Blame
| 6f02e7 | Samuli Seppänen | 2025-01-29 06:40:08 | 1 | # Basic info |
| 2 | ||||
| 3 | - **Time:** Wednesday 11 January 2023 at 13:00 CET (12:00 UTC) |
|||
| 4 | - **Place:** #openvpn-meeting channel on LiberaChat IRC network |
|||
| 5 | ||||
| 6 | # Topics |
|||
| 7 | ||||
| 8 | ## Current topics |
|||
| 9 | ||||
| 10 | - **Can we have someone at OpenVPN create nicer windows traybar logos?** (#1276) |
|||
| 11 | ||||
| 12 | - **2.6 release plans (for rc2 and 2.6.0 stable)** |
|||
| 13 | - Plan is to do an rc2 release on 12th of January |
|||
| 14 | - Want to get Lev's patch for config folder migration for GUI in. |
|||
| 15 | - Want to try and get Plaisthos's patch for dynamic tls-crypt in |
|||
| 16 | - Can we do stable release 2.6.0 in 2 weeks (Jan 26)? |
|||
| 17 | - What to do about `SRV`? This probably won't make it in 2.6.0. |
|||
| 18 | - What to do about `dynamic tls-crypt`? Going to try to get it into rc2. |
|||
| 19 | ||||
| 20 | ## OpenVPN 2.6.0 stable release open issues |
|||
| 21 | ||||
| 22 | - **Blockers (must be fixed before 2.6.0)** |
|||
| 23 | ||||
| 24 | - **Nice to have** |
|||
| 25 | - P2P `--tls-server` still gets confused sometimes when "client just disappears" and no `--keepalive` is configured. |
|||
| 26 | - Duplicate route addition / EEXIST with SITNL is not handled correctly (will lead to duplicate route removal). |
|||
| 27 | - `route_add()` status code uses 0/1/2 magic numbers, should use MAGIC_CONSTANTS. |
|||
| 28 | - `dco.dco_del_peer_reason` etc. should be initialized "upfront" not "after the fact" (see commit aaccf8843). |
|||
| 29 | - Engine test failing with openssl 3.0.x **iff** built with engine support (non-default) (this is already merged). |
|||
| 30 | ||||
| 31 | - **Additional features** |
|||
| 32 | ||||
| 33 | - **DCO showstoppers (not holding up 2.6.0 release, but a reason to not use DCO in production)** |
|||
| 34 | - OOM in netlink on busy servers [Issue #16](https://github.com/OpenVPN/ovpn-dco/issues/16) |
|||
| 35 | - OpenVPN hang on "close tun, before restarting" [Issue #18](https://github.com/OpenVPN/ovpn-dco/issues/18) |
|||
| 36 | - More issues listed [here](https://github.com/OpenVPN/ovpn-dco/issues) |
|||
| 37 | ||||
| 38 | - **OpenVPN2 build environment and improving it.** |
|||
| 39 | - Djpig is currently working on this. The company has decided to prioritize this task. |
|||
| 40 | - Code signing key was moved to an HSM system for increased security. |
|||
| 41 | - Djpig overhauled openvpn-build, it now uses submodules for openvpn and openvpn-gui, and contains Debian packaging scripts. |
|||
| 42 | - Further improvements to the build process are underway. |
|||
| 43 | ||||
| 44 | - **OpenVPN 2.6 performance results.** |
|||
| 45 | - Now that we have a beta out, and soon an rc1, we want to have an article on the main site and press release about performance results. |
|||
| 46 | ||||
| 47 | - **Forums machine on community infrastructure is only non-Linux system.** |
|||
| 48 | - Mattock made a new forums system that runs on Rocky Linux 8 as agreed with ecrist. |
|||
| 49 | - Currently waiting for ecrist to test if he has access and all is well before we're able to make the switch. |
|||
| 50 | - Ecrist indicated that he is missing some information, Mattock will provide. |
|||
| 51 | ||||
| 52 | ## Topics on standby |
|||
| 53 | ||||
| 54 | - **License amendment for OpenVPN2 to accommodate mbedtls.** |
|||
| 55 | - Plaisthos made a first draft. Plaisthos asked to get novaflash to ask Francis and James to sign off on it. |
|||
| 56 | - In the meantime, we need to compile a list of contributors and get ready to ask them to accept the changes. |
|||
| 57 | - Novaflash will pick this up again now that he is back. |
|||
| 58 | ||||
| 59 | - **Management interface documentation on main website will be updated with info from doc/management-notes.txt** |
|||
| 60 | - Novaflash will pick this up again now that he is back. |
|||
| 61 | ||||
| 62 | - **[OpenVPN Quickstart](https://www-dev.openvpn.in/community-resources/openvpn-quickstart/) will be updated from /doc/man-sections/example-fingerprint.rst information.** |
|||
| 63 | - Static-key will be deprecated and contents updated with peer-fingerprint stuff. |
|||
| 64 | - Novaflash will pick this up again now that he is back. |
|||
| 65 | ||||
| 66 | - **As discussed in Hackathon, we want to do a PoC with using Gerrit for code review.** |
|||
| 67 | - This requires an environment to be set up and tuned. This is postponed until after the 2.6 stable release. |
|||
| 68 | ||||
| 69 | - **IPv6 to community.** |
|||
| 70 | - No new information to report. |
