On Tue, Mar 29, 2022 at 10:50 AM Gert Doering <g...@greenie.muc.de> wrote:

> On Tue, Mar 29, 2022 at 06:21:37PM +0800, Tony He wrote:
> > 1. Add option "user nobody" to test ovpn-dco.
> > 2. Start openvpn, below is the log. Then we will see tun0 is still
> > there after openvpn exit. We must use the command "ip link del tunX"
> > to delete. This is not friendly to end user.
>
> Yes.  This is currently unsolved - if you tell openvpn to give up its
> privileges, it will give up its privileges, and then it lacks privileges
> to tear down the interface again.
>

Couldn't the down-root plugin be used?  It's biggest drawback for this is
that it's Linux-only, I suppose.
_______________________________________________
Openvpn-devel mailing list
Openvpn-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-devel

Reply via email to