Change log for openvpn package in Ubuntu

150 of 163 results
Published in lunar-updates
Published in lunar-security
openvpn (2.6.1-1ubuntu1.1) lunar-security; urgency=medium

  * SECURITY UPDATE: divide-by-zero via --fragment option
    - debian/patches/CVE-2023-46849.patch: remove saving initial frame code
      in src/openvpn/forward.c, src/openvpn/init.c, src/openvpn/openvpn.h.
    - CVE-2023-46849
  * SECURITY UPDATE: memory disclosure or code exec via use-after-free
    - debian/patches/CVE-2023-46850.patch: fix using to_link buffer after
      freed in src/openvpn/ssl.c.
    - CVE-2023-46850

 -- Marc Deslauriers <email address hidden>  Wed, 15 Nov 2023 13:15:33 -0500
Published in mantic-updates
Published in mantic-security
openvpn (2.6.5-0ubuntu1.1) mantic-security; urgency=medium

  * SECURITY UPDATE: divide-by-zero via --fragment option
    - debian/patches/CVE-2023-46849.patch: remove saving initial frame code
      in src/openvpn/forward.c, src/openvpn/init.c, src/openvpn/openvpn.h.
    - CVE-2023-46849
  * SECURITY UPDATE: memory disclosure or code exec via use-after-free
    - debian/patches/CVE-2023-46850.patch: fix using to_link buffer after
      freed in src/openvpn/ssl.c.
    - CVE-2023-46850

 -- Marc Deslauriers <email address hidden>  Wed, 15 Nov 2023 13:12:32 -0500
Published in noble-release
Deleted in noble-proposed (Reason: Moved to noble)
openvpn (2.6.7-1ubuntu1) noble; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)

Available diffs

Superseded in noble-release
Published in mantic-release
Deleted in mantic-proposed (Reason: Moved to mantic)
openvpn (2.6.5-0ubuntu1) mantic; urgency=medium

  * New Upstream release 2.6.5 (LP: #2018095)
  * d/p/fix-dangling-pointer-in-pkcs11.patch:
    Remove - fixed upstream in 2.6.4
  * d/p/fix-memleak-in-dco_get_peer_stats_multi.patch:
    Remove - fixed upstream in 2.6.5

 -- Lena Voytek <email address hidden>  Tue, 11 Jul 2023 09:36:08 -0700

Available diffs

Superseded in mantic-release
Deleted in mantic-proposed (Reason: Moved to mantic)
openvpn (2.6.3-2ubuntu1) mantic; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)

Available diffs

Superseded in mantic-release
Deleted in mantic-proposed (Reason: Moved to mantic)
openvpn (2.6.3-1ubuntu1) mantic; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)

Available diffs

Superseded in mantic-release
Published in lunar-release
Deleted in lunar-proposed (Reason: Moved to lunar)
openvpn (2.6.1-1ubuntu1) lunar; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)

Available diffs

Published in jammy-proposed
openvpn (2.5.8-0ubuntu0.22.04.1) jammy; urgency=medium

  * New upstream releases 2.5.6-2.5.8 (LP: #2004676):
    - The version is being updated to the latest in 2.5.x rather than 2.6.x to
      avoid feature releases and focus on bug fixes
    - Updates:
      + OpenSSL3 support
      + pkcs11-helper upgrade to 1.28.4
      + allow running a default configuration with TLS libraries without BF-CBC
    - Bug Fixes Include:
      + CVE-2022-0547
      + Fix potential memory leaks in add_route() and add_route_ipv6()
      + Fix PATH_MAX build failure in auth-pam.c
      + Fix using --auth-token together with --management-client-auth
      + Fix clearing of username+password when using --auth-nocache
      + See https://community.openvpn.net/openvpn/wiki/ChangesInOpenvpn25 for
        additional bug fixes and information
  * Remove patches fixed upstream:
    - d/p/CVE-2022-0547.patch
      [Included in upstream release 2.5.6]
    - d/p/openssl-3/0001-Add-insecure-tls-cert-profile-options.patch
    - d/p/openssl-3/0002-Refactor-early-initialisation-and-uninitialisation-
      into-methods.patch
    - d/p/openssl-3/0003-Allow-loading-of-non-default-providers.patch
    - d/p/openssl-3/0004-Fix-allowing-showing-unsupported-ciphers-digests.patch
    - d/p/openssl-3/0005-Add-message-when-decoding-PKCS12-file-fails.patch
    - d/p/openssl-3/0006-Translate-OpenSSL-3.0-digest-names-to-OpenSSL-1.1-
      digest-names.patch
     [Included in upstream release 2.5.7]
    - d/p/openssl-3/0007-Allow-running-a-default-configuration-with-TLS-
      libraries-without-BF-CBC.patch
    - d/p/match-manpage-and-command-help.patch
      [Included in upstream release 2.5.8]

