Toggle navigation
Patchwork
OpenVPN 2
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: Submitter =
Arne Schwabe
| 1067 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Search
Archived
No
Yes
Both
Delegate
------
Nobody
samuli
ordex
dazo
selvanair
syzzer
cron2
arne
flichtenheld
d12fk
Apply
«
1
2
3
4
…
10
11
»
Patch
Series
A/R/T
S/W/F
Date
Submitter
Delegate
State
[Openvpn-devel,v3] Introduce get_key_by_management_key_id helper function
[Openvpn-devel,v3] Introduce get_key_by_management_key_id helper function
- - -
-
-
-
2023-07-10
Arne Schwabe
New
[Openvpn-devel,3/3] Prefer OpenSSL's SIPHASH implementation when available
[Openvpn-devel,1/3] Add siphash reference implementation
- - -
-
-
-
2023-02-27
Arne Schwabe
New
[Openvpn-devel,2/3] Implement initial packet reflection protection using bloom filter
[Openvpn-devel,1/3] Add siphash reference implementation
- - -
-
-
-
2023-02-27
Arne Schwabe
New
[Openvpn-devel,1/3] Add siphash reference implementation
[Openvpn-devel,1/3] Add siphash reference implementation
- - -
-
-
-
2023-02-27
Arne Schwabe
New
[Openvpn-devel,2/2] Add debug output for sent IV variables in client mode with verb 7
[Openvpn-devel,1/2] Add 'allow-compression stub-only and refuse framing with 'allow-compression no'
- - -
-
-
-
2023-02-09
Arne Schwabe
New
[Openvpn-devel,5/5] Add undefined and abort on error to clang sanaitize builds
[Openvpn-devel,1/5] Fix unaligned access in auth-token
- - -
-
-
-
2023-01-30
Arne Schwabe
New
[Openvpn-devel,v3] Add missing check for nl_socket_alloc failure
[Openvpn-devel,v3] Add missing check for nl_socket_alloc failure
1 - -
-
-
-
2023-11-21
Arne Schwabe
Accepted
[Openvpn-devel] Remove openssl engine method for loading the key
[Openvpn-devel] Remove openssl engine method for loading the key
1 - -
-
-
-
2023-10-06
Arne Schwabe
Accepted
[Openvpn-devel,v2] show extra info for OpenSSL errors
[Openvpn-devel,v2] show extra info for OpenSSL errors
1 - -
-
-
-
2023-08-11
Arne Schwabe
Accepted
[Openvpn-devel,v3,3/4] Check if the -wrap argument is actually supported by the platform's ld
Untitled series #2180
1 - -
-
-
-
2023-07-12
Arne Schwabe
Accepted
[Openvpn-devel,v2] Mock openvpn_exece on win32 also for test_tls_crypt
[Openvpn-devel,v2] Mock openvpn_exece on win32 also for test_tls_crypt
1 - -
-
-
-
2023-07-12
Arne Schwabe
Accepted
[Openvpn-devel] Ignore Ipv6 route delete request on Android and set ipv4 verbosity to 7
[Openvpn-devel] Ignore Ipv6 route delete request on Android and set ipv4 verbosity to 7
1 - -
-
-
-
2023-07-12
Arne Schwabe
Accepted
[Openvpn-devel,v2,4/4] Avoid unused function warning/error on FreeBSD (and potientially others)
Untitled series #2164
1 - -
-
-
-
2023-07-01
Arne Schwabe
Accepted
[Openvpn-devel,2/4,CMake] Only add -Wno-stringop-truncation on supported compilers
Restore ability to compile on macOS/FreeBSD with Cmake
1 - -
-
-
-
2023-06-29
Arne Schwabe
Accepted
[Openvpn-devel,1/4] Do not blindly assume python3 is also the interpreter that runs rst2html
