Thanks for this. We discussed this and nobody seemed to remember why persist-key was configurable really ("you could swap out the key + cert while openvpn is running and then SIGUSR1 it", but yeah, who does this?) - so thanks for throwing out these extra code paths.
Tested with the full server/client rig. Your patch has been applied to the master branch. commit 802fcce5448741bb1e34dd06ac3674b6b6c55a94 Author: Gianmarco De Gregori Date: Thu Mar 7 15:03:55 2024 +0100 Persist-key: enable persist-key option by default Signed-off-by: Gianmarco De Gregori <gianma...@mandelbit.com> Message-Id: <20240307140355.32644-1-g...@greenie.muc.de> URL: https://www.mail-archive.com/openvpn-devel@lists.sourceforge.net/msg28347.html Signed-off-by: Gert Doering <g...@greenie.muc.de> -- kind regards, Gert Doering _______________________________________________ Openvpn-devel mailing list Openvpn-devel@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/openvpn-devel