Blame
| 6f02e7 | Samuli Seppänen | 2025-01-29 06:40:08 | 1 | # Basic Info |
| 2 | ||||
| 3 | - **Time:** Wednesday 26 April 2023 at 13:00 CET (12:00 UTC) |
|||
| 4 | - **Place:** #openvpn-meeting channel on LiberaChat IRC network |
|||
| 5 | ||||
| 6 | # Topics |
|||
| 7 | ||||
| 8 | ## Current Topics |
|||
| 9 | ||||
| 10 | - **PGP Signing Key for OpenVPN Releases:** |
|||
| 11 | - djpig noticed an issue with the gpg signing key. |
|||
| 12 | - Accidentally used recently revoked key instead of new key from recent key rotation. |
|||
| 13 | - Also, the latest Debian release's gpg does not like sha1 anymore. |
|||
| 14 | ||||
| 15 | - **2.6.3 Build 2 Release:** |
|||
| 16 | - Have some minor updates to release, so will do a build #2 and get that out today or tomorrow. |
|||
| 17 | ||||
| 18 | - **2.6.4 Release Plans:** |
|||
| 19 | - Tentatively May 11. |
|||
| 20 | ||||
| 21 | - **Hackathon Arrangements:** |
|||
| 22 | - End of September, beginning of October. |
|||
| 23 | - Topics? |
|||
| 24 | ||||
| 25 | - **2.7 Plans, if any?** |
|||
| 26 | - [Status of OpenVPN 2.7](https://community.openvpn.net/openvpn/wiki/StatusOfOpenvpn27) |
|||
| 27 | ||||
| 28 | - **We are now back on normal operating mode, meaning:** |
|||
| 29 | - New features and refactors in master, |
|||
| 30 | - Bugfixes to master + release/2.6, |
|||
| 31 | - Serious bugfixes also ported to 2.5. |
|||
| 32 | - This would hit the selva pkcs11 unit test series first. |
|||
| 33 | ||||
| 34 | - **Status of PoC Using Gerrit for Code Review:** |
|||
| 35 | - Last item discussed was buildbot and Gerrit interaction not working due to an SSL issue - when cron2 has time he'll take a look. |
|||
| 36 | ||||
| 37 | - **Security Assessment of OpenVPN2 Codebase:** |
|||
| 38 | - There are 2 items not directly related to the codebase that we're arguing against putting into the report. |
|||
| 39 | - They're both 'informational' level so not particularly worrisome, but in our opinion, weird to have in the report. |
|||
| 40 | - Dazo will send an updated version to cron2 for review. |
|||
| 41 | ||||
| 42 | - **IPv6 to Community:** |
|||
| 43 | - IPv6 is now enabled on openvpn.net. |
|||
| 44 | - community.openvpn.net is now available on IPv4 and IPv6, both behind Cloudflare still though. |
|||
| 45 | ||||
| 46 | ## Topics on Standby |
|||
| 47 | ||||
| 48 | - **License Amendment for OpenVPN2 to Solve OpenSSL/mbedTLS Licensing Issues:** |
|||
| 49 | - Current status is that individual contributors are being contacted, and approvals gathered. |
|||
| 50 | ||||
| 51 | - **security@openvpn.net Mailing List:** |
|||
| 52 | - Company is trying to get to SOC2 compliance. |
|||
| 53 | - Probably will need a simple NDA to be signed by recipients of emails to security@openvpn.net. |
|||
| 54 | - This seems reasonable, company will investigate and prepare such a thing. |
|||
| 55 | ||||
| 56 | - **Can We Have Someone at OpenVPN Create Nicer Windows Traybar Logos (#1276)?** |
|||
| 57 | - Matt is currently working on it in [OpenVPN GUI Issue #595](https://github.com/OpenVPN/openvpn-gui/issues/595) |
|||
| 58 | ||||
| 59 | - **Website Release Process Woes:** |
|||
| 60 | - Website team did not deliver solution as promised in February. Then March. Still not delivered. Now they promise April. We will see. |
|||
| 61 | ||||
| 62 | - **SBOM Topic:** |
|||
| 63 | - Cron2 was asked if OpenVPN has a software bill of materials. Answer was no. |
|||
| 64 | - Coincidentally, in OpenVPN Inc a security requirement is to have an SBOM so this is on our list of things to do. |
|||
| 65 | - When we pick up this task we can coordinate on it. |
|||
| 66 | ||||
| 67 | - **Forums Machine on Community Infrastructure is Only Non-Linux System:** |
|||
| 68 | - Mattock made a new forums system that runs on Rocky Linux 8 as agreed with ecrist. |
|||
| 69 | - Ecrist has looked at it but the current state of the migration is unknown. |
|||
| 70 | ||||
| 71 | - **OpenVPN 2.6 Performance Results:** |
|||
| 72 | - We should work on an article to publish some performance results when 2.6 is out as stable. But first, press release. |
|||
| 73 | ||||
| 74 | - **Management Interface Documentation on Main Website will be Updated with Info from doc/management-notes.txt:** |
|||
| 75 | - Novaflash will pick this up again now that he is back. |
|||
| 76 | ||||
| 77 | - **[OpenVPN Quickstart](https://openvpn.net/community-resources/openvpn-quickstart/) will be Updated from /doc/man-sections/example-fingerprint.rst Information:** |
|||
| 78 | - Static-key will be deprecated and contents updated with peer-fingerprint stuff. |
|||
| 79 | - Novaflash will pick this up again as time permits and other more important topics are done. |
