# Basic info - **Time**: Wednesday 11 October 2023 at 13:00 CEST (11:00 UTC) - **Place**: #openvpn-meeting channel on LiberaChat IRC network # Topics ## Current topics ### OpenVPN 2.6.7 release - CMake backport is in. - Some small bugfixes waiting to merge. - Planned release date: 18 October. ### Hackathon 2023 meeting summary - See [wiki:Hackathon2023](https://wiki.openvpn.net/Hackathon2023) ### Hackathon 2024 planning - When? Not sure but we should do a date range of about 3 weeks so we can do availability polling. - Where? In last discussion Karlsruhe was mentioned. - Who? We should compile a more comprehensive list and send initial availability polling early. - Shirts! ### Weekly meeting summaries - It was decided novaflash will do meeting summaries on wiki and send a copy to the devel mailing list. - So novaflash will join the devel list and do the needful starting next week. ### Security assessment of OpenVPN2 codebase - Update 27 September: publishing this is currently being handled, it requires some preparation and internal reviews that is ongoing. ### Tunnelcrack published now [Tunnelcrack](https://tunnelcrack.mathyvanhoef.com) - A post was published at TunnelCrack - More details are in the [wiki:Hackathon2023 meeting summary](https://wiki.openvpn.net/Hackathon2023). ### License amendment for OpenVPN2 to solve openssl/mbedtls licensing issues - Update 11 October: we want dazo to review things so we can decide if we can finalize this. - One of the tasks is reviewing if remaining items are trivial patches, and maybe get legal advice on those if necessary. ### Static-key mini how-to is outdated. - This page is outdated badly: [Static Key Mini Howto](https://openvpn.net/community-resources/static-key-mini-howto/) - The company will send this to a tech writer to redo based on [GitHub info](https://github.com/OpenVPN/openvpn/blob/master/doc/man-sections/example-fingerprint.rst) and also retain a link to that GitHub doc. - Having a simple guide online will help adoption. ### Website release process woes - Update 11 October: website team reports they've migrated existing content to a new CMS. - Apparently, this week is planned for release. ## Topics on standby ### OpenVPN release process topics - There was a request on [GitHub Issue #397](https://github.com/OpenVPN/openvpn/issues/397) to have releases on GitHub as well. - Djpig seems to think it would be fairly doable to copy/paste that info to GitHub as well. - We could do this during a next release. ### OpenVPN 2.6 performance results - Tests should cover: GRE, IPSec, userland, DCO - Linux, FreeBSD, Windows - Requires time to be dedicated to doing this - When time available will do it ### What's going on with new taskbar icons? - Matt provided icons in [GitHub Issue #595](https://github.com/OpenVPN/openvpn-gui/issues/595) - **Update:** will be picked up by Selva when he has time ### security@openvpn.net mailing list - The company is trying to get to SOC2 compliance. - Probably will need a simple NDA to be signed by recipients of emails to security@openvpn.net - The company guy took the standard NDA we use for contractors, suggests using that. - Novaflash thinks we should review that first to see if it's really suitable or not, community members are not contractors after all. ### Another key signing topic - The company switched EV code signing to CloudHSM, this is the same cert type we use for driver signing, is also suitable for binary signing. - In the future, we could possibly switch the community to that same key. Saves having to maintain 2 different keys. - Depends on how hard/easy it is to access the company key signing thing from community infrastructure. - Also, no high priority at the moment, we have a working solution now. ### SBOM topic - Cron2 was asked if OpenVPN has a software bill of materials. The answer was no. - Coincidentally, in OpenVPN Inc a security requirement is to have an SBOM so this is on our list of things to do. - When we pick up this task we can coordinate on it. ### Forums machine on community infrastructure is only non-Linux system - Mattock made a new forums system that runs on Rocky Linux 8 as agreed with Ecrist. - Ecrist has looked at it but the current state of the migration is unknown. ### Management interface documentation on main website will be updated with info from doc/management-notes.txt - Novaflash will pick this up at some point ### [OpenVPN Quickstart](https://openvpn.net/community-resources/openvpn-quickstart/) will be updated from /doc/man-sections/example-fingerprint.rst information. - Static-key will be deprecated and contents updated with peer-fingerprint stuff. - Novaflash will pick this up again as time permits and other more important topics are done.
