[Openvpn-devel,v1] t_client.sh: Do not use CA_CERT variable as indicator for good .rc file
| Message ID | 20260506145933.22301-1-gert@greenie.muc.de |
|---|---|
| State | New |
| Headers |
Return-Path: <openvpn-devel-bounces@lists.sourceforge.net>
Delivered-To: patchwork@openvpn.net
Received: by 2002:a05:7000:9b50:b0:84a:48f:a1fd with SMTP id b16csp3066695max;
Wed, 6 May 2026 07:59:52 -0700 (PDT)
X-Forwarded-Encrypted: i=2;
AFNElJ8tQITNIpbPbgHwbEXF+17POPVedPxFPHATFl6j92mLVUSPb8eRUny/cOwUHEB2Dv2r/iaotFzpxoQ=@openvpn.net
X-Received: by 2002:a05:6870:5119:b0:433:ffeb:4525 with SMTP id
586e51a60fabf-434f66bae6emr2388811fac.26.1778079591846;
Wed, 06 May 2026 07:59:51 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; t=1778079591; cv=none;
d=google.com; s=arc-20240605;
b=Ypr7a9/T8M6MY4l82uryv6a39KYFnyewUDwx2bmvNBrje7ooqpq0c3aC6/ShnJbR3R
8PxDpryoNNzrFVuxeWgQvrVjCUQxePiGEX8dIB8ZAdWR8sM0V42FSzrtoVMuvS5E8C0m
pN//T06W/RcFCMrpknUilr5C1KuCzvpoD2R1y0vcz1gYuHMbfn+vi/aKtJ35Op+mRUVZ
wEdHRDjC4+rgixmpu5ST1yppmK7Vf2WyvKJxrpuqmHy8Q9KmmhFYX4ELZ4mYTD6K0V1L
yDbltfe9OUjpjTpjrKYnLveXYsR98qSk7/s/0fPfPKGRYjgnmTi1LOzsakfOxzw2iQA0
UExQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com;
s=arc-20240605;
h=errors-to:content-transfer-encoding:list-subscribe:list-help
:list-post:list-archive:list-unsubscribe:list-id:precedence:subject
:mime-version:references:in-reply-to:message-id:date:to:from
:dkim-signature:dkim-signature:dkim-signature;
bh=k8o28NGzq+CsTaISs5J2bVTzvqcik5y+lKpgcHtmQeE=;
fh=4NbAC/LsuMLI0S0hprUlLSLCiHwg6SCAifhH718Jh0Q=;
b=WjipWAY8WMoqpmp07Vi/2Tl8Sgpu8x4tXPeNKYGSk05IfJcpLDW7KT3aXD1QCP6j8n
zYQXWjEJUkGGF1JPMbDurOE9xfWdWA4KoHzbWGW4pkKaigPFaIFSRZqcjt56PtG/Btlr
Fe1lthG+J+Sy8SSKGSku4XmuTHXqfM+uwXXcCBc+cfUtAmilSMpD4VdwB/rBqeULd87L
qqj7ae1pI2p1sY9Z3ofZ5mlKjUwEeJa/TZNFuFCDKkt3qzNYBveTcRrPcCr1K6Zlbke5
y0V+DllhMF562O2cZVdR6cmIv0T6ynQ8d1oN6LxILw+M6d6qu0EFljtNe21eu019FQtK
Pk2Q==;
dara=google.com
ARC-Authentication-Results: i=1; mx.google.com;
dkim=pass header.i=@lists.sourceforge.net header.s=beta
header.b=Pl2Mx06K;
dkim=neutral (body hash did not verify) header.i=@sourceforge.net
header.s=x header.b=OISjlYb7;
dkim=neutral (body hash did not verify) header.i=@sf.net header.s=x
header.b=ccWlJauC;
spf=pass (google.com: domain of
openvpn-devel-bounces@lists.sourceforge.net designates 216.105.38.7 as
permitted sender) smtp.mailfrom=openvpn-devel-bounces@lists.sourceforge.net;
dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=muc.de
Received: from lists.sourceforge.net (lists.sourceforge.net. [216.105.38.7])
by mx.google.com with ESMTPS id
586e51a60fabf-43454d04271si12590819fac.149.2026.05.06.07.59.51
(version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128);
Wed, 06 May 2026 07:59:51 -0700 (PDT)
Received-SPF: pass (google.com: domain of
openvpn-devel-bounces@lists.sourceforge.net designates 216.105.38.7 as
permitted sender) client-ip=216.105.38.7;
Authentication-Results: mx.google.com;
dkim=pass header.i=@lists.sourceforge.net header.s=beta
header.b=Pl2Mx06K;
dkim=neutral (body hash did not verify) header.i=@sourceforge.net
header.s=x header.b=OISjlYb7;
dkim=neutral (body hash did not verify) header.i=@sf.net header.s=x
header.b=ccWlJauC;
spf=pass (google.com: domain of
openvpn-devel-bounces@lists.sourceforge.net designates 216.105.38.7 as
permitted sender) smtp.mailfrom=openvpn-devel-bounces@lists.sourceforge.net;
dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=muc.de
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed;
d=lists.sourceforge.net; s=beta; h=Content-Transfer-Encoding:Content-Type:
List-Subscribe:List-Help:List-Post:List-Archive:List-Unsubscribe:List-Id:
