[LEDE-DEV] [PATCH RFC v2 2/2] openvpn: update to 2.4_rc1

Felix Fietkau nbd at nbd.name
Sat Dec 10 03:36:32 PST 2016


On 2016-12-10 12:11, Magnus Kroken wrote:
> OpenVPN 2.4 builds with mbedTLS 2.x, rename openvpn-polarssl
> variant to openvpn-mbedtls.
> 
> Some feature highlights:
> * Data channel cipher negotiation
> * AEAD cipher support for data channel encryption (currently only AES-GCM)
> * ECDH key exchange for control channel
> * LZ4 compression support
> 
> See https://github.com/OpenVPN/openvpn/blob/master/Changes.rst
> for additional change notes.
> 
> Signed-off-by: Magnus Kroken <mkroken at gmail.com>
I've pushed this to my staging tree, including some further tuning of
the mbedtls config and some follow-up fixes. This works fine in my test
in client mode against an older OpenVPN 2.3 server.
I will let this sit in my staging tree for a while, and maybe push it to
master around the time of the 2.4 final release.

If you have some time, please take a look at the other mbedtls/openvpn
changes that I made:
https://git.lede-project.org/?p=lede/nbd/staging.git;a=summary

Thanks,

- Felix



More information about the Lede-dev mailing list