Re: [Openvpn-users] question about "WARNING: this cipher's block size is less than 128 bit"

2016-11-07 Thread Gert Doering
Hi, On Tue, Nov 08, 2016 at 12:17:55PM +1300, Jason Haar wrote: > On Mon, Nov 7, 2016 at 10:46 PM, Gert Doering wrote: > > > - 2.4 client talking to 2.4 server will send a special handshake > > (IV_NCP=2) > >which signals "I can do pushable cipher, and I can do

Re: [Openvpn-users] question about "WARNING: this cipher's block size is less than 128 bit"

2016-11-07 Thread Steffan Karger
Hi, On 8 Nov 2016 12:49 a.m., "Jason Haar" wrote: > > > On Mon, Nov 7, 2016 at 10:46 PM, Gert Doering wrote: >> >> - 2.4 client talking to 2.4 server will send a special handshake (IV_NCP=2) >>which signals "I can do pushable cipher, and I can

Re: [Openvpn-users] question about "WARNING: this cipher's block size is less than 128 bit"

2016-11-07 Thread Jason Haar
On Mon, Nov 7, 2016 at 10:46 PM, Gert Doering wrote: > - 2.4 client talking to 2.4 server will send a special handshake > (IV_NCP=2) >which signals "I can do pushable cipher, and I can do AES-GCM", so the >server will (usually) send back "cipher AES-256-GCM" and

Re: [Openvpn-users] question about "WARNING: this cipher's block size is less than 128 bit"

2016-11-07 Thread Gert Doering
Hi, On Mon, Nov 07, 2016 at 11:47:42AM +1300, Jason Haar wrote: > On Fri, Nov 4, 2016 at 8:47 PM, Gert Doering wrote: > > > The other would be to live with the warning message until you can roll > > out 2.4, which will be able to handle per-client ciphers, AND will > >