OpenConnect 7.01 release

David Woodhouse dwmw2 at infradead.org
Sun Dec 7 13:24:20 PST 2014


A few relatively minor fixes since 7.00: 

 - Fix handling of 'Connection: close' from proxies
 - Give explicit warning if IPv6 configured but MTU < 1280.
 - Try harder to find a PKCS#11 key to match a given cert (specifically,
   we now drop the CKA_LABEL match criterion and look for a key with the
   same CKA_ID as the cert, if the first searches don't work).
 - Attempt to support servers on dynamic DNS.
 - Fix Solaris build.

ftp://ftp.infradead.org/pub/openconnect/openconnect-7.01.tar.gz
ftp://ftp.infradead.org/pub/openconnect/openconnect-7.01.tar.gz.asc

David Woodhouse (8):
      Handle 'Connection: close' from proxies correctly
      Warn when MTU too low for IPv6
      Try harder to find PKCS#11 key to match a given cert
      Update changelog
      Add PKCS#11 documentation
      Fix win32 error report in read_stdin()
      Remove openconnect_set_server_cert_sha1 from linker map
      Tag version 7.01

Kevin Cernekee (3):
      Use AX_CHECK_VSCRIPT to test for version script support
      ssl: Fix memcmp() IPv6 address size
      main: Annotate format string args on new *_utf8 functions

Nikos Mavrogiannopoulos (3):
      When compiling with old gnutls version completely disable ECDHE instead of disabling the curves
      Re-resolve when reconnecting CSTP and the X-CSTP-DynDNS is set by the server
      when DTLS is not connected do not return a bogus cipher

-- 
David Woodhouse                            Open Source Technology Centre
David.Woodhouse at intel.com                              Intel Corporation
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 5745 bytes
Desc: not available
URL: <http://lists.infradead.org/pipermail/openconnect-devel/attachments/20141207/57af7c04/attachment.bin>


More information about the openconnect-devel mailing list