md5 is out of date

Scripts to manage certificates or generate config files
Post Reply
ralfoertner
OpenVpn Newbie
Posts: 1
Joined: Thu Mar 08, 2018 10:21 pm

md5 is out of date

Post by ralfoertner » Thu Mar 08, 2018 10:41 pm

Hello!

I have a few OpenVPN installations where users get an error message that md5 supoort will be dropped in april this year. I googled a lot. But I did not find a clear solution.

Some said putting in the parameter tls-cipher "DEFAULT:@SECLEVEL=0" would be the solution. But where must it be putted in? Client or server config file?

Or do I have to update the openvpn software including easy rsa and create all the certificates new?

I hope I took the right forum for thar question.

Thank you!
RO

User avatar
TinCanTech
OpenVPN Protagonist
Posts: 4867
Joined: Fri Jun 03, 2016 1:17 pm

Re: md5 is out of date

Post by TinCanTech » Fri Mar 09, 2018 12:08 am

ralfoertner wrote:
Thu Mar 08, 2018 10:41 pm
I hope I took the right forum for thar question.
This is the correct forum.
ralfoertner wrote:
Thu Mar 08, 2018 10:41 pm
Some said putting in the parameter tls-cipher "DEFAULT:@SECLEVEL=0" would be the solution.
If you prefer to compromise your security then sure .. but it is strongly not recommended..
ralfoertner wrote:
Thu Mar 08, 2018 10:41 pm
Or do I have to update the openvpn software including easy rsa and create all the certificates new?
Very strongly recommended indeed. :!:

Post Reply