cipherdyne.org

Michael Rash, Security Researcher



Software Release: fwknop-2.6.10

The 2.6.10 release of fwknop is available for download (or via the github release tag). Here is the complete ChangeLog:

  • [server] Add MAX_FW_TIMEOUT to access.conf stanzas to allow a maximum number of seconds for client-specified timeouts in SPA packets. This fixes issue #226 which was spotted by Jeremiah Rothschild.
  • [server] Bug fix in CMD_EXEC mode to make sure to call exit() upon any error from execvpe(). Without this fix, additional fwknopd processes would be started upon a user specifying a command without the necessary permissions. This bug was reported by Stephen Isard.
  • [build] Jérémie Courrèges-Anglas and Ingo Feinerer contributed a patch to fix endian detection on OpenBSD systems based on information contained here: https://www.opengroup.org/austin/docs/austin_514.txt
  • [client/server] (Michael Stair) Added client and server infrastructure written in Erlang. See the erlang/ directory.