Restore ability to compile on macOS/FreeBSD with Cmake
1 - -
-
-
-
2023-06-29
Arne Schwabe
Accepted
[Openvpn-devel] Remove key_type argument from generate_key_random
[Openvpn-devel] Remove key_type argument from generate_key_random
1 - -
-
-
-
2023-06-01
Arne Schwabe
Accepted
[Openvpn-devel] Fix use-after-free with EVP_CIPHER_free
[Openvpn-devel] Fix use-after-free with EVP_CIPHER_free
1 - -
-
-
-
2023-06-01
Arne Schwabe
Accepted
[Openvpn-devel,2/2] Implement using --peer-fingerprint without CA certificates
[Openvpn-devel,1/2] Revert commit 423ced962d
1 - -
-
-
-
2023-05-24
Arne Schwabe
Accepted
[Openvpn-devel,1/2] Revert commit 423ced962d
[Openvpn-devel,1/2] Revert commit 423ced962d
1 - -
-
-
-
2023-05-24
Arne Schwabe
Accepted
[Openvpn-devel,v2,2/2] Fix CR_RESPONSE mangaement message using wrong key_id
[Openvpn-devel,v2,1/2] Introduce get_key_by_management_key_id helper function
- - -
-
-
-
2023-05-22
Arne Schwabe
Accepted
[Openvpn-devel] Print a more user-friendly error when tls-crypt-v2 client auth fails
[Openvpn-devel] Print a more user-friendly error when tls-crypt-v2 client auth fails
1 - -
-
-
-
2023-05-22
Arne Schwabe
Accepted
[Openvpn-devel] Remove unused variable line
[Openvpn-devel] Remove unused variable line
1 - -
-
-
-
2023-04-30
Arne Schwabe
Accepted
[Openvpn-devel,v3] Add Apache2 linking with for new commits
[Openvpn-devel,v3] Add Apache2 linking with for new commits
1 - -
-
-
-
2023-04-26
Arne Schwabe
Accepted
[Openvpn-devel] Fix compile error on TARGET_ANDROID
[Openvpn-devel] Fix compile error on TARGET_ANDROID
1 - -
-
-
-
2023-04-17
Arne Schwabe
Accepted
[Openvpn-devel,v4] Parse compression options and bail out when compression is disabled
[Openvpn-devel,v4] Parse compression options and bail out when compression is disabled
1 - -
-
-
-
2023-03-24
Arne Schwabe
Accepted
[Openvpn-devel,v4] Add 'allow-compression stub-only' internally for DCO
[Openvpn-devel,v4] Add 'allow-compression stub-only' internally for DCO
1 - -
-
-
-
2023-03-24
Arne Schwabe
Accepted
[Openvpn-devel,v3,2/4] Refuse connection if server pushes an option contradicting allow-compress
[Openvpn-devel,v3,1/4] Simplify --compress parsing in options.c
1 - -
-
-
-
2023-03-23
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/4] Simplify --compress parsing in options.c
[Openvpn-devel,v3,1/4] Simplify --compress parsing in options.c
1 - -
-
-
-
2023-03-23
Arne Schwabe
Accepted
[Openvpn-devel,v2] Improve description of compat-mode
[Openvpn-devel,v2] Improve description of compat-mode
1 - -
-
-
-
2023-03-20
Arne Schwabe
Accepted
[Openvpn-devel,v3] Fix memory leaks in HMAC initial packet id
[Openvpn-devel,v3] Fix memory leaks in HMAC initial packet id
1 - -
-
-
-
2023-03-15
Arne Schwabe
Accepted
[Openvpn-devel,2/2] Fix memory leaks in dco open tun
[Openvpn-devel,1/2] Fix memory leaks in HMAC initial packet id
1 - -
-
-
-
2023-03-14
Arne Schwabe
Accepted
[Openvpn-devel] Ensure n = 2 is set in key2 structer in tls_crypt_v2_unwrap_client_key
[Openvpn-devel] Ensure n = 2 is set in key2 structer in tls_crypt_v2_unwrap_client_key
