turnkey-openvpn-15.1 (1) turnkey; urgency=low * extend default_crl_days to 1095 (i.e. CRL expiry = 3 years) - closes #1291 * Update openvpn-addclient script to current standards, include 'remote-cert-tls server' & 'auth-nocache' - closes #1264. [ https://github.com/AlejandroBOFH ] * Refacter openvpn-addclient script to accept '--no-authcache' as an optional argument so 'auth-nocache' is optional rather than being forced. -- Jeremy Davis Thu, 07 Feb 2019 15:32:15 +1100 turnkey-openvpn-15.0 (1) turnkey; urgency=low * Latest Debian Stretch package version of OpenVPN and other components. * Workaround EasyRSA bug by providing symlink - see further discussion: https://github.com/turnkeylinux-apps/openvpn/pull/22#discussion_r221468138 - closes #1200. [ Stefan Davis & Anton Pyrogovskyi ] * Create /dev/net/tun device when running within a container - via addition of openvpn-tun.service - closes #1011. [ Anton Pyrogovskyi & Jeremy Davis ] * Note: Please refer to turnkey-core's changelog for changes common to all appliances. Here we only describe changes specific to this appliance. -- Stefan Davis Mon, 24 Sep 2018 00:52:47 +1000 turnkey-openvpn-14.2 (1) turnkey; urgency=low * Support encrypted private key (optional). - Thanks to @JelteF (Jelte Fennema on GitHub) for initial PR. * Fix addclient private subnet problem [#772]. - Thanks to @swamilad (on GitHub) for reporting issue & posting workaround. * Fix OpenVPN trademark compliance (updated readme & logo) [#774]. * Fix /etc/cron.hourly/openvpn-profiles-delexpired cronjob [#800]. - Thanks to @ainkinen (Antti-Jussi Inkinen on GitHub) for reporting issue & providing PR. * Installed security updates. * Note: Please refer to turnkey-core's changelog for changes common to all appliances. Here we only describe changes specific to this appliance. -- Jeremy Davis Wed, 03 May 2017 10:50:18 +1000 turnkey-openvpn-14.1 (1) turnkey; urgency=low * Fix LigHTTPd bug in 15regen-sllcert (#512). * Note: Please refer to turnkey-core's changelog for changes common to all appliances. Here we only describe changes specific to this appliance. -- Jeremy Davis Thu, 18 Feb 2016 15:19:03 +1100 turnkey-openvpn-14.0 (1) turnkey; urgency=low * Latest Debian Jessie package version of OpenVPN and other components. * Easy-RSA installed from Debian repos: - Now packaged separately to openVPN * Hardened default lighttpd SSL settings * Note: Please refer to turnkey-core's changelog for changes common to all appliances. Here we only describe changes specific to this appliance. -- Jeremy Davis Mon, 08 Jun 2015 19:32:46 +1000 turnkey-openvpn-13.0 (1) turnkey; urgency=low * Initial public release of TurnKey OpenVPN. * OpenVPN related: - Inithook supporting server, gateway, client profiles (convenience). - Custom openvpn-addclient script generating client profile (convenience). - Expiring obfuscated profile download urls with QR code (convenience, security). - Supports SSL/TLS certificates for auth and key exchange (security). - Configured to drop privilages (security). - Configured to run in chroot jail dedicated to CRL (security). - Configured to use TLS-Auth HMAC verification (security). * Note: Please refer to turnkey-core's changelog for changes common to all appliances. Here we only describe changes specific to this appliance. -- Alon Swartz Wed, 28 Aug 2013 17:58:06 +0300