> 1. After our Windows server has been upgraded to 2.3.3, how can I determine
> if a connecting Windows client is still using older insecure versions? I
> cannot see anything specific in the server log that tells me client's
> version? Do I need to start the OpenVPN service with specific parameters to
> see that information?

Yes you can, when the client version is 2.3.3 or above. See Gert's
response above and also this:

http://community.openvpn.net/openvpn/changeset/f3a2cd255a3bc73a546a5e2d09fa30a16cce0d7d

> 2. Heartbleed has no bearing on **production** of certs/keys, correct? Can
> we still use easy-rsa without patching it separately?

Correct.

// Fredrik

------------------------------------------------------------------------------
Put Bad Developers to Shame
Dominate Development with Jenkins Continuous Integration
Continuously Automate Build, Test & Deployment 
Start a new project now. Try Jenkins in the cloud.
http://p.sf.net/sfu/13600_Cloudbees
_______________________________________________
Openvpn-users mailing list
Openvpn-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-users

Reply via email to