1 - -
-
-
-
2023-03-09
Arne Schwabe
Accepted
[Openvpn-devel] Set netlink socket to be non-blocking
[Openvpn-devel] Set netlink socket to be non-blocking
1 - -
-
-
-
2023-03-08
Arne Schwabe
Accepted
[Openvpn-devel,v8] Dynamic tls-crypt for secure soft_reset/session renegotiation
[Openvpn-devel,v8] Dynamic tls-crypt for secure soft_reset/session renegotiation
- - -
-
-
-
2023-03-07
Arne Schwabe
Accepted
[Openvpn-devel,2/2] Make sending plain text control message session aware
[Openvpn-devel,1/2] Use key_state instead of multi for tls_send_payload parameter
1 - -
-
-
-
2023-03-01
Arne Schwabe
Accepted
[Openvpn-devel,1/2] Use key_state instead of multi for tls_send_payload parameter
[Openvpn-devel,1/2] Use key_state instead of multi for tls_send_payload parameter
1 - -
-
-
-
2023-03-01
Arne Schwabe
Accepted
[Openvpn-devel] Only update frame calculation if we have a valid link sockets
[Openvpn-devel] Only update frame calculation if we have a valid link sockets
1 - -
-
-
-
2023-03-01
Arne Schwabe
Accepted
[Openvpn-devel] Exit if a proper message instead of segfault on Android without management
[Openvpn-devel] Exit if a proper message instead of segfault on Android without management
1 - -
-
-
-
2023-02-20
Arne Schwabe
Accepted
[Openvpn-devel] Use proper print format/casting when converting msg_channel handle
[Openvpn-devel] Use proper print format/casting when converting msg_channel handle
1 - -
-
-
-
2023-02-14
Arne Schwabe
Accepted
[Openvpn-devel,v2,4/4] Reduce initialisation spam from verb <= 3 and print summary instead
Untitled series #2016
1 - -
-
-
-
2023-02-14
Arne Schwabe
Accepted
[Openvpn-devel,3/4] Revise the cipher negotiation about OpenVPN3 in the man page
Collections of miscellenaous patches
1 - -
-
-
-
2023-02-10
Arne Schwabe
Accepted
[Openvpn-devel,2/4] Update the last sections in the man page to a be a bit less outdated
Collections of miscellenaous patches
1 - -
-
-
-
2023-02-10
Arne Schwabe
Accepted
[Openvpn-devel,1/4] Combine extra_tun/frame parameter of frame_calculate_payload_overhead
Collections of miscellenaous patches
1 - -
-
-
-
2023-02-10
Arne Schwabe
Accepted
[Openvpn-devel,v2,5/5] Add building unit tests with mingw to github actions
Untitled series #2009
1 - -
-
-
-
2023-02-09
Arne Schwabe
Accepted
[Openvpn-devel] Fix LibreSSL not building in Github Actions
[Openvpn-devel] Fix LibreSSL not building in Github Actions
1 - -
-
-
-
2023-02-09
Arne Schwabe
Accepted
[Openvpn-devel,4/5] Add missing stdint.h includes in unit tests files
Build and run unittests with mingw in Github actions
1 - -
-
-
-
2023-02-08
Arne Schwabe
Accepted
[Openvpn-devel,4/5] Add printing USAN stack trace on github actions
[Openvpn-devel,1/5] Fix unaligned access in auth-token
1 - -
-
-
-
2023-01-30
Arne Schwabe
Accepted
[Openvpn-devel,3/5] Update LibreSSL to 3.7.0 in Github actions
[Openvpn-devel,1/5] Fix unaligned access in auth-token
1 - -
-
-
-
2023-01-30
Arne Schwabe
Accepted
[Openvpn-devel,1/5] Fix unaligned access in auth-token
