From patchwork Tue Apr 14 14:22:09 2026 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Dorian Harmans X-Patchwork-Id: 4893 Return-Path: Delivered-To: patchwork@openvpn.net Received: by 2002:a05:7000:3ad5:b0:84a:48f:a1fd with SMTP id q21csp782286mas; Tue, 14 Apr 2026 07:41:21 -0700 (PDT) X-Forwarded-Encrypted: i=3; AFNElJ9/MIgHG17Kv1hLvFhr6Fv5tmkvaPexg2Sj1vcxasg6mUpHMH8ejDLhVL+pdoYxmHiO3zEiOL2enrQ=@openvpn.net X-Received: by 2002:a05:6870:458c:b0:409:57ae:54e4 with SMTP id 586e51a60fabf-423e0e5e786mr9631355fac.9.1776177681137; Tue, 14 Apr 2026 07:41:21 -0700 (PDT) ARC-Seal: i=2; a=rsa-sha256; t=1776177681; cv=fail; d=google.com; s=arc-20240605; b=bSD2EdSSNTo6OHE+/xg8kVvidL6M8J4PX3MUkEMl/QcCY2Y0kc5m68x1yhPrNavAre VaipDT8Vqs7VsvKHskEl2/H8IzaF3Sb2BbRo0Hx7jJ6q5EXHZhFjvRTz8WFpR2bBADtJ qQqWjnW7tVbr/kvKFCff4NqlaSdRdVDJkJ6dpKe3sJzERW27lWLaG/pnrdbUGxLDt4g0 E/elqPwWM7eEHGA/Hj7FR34XJxGWQ3DUcmRrC1WFZfh19gXM42xK2xxmj5nYbdG2p+nE tNG9FGFUIpRYKT6fmjOr2DkaHX2Xe79SHb2ZWcXPHqays44hF3ivZ2X6FjFxzgTSiQuG rsCw== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=errors-to:content-transfer-encoding:reply-to:from:list-subscribe :list-help:list-post:list-archive:list-unsubscribe:list-id :precedence:subject:mime-version:message-id:date:to:dkim-signature :dkim-signature:dkim-signature:dkim-signature; bh=Rl9qU0+AXGOD2v7o4//tcAAz0jZcEdbobJTmhcF5VGg=; fh=4NbAC/LsuMLI0S0hprUlLSLCiHwg6SCAifhH718Jh0Q=; b=BZ4kB9+uamBRw4gezMtv71NZRWJiPJX/q0z8tjy6lg3o8soETvUZSzoXcVhogMy3hm d57YBPZniITNxO+B0nGhTqllljMtXH4XXvsHIYMuVdrSDw1m4lXg48iclBgbD+knZrJT nv/TD6SbvQ8FrlJyuksYbxgNEvuQfbGPokh7grgqz0HDmlOYVbiv4lDN4g/DdCJxkzkj N2E7yrFjWRf+ZyzbVaZEluIWjlw/jr1KH9eDH38kaZOUMwRkhKqXMtComCazMd0uvdnn RdTciJlN5qeUxNb44HHPpY/rjpb8vIFzz8bChWgPgOC8dX+90WyoL4sW4UJkd3OTm5cw nyIw==; dara=google.com ARC-Authentication-Results: i=2; mx.google.com; dkim=pass header.i=@lists.sourceforge.net header.s=beta header.b=ZUtF8uWL; dkim=neutral (body hash did not verify) header.i=@sourceforge.net header.s=x header.b=BF88gnZz; dkim=neutral (body hash did not verify) header.i=@sf.net header.s=x header.b=RaYWsz2H; dkim=neutral (body hash did not verify) header.i=@dorianharmans.nl header.s=dorianharmans_nl header.b="qxl/3xwb"; arc=fail (body hash mismatch); spf=pass (google.com: domain of openvpn-devel-bounces@lists.sourceforge.net designates 216.105.38.7 as permitted sender) smtp.mailfrom=openvpn-devel-bounces@lists.sourceforge.net; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=lists.sourceforge.net Received: from lists.sourceforge.net (lists.sourceforge.net. [216.105.38.7]) by mx.google.com with ESMTPS id 586e51a60fabf-423ddd0dc6bsi11670288fac.243.2026.04.14.07.41.20 (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Tue, 14 Apr 2026 07:41:20 -0700 (PDT) Received-SPF: pass (google.com: domain of openvpn-devel-bounces@lists.sourceforge.net designates 216.105.38.7 as permitted