Meeting summary for 3 April 2024:

 * *New: live route update feature*
   /A client implementation will be added to OpenVPN3 core soonish./
   /Obviously we'll need a spec that can be agreed on for this feature./
   /And ideally also an openvpn2 implementation (client+server)./
   /lev will put together a spec proposal for next meeting./

 * *Updated: website release process*
   /Waiting for faster way to update community downloads and security
   advisories on main site./
   /Again postponed due to issues. Now planned for this week. We'll see./

 * *Updated: forums topics*
   /ecrist still working on forums. a DNS record for the future archive
   address will be added, rob0 is doing this./
   /Plan is to soon switch URLs so new forum is on forums.openvpn.net
   and old forums is on archive address./
   /- email confirmation on registration was suggested./
   /- we still need to work on having some other people with some admin
   or high mod access./
   /- mod guide, hard or soft delete (chuck board?), what to do with
   GDPR, etc. (write it down and actually make it available to mods,
   maybe a hidden topic)/
   /- access for mods to logs so one can see what others did/

 * *Updated: mattock topics*
   /Separated test data from code in --dev null tests./
   /Also started on debian snapshot publishing but didn't get very far
   there yet./
   /Will next look at remove sudo root requirement from --dev null
   server-side./
   /Figure out if reliability can be increased further (i.e. why did it
   fail 4 out of 500 times)./

 * *Closed: when to deprecate weak ciphers*
   /Weak ciphers like 3DES and BF-CBC - what to do with them and when?/
   /Originally it looks like it was planned to remove in 2.7 but that
   may be too soon./
   /For example OpenVPN Inc. still sees customers with 10+ year old
   installations fairly regularly./
   /A proposal to consider may be to deprecate it when crypto libraries
   deprecate it./
   /Weighing the expected complaints versus the low cost of just
   maintaining weak ciphers until crypto libraries deprecate them - the
   choice seems obvious./
   /For now we'll stick with letting weak ciphers stay in unless there
   is some convincing reason to remove it./

As always you're welcome to join at #openvpn-meeting on Libera IRC network every Wednesday at 13:00 Central European Time.

Kind regards,
Johan Draaisma
_______________________________________________
Openvpn-devel mailing list
Openvpn-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-devel

Reply via email to