)]}'
{"id":"openvpn~1759","triplet_id":"openvpn~master~I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0","project":"openvpn","branch":"master","topic":"oob-server-probe","attention_set":{"1000003":{"account":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"last_update":"2026-06-30 11:47:24.000000000","reason":"Reviewer was added"}},"removed_from_attention_set":{},"hashtags":[],"change_id":"I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0","subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","status":"NEW","created":"2026-06-30 11:47:23.000000000","updated":"2026-09-18 08:31:39.000000000","submit_type":"CHERRY_PICK","submittable":false,"total_comment_count":0,"unresolved_comment_count":0,"has_review_started":true,"meta_rev_id":"137e4b4f7b252831370869a1e2855a91ac36dc11","_number":1759,"virtual_id_number":1759,"owner":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"actions":{},"labels":{"Code-Review":{"all":[{"value":0,"permitted_voting_range":{"min":-2,"max":2},"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"}],"values":{"-2":"This shall not be submitted","-1":"I would prefer this is not submitted as is"," 0":"No score","+1":"Looks good to me, but someone else must approve","+2":"Looks good to me, approved"},"description":"","default_value":0}},"removable_reviewers":[],"reviewers":{"REVIEWER":[{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"}],"CC":[{"_account_id":1000026,"name":"openvpn-devel","email":"openvpn-devel@lists.sourceforge.net","username":"openvpn-devel"}]},"pending_reviewers":{},"reviewer_updates":[{"updated":"2026-06-30 11:47:24.000000000","updated_by":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"reviewer":{"_account_id":1000026,"name":"openvpn-devel","email":"openvpn-devel@lists.sourceforge.net","username":"openvpn-devel"},"state":"CC"},{"updated":"2026-06-30 11:47:24.000000000","updated_by":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"reviewer":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"state":"REVIEWER"}],"messages":[{"id":"adc830012372c0a56567bc2df333fefcf96cbc86","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-06-30 11:47:23.000000000","message":"Uploaded patch set 1.","accounts_in_message":[],"_revision_number":1},{"id":"8628a8731b3c0c682ded37ee0422cbd32bcd3fa2","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-07-02 12:30:33.000000000","message":"Uploaded patch set 2: Patch Set 1 was rebased.","accounts_in_message":[],"_revision_number":2},{"id":"d00a98657c2a1defc8ee0dc8e913c1bc2be89b7e","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-07-06 06:50:47.000000000","message":"Uploaded patch set 3: Patch Set 2 was rebased.","accounts_in_message":[],"_revision_number":3},{"id":"179ace36641a43d6548a4846e47a1ba5d1fc4be8","tag":"autogenerated:gerrit:setTopic","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-07-06 07:11:40.000000000","message":"Topic set to oob-server-probe","accounts_in_message":[],"_revision_number":3},{"id":"c75fec77d2c1914412f3624ee955fff30d9e0e95","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-07-06 08:22:28.000000000","message":"Uploaded patch set 4: Patch Set 3 was rebased.","accounts_in_message":[],"_revision_number":4},{"id":"b64bef0b99ae164e88492fafb8bd7d406bfd8548","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-07-09 13:47:21.000000000","message":"Uploaded patch set 5: Patch Set 4 was rebased.","accounts_in_message":[],"_revision_number":5},{"id":"15d04c6ccb764c9d4e07ad8554a238f75bfedce6","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-07-14 08:14:41.000000000","message":"Uploaded patch set 6: New patch set was added with same tree, parent tree, and commit message as Patch Set 5.","accounts_in_message":[],"_revision_number":6},{"id":"a1d36bfdf4e69bdafe72dae5a35607143afc5661","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-07-14 12:32:24.000000000","message":"Uploaded patch set 7: Patch Set 6 was rebased.","accounts_in_message":[],"_revision_number":7},{"id":"85567a71aee2a6feb322fdd0000ddff27604be39","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-07-16 07:54:14.000000000","message":"Uploaded patch set 8: Patch Set 7 was rebased.","accounts_in_message":[],"_revision_number":8},{"id":"f6a9d7cdc18d7ed58fd2077d1ab0dfadfc4afce7","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-07-16 08:09:01.000000000","message":"Uploaded patch set 9: Patch Set 8 was rebased.","accounts_in_message":[],"_revision_number":9},{"id":"db14ea5d37f8754e05149739c36fafead778002f","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-07-21 12:35:24.000000000","message":"Uploaded patch set 10: Patch Set 9 was rebased.","accounts_in_message":[],"_revision_number":10},{"id":"0d85ef745c3a9bee9fe12229e201142872e05ccb","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-07-28 15:03:23.000000000","message":"Uploaded patch set 11: Patch Set 10 was rebased. Commit message was updated.","accounts_in_message":[],"_revision_number":11},{"id":"bfaee867d0eb1ae6d3c5255381572f28d30fbe1b","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-07-29 12:22:54.000000000","message":"Uploaded patch set 12.","accounts_in_message":[],"_revision_number":12},{"id":"d9d598c6e98a218e67833ad7e3482ae655f4b18f","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-08-04 08:10:28.000000000","message":"Uploaded patch set 13: Patch Set 12 was rebased.","accounts_in_message":[],"_revision_number":13},{"id":"bdc949d5656d78268b3b8ae78b9c5b90d2307d07","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-08-28 12:51:00.000000000","message":"Uploaded patch set 14: Patch Set 13 was rebased.","accounts_in_message":[],"_revision_number":14},{"id":"d87c585e114dfa0ed0b6271ce36d9c6163257ff0","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-09-09 07:27:02.000000000","message":"Uploaded