 -- Lena Voytek <email address hidden>  Fri, 03 Feb 2023 15:49:35 -0700
Superseded in lunar-release
Deleted in lunar-proposed (Reason: Moved to lunar)
openvpn (2.6.0-1ubuntu1) lunar; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)

Superseded in lunar-release
Deleted in lunar-proposed (Reason: Moved to lunar)
openvpn (2.6.0~rc2-1ubuntu1) lunar; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)

Superseded in lunar-release
Deleted in lunar-proposed (Reason: Moved to lunar)
openvpn (2.6.0~rc1-1ubuntu1) lunar; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)

Superseded in lunar-release
Deleted in lunar-proposed (Reason: Moved to lunar)
openvpn (2.6.0~git20221222-1ubuntu1) lunar; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)

Superseded in lunar-proposed
openvpn (2.6.0~git20221215+beta2-1ubuntu1) lunar; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)

Superseded in lunar-release
Deleted in lunar-proposed (Reason: Moved to lunar)
openvpn (2.6.0~git20221201-1ubuntu1) lunar; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)

Superseded in lunar-release
Deleted in lunar-proposed (Reason: Moved to lunar)
openvpn (2.6.0~git20221116-1ubuntu1) lunar; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)

Published in jammy-updates
Deleted in jammy-proposed (Reason: moved to -updates)
openvpn (2.5.5-1ubuntu3.1) jammy; urgency=medium

  * d/p/openssl-3/*.patch: backport upstream patch set to better support
    OpenSSL 3 (LP: #1975574)

 -- Lucas Kanashiro <email address hidden>  Thu, 14 Jul 2022 11:21:14 -0300
Superseded in lunar-release
Obsolete in kinetic-release
Deleted in kinetic-proposed (Reason: Moved to kinetic)
openvpn (2.6.0~git20220818-1ubuntu1) kinetic; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)

Superseded in kinetic-release
Deleted in kinetic-proposed (Reason: Moved to kinetic)
openvpn (2.6.0~git20220518+dco-3ubuntu2) kinetic; urgency=medium

  * Merge from Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)
    - d/t/server-setup-with-ca:
      - cherry-pick change in easy-rsa autopkgtests to remove conflicting
        "vars" file.

 -- Gianfranco Costamagna <email address hidden>  Thu, 28 Jul 2022 08:58:35 +0200
Superseded in kinetic-proposed
openvpn (2.6.0~git20220518+dco-3ubuntu1) kinetic; urgency=medium

  * d/t/server-setup-with-ca:
    - cherry-pick change in easy-rsa autopkgtests to remove conflicting
      "vars" file.

 -- Gianfranco Costamagna <email address hidden>  Thu, 28 Jul 2022 09:08:04 +0200
Superseded in kinetic-proposed
openvpn (2.6.0~git20220518+dco-2ubuntu4) kinetic; urgency=medium

  * d/t/server-setup-with-ca:
    - cherry-pick change in easy-rsa autopkgtests to remove conflicting
      "vars" file.

