]>
git.ipfire.org Git - people/ms/ipfire-2.x.git/log
Adolf Belka [Sun, 8 Dec 2024 11:23:30 +0000 (12:23 +0100)]
openvpn: Update to version 2.6.12
Signed-off-by: Adolf Belka <adolf.belka@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 16 Apr 2024 13:03:13 +0000 (15:03 +0200)]
ovpnmain.cgi: Implement a better way to set defaults
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 16 Apr 2024 12:18:39 +0000 (14:18 +0200)]
ovpnmain.cgi: Load the main settings just once
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 16 Apr 2024 12:13:32 +0000 (14:13 +0200)]
ovpnmain.cgi: Use the same hash for the configuration like everywhere else
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 16 Apr 2024 12:01:31 +0000 (14:01 +0200)]
ovpnmain.cgi: Restart instead of reload
The option to reload the server does not seem to work well. The running
is process is performing a number of checks that make very little sense
and PID files get written by the user that launches the process (i.e.
root) instead of the user that the process is running as later on (i.e.
nobody). Since there is no chance to keep any existing connections alive
this way, we may just as well restart the service for now.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 16 Apr 2024 12:00:35 +0000 (14:00 +0200)]
openvpn-rw: Use a sensible name for the PID file
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 16 Apr 2024 11:58:47 +0000 (13:58 +0200)]
ovpnmain.cgi: Give the status log a more sensible name
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 16 Apr 2024 11:25:30 +0000 (13:25 +0200)]
ovpnmain.cgi: Explicitly notify clients that the server is going down
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 16 Apr 2024 11:20:02 +0000 (13:20 +0200)]
i18n: Update note on the file format of the OpenVPN client configuration
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Thu, 11 Apr 2024 20:29:09 +0000 (22:29 +0200)]
ovpnmain.cgi: Refactor top table of adding/creating connections
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Thu, 11 Apr 2024 20:15:51 +0000 (22:15 +0200)]
ovpnmain.cgi: Remove yet another "if (1)" statement
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Thu, 11 Apr 2024 20:10:23 +0000 (22:10 +0200)]
ovpnmain.cgi: Refactor connection statistics page
No functional changes
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Thu, 11 Apr 2024 19:42:16 +0000 (21:42 +0200)]
ovpnmain.cgi: Remove ns-cert-type server
This option has been removed in OpenVPN 2.5. We do not support anything
prior to that.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Thu, 11 Apr 2024 19:40:55 +0000 (21:40 +0200)]
ovpnmain.cgi: Remove unnecessary client configuration options
We should send the most minimal configuration so that we do not
overwrite any sensible defaults.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Thu, 11 Apr 2024 19:24:22 +0000 (21:24 +0200)]
ovpnmain.cgi: Fix spacing in client configuration file
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Thu, 11 Apr 2024 19:22:15 +0000 (21:22 +0200)]
ovpnmain.cgi: Use LF only without CR for config files
Fixes: #13355
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Thu, 11 Apr 2024 19:20:01 +0000 (21:20 +0200)]
ovpnmain.cgi: Remove the ZIP container around configuration files
Since we can now include everything in one file, there is no need to put
it in a ZIP container.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Thu, 11 Apr 2024 19:12:54 +0000 (21:12 +0200)]
ovpnmain.cgi: Remove the "insecure" client package
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Thu, 11 Apr 2024 19:02:33 +0000 (21:02 +0200)]
ovpnmain.cgi: Include the PKCS12 certificate on config export
Before, OpenVPN did not support PKCS12 files in an embedded format. We
extracted the key and the certificate in PEM format instead.
