From nobody Fri Dec 05 07:51:48 2025 X-Original-To: ports-bugs@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4dN3VY5t35z6Kbxc for ; Fri, 05 Dec 2025 07:51:49 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R12" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4dN3VY29N1z3wvG for ; Fri, 05 Dec 2025 07:51:49 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1764921109; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=0BrNum1mWWYyCc5t1mFDC1FeLHYXMSMg8p2HQQVHwQY=; b=X67Z/GWvtNiIcO9eUs+ReWnp0KFGWaoAIZiQL0yc3kLJIpZJ0m6NcaI8rOUNtg9pzTLPSC W+z7EalFMiiGU3bxmExfErPDJYU/i2Nzr3aS2IAj09zVAhDqokmd9FzSp0/YjRXWzppeb2 dXLS6E6t6k5rdFRB6ckTyCftFnkn6tG+ww6XWDC63qEZWNsvauv1xoHQtzsEGdR6pqcOFs abHROEp6DBLsZmZFvBfLXs7JedQNCLRErqZTBBM+mX0CfoMswH8zO4NO71IeO+19LqEWGs k+B/28WTsNr1AyXLLiPHvPD3Pn5xXrCx1JqKdZQ75GyUmX76xVja0OKaI2h42Q== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1764921109; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=0BrNum1mWWYyCc5t1mFDC1FeLHYXMSMg8p2HQQVHwQY=; b=bVHNFxkS2k12FJOMpzIbX15Q0aSVlbzow7EIMDas/ujDw/q9tYGk0kbyn62tqLYNlM59K0 XY9o71sBzFkkR1h6ws6ESk7dqet0UcoYADjVApXT6lH6BJTNi8xNz0pl/Mlp6wca13lhG7 WMOJhmY1lCxJck2r/6SNDDSPYclojoYYOKnEllw5NLFRqBfS5qOsd6LZdjogbeJFnS42D6 DQoQHo29K3g8eYS+2TQZd2lyQpopXPZgb2ztj3AjTF5ZWy8YRCGWsw4/WvXEZRPAAjb2rO xKwSlFUWmKymEm9avrHvxU/d/I11lvweaGpdoGvGXtMV3VvGWBB6MD4tQwmBLg== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1764921109; a=rsa-sha256; cv=none; b=kb1AoWQQ7rqm0Fu3Um+67P06sFRlWAdcknHLFsCEZDIZxG6Dk2+WrAonk8aDrCUKK3btG/ ikEcnMibRa2ItlUb9xQrpw6oQM3RtLZHj+J2qCZ8y0naoYlcc7mCKkT+Jjpyz0dPrsF5+1 wApreEi1Mq7r4uyGHU4K2+7qMDtoplS8qRGgikwez8m9EKpCUO5eDGOAdB6xY333MKILEU CiXxEUlcUWSesnkIR4DZZxcLtBpF2+BaEN+8KnymZIp6XxbU0UkJSAPgolO1dio38r8M9j IFoQ6tDVeruqT7dZZ1t553XkpsQ1D6/b5oEf48/toelj+1br5cH+lllk01nitg== ARC-Authentication-Results: i=1; mx1.freebsd.org; none Received: from kenobi.freebsd.org (kenobi.freebsd.org [IPv6:2610:1c1:1:606c::50:1d]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4dN3VY1mb9z11qr for ; Fri, 05 Dec 2025 07:51:49 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org ([127.0.1.5]) by kenobi.freebsd.org (8.15.2/8.15.2) with ESMTP id 5B57pnS6038004 for ; Fri, 5 Dec 2025 07:51:49 GMT (envelope-from bugzilla-noreply@freebsd.org) Received: (from www@localhost) by kenobi.freebsd.org (8.15.2/8.15.2/Submit) id 5B57pnRa038003 for ports-bugs@FreeBSD.org; Fri, 5 Dec 2025 07:51:49 GMT (envelope-from bugzilla-noreply@freebsd.org) X-Authentication-Warning: kenobi.freebsd.org: www set sender to bugzilla-noreply@freebsd.org using -f From: bugzilla-noreply@freebsd.org To: ports-bugs@FreeBSD.org Subject: [Bug 291414] security/openvpn-devel: Update 2.7_rc2 => 2.7_rc3 Date: Fri, 05 Dec 2025 07:51:48 +0000 X-Bugzilla-Reason: AssignedTo X-Bugzilla-Type: new X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Ports & Packages X-Bugzilla-Component: Individual Port(s) X-Bugzilla-Version: Latest X-Bugzilla-Keywords: X-Bugzilla-Severity: Affects Only Me X-Bugzilla-Who: zarychtam@plan-b.pwste.edu.pl X-Bugzilla-Status: New X-Bugzilla-Resolution: X-Bugzilla-Priority: --- X-Bugzilla-Assigned-To: ports-bugs@FreeBSD.org X-Bugzilla-Flags: maintainer-feedback? X-Bugzilla-Changed-Fields: bug_id short_desc product version rep_platform op_sys bug_status bug_severity priority component assigned_to reporter cc flagtypes.name attachments.created Message-ID: Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset="UTF-8" X-Bugzilla-URL: https://bugs.freebsd.org/bugzilla/ Auto-Submitted: auto-generated List-Id: Ports bug reports List-Archive: https://lists.freebsd.org/archives/freebsd-ports-bugs List-Help: List-Post: List-Subscribe: List-Unsubscribe: X-BeenThere: freebsd-ports-bugs@freebsd.org Sender: owner-freebsd-ports-bugs@FreeBSD.org MIME-Version: 1.0 https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D291414 Bug ID: 291414 Summary: security/openvpn-devel: Update 2.7_rc2 =3D> 2.7_rc3 Product: Ports & Packages Version: Latest Hardware: Any OS: Any Status: New Severity: Affects Only Me Priority: --- Component: Individual Port(s) Assignee: ports-bugs@FreeBSD.org Reporter: zarychtam@plan-b.pwste.edu.pl CC: gert@greenie.muc.de CC: gert@greenie.muc.de Flags: maintainer-feedback?(gert@greenie.muc.de) Created attachment 265869 --> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=3D265869&action= =3Dedit 0001-security-openvpn-devel-Update-2.7_rc2-2.7_rc3.patch OpenVPN 2.7 RC3 was tagged one week ago. It runs fine in production on our OpenVPN servers. Let's make it available to the community. Relevant changes for FreeBSD users: - more type conversion related warnings have been fixed - --multihome behaviour regarding egress interface selection has been changed. See Changes.rst and manpage for details. - cleanup dead code in event handling code (leftover of the multisocket patch set) - add new feature, --tls-crypt-v2-max-age n. See Changes.rst and manpage for details. - improve documentation to point out the pitfalls of case-insensitive filesystems and --client-config-dir - split default gateway query logic in two: - for --redirect-gateway functionality, query for the gateway towards the actual IP address of the VPN server connecting to - for the "net_gateway" special destination for --route, and the corresponding environment variable, always query for 0.0.0.0 / :: (this will only make a difference in certain scenarios using a local proxy, or on a system with multiple interfaces, not using the "default route" for the VPN connection - see github#890) - upgrade embedded pkcs11-helper vcpkg + pkcs11-uri patch to 1.31 - CMake / autoconf cleanup wrt unused checks, outdated old-Linux checks, Windows oddities - DCO (primarily Linux): improve handling of bulk notifications from --=20 You are receiving this mail because: You are the assignee for the bug.=