forked from pool/openvpn
Accepting request 313671 from home:namtrac:bugfix
- Update to version 2.3.7 * down-root plugin: Replaced system() calls with execve() * sockets: Remove the limitation of --tcp-nodelay to be server-only * pkcs11: Load p11-kit-proxy.so module by default * New approach to handle peer-id related changes to link-mtu * Fix incorrect use of get_ipv6_addr() for iroute options * Print helpful error message on --mktun/--rmtun if not available * Explain effect of --topology subnet on --ifconfig * Add note about file permissions and --crl-verify to manpage * Repair --dev null breakage caused by db950be85d37 * Correct note about DNS randomization in openvpn.8 * Disallow usage of --server-poll-timeout in --secret key mode * Slightly enhance documentation about --cipher * On signal reception, return EAI_SYSTEM from openvpn_getaddrinfo() * Use EAI_AGAIN instead of EAI_SYSTEM for openvpn_getaddrinfo() * Fix --redirect-private in --dev tap mode * Updated manpage for --rport and --lport * Properly escape dashes on the man-page * Improve documentation in --script-security section of the man-page * Really fix '--cipher none' regression * Set tls-version-max to 1.1 if cryptoapicert is used * Account for peer-id in frame size calculation * Disable SSL compression * Fix frame size calculation for non-CBC modes. * Allow for CN/username of 64 characters (fixes off-by-one) * Re-enable TLS version negotiation by default * Remove size limit for files inlined in config * Improve --tls-cipher and --show-tls man page description * Re-read auth-user-pass file on (re)connect if required * Clarify --capath option in manpage OBS-URL: https://build.opensuse.org/request/show/313671 OBS-URL: https://build.opensuse.org/package/show/network:vpn/openvpn?expand=0&rev=92
This commit is contained in:
parent
515f549344
commit
3d06f17727
@ -1,3 +0,0 @@
|
|||||||
version https://git-lfs.github.com/spec/v1
|
|
||||||
oid sha256:7baed2ff39c12e1a1a289ec0b46fcc49ff094ca58b8d8d5f29b36ac649ee5b26
|
|
||||||
size 1213272
|
|
@ -1,7 +0,0 @@
|
|||||||
-----BEGIN PGP SIGNATURE-----
|
|
||||||
Version: GnuPG v1
|
|
||||||
|
|
||||||
iEYEABECAAYFAlR8NIAACgkQwp2X7RmNIqOgMgCg4LWcWBiy+dr/Dp0COmB4a3yf
|
|
||||||
JZUAnRiDBUUFJEk5j63sIaMMc+5Waqqk
|
|
||||||
=DC+g
|
|
||||||
-----END PGP SIGNATURE-----
|
|
3
openvpn-2.3.7.tar.gz
Normal file
3
openvpn-2.3.7.tar.gz
Normal file
@ -0,0 +1,3 @@
|
|||||||
|
version https://git-lfs.github.com/spec/v1
|
||||||
|
oid sha256:1f02a4cd6aeb6250ca9311560875b10ce8957a3c9101a8005bd1e17e5b03146e
|
||||||
|
size 1199706
|
7
openvpn-2.3.7.tar.gz.asc
Normal file
7
openvpn-2.3.7.tar.gz.asc
Normal file
@ -0,0 +1,7 @@
|
|||||||
|
-----BEGIN PGP SIGNATURE-----
|
||||||
|
Version: GnuPG v1
|
||||||
|
|
||||||
|
iEYEABECAAYFAlV1NhIACgkQwp2X7RmNIqM+8ACeKAjKw7db3ksLCwk8I+fl3kMp
|
||||||
|
l8AAoJU8e9oHJCa8GwBfU7knOAgOSs4U
|
||||||
|
=ViDt
|
||||||
|
-----END PGP SIGNATURE-----
|
@ -1,3 +1,38 @@
|
|||||||
|
-------------------------------------------------------------------
|
||||||
|
Tue Jun 9 15:51:06 UTC 2015 - idonmez@suse.com
|
||||||
|
|
||||||
|
- Update to version 2.3.7
|
||||||
|
* down-root plugin: Replaced system() calls with execve()
|
||||||
|
* sockets: Remove the limitation of --tcp-nodelay to be server-only
|
||||||
|
* pkcs11: Load p11-kit-proxy.so module by default
|
||||||
|
* New approach to handle peer-id related changes to link-mtu
|
||||||
|
* Fix incorrect use of get_ipv6_addr() for iroute options
|
||||||
|
* Print helpful error message on --mktun/--rmtun if not available
|
||||||
|
* Explain effect of --topology subnet on --ifconfig
|
||||||
|
* Add note about file permissions and --crl-verify to manpage
|
||||||
|
* Repair --dev null breakage caused by db950be85d37
|
||||||
|
* Correct note about DNS randomization in openvpn.8
|
||||||
|
* Disallow usage of --server-poll-timeout in --secret key mode
|
||||||
|
* Slightly enhance documentation about --cipher
|
||||||
|
* On signal reception, return EAI_SYSTEM from openvpn_getaddrinfo()
|
||||||
|
* Use EAI_AGAIN instead of EAI_SYSTEM for openvpn_getaddrinfo()
|
||||||
|
* Fix --redirect-private in --dev tap mode
|
||||||
|
* Updated manpage for --rport and --lport
|
||||||
|
* Properly escape dashes on the man-page
|
||||||
|
* Improve documentation in --script-security section of the man-page
|
||||||
|
* Really fix '--cipher none' regression
|
||||||
|
* Set tls-version-max to 1.1 if cryptoapicert is used
|
||||||
|
* Account for peer-id in frame size calculation
|
||||||
|
* Disable SSL compression
|
||||||
|
* Fix frame size calculation for non-CBC modes.
|
||||||
|
* Allow for CN/username of 64 characters (fixes off-by-one)
|
||||||
|
* Re-enable TLS version negotiation by default
|
||||||
|
* Remove size limit for files inlined in config
|
||||||
|
* Improve --tls-cipher and --show-tls man page description
|
||||||
|
* Re-read auth-user-pass file on (re)connect if required
|
||||||
|
* Clarify --capath option in manpage
|
||||||
|
* Call daemon() before initializing crypto library
|
||||||
|
|
||||||
-------------------------------------------------------------------
|
-------------------------------------------------------------------
|
||||||
Mon Mar 2 08:26:08 UTC 2015 - mt@suse.de
|
Mon Mar 2 08:26:08 UTC 2015 - mt@suse.de
|
||||||
|
|
||||||
|
@ -32,7 +32,7 @@ Url: http://openvpn.net/
|
|||||||
%else
|
%else
|
||||||
PreReq: %insserv_prereq %fillup_prereq
|
PreReq: %insserv_prereq %fillup_prereq
|
||||||
%endif
|
%endif
|
||||||
Version: 2.3.6
|
Version: 2.3.7
|
||||||
Release: 0
|
Release: 0
|
||||||
Summary: Full-featured SSL VPN solution using a TUN/TAP Interface
|
Summary: Full-featured SSL VPN solution using a TUN/TAP Interface
|
||||||
License: SUSE-GPL-2.0-with-openssl-exception and LGPL-2.1
|
License: SUSE-GPL-2.0-with-openssl-exception and LGPL-2.1
|
||||||
|
Loading…
Reference in New Issue
Block a user