[S] Change in openvpn[master]: tls: reject incoming reneg request if primary key is not fully valid

"ordex \(Code Review\) via Openvpn-devel" <[email protected]>
Newsgroups gmane.network.openvpn.devel
Message-ID <2bb1eb60b1eff057108c5b625c5f83c217c50ade-EmailReviewComments-HTML@gerrit.openvpn.net>
Attention is currently required from: ralf_lici.

ordex has posted comments on this change by ralf_lici. ( http://gerrit.openvpn.net/c/openvpn/+/1478?usp=email )

Change subject: tls: reject incoming reneg request if primary key is not fully valid
......................................................................


Patch Set 3:

(1 comment)

Patchset:

PS3: 
> Looking at this change again I realized `goto error` marks this scenario as a fatal error in TCP cau […]
I agree that ignoring the reneg and going to `done` is less harmful. This way we prevent reconnection bursts.



-- 
To view, visit http://gerrit.openvpn.net/c/openvpn/+/1478?usp=email
To unsubscribe, or for help writing mail filters, visit http://gerrit.openvpn.net/settings?usp=email

Gerrit-MessageType: comment
Gerrit-Project: openvpn
Gerrit-Branch: master
Gerrit-Change-Id: I704c560fa23c03237d0f8adc30908a617265a5a1
Gerrit-Change-Number: 1478
Gerrit-PatchSet: 3
Gerrit-Owner: ralf_lici <[email protected]>
Gerrit-Reviewer: plaisthos <[email protected]>
Gerrit-CC: openvpn-devel <[email protected]>
Gerrit-CC: ordex <[email protected]>
Gerrit-Attention: ralf_lici <[email protected]>
Gerrit-Comment-Date: Tue, 07 Jul 2026 08:36:04 +0000
Gerrit-HasComments: Yes
Gerrit-Has-Labels: No
Comment-In-Reply-To: ralf_lici <[email protected]>

_______________________________________________
Openvpn-devel mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openvpn-devel
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.