Blame
| 6f02e7 | Samuli Seppänen | 2025-01-29 06:40:08 | 1 | # Basic info |
| 2 | ||||
| 3 | - Time: Wed 17th Jan 2018 11:30 CEST (10:30 UTC) |
|||
| 4 | - Place: #openvpn-meeting channel on Freenode IRC network |
|||
| 5 | ||||
| 6 | # Topics |
|||
| 7 | ||||
| 8 | 1. Building release/2.4 branch in Buildbot? |
|||
| 9 | - "release/2.4" has the --disable-crypto flag |
|||
| 10 | - "master" does not |
|||
| 11 | 2. 2.4.5 release status |
|||
| 12 | 3. Selva requested feedback on 'ecdsa-sig' management interface command, see below for details |
|||
| 13 | 4. Review patches on [Patchwork](https://patchwork.openvpn.net/project/openvpn2/list/) |
|||
| 14 | 5. Create new "Components" in bug tracker to improve bugs classification (i.e. OpenVPN for Android is mixed up with Connect) |
|||
| 15 | ||||
| 16 | # Topics on hold |
|||
| 17 | ||||
| 18 | 1. FIPS patches |
|||
| 19 | 2. [VLAN patches v2](https://github.com/OpenVPN/openvpn/pull/76) |
|||
| 20 | ||||
| 21 | # ecdsa-sig |
|||
| 22 | ||||
| 23 | Email from Selva: |
|||
| 24 | ||||
| 25 | ``` |
|||
| 26 | I do not think I can make any coherent case at 5:30am even if I |
|||
| 27 | somehow manage to make it to the meeting, but would like some feedback |
|||
| 28 | on one thing: |
|||
| 29 | ||||
| 30 | Topic: 'ecdsa-sig' management interface command that I proposed (the |
|||
| 31 | patch for supporting EC certs with external key being reviewed by |
|||
| 32 | Arne). |
|||
| 33 | Ref: https://patchwork.openvpn.net/project/openvpn2/list/?series=126 |
|||
| 34 | ||||
| 35 | We currently have rsa-sig for RSA signatures[*]. With hindsight we |
|||
| 36 | could say this naming was not ideal as now we want to support |
|||
| 37 | multiple key types. I think it may be better to name the new command |
|||
| 38 | as type-agnostic like 'pkey-sig' so that we can deprecate rsa-sig and |
|||
| 39 | eventualy remove it. As only management clients are affected this |
|||
| 40 | should be easier than deprecating a config option. In the mean time |
|||
| 41 | exclusively use |
|||
| 42 | the new command for ECDSA signatures. |
|||
| 43 | ||||
| 44 | Including the key/signature type in the command name is not necessary as the |
|||
| 45 | UI knows which key to use and that fixes the signature type. |
|||
| 46 | ||||
| 47 | If the meeting is already loaded with topics, I can ask this on the devel list. |
|||
| 48 | ||||
| 49 | Thanks, |
|||
| 50 | ||||
| 51 | Selva |
|||
| 52 | [*] The daemon sends RSA-SIGN, the management client responds with rsa-sig |
|||
| 53 | ``` |
|||
| 54 | ||||
| 6ebd94 | Samuli Seppänen | 2025-01-29 11:27:35 | 55 | [Back to meeting list](..) |
