Blame
| 067227 | Samuli Seppänen | 2025-03-19 08:00:31 | 1 | # Introduction |
| 2 | ||||
| 3 | Since version **2.4**, OpenVPN can be built using mbedtls as it's crypto backend, instead of OpenSSL. See [for more information on mbedtls. |
|||
| 4 | ](https://tls.mbed.org/]) |
|||
| 5 | ||||
| 6 | # Limitations compared to OpenSSL |
|||
| 7 | ||||
| 8 | Note that the mbedtls variant of OpenVPN does not support the same feature set as the OpenSSL variant. The most prominent differences are listed in the latest [README.mbedtls](https://github.com/OpenVPN/openvpn/blob/master/README.mbedtls). |
|||
| 9 | ||||
| 10 | # Building the mbedtls-enabled OpenVPN |
|||
| 11 | ||||
| 12 | OpenVPN **2.4** has full mbedtls support. Get the sources from [http://openvpn.net/index.php/open-source/downloads.html the download page], or get the most recent (potentially unstable) code [from github](https://github.com/OpenVPN/openvpn). |
|||
| 13 | ||||
| 14 | To build using mbedtls: |
|||
| 15 | ``` |
|||
| 16 | ./configure --with-crypto-library=mbedtls |
|||
| 17 | make |
|||
| 18 | make install |
|||
| 19 | ``` |