This is no longer necessary and therefore we can simply include the
file.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 10 Apr 2024 15:49:01 +0000 (17:49 +0200)]
ovpnmain.cgi: Reindent generating the client configuration
There are no functional changes.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 10 Apr 2024 15:14:07 +0000 (17:14 +0200)]
ovpnmain.cgi: Refactor CCD pool configuration
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 10 Apr 2024 13:52:06 +0000 (15:52 +0200)]
ovpnmain.cgi: Remove code to restart a connection
This could not be triggered.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 10 Apr 2024 13:43:32 +0000 (15:43 +0200)]
ovpnmain.cgi: Refactor the connection listing
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 10 Apr 2024 12:26:43 +0000 (14:26 +0200)]
ovpnmain.cgi: Unify the error message box
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 10 Apr 2024 12:11:27 +0000 (14:11 +0200)]
ovpnmain.cgi: Enable legacy provider for auths, too
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 10 Apr 2024 12:03:30 +0000 (14:03 +0200)]
ovpnmain.cgi: Load the OpenSSL legacy provider if required
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 10 Apr 2024 10:55:47 +0000 (12:55 +0200)]
ovpnmain.cgi: Move "ROUTE_PUSH" settings into the main settings file
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 10 Apr 2024 10:34:45 +0000 (12:34 +0200)]
ovpnmain.cgi: Fix checking custom routes
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 17:49:30 +0000 (19:49 +0200)]
ovpnmain.cgi: Reload the server after changing advanced settings
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 17:45:45 +0000 (19:45 +0200)]
ovpnmain.cgi: Remove more unused variables
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 17:41:59 +0000 (19:41 +0200)]
ovpnmain.cgi: Refactor the entire advanced settings page
There are no functional changes.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 17:23:18 +0000 (19:23 +0200)]
CSS: Don't make headings so skinny
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 17:08:25 +0000 (19:08 +0200)]
ovpnmain.cgi: Remove "additional configs"
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 17:04:58 +0000 (19:04 +0200)]
ovpnmain.cgi: Remove client-to-client
This is a potential security issue. See #13636.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 17:02:22 +0000 (19:02 +0200)]
ovpnmain.cgi: Hard-code keepalive packets
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 16:58:51 +0000 (18:58 +0200)]
ovpnmain.cgi: Hard-code "verb 3"
There is no reason why users will need to change this.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 16:54:30 +0000 (18:54 +0200)]
ovpnmain.cgi: Improve wording for RW settings
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 16:38:26 +0000 (18:38 +0200)]
initscripts: Manually load the tun module for OpenVPN
The server cannot load the module itself.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 16:36:56 +0000 (18:36 +0200)]
ovpnmain.cgi: Remove manual start/stop actions
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 16:25:47 +0000 (18:25 +0200)]
ovpnmain.cgi: Redesign the roadwarrior section
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 16:25:11 +0000 (18:25 +0200)]
CSS: Make text/number inputs 100% wide, too
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 16:09:37 +0000 (18:09 +0200)]
ovpnmain.cgi: Only allow removing X.509 when the server is not enabled
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 16:08:33 +0000 (18:08 +0200)]
ovpnmain.cgi: Remove left-over code
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 16:08:06 +0000 (18:08 +0200)]
ovpnmain.cgi: Move destination port to advanced settings
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 16:00:48 +0000 (18:00 +0200)]
ovpnmain.cgi: Move MTU setting to advanced settings
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 15:52:37 +0000 (17:52 +0200)]
ovpnmain.cgi: Move protocol setting to advanced settings
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 9 Apr 2024 15:45:46 +0000 (17:45 +0200)]
ovpnmain.cgi: Remove the old status indicator
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Sat, 23 Mar 2024 19:09:34 +0000 (20:09 +0100)]
vulnerabilities.cgi: Use section
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Sat, 23 Mar 2024 18:57:49 +0000 (19:57 +0100)]
vulnerabilities.cgi: Use CSS to colour the table