Subject:MIME-Version:References:In-Reply-To:Message-ID:Date:To:From:Sender:
Reply-To:Cc:Content-ID:Content-Description:Resent-Date:Resent-From:
Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:List-Owner;
bh=k8o28NGzq+CsTaISs5J2bVTzvqcik5y+lKpgcHtmQeE=; b=Pl2Mx06Kblwe4XQWMzdkR3G5nE
jxLf+OJ98cff0MnJa6s3V+cf5VQw2Hpx7T+mtVOvukDvoDFDrcGj0T7dG1J1CmbNo4cwIP0gADkEk
/zYg+UO6Gy6pYVE8w3w6O29LyKSV2hrC0hNUES8savwcz9khoz/8fPtdgf3qROVQAaOY=;
Received: from [127.0.0.1] (helo=sfs-ml-4.v29.lw.sourceforge.com)
by sfs-ml-4.v29.lw.sourceforge.com with esmtp (Exim 4.95)
(envelope-from <openvpn-devel-bounces@lists.sourceforge.net>)
id 1wKdj3-00071F-Du;
Wed, 06 May 2026 14:59:49 +0000
Received: from [172.30.29.66] (helo=mx.sourceforge.net)
by sfs-ml-4.v29.lw.sourceforge.com with esmtps (TLS1.2) tls
TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.95)
(envelope-from <gert@blue4.greenie.muc.de>) id 1wKdj2-000716-0t
for openvpn-devel@lists.sourceforge.net;
Wed, 06 May 2026 14:59:48 +0000
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed;
d=sourceforge.net; s=x; h=Content-Transfer-Encoding:MIME-Version:References:
In-Reply-To:Message-ID:Date:Subject:To:From:Sender:Reply-To:Cc:Content-Type:
Content-ID:Content-Description:Resent-Date:Resent-From:Resent-Sender:
Resent-To:Resent-Cc:Resent-Message-ID:List-Id:List-Help:List-Unsubscribe:
List-Subscribe:List-Post:List-Owner:List-Archive;
bh=AjFhekPpW8UQLg8OTIB/Sz3vtsQNs4FzvI/A/4kkPS4=; b=OISjlYb7NS6zlC/5mPerrfKEj1
D8WTGw2zO8uugfPtYbWQjhQRNuJAcPc8G+TDmovRm1+i01wpPL0HMZm0JjJnbbJhKmSOyOhw1uaWT
UCgsK0Vx8AaCGBNWa+Jwoi2KQlZ87KKsIMfwmh6rYCDgYBREeMIALqJI26XCemnA6vnY=;
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=sf.net; s=x
;
h=Content-Transfer-Encoding:MIME-Version:References:In-Reply-To:Message-ID:
Date:Subject:To:From:Sender:Reply-To:Cc:Content-Type:Content-ID:
Content-Description:Resent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc
:Resent-Message-ID:List-Id:List-Help:List-Unsubscribe:List-Subscribe:
List-Post:List-Owner:List-Archive;
bh=AjFhekPpW8UQLg8OTIB/Sz3vtsQNs4FzvI/A/4kkPS4=; b=ccWlJauCf3n6lfwlFl5rZbJ5es
X2cNgjdkO/Qi1BcPUkmAQyAiE0p2jmLZ5uheSJVY2ca0HZ4+N83di6P1ZaQ8gyPh4Zn8JA2DGsp1Z
XmEISWJlewQhMmUE7aLqHIVnTOZFmurwlcbMTOiLZDcJIyM44YNfIOol/DFI8flMH1NM=;
Received: from [193.149.48.129] (helo=blue.greenie.muc.de)
by sfi-mx-2.v28.lw.sourceforge.com with esmtps
(TLS1.2:ECDHE-RSA-AES256-GCM-SHA384:256) (Exim 4.95)
id 1wKdj0-00054S-4Y for openvpn-devel@lists.sourceforge.net;
Wed, 06 May 2026 14:59:47 +0000
Received: from blue.greenie.muc.de (localhost [127.0.0.1])
by blue.greenie.muc.de (8.18.1/8.18.1) with ESMTP id 646ExY9M022338
for <openvpn-devel@lists.sourceforge.net>; Wed, 6 May 2026 16:59:34 +0200
Received: (from gert@localhost)
by blue.greenie.muc.de (8.18.1/8.18.1/Submit) id 646ExXjZ022335
for openvpn-devel@lists.sourceforge.net; Wed, 6 May 2026 16:59:33 +0200
From: Gert Doering <gert@greenie.muc.de>
To: openvpn-devel@lists.sourceforge.net
Date: Wed, 6 May 2026 16:59:28 +0200
Message-ID: <20260506145933.22301-1-gert@greenie.muc.de>
X-Mailer: git-send-email 2.52.0
In-Reply-To:
<gerrit.1778070626000.I7cf7146c3c4f1a01b0bcb57e03d09b32f8b59780@gerrit.openvpn.net>
References:
<gerrit.1778070626000.I7cf7146c3c4f1a01b0bcb57e03d09b32f8b59780@gerrit.openvpn.net>
MIME-Version: 1.0
X-Spam-Score: 1.3 (+)
X-Spam-Report: Spam detection software,
running on the system "sfi-spamd-1.hosts.colo.sdot.me",
has NOT identified this incoming email as spam. The original
message has been attached to this so you can view it or label
similar future email. If you have any questions, see
the administrator of that system for details.
