On Fri, 2008-10-10 at 12:42 +0200, Lutz Jaenicke via RT wrote:
> I have applied the patch to 0.9.8-stable and adopted it to 0.9.9-dev. I
> am not very familiar with the DTLS implementation so hopefully I did not
> break it.

Thanks. Sorry to be impatient. I've got myself onto a team tasked with
implementing supporting for Linux connectivity to the company VPN, and
I'm very keep to avoid them settling on Cisco's client, which has some
fairly scary security holes as well as just integrating properly with
the desktop or being supportable, etc. 

I'm trying to present the open client which I've now written as a fait
accompili -- and aside from the OpenSSL part, I'm fairly much there. We
have packages for 'openconnect' and 'NetworkManager-openconnect' on the
way through the Fedora review process and we're about to get other
people to do the same for other distributions... all we need now is to
get the distributions' OpenSSL packages updated so that DTLS works and
we're not using TCP over TCP. And understandably, distributions want to
see the patches upstream before they ship them. Especially with one with
the extra option for Cisco compatibility.

-- 
dwmw2


______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       openssl-dev@openssl.org
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to