Re: [Openvpn-devel] OpenVPN and OpenSSL FIPS

2007-10-16 Thread Alon Bar-Lev
Hi! You can post your patch here... But better rebase to BETA-2.1 Then people may help you. Best Regards, Alon Bar-Lev On 10/17/07, Steve Rector wrote: > Hi All: > > I have OpenVPN-2.0.9 working with the OpenSSL FIPS module. What I've done > is added an --enable-fips option to configure which def

[Openvpn-devel] OpenVPN and OpenSSL FIPS

2007-10-16 Thread Steve Rector
Hi All: I have OpenVPN-2.0.9 working with the OpenSSL FIPS module. What I've done is added an --enable-fips option to configure which defines a USE_FIPS environment variable. I also created a static variable which is set to 1 if FIPS mode is enabled and 0 if disabled. I created a function used to

Re: [Openvpn-devel] Strange VPN Problem

2007-10-16 Thread Barry Michels
Client's firewall is off. I have full access from my home pc (which is another network on our 4 network routed VPN). In an attempt to relieve bandwidth bottlenecks, I've converted our network into a mesh. It used to be our main office was the central hub for all VPN traffic. But, when these

Re: [Openvpn-devel] Altering routing Tables as non-admin on Windows

2007-10-16 Thread Matthew Richardson
MR> If this has changed, and there is a way MR> to interact with the service as non-admin then I will certainly look MR> into this... take subinacl to change the ACL of the openvpn-service http://www.microsoft.com/downloads/details.aspx?FamilyID=e8ba3e56-d8fe-4a91-93cf-ed6985e3927b&displaylan

[Openvpn-devel] persist-key required, even as root

2007-10-16 Thread Matt Wilks
This may be a bug in OpenVPN 2.1_rc4. On a SIGUSR1 signal (usually by a ping-restart), OpenVPN writes this to the log: Mon Oct 15 15:39:55 2007 SIGUSR1[hard,] received, process restarting Mon Oct 15 15:39:55 2007 Restart pause, 2 second(s) Mon Oct 15 15:39:57 2007 Cannot load private key file [[

Re: [Openvpn-devel] Altering routing Tables as non-admin on Windows

2007-10-16 Thread Carsten Krüger
Hello Matthew, > specifically by a member of the 'Network Configuration Operators' group, > This group gives more rights to the user than are necessary for just > routing, and may create security problems. Which problems? They can't do harmfull things: http://support.microsoft.com/kb/297938/en-u

[Openvpn-devel] Altering routing Tables as non-admin on Windows

2007-10-16 Thread Matthew Richardson
I've recently come back to looking at openvpn, after discovering that it now handles most things 'out of the box' for non-admins on Windows a requirement on our managed machines). The one problem I've discovered is that as openvpn starts, it tries to alter the routing tables on the client to r