 -- Gianfranco Costamagna <email address hidden>  Thu, 28 Jul 2022 08:58:35 +0200
Superseded in kinetic-proposed
openvpn (2.6.0~git20220518+dco-3) unstable; urgency=medium

  [ Lucas Kanashiro ]
  * d/t/server-setup-with-static-key: set cipher to be DES-EDE3-CBC
  * d/t/server-setup-with-static-key: use 'secret' to generate key
  * d/t/server-setup-with-*: use 'set -x' in the test scripts
  * d/t/control: add allow-stderr restriction

  [ Bernhard Schmidt ]
  * Import Ubuntu patch cherry-picked from upstream to translate OpenSSL 3.0
    digest names into OpenSSL 1.1 digest names (Closes: #1012129)

 -- Bernhard Schmidt <email address hidden>  Sun, 24 Jul 2022 17:13:47 +0200
Superseded in kinetic-release
Deleted in kinetic-proposed (Reason: Moved to kinetic)
openvpn (2.6.0~git20220518+dco-2ubuntu3) kinetic; urgency=medium

  * d/t/control: add allow-stderr restriction. With 'set -x' in place some
    messages are printed out in stderr.

 -- Lucas Kanashiro <email address hidden>  Thu, 14 Jul 2022 11:47:23 -0300
Superseded in kinetic-proposed
openvpn (2.6.0~git20220518+dco-2ubuntu2) kinetic; urgency=medium

  * d/t/server-setup-with-static-key: set cipher to be DES-EDE3-CBC. The
    default BF-CBC is deprecated, also CAST and RC2. For more information
    check the upstream documentation.
  * d/t/server-setup-with-static-key: use 'secret' instead of '--secret' when
    generating a key to fix a deprecation warning.
  * d/t/server-setup-with-*: use 'set -x' in the test scripts. This will
    facilitate future debugging.
  * d/p/openssl-3-support.patch: Translate OpenSSL 3.0 digest names to OpenSSL
    1.1 digest names (LP: #1975574).

 -- Lucas Kanashiro <email address hidden>  Mon, 11 Jul 2022 17:56:18 -0300
Superseded in kinetic-proposed
openvpn (2.6.0~git20220518+dco-2ubuntu1) kinetic; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)
  * Drop changes fixed in new upstream release:
    - d/p/openvpn-fips-2.4.patch: Allow MD5 for PRF in FIPS mode openssl.
    - d/p/OpenSSL3.patch: work around the deprecated algorithm mismatch between
      the OpenSSL3 branch and the OpenVPN 2.5 branch (LP #1945980)
    - debian/patches/CVE-2022-0547.patch: disallow multiple deferred
      authentication plug-ins in doc/man-sections/plugin-options.rst,
      src/openvpn/plugin.c.

Published in bionic-updates
Published in bionic-security
openvpn (2.4.4-2ubuntu1.7) bionic-security; urgency=medium

  * SECURITY UPDATE: authentication bypass via multiple deferred
    authentication plug-ins
    - debian/patches/CVE-2022-0547.patch: disallow multiple deferred
      authentication plug-ins in doc/openvpn.8, src/openvpn/plugin.c.
    - CVE-2022-0547

 -- Marc Deslauriers <email address hidden>  Tue, 22 Mar 2022 10:41:25 -0400
Published in focal-updates
Published in focal-security
openvpn (2.4.7-1ubuntu2.20.04.4) focal-security; urgency=medium

  * SECURITY UPDATE: authentication bypass via multiple deferred
    authentication plug-ins
    - debian/patches/CVE-2022-0547.patch: disallow multiple deferred
      authentication plug-ins in doc/openvpn.8, src/openvpn/plugin.c.
    - CVE-2022-0547

 -- Marc Deslauriers <email address hidden>  Tue, 22 Mar 2022 10:40:54 -0400
Obsolete in impish-updates
Obsolete in impish-security
openvpn (2.5.1-3ubuntu1.1) impish-security; urgency=medium

  * SECURITY UPDATE: authentication bypass via multiple deferred
    authentication plug-ins
    - debian/patches/CVE-2022-0547.patch: disallow multiple deferred
      authentication plug-ins in doc/openvpn.8, src/openvpn/plugin.c.
    - CVE-2022-0547

 -- Marc Deslauriers <email address hidden>  Tue, 22 Mar 2022 10:40:24 -0400
Superseded in kinetic-release
Published in jammy-release
Deleted in jammy-proposed (Reason: Moved to jammy)
openvpn (2.5.5-1ubuntu3) jammy; urgency=medium

  * debian/patches/CVE-2022-0547.patch: updated to properly patch actual
    manpage file in doc/openvpn.8.

