After an evaluation, GNOME has moved from Bugzilla to GitLab. Learn more about GitLab.
No new issues can be reported in GNOME Bugzilla anymore.
To report an issue in a GNOME project, go to GNOME GitLab.
Do not go to GNOME Gitlab for: Bluefish, Doxygen, GnuCash, GStreamer, java-gnome, LDTP, NetworkManager, Tomboy.
Bug 739834 - TLS 1.2 minimum version requirement
TLS 1.2 minimum version requirement
Status: RESOLVED OBSOLETE
Product: NetworkManager
Classification: Platform
Component: VPN: openvpn
0.9.8
Other Linux
: Normal enhancement
: ---
Assigned To: NetworkManager maintainer(s)
NetworkManager maintainer(s)
: 742604 (view as bug list)
Depends on:
Blocks: nm-openvpn-options
 
 
Reported: 2014-11-09 04:13 UTC by Timse
Modified: 2020-11-12 14:33 UTC
See Also:
GNOME target: ---
GNOME version: ---



Description Timse 2014-11-09 04:13:59 UTC
With the SSL 3.0 vulnerability (POODLE) many administrator managers are forcing the TLS version 1.2 at the server side, and therefore requiring clients to use the same option for compatibility issues. In these cases, network-manager openvpn plugin does not support this option yet, and connection is impossible.

Because this option is critical for secured connections, I encourage adding support for these openvpn commands in the nm (advanced) configuration options:
tls-client
tls-version-min 1.2

Best regards.
Comment 1 Thomas Haller 2015-07-07 20:51:15 UTC
*** Bug 742604 has been marked as a duplicate of this bug. ***
Comment 2 André Klapper 2020-11-12 14:33:05 UTC
bugzilla.gnome.org is being shut down in favor of a GitLab instance. 
We are closing all old bug reports and feature requests in GNOME Bugzilla which have not seen updates for a long time.

If you still use NetworkManager and if you still see this bug / want this feature in a recent and supported version of NetworkManager, then please feel free to report it at https://gitlab.freedesktop.org/NetworkManager/NetworkManager/-/issues/

Thank you for creating this report and we are sorry it could not be implemented (workforce and time is unfortunately limited).