>>Is this actually still necessary in openvpn 2.6.x?
>>Besides, changelog for 2.6 contains
>> CHACHA20-POLY1305 is included in the default of |--data-ciphers|
when available.
>>will this patch disable CHACHA-20?
>I think so, because the patch is explicitly setting --data-ciphers
and it is not including CHACHA20POLY1305.
>Do you have clients advertising chachapoly only?
Not really.
I'm in the process of upgrading from 2.4 to 2.6, and before doing so I
was going through any differences between the 2 RPMs (v2.4 and v2.6).
I found this difference in the service script and I was wondering
whether I should use it "as is" or maybe rebuild the RPM w/o that patch
in order to let openvpn use its default crypto settings.
_______________________________________________
Openvpn-users mailing list
Openvpn-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-users