[Openvpn-devel,1/5] Fix unaligned access in auth-token
1 - -
-
-
-
2023-01-30
Arne Schwabe
Accepted
[Openvpn-devel] Workaround: make ovpn-dco more reliable
[Openvpn-devel] Workaround: make ovpn-dco more reliable
1 - -
-
-
-
2023-01-12
Arne Schwabe
Accepted
[Openvpn-devel,v2] Deprecate OCC checking
[Openvpn-devel,v2] Deprecate OCC checking
1 - -
-
-
-
2023-01-11
Arne Schwabe
Accepted
[Openvpn-devel,v2] Log peer-id if loglevel is D_DCO_DEBUG and dco is enabled
[Openvpn-devel,v2] Log peer-id if loglevel is D_DCO_DEBUG and dco is enabled
1 - -
-
-
-
2023-01-10
Arne Schwabe
Accepted
[Openvpn-devel,v5] Add connect-freq-initial option to limit initial connection responses
[Openvpn-devel,v5] Add connect-freq-initial option to limit initial connection responses
1 - -
-
-
-
2023-01-10
Arne Schwabe
Accepted
[Openvpn-devel,2/2] Replace realloc with new gc_realloc function
Untitled series #1926
1 - -
-
-
-
2022-12-27
Arne Schwabe
Accepted
[Openvpn-devel,1/2] Replace custom min macro and use more C99 style in man_remote_entry_get
[Openvpn-devel,1/2] Replace custom min macro and use more C99 style in man_remote_entry_get
1 - -
-
-
-
2022-12-27
Arne Schwabe
Accepted
[Openvpn-devel,v2,3/4] Ignore OVPN_DEL_PEER_REASON_USERSPACE to avoid race conditions
[Openvpn-devel,v2,1/4] Ensure we do not promote a TA_TIMEOUT to a TA_READ event with dco
1 - -
-
-
-
2022-12-27
Arne Schwabe
Accepted
[Openvpn-devel,8/9] Improve logging when seeing a message for an unkown peer
Various patches to improve DCO behaviour
1 - -
-
-
-
2022-12-24
Arne Schwabe
Accepted
[Openvpn-devel,6/9] Do not set nl socket buffer size
Various patches to improve DCO behaviour
1 - -
-
-
-
2022-12-24
Arne Schwabe
Accepted
[Openvpn-devel,5/9] Also drop incoming dco packet content when dropping the packet
Various patches to improve DCO behaviour
1 - -
-
-
-
2022-12-24
Arne Schwabe
Accepted
[Openvpn-devel,3/9] Move dco_installed back to link_socket from link_socket.info.actual
Various patches to improve DCO behaviour
1 - -
-
-
-
2022-12-24
Arne Schwabe
Accepted
[Openvpn-devel,2/9] Always start session in TM_INITIAL rather than TM_ACTIVE or TM_INITIAL
Various patches to improve DCO behaviour
1 - -
-
-
-
2022-12-24
Arne Schwabe
Accepted
[Openvpn-devel,1/9] Rename TM_UNTRUSTED to TM_INITIAL
Various patches to improve DCO behaviour
1 - -
-
-
-
2022-12-24
Arne Schwabe
Accepted
[Openvpn-devel,v2,1/8] Make management password check constant time
[Openvpn-devel,v2,1/8] Make management password check constant time
1 - -
-
-
-
2022-12-20
Arne Schwabe
Accepted
[Openvpn-devel] Ensure that dco keepalive and mssfix options are also set in pure p2p mode
[Openvpn-devel] Ensure that dco keepalive and mssfix options are also set in pure p2p mode
1 - -
-
-
-
2022-12-19
Arne Schwabe
Accepted
[Openvpn-devel] Use include "buffer.h" instead of include <buffer.h>
[Openvpn-devel] Use include "buffer.h" instead of include <buffer.h>
1 - -
-
-
-
2022-12-19
Arne Schwabe
Accepted
[Openvpn-devel,8/8] Deprecate NTLMv1 proxy auth method.
