The kernel module was renamed to "ovpn-dco-v2.ko" in order to highlight this change and ensure that users and userspace software could easily understand which version is loaded. This is an INCOMPATIBLE change and therefore an ovpn-dco kernel module older than v0323 (commit ID 726fdfe0fa21) will not work anymore and must be upgraded. 2.6.2+ changes the way OpenVPN control packets are handled on Linux when DCO is active, fixing the lockups observed with 2.6.0/2.6.1 under high client connect/disconnect activity. New control packets flow for data channel offloading on Linux.print (kernel) DCO version on startup - helpful for getting a more complete picture of the environment in use.fix ASSERT() with dynamic tls-crypt and -tls-crypt-v2 (GH #272).fix 'make distcheck' - unexpected side effect of 'subdir-objects'.fix bug when using ECDSA signatures with OpenSSL 3.0.x and pkcs11-helper (data format conversion was not done properly).1600 bytes per incoming initial TLS packet fix some uses of the OpenSSå…ƒ API for non-default providers (enable use of quantum-crypto OpenSSL provider). See "User visible changes" for more details of this. DCO-Linux: fix lockups due to netlink buffer overflows on high client connect/disconnect activity.SOCKS client: improve error reporting on server disconnects.DCO-Linux: do not print errno on netlink errors (errno is not set by NL).fix '-inactive' if DCO is in use NOTE: on FreeBSD, this is not working yet (missing per-peer stats).Windows: do not treat "setting IPv6 interface metric failed" as fatal error on "block-dns" install - this can happen if IPv6 is disabled on the interface and is not harmful in itself (GH #294).sending of AUTH_PENDING and INFO_PRE messages fixed (#256).
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |