Hi Max, I was starting to comment to the various points in this email, but I believe it was getting confusing.
Now that I have a better overview (thanks to your explanations!) I would suggest splitting the problem in smaller sub-problems to help our discussion. [Later it'd be very nice to have one patch per problem being fixed too] To the best of my understand we have the following problems that needs fixing: 1) CRL being changed in-place, even though we may prefer not doing that; 2) --chroot messing up paths in pre- and post-chroot operations; 3) CRL not being used at all if OpenVPN failed to parse it during initialization; 4) different CRL access/parsing errors handled differently. Is the summary above correct? or is any of my points wrong/lacking details? [If you prefer discussing on IRC, feel free to join #openvpn-devel on freenode] Regards, -- Antonio Quartulli _______________________________________________ Openvpn-devel mailing list Openvpn-devel@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/openvpn-devel