OpenConnect 7.01 release
David Woodhouse
dwmw2 at infradead.org
Sun Dec 7 13:24:20 PST 2014
A few relatively minor fixes since 7.00:
- Fix handling of 'Connection: close' from proxies
- Give explicit warning if IPv6 configured but MTU < 1280.
- Try harder to find a PKCS#11 key to match a given cert (specifically,
we now drop the CKA_LABEL match criterion and look for a key with the
same CKA_ID as the cert, if the first searches don't work).
- Attempt to support servers on dynamic DNS.
- Fix Solaris build.
ftp://ftp.infradead.org/pub/openconnect/openconnect-7.01.tar.gz
ftp://ftp.infradead.org/pub/openconnect/openconnect-7.01.tar.gz.asc
David Woodhouse (8):
Handle 'Connection: close' from proxies correctly
Warn when MTU too low for IPv6
Try harder to find PKCS#11 key to match a given cert
Update changelog
Add PKCS#11 documentation
Fix win32 error report in read_stdin()
Remove openconnect_set_server_cert_sha1 from linker map
Tag version 7.01
Kevin Cernekee (3):
Use AX_CHECK_VSCRIPT to test for version script support
ssl: Fix memcmp() IPv6 address size
main: Annotate format string args on new *_utf8 functions
Nikos Mavrogiannopoulos (3):
When compiling with old gnutls version completely disable ECDHE instead of disabling the curves
Re-resolve when reconnecting CSTP and the X-CSTP-DynDNS is set by the server
when DTLS is not connected do not return a bogus cipher
--
David Woodhouse Open Source Technology Centre
David.Woodhouse at intel.com Intel Corporation
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 5745 bytes
Desc: not available
URL: <http://lists.infradead.org/pipermail/openconnect-devel/attachments/20141207/57af7c04/attachment.bin>
More information about the openconnect-devel
mailing list