Improvement/fixes based on Trail of Bits audit
1 - -
-
-
-
2022-12-15
Arne Schwabe
Accepted
[Openvpn-devel,7/8] Fix corner case that might lead to leaked file descriptor
Improvement/fixes based on Trail of Bits audit
1 - -
-
-
-
2022-12-15
Arne Schwabe
Accepted
[Openvpn-devel,6/8] Remove unused gc_arena
Improvement/fixes based on Trail of Bits audit
1 - -
-
-
-
2022-12-15
Arne Schwabe
Accepted
[Openvpn-devel,5/8] Eliminate or comment empty blocks and switch fallthrough
Improvement/fixes based on Trail of Bits audit
1 - -
-
-
-
2022-12-15
Arne Schwabe
Accepted
[Openvpn-devel,4/8] Improve documentation on user/password requirement and unicodize function
Improvement/fixes based on Trail of Bits audit
1 - -
-
-
-
2022-12-15
Arne Schwabe
Accepted
[Openvpn-devel,3/8] Ensure that argument to parse_line has always space for final sentinel
Improvement/fixes based on Trail of Bits audit
1 - -
-
-
-
2022-12-15
Arne Schwabe
Accepted
[Openvpn-devel,2/8] ssl_verify: Fix memleak if creating deferred auth control files fails
Improvement/fixes based on Trail of Bits audit
1 - -
-
-
-
2022-12-15
Arne Schwabe
Accepted
[Openvpn-devel,3/3] Set DCO_NOT_INSTALLED also for keys not in the get_key_scan range
[Openvpn-devel,1/3] Improve debug logging of DCO swap key message and Linux dco_new_peer
1 - -
-
-
-
2022-12-13
Arne Schwabe
Accepted
[Openvpn-devel,2/3] Trigger a USR1 if dco_update_keys fails
[Openvpn-devel,1/3] Improve debug logging of DCO swap key message and Linux dco_new_peer
1 - -
-
-
-
2022-12-13
Arne Schwabe
Accepted
[Openvpn-devel,1/3] Improve debug logging of DCO swap key message and Linux dco_new_peer
[Openvpn-devel,1/3] Improve debug logging of DCO swap key message and Linux dco_new_peer
1 - -
-
-
-
2022-12-13
Arne Schwabe
Accepted
[Openvpn-devel] Disable DCO when TLS mode is not used
[Openvpn-devel] Disable DCO when TLS mode is not used
2 - -
-
-
-
2022-12-10
Arne Schwabe
Accepted
[Openvpn-devel] Ignore connection attempts while server is shutting down
[Openvpn-devel] Ignore connection attempts while server is shutting down
1 - -
-
-
-
2022-12-08
Arne Schwabe
Accepted
[Openvpn-devel] Fix unit test of test_pkt on little endian Linux
[Openvpn-devel] Fix unit test of test_pkt on little endian Linux
1 - -
-
-
-
2022-12-07
Arne Schwabe
Accepted
[Openvpn-devel] Fix connection cookie not including address and fix endianness in test
[Openvpn-devel] Fix connection cookie not including address and fix endianness in test
1 - -
-
-
-
2022-12-06
Arne Schwabe
Accepted
[Openvpn-devel] Allow reconnecting in p2p mode work under FreeBSD
[Openvpn-devel] Allow reconnecting in p2p mode work under FreeBSD
1 - -
-
-
-
2022-12-01
Arne Schwabe
Accepted
[Openvpn-devel] Signal USR1 when connection initialising fails
[Openvpn-devel] Signal USR1 when connection initialising fails
1 - -
-
-
-
2022-11-30
Arne Schwabe
Accepted
[Openvpn-devel] Introduce connection state for reconnecting peer in p2p
[Openvpn-devel] Introduce connection state for reconnecting peer in p2p
1 - -
-
-
-
2022-11-30
Arne Schwabe
Accepted
[Openvpn-devel,v2] Add section about common error with OpenVPN 2.6 and OpenSSL 3.0
[Openvpn-devel,v2] Add section about common error with OpenVPN 2.6 and OpenSSL 3.0
1 - -
-
-
-
2022-11-29
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/3] Use dedicated multi->dco_peer_id for DCO instead of multi->peer_id
[Openvpn-devel,v3,1/3] Use dedicated multi->dco_peer_id for DCO instead of multi->peer_id
1 - -
-
-
-
2022-11-27
Arne Schwabe
Accepted
[Openvpn-devel,RFC] fix warning with gcc 12.2.0 (compiler bug?)
[Openvpn-devel,RFC] fix warning with gcc 12.2.0 (compiler bug?)