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Sat, 23 Mar 2024 18:12:26 +0000 (19:12 +0100)]
web: Explain memory consumption
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Sat, 23 Mar 2024 18:06:31 +0000 (19:06 +0100)]
tor.cgi: Use new service function
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Sat, 23 Mar 2024 18:00:49 +0000 (19:00 +0100)]
CSS: Automatically stripe all tables
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Sat, 23 Mar 2024 17:42:13 +0000 (18:42 +0100)]
web: Create a function to show the service status
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Sat, 23 Mar 2024 16:01:14 +0000 (17:01 +0100)]
ovpnmain.cgi: Use global ethernet settings
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Sat, 23 Mar 2024 14:33:55 +0000 (15:33 +0100)]
OpenVPN: Rename "Global Settings" to "Roadwarrior Settings"
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Sat, 23 Mar 2024 14:32:36 +0000 (15:32 +0100)]
make.sh: Update language files
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Sat, 23 Mar 2024 14:29:27 +0000 (15:29 +0100)]
initscripts: Silence error messages when testing if a process is running
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Sat, 23 Mar 2024 14:03:36 +0000 (15:03 +0100)]
openvpnctrl: Rewrite the entire thing
This binary because a major headache as it has been changed so many
times by so many people neglegting the code quality. Therefore, the
logic has now been moved into initscripts and the binary changed so that
it only serves as a SUID wrapper to call the initscripts.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Sat, 23 Mar 2024 14:00:18 +0000 (15:00 +0100)]
initscripts: Call the initscript to create firewall rules
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Sat, 23 Mar 2024 13:57:19 +0000 (14:57 +0100)]
initscripts: No longer restart OpenVPN when RED comes up/goes down
This is probably a relic from when dial-up connections where on trend
and systems were offline for long times of the day. Now, we should
always be on and there is no need to restart all those services on a
reconnect.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Sat, 23 Mar 2024 13:43:46 +0000 (14:43 +0100)]
openvpn-n2n: Implement deleting RRD databases
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Sat, 23 Mar 2024 13:39:30 +0000 (14:39 +0100)]
openvpn: Add an initscript for N2N connections
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Thu, 21 Mar 2024 17:08:31 +0000 (18:08 +0100)]
openvpnctrl: Remove the stuff we no longer need
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Thu, 21 Mar 2024 17:05:51 +0000 (18:05 +0100)]
initscripts: Start the OpenVPN Authenticator, too
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Thu, 21 Mar 2024 16:58:46 +0000 (17:58 +0100)]
initscripts: Add an initscript for OpenVPN RW
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Thu, 21 Mar 2024 15:51:39 +0000 (16:51 +0100)]
firewall: Split OpenVPN INPUT chains for RW & N2N
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Thu, 21 Mar 2024 15:47:21 +0000 (16:47 +0100)]
ovpnmain.cgi: Remove option to enable on ORANGE/BLUE
There is no point in not making this service available to any local
networks when it always has to be reachable from the Internet.
This still has to be reflected in the initscripts
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 19:38:52 +0000 (20:38 +0100)]
ovpnmain.cgi: Migrate to subnet topology
For dynamic pools, this change is easy and does not require any extra
steps. For CCD clients however, we need to update the configuration to
replace the server IP address with the subnet mask.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 16:34:00 +0000 (17:34 +0100)]
ovpnmain.cgi: Create functions to read CCD client/server routes
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 16:33:14 +0000 (17:33 +0100)]
ovpnmain.cgi: Remove comment that a restart is required
This is incorrect as we can change CCD data without restarting the
server.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 16:20:16 +0000 (17:20 +0100)]
ovpnmain.cgi: Refactor writing CCD files
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 13:56:20 +0000 (14:56 +0100)]
ovpnmain.cgi: Drop validdotmask()
This is a totally braindead function that prevented some basic usability
by using the more modern prefix notation. It simply checks if there is a
freaking dot. Great!
