OpenVPN lacks support for --tls-remote option

Bug #116256 reported by David Parker
20
This bug affects 1 person
Affects Status Importance Assigned to Milestone
NetworkManager-OpenVPN
Fix Released
Wishlist
network-manager-openvpn (Ubuntu)
Fix Released
Wishlist
Unassigned

Bug Description

Binary package hint: network-manager-openvpn

The network-manager-openvpn plugin doesn't support the tls-remote option in OpenVPN as a form of server certificate verification. For VPNs that rely on tls-remote for verification of certificates NetworkManager will refuse to connect.

From the openvpn man page:
       --tls-remote name
              Accept connections only from a host with X509 name or common
              name equal to name. The remote host must also pass all other
              tests of verification.

The attached patch adds backend support for this option and an additional field in the frontend GUI settings window.

Tags: patch
Revision history for this message
David Parker (dparker) wrote :
Revision history for this message
Luca Falavigna (dktrkranz) wrote :

Patch submitted upstream.

Changed in network-manager-openvpn:
status: Unknown → New
Philipp Kern (pkern)
Changed in network-manager-openvpn:
importance: Undecided → Wishlist
status: New → Confirmed
Changed in network-manager-openvpn:
status: New → Confirmed
Changed in network-manager-openvpn:
status: Confirmed → Incomplete
Changed in network-manager-openvpn:
status: Incomplete → Confirmed
Revision history for this message
Michael Helmling (supermihi) wrote :

May I ask why there is no progress of this bug? As far as I can see there is a patch available for two years now ... I really need this feature to connect to my university network!

Revision history for this message
JanBrinkmann (jbrinkmann) wrote :

The patch was imported upstream to 0.7.x on 2010-01-18 . Seems that this bug can be closed when the release hits the Ubuntu Repositories (maybe already in lucid?).

Revision history for this message
bojo42 (bojo42) wrote :
Revision history for this message
Victor Vargas (kamus) wrote :

This issue was solved in release 0.8 , according to changelog:

network-manager-openvpn (0.8-0ubuntu1) lucid; urgency=low

  * upstream release 0.8
    - core: add tls-remote support (bgo #455142)

Marked as Fix Released, Thanks!

Changed in network-manager-openvpn (Ubuntu):
status: Confirmed → Fix Released
Changed in network-manager-openvpn:
importance: Unknown → Wishlist
status: Confirmed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.