Content preview: From: Frank Lichtenheld <frank@lichtenheld.com> t_client.sh
doesn't actually care about this variable, and our .rc files do not use it
anymore. If you really want to dynamically skip running t_client.sh just
set TEST_RUN_LIST to empty in the .rc fi [...]
Content analysis details: (1.3 points, 5.0 required)
pts rule name description
---- ----------------------
--------------------------------------------------
1.3 RDNS_NONE Delivered to internal network by a host with no rDNS
X-Headers-End: 1wKdj0-00054S-4Y
Subject: [Openvpn-devel] [PATCH v1] t_client.sh: Do not use CA_CERT variable
as indicator for good .rc file
X-BeenThere: openvpn-devel@lists.sourceforge.net
X-Mailman-Version: 2.1.21
Precedence: list
List-Id: <openvpn-devel.lists.sourceforge.net>
List-Unsubscribe: <https://lists.sourceforge.net/lists/options/openvpn-devel>,
<mailto:openvpn-devel-request@lists.sourceforge.net?subject=unsubscribe>
List-Archive:
<http://sourceforge.net/mailarchive/forum.php?forum_name=openvpn-devel>
List-Post: <mailto:openvpn-devel@lists.sourceforge.net>
List-Help: <mailto:openvpn-devel-request@lists.sourceforge.net?subject=help>
List-Subscribe: <https://lists.sourceforge.net/lists/listinfo/openvpn-devel>,
<mailto:openvpn-devel-request@lists.sourceforge.net?subject=subscribe>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: openvpn-devel-bounces@lists.sourceforge.net
X-getmail-retrieved-from-mailbox: Inbox
X-GMAIL-THRID: =?utf-8?q?1864451586188639904?=
X-GMAIL-MSGID: =?utf-8?q?1864451586188639904?=
|
| Series |
[Openvpn-devel,v1] t_client.sh: Do not use CA_CERT variable as indicator for good .rc file
|
|
Commit Message
Gert Doering
May 6, 2026, 2:59 p.m. UTC
From: Frank Lichtenheld <frank@lichtenheld.com> t_client.sh doesn't actually care about this variable, and our .rc files do not use it anymore. If you really want to dynamically skip running t_client.sh just set TEST_RUN_LIST to empty in the .rc file. Change-Id: I7cf7146c3c4f1a01b0bcb57e03d09b32f8b59780 Signed-off-by: Frank Lichtenheld <frank@lichtenheld.com> Acked-by: Gert Doering <gert@greenie.muc.de> Gerrit URL: https://gerrit.openvpn.net/c/openvpn/+/1664 --- This change was reviewed on Gerrit and approved by at least one developer. I request to merge it to master. Gerrit URL: https://gerrit.openvpn.net/c/openvpn/+/1664 This mail reflects revision 1 of this Change. Acked-by according to Gerrit (reflected above): Gert Doering <gert@greenie.muc.de>
Comments
I agree that this check has outlived its usefulness - "back then", the
assumption was "you always need a CA and Key and Cert", but with inline
configs & --fingerprint and all this, this no longer holds true.
I don't think there is a pressing need to backport this to the other
branches we regularily test (2.6, 2.7) as "as of now" our CI setups have
already been workarounded ("CA_CERT=1").
Your patch has been applied to the master branch.
commit 841ab0b216a424eb0100448362f76a2c12b3a516
Author: Frank Lichtenheld
Date: Wed May 6 16:59:28 2026 +0200
t_client.sh: Do not use CA_CERT variable as indicator for good .rc file
Signed-off-by: Frank Lichtenheld <frank@lichtenheld.com>
Acked-by: Gert Doering <gert@greenie.muc.de>
Gerrit URL: https://gerrit.openvpn.net/c/openvpn/+/1664
Message-Id: <20260506145933.22301-1-gert@greenie.muc.de>
URL: https://www.mail-archive.com/openvpn-devel@lists.sourceforge.net/msg36827.html
Signed-off-by: Gert Doering <gert@greenie.muc.de>
--
kind regards,
Gert Doering
diff --git a/tests/t_client.sh.in b/tests/t_client.sh.in index a49de40..48e2446 100755 --- a/tests/t_client.sh.in +++ b/tests/t_client.sh.in @@ -62,11 +62,6 @@ exit 1 fi -if [ -z "$CA_CERT" ] ; then - echo "CA_CERT not defined in 't_client.rc'. SKIP test." >&2 - exit "${TCLIENT_SKIP_RC}" -fi - if [ -z "$TEST_RUN_LIST" ] ; then echo "TEST_RUN_LIST empty, no tests defined. SKIP test." >&2 exit "${TCLIENT_SKIP_RC}"