From owner-freebsd-ports@FreeBSD.ORG Sat Aug 1 11:33:02 2009 Return-Path: Delivered-To: freebsd-ports@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 7A3A41065670 for ; Sat, 1 Aug 2009 11:33:02 +0000 (UTC) (envelope-from stb@lassitu.de) Received: from koef.zs64.net (koef.zs64.net [212.12.50.230]) by mx1.freebsd.org (Postfix) with ESMTP id 10B748FC0C for ; Sat, 1 Aug 2009 11:33:01 +0000 (UTC) (envelope-from stb@lassitu.de) Received: from localhost by koef.zs64.net (8.14.3/8.14.3) with ESMTP id n71BWxIU037658 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=NO); Sat, 1 Aug 2009 13:33:00 +0200 (CEST) (envelope-from stb@lassitu.de) (authenticated as stb) Message-Id: <654B1E65-BF46-4DD7-9DCE-97965875F1DE@lassitu.de> From: Stefan Bethke To: Matthias Andree In-Reply-To: Content-Type: text/plain; charset=US-ASCII; format=flowed; delsp=yes Content-Transfer-Encoding: 7bit Mime-Version: 1.0 (Apple Message framework v935.3) Date: Sat, 1 Aug 2009 13:32:59 +0200 References: <4A709126.5050102@elischer.org> <3A1518B9-2C8C-4F05-9195-82C6017E4902@lassitu.de> <4A721160.5080902@elischer.org> <20090730220658.M245@maildrop.int.zabbadoz.net> X-Mailer: Apple Mail (2.935.3) Cc: freebsd-ports@freebsd.org Subject: Re: recent change to ifconfig breaks OpenVPN? X-BeenThere: freebsd-ports@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Porting software to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 01 Aug 2009 11:33:02 -0000 Am 31.07.2009 um 18:58 schrieb Stefan Bethke: > Am 31.07.2009 um 14:38 schrieb Stefan Bethke: > >> Here's a first draft at a patch for OpenVPN. With this, the tun >> interface gets set to IFF_BROADCAST mode. One small piece is still >> missing: OpenVPN tries to install a route for the subnet, but that >> fails because now ifconfig has already inserted that route. I'll >> try to look into that a bit later on. I also haven't tested the >> server side yet, or any other mode. > > The route for the subnet is pushed by the server (expanded from the > --server config option). Although adding the route fails, the > connection process continues and the connection is working fine. > Making either the client ignore the pushed route or the server not > push the route would be rather intrusive, so I think leaving it at > this should be acceptable. > > Will continue testing... I've tested the patch on -stable and -current, with --topology subnet and --topology net30, in client and server modes, and everything seems to be working fine. From my point of view, this can be committed. I will submit the patch to James Yonan and the openvpn-developers list for inclusion. Stefan -- Stefan Bethke Fon +49 151 14070811