sender) client-ip=216.105.38.7; Authentication-Results: mx.google.com; dkim=pass header.i=@lists.sourceforge.net header.s=beta header.b=ZUtF8uWL; dkim=neutral (body hash did not verify) header.i=@sourceforge.net header.s=x header.b=BF88gnZz; dkim=neutral (body hash did not verify) header.i=@sf.net header.s=x header.b=RaYWsz2H; dkim=neutral (body hash did not verify) header.i=@dorianharmans.nl header.s=dorianharmans_nl header.b="qxl/3xwb"; arc=fail (body hash mismatch); spf=pass (google.com: domain of openvpn-devel-bounces@lists.sourceforge.net designates 216.105.38.7 as permitted sender) smtp.mailfrom=openvpn-devel-bounces@lists.sourceforge.net; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=lists.sourceforge.net DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=lists.sourceforge.net; s=beta; h=Content-Transfer-Encoding:Content-Type: Reply-To:From:List-Subscribe:List-Help:List-Post:List-Archive: List-Unsubscribe:List-Id:Subject:MIME-Version:Message-ID:Date:To:Sender:Cc: Content-ID:Content-Description:Resent-Date:Resent-From:Resent-Sender: Resent-To:Resent-Cc:Resent-Message-ID:In-Reply-To:References:List-Owner; bh=Rl9qU0+AXGOD2v7o4//tcAAz0jZcEdbobJTmhcF5VGg=; b=ZUtF8uWLbZm0+IjhDoURDw0UGH B6b2lPJHx54BdDTsCGeKNRHOdXOmsj/ZfbwWpgUWuKGC07lmKI6ydE2kgD/RHasX/TMbvUiiITlOi ZkAt1KijxajFZEhgsTYcTsMyfIHw5r/hizadu+sGMGhKVUDNfjKLG0KNdJ3seh2WUux4=; Received: from [127.0.0.1] (helo=sfs-ml-3.v29.lw.sourceforge.com) by sfs-ml-3.v29.lw.sourceforge.com with esmtp (Exim 4.95) (envelope-from ) id 1wCewy-0001Bj-D3; Tue, 14 Apr 2026 14:41:12 +0000 Received: from [172.30.29.66] (helo=mx.sourceforge.net) by sfs-ml-3.v29.lw.sourceforge.com with esmtps (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.95) (envelope-from ) id 1wCeww-0001Bb-QH for openvpn-devel@lists.sourceforge.net; Tue, 14 Apr 2026 14:41:11 +0000 DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=sourceforge.net; s=x; h=Content-Transfer-Encoding:MIME-Version:Message-ID: Date:Subject:Cc:To:From:Sender:Reply-To:Content-Type:Content-ID: Content-Description:Resent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc :Resent-Message-ID:In-Reply-To:References:List-Id:List-Help:List-Unsubscribe: List-Subscribe:List-Post:List-Owner:List-Archive; bh=qPVLpDtkXl+j84z0JnJUEmFJU06MpmpjZeP1vZ9Z4FE=; b=BF88gnZzwdHXnsLpyTei5iubvk cJCKKL53cuBJMOrWaTV5Q2VcElseTxxJaAuC4+FD80WjNKk1voYLyJB5fCbwDB9WI3n9kNhEtkV3Q WYxp77JfemO8dVX/Ffu0hTX0OOw6te8Ep7TNh5gyM7sornDQzBNCDfkVkXR0GJyF2E28=; DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=sf.net; s=x ; h=Content-Transfer-Encoding:MIME-Version:Message-ID:Date:Subject:Cc:To:From :Sender:Reply-To:Content-Type:Content-ID:Content-Description:Resent-Date: Resent-From:Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:In-Reply-To: References:List-Id:List-Help:List-Unsubscribe:List-Subscribe:List-Post: