Hi,

On 25/03/2021 16:46, tincanteksup wrote:
> Hi,
> 
> On 25/03/2021 07:59, Antonio Quartulli wrote:
>> Hi,
>>
>> On 25/03/2021 08:49, Antonio Quartulli wrote:
>>> That change (that was *Actually* made in 2.4) was exactly to remove this
>>> ambiguity.
>>
>> Forgive my hasty reply. This combination of option is actually
>> not-supported since 2.5 (in 2.4 we probably only introduced the
>> deprecation warning).
> 
> I think I know what you mean.
> 
> Deprecating `--secret` to be `--genkey secret` is on the wiki.
> But the change *has* been made in 2.5 not pending for 2.7

correct.

> 
> Deprecating non-TLS mode VPNs is not on the wiki.
> 
> Deprecate non-TLS mode in 2.5

this depends on where the patch will be merged. I guess we have to wait
for that.

> To be removed in 2.7

correct

> Replaced by peer-fingerprint option.

not replaced as drop-in, but users of --secret should look at
--peer-fingerprint, yes.

> 
> If that is correct then I can add "non-TLS mode" to the wiki.
> Clear up the mess^D^D^D^D ambiguity ..

I would suggest to wait for the patch to be merged first.
But the summary sounds right.


Cheers,

-- 
Antonio Quartulli


_______________________________________________
Openvpn-devel mailing list
Openvpn-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-devel

Reply via email to