Re: [Openvpn-devel] [PATCH] TLS versioning

2013-09-05 Thread Arne Schwabe
> > The Makefile lists a lot of no-xxx options > https://github.com/Victek/TomatoRAF/blob/master/release/src/router/openssl/ > Screw that. OpenVPN version of github and running on the router don't match. The source on github (even with history) does match the router which has the problem. Arne

Re: [Openvpn-devel] [PATCH] TLS versioning

2013-09-05 Thread Arne Schwabe
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Am 21.08.13 09:27, schrieb Gert Doering: > Hi, > > On Sun, Aug 18, 2013 at 01:37:15PM +0200, Arne Schwabe wrote: >> Am 24.06.13 01:04, schrieb James Yonan: >>> This is the TLS versioning patch as discussed in last Thursday's IRC >>> meeting. > [..] >>

Re: [Openvpn-devel] [PATCH] TLS versioning

2013-08-23 Thread David Sommerseth
On 23/08/13 09:01, Gert Doering wrote: > Hi, > > On Thu, Aug 22, 2013 at 11:38:50PM +0200, David Sommerseth wrote: >> However, I understand that some firmware "vendors" doesn't have the same >> "quick" turn-over as RHEL does. So I think I would rather let these old >> firmwares run OpenVPN 2.0

Re: [Openvpn-devel] [PATCH] TLS versioning

2013-08-23 Thread Josh Cepek
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 08/23/13 02:01, Gert Doering wrote: > This is not about "our source does not compile with 0.96 anymore" - > it's about "2.3 with the TLS changes does not *talk* to OpenVPN > 2.2-compiled-with-0.96 anymore" (so asking the router vendors to > use Op

Re: [Openvpn-devel] [PATCH] TLS versioning

2013-08-23 Thread Gert Doering
Hi, On Thu, Aug 22, 2013 at 11:38:50PM +0200, David Sommerseth wrote: > However, I understand that some firmware "vendors" doesn't have the same > "quick" turn-over as RHEL does. So I think I would rather let these old > firmwares run OpenVPN 2.0 or 2.1 and let them support their own ancient >

Re: [Openvpn-devel] [PATCH] TLS versioning

2013-08-22 Thread David Sommerseth
On 21/08/13 10:28, Arne Schwabe wrote: [...snip...] Well I am not really sure what is going on on the Tomato firmware. I build a OpenSSL 0.9.7e (0.9.7e-3sarge3 to be exact, might already have some fixes in it, Tomato has 0.9.8d) on amd64 + OpenVPN 2.2.2 and that worked against 2.4-master. Before

Re: [Openvpn-devel] [PATCH] TLS versioning

2013-08-21 Thread Gert Doering
Hi, On Wed, Aug 21, 2013 at 10:28:36AM +0200, Arne Schwabe wrote: > Well I am not really sure what is going on on the Tomato firmware. I > build a OpenSSL 0.9.7e (0.9.7e-3sarge3 to be exact, might already have > some fixes in it, Tomato has 0.9.8d) on amd64 + OpenVPN 2.2.2 and that > worked agains

Re: [Openvpn-devel] [PATCH] TLS versioning

2013-08-21 Thread Arne Schwabe
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Am 21.08.13 09:27, schrieb Gert Doering: > Hi, > > On Sun, Aug 18, 2013 at 01:37:15PM +0200, Arne Schwabe wrote: >> Am 24.06.13 01:04, schrieb James Yonan: >>> This is the TLS versioning patch as discussed in last Thursday's IRC >>> meeting. > [..] >>

Re: [Openvpn-devel] [PATCH] TLS versioning

2013-08-21 Thread Gert Doering
Hi, On Sun, Aug 18, 2013 at 01:37:15PM +0200, Arne Schwabe wrote: > Am 24.06.13 01:04, schrieb James Yonan: > >This is the TLS versioning patch as discussed in last Thursday's IRC > >meeting. [..] > OpenVPN for Android already ships this change and there seem some > incompatibility. I have a rep

Re: [Openvpn-devel] [PATCH] TLS versioning

2013-08-18 Thread Arne Schwabe
Am 24.06.13 01:04, schrieb James Yonan: This is the TLS versioning patch as discussed in last Thursday's IRC meeting. It combines these two patches: https://github.com/jamesyonan/openvpn/commit/03a5599202bdc3ba07983dc4efdae387fb8fb436 https://github.com/jamesyonan/openvpn/commit/d23005413b

Re: [Openvpn-devel] [PATCH] TLS versioning

2013-06-27 Thread Joachim Schipper
>From James Yonan : > This is the TLS versioning patch as discussed in last Thursday's IRC > meeting. > > It combines these two patches: > > https://github.com/jamesyonan/openvpn/commit/03a5599202bdc3ba07983dc4ef > dae387fb8fb436 > > https://github.com/jamesyonan/openvpn/commit/d23005413b0e0f28a