Re: [Openvpn-devel] Subject: Potential OpenVPN Vulnerability Report: Repeated TLS Handshake Failures Leading to Denial-of-Service Conditions

2024-11-19 Thread David Sommerseth via Openvpn-devel
On 19/11/2024 09:25, נתי שטרן wrote: have something to fix configuration? I already answered that: > Since you seem to run OpenVPN Access Server, just log into the web > portal and download a new configuration profile. Otherwise, read the fine manual we have for OpenVPN. You already

Re: [Openvpn-devel] Subject: Potential OpenVPN Vulnerability Report: Repeated TLS Handshake Failures Leading to Denial-of-Service Conditions

2024-11-19 Thread נתי שטרן
have something to fix configuration? ‫בתאריך יום ג׳, 19 בנוב׳ 2024 ב-10:17 מאת ‪David Sommerseth‬‏ <‪ dazo+open...@eurephia.org‬‏>:‬ > > The interesting lines are these: > > > 2024-11-18T20:53:01+1100 [stdout#info] [OVPN 0] > OUT: '2024-11-18 09:53:01 152.32.247.23:55730 > Non-Ope

Re: [Openvpn-devel] Subject: Potential OpenVPN Vulnerability Report: Repeated TLS Handshake Failures Leading to Denial-of-Service Conditions

2024-11-19 Thread David Sommerseth via Openvpn-devel
The interesting lines are these: 2024-11-18T20:53:01+1100 [stdout#info] [OVPN 0] OUT: '2024-11-18 09:53:01 152.32.247.23:55730 Non-OpenVPN client protocol detected' These lines indicates the server seems to be configured with --port-share. And those packets are forwarded to the s