So for the sake of the archive, the feature removed here is

 - if resolving the --remote hostname on a TCP server(!) does not work,
   remember the hostname, and on TCP accept(), try re-resolving it again,
   and then verify that the IPs returned by getaddrinfo() match where the
   connect is coming from

since it was broken for a long time and nobody cared, this was obviously
obscure enough that "remove it, simplify the code fairly big time" is a
good plan.  Thanks Arne for the review, and I second that this is a good
idea ;-)  - mildly tested on a TCP server (which does not use --remote
today).

Your patch has been applied to the master branch.

commit d61d3c2a71136cee146ede8b834b460721dd8d23
Author: Frank Lichtenheld
Date:   Tue Jan 13 13:15:05 2026 +0100

     socket: Remove old 'dynamic remote' feature

     Signed-off-by: Frank Lichtenheld <[email protected]>
     Acked-by: Arne Schwabe <[email protected]>
     Gerrit URL: https://gerrit.openvpn.net/c/openvpn/+/1468
     Message-Id: <[email protected]>
     URL: 
https://www.mail-archive.com/[email protected]/msg35232.html
     Signed-off-by: Gert Doering <[email protected]>


--
kind regards,

Gert Doering



_______________________________________________
Openvpn-devel mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openvpn-devel

Reply via email to