On Tue, Mar 29, 2022 at 10:50 AM Gert Doering <g...@greenie.muc.de> wrote:
> On Tue, Mar 29, 2022 at 06:21:37PM +0800, Tony He wrote: > > 1. Add option "user nobody" to test ovpn-dco. > > 2. Start openvpn, below is the log. Then we will see tun0 is still > > there after openvpn exit. We must use the command "ip link del tunX" > > to delete. This is not friendly to end user. > > Yes. This is currently unsolved - if you tell openvpn to give up its > privileges, it will give up its privileges, and then it lacks privileges > to tear down the interface again. > Couldn't the down-root plugin be used? It's biggest drawback for this is that it's Linux-only, I suppose.
_______________________________________________ Openvpn-devel mailing list Openvpn-devel@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/openvpn-devel