Consider remove TLS 1.0/1.1, and recommend using TLS 1.3

This is where we can discuss what we would like to see added or changed in OpenVPN.

Moderators: TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech

Post Reply
A
OpenVpn Newbie
Posts: 4
Joined: Tue Aug 16, 2022 3:05 am

Consider remove TLS 1.0/1.1, and recommend using TLS 1.3

Post by A » Tue Aug 16, 2022 3:13 am

Consider remove TLS 1.0/1.1, and recommend using TLS 1.3, if not possible for now, mark TLS 1.0/1.1 as insecure, remove TLS 1.0/1.1 in the future.

TinCanTech
OpenVPN Protagonist
Posts: 11137
Joined: Fri Jun 03, 2016 1:17 pm

Re: Consider remove TLS 1.0/1.1, and recommend using TLS 1.3

Post by TinCanTech » Tue Aug 16, 2022 12:52 pm

Use --tls-version-min and --tls-version-max

A
OpenVpn Newbie
Posts: 4
Joined: Tue Aug 16, 2022 3:05 am

Re: Consider remove TLS 1.0/1.1, and recommend using TLS 1.3

Post by A » Tue Aug 16, 2022 1:30 pm

Sorry, I'm just a user, I using OpenVPN connect, doesn't operate any server. I mean mark TLS 1.0/1.1 as insecure, the same as compression, so that VPN administrators and users will avoid using TLS 1.0/1.1 gradually. The goal is stop using TLS 1.0/1.1 in the future.

Post Reply