patch set 15: Patch Set 14 was rebased.","accounts_in_message":[],"_revision_number":15},{"id":"dae49a55f3d477af98eb28048e1609cec0d71b65","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-09-11 08:18:16.000000000","message":"Uploaded patch set 16: Patch Set 15 was rebased.","accounts_in_message":[],"_revision_number":16},{"id":"54d817b05ef977cdfea38343e2bbf2d950d89094","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-09-11 09:11:03.000000000","message":"Uploaded patch set 17.","accounts_in_message":[],"_revision_number":17},{"id":"c0c392c8331d329abcc3161bfdd5e779d893c8ed","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-09-11 15:23:13.000000000","message":"Uploaded patch set 18.","accounts_in_message":[],"_revision_number":18},{"id":"e5d4f32a803413126fb5120e072de8bcd64ee21a","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-09-12 07:08:46.000000000","message":"Uploaded patch set 19: Patch Set 18 was rebased.","accounts_in_message":[],"_revision_number":19},{"id":"21190473d2fdfc913ee9bcc48ee12890f94c3062","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-09-14 14:18:32.000000000","message":"Uploaded patch set 20.","accounts_in_message":[],"_revision_number":20},{"id":"f35aa72cb1ea9ea872757b70e0867ada852ffe09","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-09-15 06:23:31.000000000","message":"Uploaded patch set 21: Patch Set 20 was rebased.","accounts_in_message":[],"_revision_number":21},{"id":"f035eae76995244ca91c3a6f33d0d0e0210921eb","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-09-15 12:59:19.000000000","message":"Uploaded patch set 22: Patch Set 21 was rebased.","accounts_in_message":[],"_revision_number":22},{"id":"a919efe513d048bb9285e6a556f8ed9b8f0edc8b","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-09-17 07:01:11.000000000","message":"Uploaded patch set 23: Patch Set 22 was rebased.","accounts_in_message":[],"_revision_number":23},{"id":"5f4e2bbdb3bf252b77b494734baa75157e0f4851","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-09-17 07:39:07.000000000","message":"Uploaded patch set 24: Patch Set 23 was rebased.","accounts_in_message":[],"_revision_number":24},{"id":"b3f415c9000a100af733dd44c03d5dd728b441c7","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-09-17 11:30:36.000000000","message":"Uploaded patch set 25: Patch Set 24 was rebased.","accounts_in_message":[],"_revision_number":25},{"id":"afa631b8f9c9e8f0a723a5ea33958060719e08c4","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-09-17 12:28:12.000000000","message":"Uploaded patch set 26: Patch Set 25 was rebased.","accounts_in_message":[],"_revision_number":26},{"id":"137e4b4f7b252831370869a1e2855a91ac36dc11","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"date":"2026-09-18 08:31:39.000000000","message":"Uploaded patch set 27: Patch Set 26 was rebased.","accounts_in_message":[],"_revision_number":27}],"current_revision_number":27,"current_revision":"2c7c0a581349f44304b7c9da44a1d80682022b77","revisions":{"00813ff3ea10557edcc15cd33289982ac990bd48":{"kind":"REWORK","_number":1,"created":"2026-06-30 11:47:23.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/1","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/1","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/1 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/1 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/1 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/1 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/1","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/1 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"5f9d8e33e87bc775a9db0df42edf8b0696936ab0","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:27:23.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\n"},"branch":"refs/heads/master"},"6d8441fa74a29b92c912b4c0e7b5b68cc14b0b46":{"kind":"TRIVIAL_REBASE","_number":2,"created":"2026-07-02 12:30:33.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/2","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/2","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/2 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/2 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/2 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/2 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/2","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/2 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"f89df78b7f3dde82f8a4c163dbcecb4557de98c3","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-07-02 12:11:49.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\n"},"branch":"refs/heads/master"},"b2be2dba3b616fac4dac010aa2df48273a389427":{"kind":"TRIVIAL_REBASE","_number":3,"created":"2026-07-06 06:50:47.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/3","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/3","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/3 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/3 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/3 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/3 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/3","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/3 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"aa6e2bc2b9fb00619d0c9aca69ad6ff4cc0ba482","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-07-03 09:47:39.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\n"},"branch":"refs/heads/master"},"98c54b419aaa097b2202d807ae29a686d20792fa":{"kind":"TRIVIAL_REBASE","_number":4,"created":"2026-07-06 08:22:28.