 -- Marc Deslauriers <email address hidden>  Tue, 22 Mar 2022 13:22:27 -0400
Superseded in jammy-proposed
openvpn (2.5.5-1ubuntu2) jammy; urgency=medium

  * SECURITY UPDATE: authentication bypass via multiple deferred
    authentication plug-ins
    - debian/patches/CVE-2022-0547.patch: disallow multiple deferred
      authentication plug-ins in doc/man-sections/plugin-options.rst,
      src/openvpn/plugin.c.
    - CVE-2022-0547

 -- Marc Deslauriers <email address hidden>  Tue, 22 Mar 2022 10:37:55 -0400

Available diffs

Superseded in jammy-release
Deleted in jammy-proposed (Reason: Moved to jammy)
openvpn (2.5.5-1ubuntu1) jammy; urgency=medium

  * Merge with Debian unstable (LP: #1946884). Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)
    - d/p/openvpn-fips-2.4.patch: Allow MD5 for PRF in FIPS mode openssl.
    - d/p/OpenSSL3.patch: work around the deprecated algorithm mismatch between
      the OpenSSL3 branch and the OpenVPN 2.5 branch (LP #1945980)

 -- Sergio Durigan Junior <email address hidden>  Wed, 23 Feb 2022 10:14:27 -0500

Available diffs

Superseded in jammy-release
Deleted in jammy-proposed (Reason: Moved to jammy)
openvpn (2.5.1-3ubuntu5) jammy; urgency=medium

  * No-change rebuild to update maintainer scripts, see LP: 1959054

 -- Dave Jones <email address hidden>  Wed, 16 Feb 2022 17:16:30 +0000

Available diffs

Superseded in jammy-release
Deleted in jammy-proposed (Reason: Moved to jammy)
openvpn (2.5.1-3ubuntu4) jammy; urgency=medium

  * d/p/OpenSSL3.patch: work around the deprecated algorithm mismatch between
    the OpenSSL3 branch and the OpenVPN 2.5 branch (LP: #1945980)

 -- Simon Chopin <email address hidden>  Thu, 18 Nov 2021 15:05:21 +0100
Superseded in jammy-proposed
openvpn (2.5.1-3ubuntu3) jammy; urgency=medium

  * No-change rebuild against openssl3

 -- Simon Chopin <email address hidden>  Wed, 01 Dec 2021 16:09:52 +0000

Available diffs

Superseded in jammy-release
Deleted in jammy-proposed (Reason: Moved to jammy)
Deleted in impish-proposed (Reason: Moved to jammy)
openvpn (2.5.1-3ubuntu2) impish; urgency=medium

  * No-change rebuild to build packages with zstd compression.

 -- Matthias Klose <email address hidden>  Thu, 07 Oct 2021 12:21:59 +0200

Available diffs

Superseded in focal-updates
Deleted in focal-proposed (Reason: moved to -updates)
openvpn (2.4.7-1ubuntu2.20.04.3) focal; urgency=medium

  * d/p/increase-listen-backlog-queue-to-32.patch: Increase listen backlog queue
    to 32 (LP: #1934781)

 -- Athos Ribeiro <email address hidden>  Mon, 19 Jul 2021 16:26:19 -0300
Superseded in bionic-updates
Deleted in bionic-proposed (Reason: moved to -updates)
openvpn (2.4.4-2ubuntu1.6) bionic; urgency=medium

  * d/p/increase-listen-backlog-queue-to-32.patch: Increase listen backlog queue
    to 32 (LP: #1934781)

 -- Athos Ribeiro <email address hidden>  Mon, 19 Jul 2021 19:53:26 -0300
Superseded in jammy-release
Obsolete in impish-release
Deleted in impish-proposed (Reason: Moved to impish)
openvpn (2.5.1-3ubuntu1) impish; urgency=medium

  * Merge with Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)
    - d/p/openvpn-fips-2.4.patch: Allow MD5 for PRF in FIPS mode openssl.
  * Dropped changes:
    - d/t/server-setup-*: adapt tests to output of v2.5.0
      [Included in 2.5.1-3]

