support fingerprint authentication without CA certificate
[Openvpn-devel,v2,1/5] Extend verify-hash to allow multiple hashes
- - -
-
-
-
2021-03-19
Arne Schwabe
ordex
Superseded
[Openvpn-devel,v2] Implement auth-token-user
[Openvpn-devel,v2] Implement auth-token-user
1 - -
-
-
-
2021-03-17
Arne Schwabe
Superseded
[Openvpn-devel] Avoid a crash in mbed TLS 2.25 with --verb < 8
[Openvpn-devel] Avoid a crash in mbed TLS 2.25 with --verb < 8
- - -
-
-
-
2021-03-08
Arne Schwabe
Superseded
[Openvpn-devel,v2] Cleanup print_details and add signature/ED certificate print
[Openvpn-devel,v2] Cleanup print_details and add signature/ED certificate print
- - -
-
-
-
2021-03-04
Arne Schwabe
Superseded
[Openvpn-devel,v3] Add example script demonstrating TOTP via auth-pending
[Openvpn-devel,v3] Add example script demonstrating TOTP via auth-pending
1 - -
-
-
-
2021-03-04
Arne Schwabe
Superseded
[Openvpn-devel,v4] Allow running a default configuration with TLS libraries without BF-CBC
[Openvpn-devel,v4] Allow running a default configuration with TLS libraries without BF-CBC
- - -
-
-
-
2021-02-17
Arne Schwabe
Superseded
[Openvpn-devel,v3] Allow running a default configuration with TLS libraries without BF-CBC
[Openvpn-devel,v3] Allow running a default configuration with TLS libraries without BF-CBC
- - -
-
-
-
2021-02-15
Arne Schwabe
Superseded
[Openvpn-devel,v5] Prefer TLS libraries TLS PRF function, fix OpenVPN in FIPS mode
[Openvpn-devel,v5] Prefer TLS libraries TLS PRF function, fix OpenVPN in FIPS mode
- - -
-
-
-
2021-02-15
Arne Schwabe
Superseded
[Openvpn-devel,v4] Prefer TLS libraries TLS PRF function, fix OpenVPN in FIPS mode
[Openvpn-devel,v4] Prefer TLS libraries TLS PRF function, fix OpenVPN in FIPS mode
- - -
-
-
-
2021-02-15
Arne Schwabe
Superseded
[Openvpn-devel,v3,3/3] Handle the unlikely case that PRF generation fails
[Openvpn-devel,v3,1/3] Check return values in md_ctx_init and hmac_ctx_init
- - -
-
-
-
2021-02-01
Arne Schwabe
Superseded
[Openvpn-devel,v3,2/3] Prefer TLS libraries TLS PRF function, fix OpenVPN in FIPS mode
[Openvpn-devel,v3,1/3] Check return values in md_ctx_init and hmac_ctx_init
- - -
-
-
-
2021-02-01
Arne Schwabe
Superseded
[Openvpn-devel,v3] Change parameter of send_auth_pending_messages from context to tls_multi
[Openvpn-devel,v3] Change parameter of send_auth_pending_messages from context to tls_multi
- - -
-
-
-
2021-02-01
Arne Schwabe
Superseded
[Openvpn-devel,v3] Change parameter of send_auth_pending_messages from context to tls_multi
[Openvpn-devel,v3] Change parameter of send_auth_pending_messages from context to tls_multi
- - -
-
-
-
2021-02-01
Arne Schwabe
Superseded
[Openvpn-devel,v3] Implement server side of AUTH_PENDING with extending timeout
[Openvpn-devel,v3] Implement server side of AUTH_PENDING with extending timeout
- - -
-
-
-
2021-02-01
Arne Schwabe
Superseded
[Openvpn-devel,v2,4/5] Check return values in md_ctx_init and hmac_ctx_init
Untitled series #1022
- - -
-
-
-
2021-01-28
Arne Schwabe
Superseded
[Openvpn-devel,v2,11/11] Add example script demonstrating TOTP via auth-pending
Pending authentication improvements
- - -
-
-
-
2021-01-25
Arne Schwabe
Superseded
[Openvpn-devel,v2,10/11] Implement --client-crresponse script options and plugin interface
Pending authentication improvements
1 - -
-
-
-
2021-01-25
Arne Schwabe
Superseded
[Openvpn-devel,v2,09/11] Implement deferred auth for scripts
Pending authentication improvements
- - -
-
-
-
2021-01-25
Arne Schwabe
Superseded
[Openvpn-devel,v2,07/11] Refactor extract_var_peer_info into standalone function and add ssl_util.c
Pending authentication improvements
1 - -
-
-
-
2021-01-25
Arne Schwabe
Superseded
[Openvpn-devel,v2,05/11] Change parameter of send_auth_pending_messages from context to tls_multi
Pending authentication improvements
- - -
-
-
-
2021-01-25
Arne Schwabe
Superseded
[Openvpn-devel,v2] Allow running a default configuration with TLS libraries without BF-CBC
[Openvpn-devel,v2] Allow running a default configuration with TLS libraries without BF-CBC
1 - -
-
-
-
2021-01-25
Arne Schwabe
Superseded
[Openvpn-devel,2/2] Fix condition to generate session keys
[Openvpn-devel,1/2] Move context_auth from context_2 to tls_multi
- - -
-
-
-
2020-12-15
Arne Schwabe
Superseded
[Openvpn-devel,1/2] Move context_auth from context_2 to tls_multi
[Openvpn-devel,1/2] Move context_auth from context_2 to tls_multi
- - -
-
-
-
2020-12-15
Arne Schwabe
Superseded
[Openvpn-devel,3/3] Restore also ping related options on a reconnect
[Openvpn-devel,1/3] Move restoring pr pull options to initialising of c2 context
- - -
-
-
-
2020-12-09
Arne Schwabe
Superseded
[Openvpn-devel,2/3] Move NCP saving and restore to the prepush restore code
[Openvpn-devel,1/3] Move restoring pr pull options to initialising of c2 context
- - -
-
-
-
2020-12-09
Arne Schwabe
Superseded
[Openvpn-devel,1/3] Move restoring pr pull options to initialising of c2 context
[Openvpn-devel,1/3] Move restoring pr pull options to initialising of c2 context
- - -
-
-
-
2020-12-09
Arne Schwabe
Superseded
[Openvpn-devel] Remove auth_user_pass.wait_for_push variable
[Openvpn-devel] Remove auth_user_pass.wait_for_push variable
- - -
-
-
-
2020-12-01
Arne Schwabe
Superseded
[Openvpn-devel,11/11] Add example script demonstrating TOTP via auth-pending
Pending authentication improvements
- - -
-
-
-
2020-09-30
Arne Schwabe
Superseded
[Openvpn-devel,10/11] Implement --client-crresponse script options and plugin interface
Pending authentication improvements
- - -
-
-
-
2020-09-30
Arne Schwabe
Superseded
[Openvpn-devel,09/11] Implement deferred auth for scripts
Pending authentication improvements
- - -
-
-
-
2020-09-30
Arne Schwabe
Superseded
[Openvpn-devel,08/11] Allow pending auth to be send from a auth plugin
Pending authentication improvements
- - -
-
-
-
2020-09-30
Arne Schwabe
Superseded
[Openvpn-devel,07/11] Refactor extract_var_peer_info into standalone function and add ssl_util.c
Pending authentication improvements
1 - -
-
-
-
2020-09-30
Arne Schwabe
Superseded
[Openvpn-devel,06/11] Add S_EXITCODE flag for openvpn_run_script to report exit code
Pending authentication improvements
1 - -
-
-
-
2020-09-30
Arne Schwabe
Superseded
