Blame

6f02e7 Samuli Seppänen 2025-01-29 06:40:08 1
# Basic info
2
3
- **Time**: Wednesday 3 May 2023 at 13:00 CET (12:00 UTC)
4
- **Place**: #openvpn-meeting channel on LiberaChat IRC network
5
6
# Topics
7
8
## Current topics
9
10
- **PGP signing key for OpenVPN releases**
11
djpig noticed an issue with the gpg signing key.
12
accidentally used recently revoked key instead of new key from recent key rotation.
13
also apparently latest debian release's gpg does not like sha1 anymore.
14
15
- **2.6.4 release plans**
16
tentatively may 11
17
18
- **Hackathon arrangements**
19
end of september, begin of october.
20
location? topics?
21
22
- **2.7 plans, if any?**
23
[Status of OpenVPN 2.7](https://community.openvpn.net/openvpn/wiki/StatusOfOpenvpn27)
24
25
- **Status of PoC using Gerrit for code review.**
26
last item discussed was buildbot and gerrit interaction not working due to an ssl issue - when cron2 has time he'll take a look.
27
28
- **Security assessment of OpenVPN2 codebase.**
29
there will be a meeting with security assessor tomorrow.
30
31
- **security@openvpn.net mailing list**
32
company is trying to get to soc2 compliance.
33
probably will need a simple nda to be signed by recipients of emails to security@openvpn.net
34
company guy took standard nda we use for contractors, suggests to use that.
35
novaflash thinks we should review that first to see if it's really suitable or not, community members are not contractors after all.
36
37
- **License amendment for OpenVPN2 to solve openssl/mbedtls licensing issues**
38
current status is approx 100 approvals, 20 relevant ones missing.
39
current status: [OpenVPN License Change](https://github.com/OpenVPN/openvpn-license-change)
40
41
## Topics on standby
42
43
- **We are now back on normal operating mode, meaning:**
44
new features and refactors in master,
45
bugfixes to master + release/2.6,
46
serious bugfixes also ported to 2.5
47
this would hit the selva pkcs11 unit test series first
48
49
- **Can we have someone at OpenVPN create nicer windows traybar logos (#1276)?**
50
matt is currently working on it in [OpenVPN GUI Issue #595](https://github.com/OpenVPN/openvpn-gui/issues/595)
51
52
- **Website release process woes**
53
website team did not deliver solution as promised in february. then march. still not delivered. now they promise april. we will see.
54
55
- **SBOM topic**
56
cron2 was asked if openvpn has a software bill of materials. answer was no.
57
coincidentally, in openvpn inc a security requirement is to have an SBOM so this is on our list of things to do
58
when we pick up this task we can coordinate on it.
59
60
- **Forums machine on community infrastructure is only non-Linux system.**
61
mattock made a new forums system that runs on rocky linux 8 as agreed with ecrist.
62
ecrist has looked at it but the current state of the migration is unknown.
63
64
- **OpenVPN 2.6 performance results.**
65
We should work on an article to publish some performance results when 2.6 is out as stable. but first press release.
66
67
- **Management interface documentation on main website will be updated with info from doc/management-notes.txt**
68
novaflash will pick this up at some point
69
70
- **[OpenVPN Quickstart](https://openvpn.net/community-resources/openvpn-quickstart/) will be updated from /doc/man-sections/example-fingerprint.rst information.**
71
Static-key will be deprecated and contents updated with peer-fingerprint stuff.
72
novaflash will pick this up again as time permits and other more important topics are done.