novaflash involved ordex and lev__ for feedback/ideas.\
It's about cleaning up and revamping the community section, remove old releases, focus on latest release, and so on.\
Feedback from last time was incorporated: 'community' item was moved out of main menu. Community gave feedback; it was moved back to main menu.\
-
Renaming of Community to open source can be done partially - got pushback from openvpn inc CEO to rename community to open source in the main menu. Rest of places we can update it though.
+
Renaming of Community to open source can be done partially - got pushback from openvpn inc CEO to rename community to open source in the main menu. Rest of places we can update it though to mention open source.
Basic idea is to revamp the community page on main website so it shows just the main download artifacts and release notes of latest version, plus where community resources can be found, plus where developers can be reached. A list of resources and contact methods has been collected and while not set in stone will be passed for an initial design to be reviewed later.
-
* **testing framework improvements**\
-
mattock reports that win-dco iroute testing is progressing but not yet done.\
-
server log tail output in t_server_null.sh on failure is now working.
-
-
* **Release 2.7**\
+
* **Updated: Release 2.7**\
Current estimates are to have all major code items in by May 1st and then a release on July 1st.\
-
We may try for an alpha release next week if possible.\
-
Together with 2.7 a new DCO module based on upstreamed (linux kernel) codebase will be released, the code for this is done, bugs being fixed.\
-
Only module versioning is in the works for DCO and this is expected to be done soonish.\
-
For Windows things look really good - auto-creation of adapters, wintun removal. Some small items for DNS pending.\
-
DNS looks promising, some very minor fixes left to get unix support and some bugfixes.
-
-
* **data format v3 / epoch data keys**\
-
Implementation in user space in OpenVPN2 and OpenVPN3 are both done now.\
-
Developing support for epoch data keys in DCO Linux was waiting for linux upstreaming. That is now done, so development can start.\
-
Developing support for epoch data keys in DCO Windows is unblocked - to be picked up by lev when he is able.
+
Together with 2.7 a new Linux DCO module based on upstreamed (linux kernel) codebase will be released, the code for this is done, bugs being fixed.\
+
Together with 2.7 a new Windows DCO module with server support will be released. The code for this is done but needs more testing.\
+
DNS changes are mostly in but some issues are still found on Windows and need to be addressed.\
+
Currently we feel that it looks reasonable to do a 2.7 alpha release next week.
+
+
* **Updated: DCO tasks**\
+
Implementation of epoch data keys in user space in OpenVPN2 and OpenVPN3 are both done now. For Windows, Linux, and FreeBSD DCO this implementation still needs to happen.\
+
lev__ has started work on epoch data keys in Windows DCO. Windows DCO has also support for server mode now so has some significant changes coming with 2.7.
+
Red Hat 9.6 introduced a change that breaks the current production DCO kernel module code. A fix for this is available now.\
+
Programs that rely on this like Access Server and OpenVPN3 Linux will push out an updated DCO kernel module with this fix soonish.\
+
There are still some bugfixes for the backport copy of linux kernel upstreamed version of DCO for 2.7 to be resolved.
When: based on an availabilty poll and by agreement the weekend of 25 and 26 october as meeting days, with days before and after as travel days, seems best.\
+
Where: Napoli, Italy.\
+
Meeting room: giaan will take a look into this.\
+
Hotel: giaan will take a look into this.\
+
Beer: yes.\
+
T-shirts: yes.
---
## Backlog
+
* **testing framework improvements**\
+
mattock reports that win-dco iroute testing is progressing but not yet done.\
+
server log tail output in t_server_null.sh on failure is now working.
+
* **security mailing list**\
Contact page was updated (probably by accident) before it was approved.\
There are several items that community would like to see addressed before it gets updated.
@@ 48,16 58,6 @@
Client-side support looks to be relatively straight-forward.\
Server-side support patch is up and requires review and is a bit more involved.
-
* **community downloads hard to find on main website**\
-
Three suggestions that will be passed on to company:\
-
1. rename community to open source, there is a consensus in the meeting that community could be anything and open source is specific to openvpn open source software.\
-
2. open source community would prefer to see open source downloads back on the 'second line' main menu.\
-
3. it was suggested to add a call to action like "looking for open source downloads?" at the bottom of the page.
-
-
* **OpenVPN SEO**\
-
''There is a request from OpenVPN whether we could exclude build.openvpn.net and gerrit.openvpn.net from search engines to not muddle search''\
-
''results for openvpn with developer-only resources. We will need more information about the actual problem they see before doing something like that.''
-
* **TLS-exporter in mbedtls**\
''Needed for TLS 1.3 support with openvpn and mbedtls - TLS-exporter currently missing in mbedtls.''\
''maxf reports he's making some progress on implementing this - currently working to ensure all unit tests in all million billions of configurations work.''
@@ 66,15 66,6 @@
''mattock contacted the Chocolate package maintainer for OpenVPN and asked if he would be okay with publishing Windows MSI snapshots as well.''\
''Seems like the maintainer is amenable to helping us achieve that goal.''
''When: september/october ish, a poll for checking availibity is here: https://nuudel.digitalcourage.de/NROHeFlkfaYnoNGC ''\
-
''Where: Napoli, Italy.''\
-
''Meeting room: tbd.''\
-
''Hotel: tbd.''\
-
''Beer: yes.''\
-
''T-shirts: yes.''
-
* **2.7 security audit**\
''ordex mentioned that OTF offers the possibility to get a 3rd-party security audit for supported projects. So we will apply for that around or after the 2.7 release to review the latest code.
@@ 112,11 103,6 @@
and also retain a link to that github doc.\
having a simple guide online will help adoption''
-
* **OpenVPN 2.6 performance results.**\
-
''tests should cover: gre, ipsec, userland, dco''\
-
''linux, freebsd, windows''\
-
''requires time to be dedicated to doing this, when time available will do it''
-
* **What's going on with new taskbar icons?**\
''matt provided icons in https://github.com/OpenVPN/openvpn-gui/issues/595 ''\
''last update: will be picked up by selva when he has time''