## OpenVPN 2.7_beta1 -- Released 04 September 2025
-
The OpenVPN community project team is proud to release OpenVPN 2.7_beta1. This is the first Beta release for the feature release 2.7.0. As the Beta name implies this is an early release build, it is not intended for production use.
+
## OpenVPN 2.7_beta2 -- Released 25 September 2025
+
The OpenVPN community project team is proud to release OpenVPN 2.7_beta2. This is the second Beta release for the feature release 2.7.0. As the Beta name implies this is an early release build, it is not intended for production use.
-
Feature changes since 2.7_alpha3:
-
* Introduction of `route_redirect_gateway_ipv4` and `_ipv6` env variables
-
* PUSH_UPDATE server support (via management interface)
-
* Rewrite of the management interface "bytecount" infastructure to better interact with DCO
+
Feature changes since 2.7_beta1:
+
* greatly improved event log handling for the Windows interactive service - this brings build system changes and a new openvpnservmsg.dll
-
Important bug fixes since 2.7_alpha3:
-
* Bugfixes in `--dns-updown` script for linux systems using resolvconf
-
* A large number of signed/unsigned related warnings have been fixed
+
Important bug fixes since 2.7_beta1:
+
* add proper input sanitation to DNS strings to prevent an attack coming from a trusted-but-malicous OpenVPN server ([CVE-2025-10680](https://www.cve.org/CVERecord?id=CVE-2025-10680), affects unixoid systems with `--dns-updown` scripts and windows using the built-in powershell call)
+
* bugfixes when using multi-socket on windows (properly recognize that TCP server mode does not work with DCO, properly handle TCP multi-socket server setups without DCO)
+
* bring back configuring of IPv4 broadcast addresses on Linux
+
* repair "--dhcp-option DNS" setting in combination with DHCP (TAP) or "--up" scripts (Github: [OpenVPN/openvpn#839](https://github.com/OpenVPN/openvpn/issues/839), [OpenVPN/openvpn#840](https://github.com/OpenVPN/openvpn/issues/840))
-
For a list of all changes see the [git log](https://github.com/OpenVPN/openvpn/compare/v2.7_alpha3...v2.7_beta1).
+
For a list of all changes see the [git log](https://github.com/OpenVPN/openvpn/compare/v2.7_beta1...v2.7_beta2).
Highlights of 2.7 include:
* Multi-socket support for servers -- Handle multiple addresses/ports/protocols within one server
@@ 35,20 35,19 @@
* TLS 1.3 support with bleeding-edge mbedTLS versions
* Two new environment variables have been introduced to communicate desired default gateway redirection to plugins like Network Manager.
-
For details see [Changes.rst](https://github.com/OpenVPN/openvpn/blob/v2.7_beta1/Changes.rst)
+
For details see [Changes.rst](https://github.com/OpenVPN/openvpn/blob/v2.7_beta2/Changes.rst)
-
Windows MSI changes since 2.7_alpha3:
-
* Included dco-win driver updated to 2.7.1
-
* add support for multipeer stats
-
* Built against OpenSSL 3.5.1
-
* Included openvpn-gui 11.55.0.0
+
Windows MSI changes since 2.7_beta1:
+
* Built against OpenSSL 3.5.3
+
* Included openvpn-gui updated to 11.56.0.0
+
* Fix "Cannot open the System Tray Menu with Keyboard" (Github: [OpenVPN/openvpn-gui#763](https://github.com/OpenVPN/openvpn-gui/issues/763))
For Community-maintained packages for Linux distributions see [OpenVPN Software Repositories](/Pages/OpenVPN%20software%20repos). Note that the Fedora Copr repositories have been moved to the @OpenVPN group account and that there are new repositories available on openSUSE Buildservice.