List-Owner:List-Archive; bh=qPVLpDtkXl+j84z0JnJUEmFJU06MpmpjZeP1vZ9Z4FE=; b=R aYWsz2HazHdVED7fV/mpPjJF0TfoFcEqa1vJfYeVwnOEqqjXCpPBqliPD2txH4Ij1dlXUFNheZKhz LH5FFT8e+OX89PoLV3IvDFYs9NplpO9ePSNfObaTx7tnBsOODW0vzREKjcQKFKvkGRVVmpovyCY4N Wfnudi3aAC0pZrfI=; Received: from mail.woohooyeah.nl ([149.210.144.54]) by sfi-mx-2.v28.lw.sourceforge.com with esmtps (TLS1.2:ECDHE-RSA-AES256-GCM-SHA384:256) (Exim 4.95) id 1wCewv-0005YU-Bd for openvpn-devel@lists.sourceforge.net; Tue, 14 Apr 2026 14:41:10 +0000 Received: from localhost (localhost [127.0.0.1]) by mail.woohooyeah.nl (Postfix) with ESMTP id D5F8A600256; Tue, 14 Apr 2026 16:22:16 +0200 (CEST) X-Virus-Scanned: Debian amavis at mail.woohooyeah.nl Authentication-Results: woohooyeah.nl (amavis); dkim=pass (3072-bit key) header.d=dorianharmans.nl Received: from mail.woohooyeah.nl ([127.0.0.1]) by localhost (woohooyeah.nl [127.0.0.1]) (amavis, port 10024) with ESMTP id Ss39dlKoSbJy; Tue, 14 Apr 2026 16:22:15 +0200 (CEST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=dorianharmans.nl; s=dorianharmans_nl; t=1776176535; bh=vZGdOOaFNOWtc62zW8mpeRhsrwKMHprMFXG/vOK9Qg0=; h=From:To:Cc:Subject:Date; b=qxl/3xwbalHU0bju6IcYTMEvdnzGqHxFdsePlFSZm6c7+3NvjNmfNTL5nRMUs/jPi 9DWA/RnGFUMYEtpFxdkf9WkJwZxwb9TTsI+0ME3xzyBjLOPKHKPvEPjs34pgBklLgm LuXXQo8L2TSsRgEKQW+PpjnrR4ps+nAHecTSNqaq7PKr4xwQymUtSmDeLWFBZKaaXE flNJwFs3ZIMonnGHILaoEY+L/hLH3IaVSIbXUGfitM3gprdwrzsSan15h7FeRD1M8y p2hQ9Xa7SMS6UGkOmTVTe2aoBPXMeFWFj+C8Yhyk6HZx60NpeA/wAXIcCOT+vFDHTP TZZUvdAA1I9un6Ug/sgClvu5LYqiQVXKBuyXPFxu5KKZTykPBjBaTVBsm/X0FwUluo QzAKFdrmPbSlGj/M3CFSlEl7ciADSpC/RMbDwLofW6vNIWEo17lkMbDYGwmxSpODJz cz3U902MifU0eahQllmxQXfr/eu3Hi993Hs4Nx4SBS5rL2XQ0tW ARC-Seal: i=1; a=rsa-sha256; d=woohooyeah.nl; s=arc-20180623; t=1776176535; cv=none; b=gpDdSQTsfVSw8WuDWI+RYOtXfn87RWKRCJoGE1M8Vs4A0R2Pw5a9Pp7RhArl2gNN0n3tb8L/9tqkOgpuWx679xckCbD9AuzH+zRt32PEXN7iSa4eSg6lhpl0MUbplt82qfNl3oGO/85Oy780QHLzCih7qqX4rJxeHyFG3uzaArAtBlE3CS/bw1FcaWuQ8B/BExHLA9auniggLoaZ8254u6i4f3IutSP2hkqbUH8yvrFrwMOzh9Qew0goYOcqQReEDUAEHGyREyJ0i4TFOhpGN0nlzHo4B6AsFmijLBjAiUh1LLRS3TgCeFU/I/hsG/QSWpDn+DzulskxxMTe19a/Rw== ARC-Message-Signature: i=1; a=rsa-sha256; d=woohooyeah.nl; s=arc-20180623; t=1776176535; c=relaxed/simple; bh=vZGdOOaFNOWtc62zW8mpeRhsrwKMHprMFXG/vOK9Qg0=; h=DKIM-Signature:From:To:Cc:Subject:Date:Message-ID:X-Mailer: MIME-Version:Content-Transfer-Encoding; b=iMZ87tYTvwPeYcajlBAs0OwSOpfHKQL/wkvoxK8POBia8rCR2ltKVylyDOzR6A9EKitFvyQzmvD9wAID4FL7BZMYWJ1PBU5jclnx9BKEoGEjUnm1xQu+oNxdGk2G0qGqovL3DV3TatATk3oTUDQ6dJQbvMcSGjr3+EfJOgJfFFtsXB1N7L4ktE0d4WQfzSvgnCRm0ENRC6VliEXbJm5dhQmnTAwGySTPermO+RvLwRZ5r7O7e4ptv6tTKVP6OR6cxiPRJIzvmDbez2PO+HIwGLTKe9ICWu/jF6t4U1SI8wv2TnKUKKRkn7iADZ3FFys2CeWdSEfo2XAhG+RFZiD7aQ== ARC-Authentication-Results: i=1; woohooyeah.nl; arc=none Received: from woohooyeah.nl (localhost [IPv6:::1]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange x25519 