Available diffs

Superseded in impish-release
Deleted in impish-proposed (Reason: Moved to impish)
openvpn (2.5.1-2ubuntu1) impish; urgency=medium

  * Merge with Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)
    - d/p/openvpn-fips-2.4.patch: Allow MD5 for PRF in FIPS mode openssl.
    - d/t/server-setup-*: adapt tests to output of v2.5.0

 -- Athos Ribeiro <email address hidden>  Mon, 03 May 2021 17:56:39 -0300

Available diffs

Obsolete in hirsute-updates
Obsolete in hirsute-security
openvpn (2.5.1-1ubuntu1.1) hirsute-security; urgency=medium

  * SECURITY UPDATE: Authentication bypass with deferred authentication
    - debian/patches/CVE-2020-15078-pre1.patch: move context_auth from
      context_2 to tls_multi and name it multi_state in
      src/openvpn/forward.c, src/openvpn/multi.c, src/openvpn/openvpn.h,
      src/openvpn/push.c, src/openvpn/ssl_common.h.
    - debian/patches/CVE-2020-15078-pre2.patch: fix condition to generate
      session keys in src/openvpn/ssl.c.
    - debian/patches/CVE-2020-15078-1.patch: move auth_token_state from
      multi to key_state in src/openvpn/auth_token.c,
      src/openvpn/ssl_common.h, src/openvpn/ssl_verify.c,
      tests/unit_tests/openvpn/test_auth_token.c.
    - debian/patches/CVE-2020-15078-2.patch: ensure auth-token is only sent
      on a fully authenticated session in src/openvpn/ssl_verify.c.
    - debian/patches/CVE-2020-15078-3.patch: ensure key state is
      authenticated before sending push reply in src/openvpn/push.c.
    - CVE-2020-15078

 -- Marc Deslauriers <email address hidden>  Tue, 27 Apr 2021 10:03:40 -0400
Superseded in bionic-updates
Superseded in bionic-security
openvpn (2.4.4-2ubuntu1.5) bionic-security; urgency=medium

  * SECURITY UPDATE: data channel v2 packet injection
    - debian/patches/CVE-2020-11810.patch: fix illegal client float in
      src/openvpn/multi.c.
    - CVE-2020-11810
  * SECURITY UPDATE: Authentication bypass with deferred authentication
    - debian/patches/CVE-2020-15078.patch: ensure key state is
      authenticated before sending push reply in src/openvpn/push.c.
    - CVE-2020-15078

 -- Marc Deslauriers <email address hidden>  Tue, 27 Apr 2021 10:54:29 -0400
Superseded in focal-updates
Superseded in focal-security
openvpn (2.4.7-1ubuntu2.20.04.2) focal-security; urgency=medium

  * SECURITY UPDATE: data channel v2 packet injection
    - debian/patches/CVE-2020-11810.patch: fix illegal client float in
      src/openvpn/multi.c.
    - CVE-2020-11810
  * SECURITY UPDATE: Authentication bypass with deferred authentication
    - debian/patches/CVE-2020-15078.patch: ensure key state is
      authenticated before sending push reply in src/openvpn/push.c.
    - CVE-2020-15078

 -- Marc Deslauriers <email address hidden>  Tue, 27 Apr 2021 10:51:26 -0400
Obsolete in groovy-updates
Obsolete in groovy-security
openvpn (2.4.9-3ubuntu1.1) groovy-security; urgency=medium

  * SECURITY UPDATE: Authentication bypass with deferred authentication
    - debian/patches/CVE-2020-15078.patch: ensure key state is
      authenticated before sending push reply in src/openvpn/push.c.
    - CVE-2020-15078

 -- Marc Deslauriers <email address hidden>  Tue, 27 Apr 2021 10:49:50 -0400
Superseded in impish-release
Obsolete in hirsute-release
Deleted in hirsute-proposed (Reason: moved to Release)
openvpn (2.5.1-1ubuntu1) hirsute; urgency=medium

  * Merge with Debian unstable (LP: #1917438). Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)
    - d/p/openvpn-fips-2.4.patch: Allow MD5 for PRF in FIPS mode openssl.
      + d/t/server-setup-*: adapt tests to output of v2.5.0