[Openvpn-devel,05/11] Change parameter of send_auth_pending_messages from context to tls_multi
Pending authentication improvements
1 - -
-
-
-
2020-09-30
Arne Schwabe
Superseded
[Openvpn-devel,04/11] Introduce management client state for AUTH_PENDING notifications
Pending authentication improvements
1 - -
-
-
-
2020-09-30
Arne Schwabe
Superseded
[Openvpn-devel,03/11] Implement server side of AUTH_PENDING with extending timeout
Pending authentication improvements
- - -
-
-
-
2020-09-30
Arne Schwabe
Superseded
[Openvpn-devel,02/11] Implement client side handling of AUTH_PENDING message
Pending authentication improvements
- - -
-
-
-
2020-09-30
Arne Schwabe
Superseded
[Openvpn-devel,01/11] Change pull request timeout use a timeout rather than a number
Pending authentication improvements
- - -
-
-
-
2020-09-30
Arne Schwabe
Superseded
[Openvpn-devel] Allow 'none' cipher being specified in --data-ciphers
[Openvpn-devel] Allow 'none' cipher being specified in --data-ciphers
- - -
-
-
-
2020-09-30
Arne Schwabe
Superseded
[Openvpn-devel,v2] Allow 'none' cipher being specified in --data-ciphers
[Openvpn-devel,v2] Allow 'none' cipher being specified in --data-ciphers
- - -
-
-
-
2020-09-21
Arne Schwabe
Superseded
[Openvpn-devel] Allow 'none' cipher being specified in --data-ciphers
[Openvpn-devel] Allow 'none' cipher being specified in --data-ciphers
- - -
-
-
-
2020-09-21
Arne Schwabe
Superseded
[Openvpn-devel,3/4] Support fingerprint authentication without CA certificate
Allow setting up OpenVPN in TLS mode without CA
- - -
-
-
-
2020-09-08
Arne Schwabe
ordex
Superseded
[Openvpn-devel,2/4] Implement peer-fingerprint to check fingerprint of peer certificate
Allow setting up OpenVPN in TLS mode without CA
- - -
-
-
-
2020-09-08
Arne Schwabe
ordex
Superseded
[Openvpn-devel,1/4] Extend verify-hash to allow multiple hashes
Allow setting up OpenVPN in TLS mode without CA
- - -
-
-
-
2020-09-08
Arne Schwabe
ordex
Superseded
[Openvpn-devel,5/5] Prefer TLS libraries TLS PRF function, fix OpenVPN in FIPS mode
Untitled series #902
- - -
-
-
-
2020-09-07
Arne Schwabe
Superseded
[Openvpn-devel,4/5] Check return values in md_ctx_init and hmac_ctx_init
Untitled series #902
- - -
-
-
-
2020-09-07
Arne Schwabe
Superseded
[Openvpn-devel,3/5] Allow running a default configuration with TLS libraries without BF-CBC
Untitled series #902
- - -
-
-
-
2020-09-07
Arne Schwabe
Superseded
[Openvpn-devel] Fix client NCP OCC fallback when server and client cipher are identical
[Openvpn-devel] Fix client NCP OCC fallback when server and client cipher are identical
- - -
-
-
-
2020-08-30
Arne Schwabe
Superseded
[Openvpn-devel,v4,2/2] Implement generating data channel keys via EKM/RFC 5705
[Openvpn-devel,v4,1/2] Move openvpn specific key expansion into its own function
- - -
-
-
-
2020-08-24
Arne Schwabe
Superseded
[Openvpn-devel,v3,3/3] Implement generating data channel keys via EKM/RFC 5705
Untitled series #878
- - -
-
-
-
2020-08-14
Arne Schwabe
Superseded
[Openvpn-devel,v2,3/3] Implement generating data channel keys via EKM/RFC 5705
[Openvpn-devel,v2,1/3] Refactor key_state_export_keying_material functions
