On Tue, May 31, 2016 at 11:33 AM, David Sommerseth < [email protected]> wrote:
> > I just thought 64 is good enough and kept it simple like the > > connection_list. > > > > Will consider making it dynamic if we go for a v2. > > I think a fixed list of 64 slots is more than good enough in this case. > I even considered suggesting 32 slots, but 64 is reasonable as a maximum > currently. An average openvpn config is probably roughly 10-15 lines > all in all (not considering inline files). If someone pushes more than > 50-60 options, then something more funky is probably going on as well. > > *If* this limit gets too annoying, then I we can reconsider using a > dynamic list. > This being filters its not really determined by how many options are being pushed.. That said, agreed 64 may be plenty to filter out almost anything. The paranoid can explicitly specify everything they want to keep as "accept" and end with a 'pull-filter reject ""' to reject everything else. Selva