2 - -
-
-
-
2022-11-27
Arne Schwabe
Accepted
[Openvpn-devel,v3,1/3] Move dco_installed from sock->info to sock->info.lsa.actual
[Openvpn-devel,v3,1/3] Move dco_installed from sock->info to sock->info.lsa.actual
- - -
-
-
-
2022-11-24
Arne Schwabe
Accepted
[Openvpn-devel] Fix logic error in checking early negotiation support check
[Openvpn-devel] Fix logic error in checking early negotiation support check
1 - -
-
-
-
2022-11-15
Arne Schwabe
Accepted
[Openvpn-devel,v5,2/2] Push server mtu to client when supported and support occ mtu
[Openvpn-devel,v5,1/2] Allow tun-mtu to be pushed
1 - -
-
-
-
2022-11-09
Arne Schwabe
Accepted
[Openvpn-devel,v5,1/2] Allow tun-mtu to be pushed
[Openvpn-devel,v5,1/2] Allow tun-mtu to be pushed
1 - -
-
-
-
2022-11-09
Arne Schwabe
Accepted
[Openvpn-devel] Add algorithm and bits used in key_print2 method and refactor method
[Openvpn-devel] Add algorithm and bits used in key_print2 method and refactor method
1 - -
-
-
-
2022-11-09
Arne Schwabe
Accepted
[Openvpn-devel] Fix md_kt_size in mbed TLS when queried for size of "none"
[Openvpn-devel] Fix md_kt_size in mbed TLS when queried for size of "none"
1 - -
-
-
-
2022-11-09
Arne Schwabe
Accepted
[Openvpn-devel] Remove unused addr_inet4or6, addr_guess_family and inline addr_copy_sa
[Openvpn-devel] Remove unused addr_inet4or6, addr_guess_family and inline addr_copy_sa
1 - -
-
-
-
2022-11-09
Arne Schwabe
Accepted
[Openvpn-devel] Add packet type in accept/reject messages for HMAC packet
[Openvpn-devel] Add packet type in accept/reject messages for HMAC packet
1 - -
-
-
-
2022-11-08
Arne Schwabe
Accepted
[Openvpn-devel,v6,2/2] Allow setting control channel packet size with max-packet-size
[Openvpn-devel,v6,1/2] Refactor/optimise code sending TLS control channel messages
- - -
-
-
-
2022-11-04
Arne Schwabe
Accepted
[Openvpn-devel,v6,1/2] Refactor/optimise code sending TLS control channel messages
[Openvpn-devel,v6,1/2] Refactor/optimise code sending TLS control channel messages
1 - -
-
-
-
2022-11-04
Arne Schwabe
Accepted
[Openvpn-devel] Fix regression of ignoring --user
[Openvpn-devel] Fix regression of ignoring --user
1 - -
-
-
-
2022-10-19
Arne Schwabe
Accepted
[Openvpn-devel] Fix renewal spelling and actually allow external-auth with renewal time
[Openvpn-devel] Fix renewal spelling and actually allow external-auth with renewal time
1 - -
-
-
-
2022-10-18
Arne Schwabe
Accepted
[Openvpn-devel,v2] Allow Authtoken lifetime to be short than renegotiation time
[Openvpn-devel,v2] Allow Authtoken lifetime to be short than renegotiation time
1 - -
-
-
-
2022-10-17
Arne Schwabe
Accepted
[Openvpn-devel,v3] Change exit signal in P2P to be a SIGUSR1 and delay CC exit in P2MP
[Openvpn-devel,v3] Change exit signal in P2P to be a SIGUSR1 and delay CC exit in P2MP
1 - -
-
-
-
2022-10-16
Arne Schwabe
Accepted
[Openvpn-devel,v2] Ensure only CBC, CFB, OFB and AEAD ciphers are considered valid data ciphers
[Openvpn-devel,v2] Ensure only CBC, CFB, OFB and AEAD ciphers are considered valid data ciphers
1 - -
-
-
-
2022-10-10
Arne Schwabe
Accepted
«
1
2
3
4
…
10
11
»