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 13:45:14 +0000 (14:45 +0100)]
ovpnmain.cgi: Drop hostsinnet
This is no longer needed as we can use the function that lists all
addresses that are in use and count them.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 13:42:27 +0000 (14:42 +0100)]
ovpnmain.cgi: Refactor listing CCD addresses
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 11:32:22 +0000 (12:32 +0100)]
ovpnmain.cgi: Refactor ccdmaxclients()
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 11:25:58 +0000 (12:25 +0100)]
ovpnmain.cgi: Refactor modccnet()
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 11:12:00 +0000 (12:12 +0100)]
ovpnmain.cgi: Refactor addccdnet()
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 10:36:23 +0000 (11:36 +0100)]
ovpnmain.cgi: Move function to check CCD names here
This was in general-functions.pl for some reason.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 10:33:16 +0000 (11:33 +0100)]
ovpnmain.cgi: Refactor function to remove a static pool
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 10:21:58 +0000 (11:21 +0100)]
ovpnmain.cgi: Remove enabled marker files
Nothing is using these any more.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 10:15:18 +0000 (11:15 +0100)]
ovpnmain.cgi: Remove any left-over traces of DH replacement
Since there is no way for the user to manipulate this any more, there is
no point in checking and showing the DH parameters.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 10:12:37 +0000 (11:12 +0100)]
ovpnmain.cgi: Remove excess whitespace
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Wed, 20 Mar 2024 10:09:39 +0000 (11:09 +0100)]
ovpnmain.cgi: Remove more dead code
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 19:44:18 +0000 (20:44 +0100)]
ovpnmain.cgi: Force NCP on clients
This change requires that all clients support NCP if they are set up
with a new connection. Existing clients remain supported using the
fallback cipher option.
This will result that connections with OpenVPN <= 2.3 cannot be set up
any more which is totally fine since that version is EOL.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 19:14:26 +0000 (19:14 +0000)]
openvpn: Update to 2.6.9
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 19:11:31 +0000 (20:11 +0100)]
ovpnmain.cgi: Completely remove compression for RW clients
We will use the "compress migrate" option which disables compression by
default. If a client has been found that wants to use compression, the
server will push "stub-v2" to disable it. If that does not work, the
server might fall back to compression.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 18:32:50 +0000 (19:32 +0100)]
ovpnmain.cgi: Implement cipher negotiation for RW clients
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 17:38:34 +0000 (18:38 +0100)]
ovpnmain.cgi: Remove presetting removed options
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 17:37:45 +0000 (18:37 +0100)]
ovpnmain.cgi: Remove dead code
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 17:37:24 +0000 (18:37 +0100)]
ovpnmain.cgi: Use SHA512 for hashing by default
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 17:36:42 +0000 (18:36 +0100)]
ovpnmain.cgi: Keep the fallback cipher disabled by default
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 17:32:25 +0000 (18:32 +0100)]
ovpnmain.cgi: Allow to disable the fallback cipher
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 17:26:27 +0000 (18:26 +0100)]
ovpnmain.cgi: Rename cipher selection to fallback cipher
This is to keep ancient clients and clients that have NCP disabled
happy.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 17:04:20 +0000 (18:04 +0100)]
lang: Update because of OpenVPN changes
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 17:02:17 +0000 (18:02 +0100)]
CSS: Make all <select> and <textarea> use all available space
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 16:57:39 +0000 (17:57 +0100)]
ovpnmain.cgi: Fix the completely fucked table layout
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 16:49:59 +0000 (17:49 +0100)]
ovpnmain.cgi: Move the cryptographic options to the advanced page
Since we don't want people play too much with these, we move them to the
advanced settings page.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 16:14:03 +0000 (17:14 +0100)]
ovpnmain.cgi: Fix resetting compression setting
The compression option was reset (disabled) when the Save button on the
main was being clicked.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 16:11:00 +0000 (17:11 +0100)]
ovpnmain.cgi: Remove crypto error/warning boxes
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
Michael Tremer [Tue, 19 Mar 2024 15:58:30 +0000 (16:58 +0100)]
ovpnmain.cgi: Remove authorship comments
These are not very useful.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>