 -- Utkarsh Gupta <email address hidden>  Tue, 02 Mar 2021 16:35:37 +0530

Available diffs

Superseded in hirsute-release
Deleted in hirsute-proposed (Reason: moved to Release)
openvpn (2.5.0-1ubuntu1) hirsute; urgency=medium

  * Merge with Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)
    - d/p/openvpn-fips-2.4.patch: Allow MD5 for PRF in FIPS mode openssl.
      [updated to match 2.5.0]
  * Dropped changes [in Debian since 2.5~beta3-1]
    - d/tests: add two DEP-8 test cases
      + d/t/server-setup-with-static-key: test the OpenVPN server side setup
        using a static key.
      + d/t/server-setup-with-ca: test the OpenVPN server side setup using a
        CA built with easy-rsa.
    - d/openvpn*.service: Drop reload support from systemd unit files
      (LP #1868127).  The current reload implementation (sending a SIGHUP
      signal to the process) fails, and the difference between reload and
      restart is not clear. Systemd does not require an implementation for
      reload.
  * Added Changes:
    - d/t/server-setup-*: adapt tests to output of v2.5.0

Available diffs

Superseded in hirsute-release
Obsolete in groovy-release
Deleted in groovy-proposed (Reason: moved to Release)
openvpn (2.4.9-3ubuntu1) groovy; urgency=medium

  * Merge with Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP #1454725)
    - d/p/openvpn-fips-2.4.patch: Allow MD5 for PRF in FIPS mode openssl.
    - d/tests: add two DEP-8 test cases
      + d/t/server-setup-with-static-key: test the OpenVPN server side setup
        using a static key.
      + d/t/server-setup-with-ca: test the OpenVPN server side setup using a
        CA built with easy-rsa.
    - d/openvpn*.service: Drop reload support from systemd unit files
      (LP #1868127).  The current reload implementation (sending a SIGHUP
      signal to the process) fails, and the difference between reload and
      restart is not clear. Systemd does not require an implementation for
      reload.

 -- Lucas Kanashiro <email address hidden>  Tue, 18 Aug 2020 08:42:11 -0300

Available diffs

Deleted in focal-proposed (Reason: moved to -updates)
openvpn (2.4.7-1ubuntu2.20.04.1) focal; urgency=medium

  * Drop reload support from systemd unit files (LP: #1868127)

 -- Lucas Kanashiro <email address hidden>  Wed, 27 May 2020 19:19:47 -0300
Obsolete in eoan-updates
Obsolete in eoan-proposed
openvpn (2.4.7-1ubuntu2.19.10.1) eoan; urgency=medium

  * Drop reload support from systemd unit files (LP: #1868127)

 -- Lucas Kanashiro <email address hidden>  Wed, 27 May 2020 19:25:32 -0300
Deleted in bionic-proposed (Reason: moved to -updates)
openvpn (2.4.4-2ubuntu1.4) bionic; urgency=medium

  * Drop reload support from systemd unit files (LP: #1868127)

 -- Lucas Kanashiro <email address hidden>  Wed, 27 May 2020 19:36:40 -0300
Superseded in groovy-release
Deleted in groovy-proposed (Reason: moved to Release)
openvpn (2.4.9-2ubuntu2) groovy; urgency=medium

  * Drop reload support from systemd unit files (LP: #1868127)

 -- Lucas Kanashiro <email address hidden>  Tue, 26 May 2020 19:04:33 -0300

Available diffs

Superseded in groovy-release
Deleted in groovy-proposed (Reason: moved to Release)
openvpn (2.4.9-2ubuntu1) groovy; urgency=medium

  * Merge with Debian unstable. Remaining changes:
    - d/control: Demote easy-rsa to Suggests (universe package).
    - debian/openvpn@.service: Add '--script-security 2' similar to what
      got added to debian/openvpn.init.d ages ago (LP 1454725)
    - Allow MD5 for PRF in FIPS mode openssl.
  * Added changes:
    - d/tests: add two DEP-8 test cases
      + d/t/server-setup-with-static-key: test the OpenVPN server side setup
        using a static key.
      + d/t/server-setup-with-ca: test the OpenVPN server side setup using a
        CA built with easy-rsa.

Available diffs

150 of 163 results