Preparing for 23.09 OpenSSL Changes
-
I have ~200 users using OpenVPN and my auth digest is set to SHA1, which because of how OpenVPN works, has to be specified on both the client and server.
I have some plans in place to upgrade everybody but in the meantime, if I do the update to 23.09, how screwed am I?
We don't use certs just user auth so I don't think that would be an issue but if 23.09 drops SHA1 for auth digest we need to fix it before the upgrade instead of after.
Thanks
-
A SHA1 value for Auth digest algorithm is still OK on 23.09. That is different than when it's used in certificates and other places.
-
@jimp Awesome, thank you for the reassurance. We'll keep working on moving our users over but can at least take advantage of the bug fixes/etc in 23.09
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.