Public bug reported:

After installing  network-manager-openvpn(1.10.0-1ubuntu2),
openvpn(2.6.0~git20220818-1ubuntu1) is installed as a dependency.

Mentioned NM plugin uses openvpn option `--cipher` instead of `--data-
ciphers`. With openvpn2.6.0+ this breaks existing setups - connection
never establishes and fails with message like:

```
DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers 
(AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305). OpenVPN ignores --cipher for 
cipher negotiations.
```
and
```
Connection reset, restarting [0]
```

reproducer: configure openVPN client against openVPN server with cipher
set to 'AES-256-CBC'.

workaround: manually install openvpn 2.5.x from sources and mask
distribution-provided openvpn 2.6.x.

proposed solution:

deliver compatible combination of network-manager-openvpn and openvpn.


system info:
Description:    Ubuntu 22.10
Release:        22.10

** Affects: ubuntu
     Importance: Undecided
         Status: New

** Affects: network-manager-openvpn (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: openvpn (Ubuntu)
     Importance: Undecided
         Status: New

** Also affects: network-manager-openvpn (Ubuntu)
   Importance: Undecided
       Status: New

** Also affects: openvpn (Ubuntu)
   Importance: Undecided
       Status: New

-- 
You received this bug notification because you are a member of Ubuntu
Desktop Bugs, which is subscribed to network-manager-openvpn in Ubuntu.
https://bugs.launchpad.net/bugs/1994141

Title:
  incompatible versions of network-manager-openvpn and openvpn delivered
  in ubuntu22.10

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+bug/1994141/+subscriptions


-- 
desktop-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/desktop-bugs

Reply via email to