- - -
-
-
-
2020-08-12
Arne Schwabe
Superseded
[Openvpn-devel,v2,2/3] Move openvpn specific key expansion into its own function
[Openvpn-devel,v2,1/3] Refactor key_state_export_keying_material functions
- - -
-
-
-
2020-08-12
Arne Schwabe
Superseded
[Openvpn-devel,v2,1/3] Refactor key_state_export_keying_material functions
[Openvpn-devel,v2,1/3] Refactor key_state_export_keying_material functions
- - -
-
-
-
2020-08-12
Arne Schwabe
Superseded
[Openvpn-devel,3/3] Implement generating data channel keys via EKM/RFC 5705
[Openvpn-devel,1/3] Refactor key_state_export_keying_material functions
- - -
-
-
-
2020-08-11
Arne Schwabe
Superseded
[Openvpn-devel,2/3] Move openvpn specific key expansion into its own function
[Openvpn-devel,1/3] Refactor key_state_export_keying_material functions
- - -
-
-
-
2020-08-11
Arne Schwabe
Superseded
[Openvpn-devel,1/3] Refactor key_state_export_keying_material functions
[Openvpn-devel,1/3] Refactor key_state_export_keying_material functions
- - -
-
-
-
2020-08-11
Arne Schwabe
Superseded
[Openvpn-devel,17/17] Move openvpn specific key expansion into its own function
OpenVPN refactoring
- - -
-
-
-
2020-08-10
Arne Schwabe
Superseded
[Openvpn-devel,15/17] Refactor key_state_export_keying_material functions
OpenVPN refactoring
- - -
-
-
-
2020-08-10
Arne Schwabe
Superseded
[Openvpn-devel,v3,2/2] Document different behaviour of dynamic cipher negotiation
[Openvpn-devel,v3,1/2] Rework NCP compability logic and drop BF-CBC support by default
- - -
-
-
-
2020-08-09
Arne Schwabe
Superseded
[Openvpn-devel] Skip existing interfaces on opening the first available utun on macOS
[Openvpn-devel] Skip existing interfaces on opening the first available utun on macOS
1 - -
-
-
-
2020-07-31
Arne Schwabe
Superseded
[Openvpn-devel,v2] Rework NCP compability logic and drop BF-CBC support by default
[Openvpn-devel,v2] Rework NCP compability logic and drop BF-CBC support by default
- - -
-
-
-
2020-07-29
Arne Schwabe
Superseded
[Openvpn-devel,10/10] Add a note that ncp-ciphers is replaced by data-ciphers
[Openvpn-devel,1/9] Indicate that a client is in pull mode in IV_PROTO
- - -
-
-
-
2020-07-24
Arne Schwabe
Superseded
[Openvpn-devel,3/3] Clean up a number of leftover C89 initialisations in ssl.c
[Openvpn-devel,1/3] Refactor/Reformat tls_pre_decrypt
- - -
-
-
-
2020-07-21
Arne Schwabe
Superseded
[Openvpn-devel,1/3] Refactor/Reformat tls_pre_decrypt
[Openvpn-devel,1/3] Refactor/Reformat tls_pre_decrypt
- - -
-
-
-
2020-07-21
Arne Schwabe
Superseded
[Openvpn-devel,v2,1/9] Indicate that a client is in pull mode in IV_PROTO
[Openvpn-devel,v2,1/9] Indicate that a client is in pull mode in IV_PROTO
- - -
-
-
-
2020-07-19
Arne Schwabe
ordex
Superseded
[Openvpn-devel,9/9] Rework NCP compability logic and drop BF-CBC support by default
[Openvpn-devel,1/9] Indicate that a client is in pull mode in IV_PROTO
- - -
-
-
-
2020-07-17
Arne Schwabe
Superseded
[Openvpn-devel,v2,5/9] Remove key-method 1
[Openvpn-devel,1/9] Indicate that a client is in pull mode in IV_PROTO
- - -
-
-
-
2020-07-17
Arne Schwabe
Superseded
«
1
2
...
8
9
10
11
»