server-signature ECDSA (prime256v1) server-digest SHA256) (No client certificate requested) by mail.woohooyeah.nl (Postfix) with ESMTPS id B51D9600022; Tue, 14 Apr 2026 16:22:15 +0200 (CEST) To: openvpn-devel@lists.sourceforge.net Date: Tue, 14 Apr 2026 16:22:09 +0200 Message-ID: <20260414142209.584424-1-me@dorianharmans.nl> X-Mailer: git-send-email 2.51.0 MIME-Version: 1.0 X-Spam-Score: 0.6 (/) X-Spam-Report: Spam detection software, running on the system "sfi-spamd-2.hosts.colo.sdot.me", has NOT identified this incoming email as spam. The original message has been attached to this so you can view it or label similar future email. If you have any questions, see the administrator of that system for details. Content preview: --- src/openvpn/ssl_util.c | 10 ++++++++++ 1 file changed, 10 insertions(+) diff --git a/src/openvpn/ssl_util.c b/src/openvpn/ssl_util.c index c0620a4e..71fbc9e5 100644 --- a/src/openvpn/ssl_util.c +++ b/src/openvpn/ssl_util.c @@ -126,6 +126,8 @@ static const tls_cipher_name_ [...] Content analysis details: (0.6 points, 5.0 required) pts rule name description ---- ---------------------- -------------------------------------------------- -0.1 DKIM_VALID Message has at least one valid DKIM or DK signature -0.1 DKIM_VALID_EF Message has a valid DKIM or DK signature from envelope-from domain 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily valid -0.1 DKIM_VALID_AU Message has a valid DKIM or DK signature from author's domain 0.8 UPPERCASE_50_75 message body is 50-75% uppercase X-Headers-End: 1wCewv-0005YU-Bd Subject: [Openvpn-devel] [PATCH] Add ARIA ciphersuite IANA name translations X-BeenThere: openvpn-devel@lists.sourceforge.net X-Mailman-Version: 2.1.21 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-Patchwork-Original-From: Dorian Harmans via Openvpn-devel From: Dorian Harmans Reply-To: Dorian Harmans Errors-To: openvpn-devel-bounces@lists.sourceforge.net X-getmail-retrieved-from-mailbox: Inbox X-GMAIL-THRID: =?utf-8?q?1862457288325824607?= X-GMAIL-MSGID: =?utf-8?q?1862457288325824607?= --- src/openvpn/ssl_util.c | 10 ++++++++++ 1 file changed, 10 insertions(+) diff --git a/src/openvpn/ssl_util.c b/src/openvpn/ssl_util.c index c0620a4e..71fbc9e5 100644 --- a/src/openvpn/ssl_util.c +++ b/src/openvpn/ssl_util.c @@ -126,6 +126,8 @@ static const tls_cipher_name_pair tls_cipher_name_translation_table[] = { { "AES256-GCM-SHA384", "TLS-RSA-WITH-AES-256-GCM-SHA384" }, { "AES256-SHA256", "TLS-RSA-WITH-AES-256-CBC-SHA256" }, { "AES256-SHA", "TLS-RSA-WITH-AES-256-CBC-SHA" }, + { "ARIA128-GCM-SHA256", "TLS-RSA-WITH-ARIA-128-GCM-SHA256" }, + { "ARIA256-GCM-SHA384", "TLS-RSA-WITH-ARIA-256-GCM-SHA384" }, { "CAMELLIA128-SHA256", "TLS-RSA-WITH-CAMELLIA-128-CBC-SHA256" }, { "CAMELLIA128-SHA", "TLS-RSA-WITH-CAMELLIA-128-CBC-SHA" }, { "CAMELLIA256-SHA256", "TLS-RSA-WITH-CAMELLIA-256-CBC-SHA256" }, @@ -139,6 +141,8 @@ static const tls_cipher_name_pair tls_cipher_name_translation_table[] = { { "DHE-DSS-AES256-GCM-SHA384", "TLS-DHE-DSS-WITH-AES-256-GCM-SHA384" }, { "DHE-DSS-AES256-SHA256", "TLS-DHE-DSS-WITH-AES-256-CBC-SHA256" }, { "DHE-DSS-AES256-SHA", "TLS-DHE-DSS-WITH-AES-256-CBC-SHA" }, + { "DHE-DSS-ARIA128-GCM-SHA256", "TLS-DHE-DSS-WITH-ARIA-128-GCM-SHA256" }, + { "DHE-DSS-ARIA256-GCM-SHA384", "TLS-DHE-DSS-WITH-ARIA-256-GCM-SHA384" }, { "DHE-DSS-CAMELLIA128-SHA256", "TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA256" }, { "DHE-DSS-CAMELLIA128-SHA", "TLS-DHE-DSS-WITH-CAMELLIA-128-CBC-SHA" }, { "DHE-DSS-CAMELLIA256-SHA256", "TLS-DHE-DSS-WITH-CAMELLIA-256-CBC-SHA256" }, @@ -150,6 +154,8 @@ static const tls_cipher_name_pair tls_cipher_name_translation_table[] = { { "DHE-RSA-AES256-GCM-SHA384", "TLS-DHE-RSA-WITH-AES-256-GCM-SHA384" }, { "DHE-RSA-AES256-SHA256", "TLS-DHE-RSA-WITH-AES-256-CBC-SHA256" }, { "DHE-RSA-AES256-SHA", "TLS-DHE-RSA-WITH-AES-256-CBC-SHA" }, + { "DHE-RSA-ARIA128-GCM-SHA256", "TLS-DHE-RSA-WITH-ARIA-128-GCM-SHA256" }, + { "DHE-RSA-ARIA256-GCM-SHA384", "TLS-DHE-RSA-WITH-ARIA-256-GCM-SHA384" }, { "DHE-RSA-CAMELLIA128-SHA256", "TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA256" }, { "DHE-RSA-CAMELLIA128-SHA", "TLS-DHE-RSA-WITH-CAMELLIA-128-CBC-SHA" }, { "DHE-RSA-CAMELLIA256-SHA256", "TLS-DHE-RSA-WITH-CAMELLIA-256-CBC-SHA256" }, @@ -171,6 +177,8 @@ static const tls_cipher_name_pair tls_cipher_name_translation_table[] = { { "ECDH-ECDSA-DES-CBC3-SHA", "TLS-ECDH-ECDSA-WITH-3DES-EDE-CBC-SHA" }, { "ECDH-ECDSA-DES-CBC-SHA", "TLS-ECDH-ECDSA-WITH-DES-CBC-SHA" }, { "ECDH-ECDSA-RC4-SHA", "TLS-ECDH-ECDSA-WITH-RC4-128-SHA" }, + { "ECDHE-ARIA128-GCM-SHA256", "TLS-ECDHE-RSA-WITH-ARIA-128-GCM-SHA256" }, + { "ECDHE-ARIA256-GCM-SHA384", "TLS-ECDHE-RSA-WITH-ARIA-256-GCM-SHA384" }, { "ECDHE-ECDSA-AES128-GCM-SHA256", "TLS-ECDHE-ECDSA-WITH-AES-128-GCM-SHA256" }, { "ECDHE-ECDSA-AES128-SHA256", "TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA256" }, { "ECDHE-ECDSA-AES128-SHA384", "TLS-ECDHE-ECDSA-WITH-AES-128-CBC-SHA384" }, @@ -179,6 +187,8 @@ static const tls_cipher_name_pair tls_cipher_name_translation_table[] = { { "ECDHE-ECDSA-AES256-SHA256", "TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA256" }, { "ECDHE-ECDSA-AES256-SHA384", "TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA384" }, { "ECDHE-ECDSA-AES256-SHA", "TLS-ECDHE-ECDSA-WITH-AES-256-CBC-SHA" }, + { "ECDHE-ECDSA-ARIA128-GCM-SHA256", "TLS-ECDHE-ECDSA-WITH-ARIA-128-GCM-SHA256" }, + { "ECDHE-ECDSA-ARIA256-GCM-SHA384", "TLS-ECDHE-ECDSA-WITH-ARIA-256-GCM-SHA384" }, { "ECDHE-ECDSA-CAMELLIA128-SHA256", "TLS-ECDHE-ECDSA-WITH-CAMELLIA-128-CBC-SHA256" }, { "ECDHE-ECDSA-CAMELLIA128-SHA", "TLS-ECDHE-ECDSA-WITH-CAMELLIA-128-CBC-SHA" }, { "ECDHE-ECDSA-CAMELLIA256-SHA256", "TLS-ECDHE-ECDSA-WITH-CAMELLIA-256-CBC-SHA256" },