Hi,

On Sat, Jun 24, 2023 at 09:55:48AM +0200, Gert Doering wrote:
> On Sat, Jun 24, 2023 at 01:46:45AM +0200, Stella Ashburne wrote:
> 
> > OpenVPN is a privacy-focused software and I fear there is
> > insufficient time to uncover bugs and security vulnerabilities. I
> > know there is this novel technology called DCO (data channel offload).
> > Without enough time for it to prove itself that it is safe and
> > secure for us to use, we end-users might unwittingly offload our
> > sensitive data to the channels operated by state-sponsored hackers
> > and cyber criminals. When this happens, DCO would become the butt
> > of jokes among OpenVPN users.

I forgot something here.

DCO will only be active if the kernel module is loaded (user choice here),
and even then, running OpenVPN with --disable-dco will make it not use
the kernel module.  So if you do not trust DCO, just turn it off, and 
OpenVPN 2.6 will use literally the same code for data channel as 2.5

gert

-- 
"If was one thing all people took for granted, was conviction that if you 
 feed honest figures into a computer, honest figures come out. Never doubted 
 it myself till I met a computer with a sense of humor."
                             Robert A. Heinlein, The Moon is a Harsh Mistress

Gert Doering - Munich, Germany                             g...@greenie.muc.de

Attachment: signature.asc
Description: PGP signature

_______________________________________________
Openvpn-users mailing list
Openvpn-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-users

Reply via email to