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/4","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/4","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/4 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/4 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/4 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/4 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/4","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/4 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"aeae473f44a4cc633b10524d323ea2fc7f60c29b","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-07-06 08:20:50.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\n"},"branch":"refs/heads/master"},"7e513b6bc4426f477718a824ca6085a8a96f249e":{"kind":"TRIVIAL_REBASE","_number":5,"created":"2026-07-09 13:47:21.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/5","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/5","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/5 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/5 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/5 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/5 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/5","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/5 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"262ddb1ef0a866956af0b0f94ea2a9a6cc2f50e8","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-07-09 13:39:44.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\n"},"branch":"refs/heads/master"},"9c1a29e6ae3bc934bf9e31e1b3572fb85f85775c":{"kind":"NO_CHANGE","_number":6,"created":"2026-07-14 08:14:41.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/6","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/6","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/6 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/6 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/6 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/6 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/6","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/6 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"e5b3b4a62c17d2cb11d4ce95244a4bb52e56c1cd","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-07-14 08:13:53.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\n"},"branch":"refs/heads/master"},"612a1a2662619a5d7abf5dd08458bdc7d0f40778":{"kind":"TRIVIAL_REBASE","_number":7,"created":"2026-07-14 12:32:24.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/7","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/7","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/7 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/7 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/7 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/7 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/7","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/7 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"1215f1b5671f3d2daee41181ce995436da29acda","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-07-14 12:22:23.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\n"},"branch":"refs/heads/master"},"9e77992ce4682ed00a1c4a2ceee2a531c1f88035":{"kind":"TRIVIAL_REBASE","_number":8,"created":"2026-07-16 07:54:14.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/8","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/8","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/8 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/8 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/8 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/8 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/8","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/8 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"bd24e418f5aa102b94b1e101607cff1679ae49d7","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-07-16 07:42:19.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\n"},"branch":"refs/heads/master"},"17496b0a6548cedeae83ecbf96ad36909e59300f":{"kind":"TRIVIAL_REBASE","_number":9,"created":"2026-07-16 08:09:01.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/9","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/9","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/9 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/9 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/9 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/9 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/9","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/9 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"58ce1a9e777d8949288591f2e699841285ad3cd9","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-07-16 08:08:36.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\n"},"branch":"refs/heads/master"},"243d3c63615b01a49decb105afd1da33241557da":{"kind":"TRIVIAL_REBASE","_number":10,"created":"2026-07-21 12:35:24.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/10","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/10","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/10 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/10 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/10 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/10 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/10","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/10 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"445ab65638195ef98941e4f5219a6ced670c1ef7","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-07-21 12:30:45.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\n"},"branch":"refs/heads/master"},"540aff5e0dadb70c55af4087b3724dda3deab55f":{"kind":"TRIVIAL_REBASE_WITH_MESSAGE_UPDATE","_number":11,"created":"2026-07-28 15:03:23.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/11","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/11","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/11 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/11 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/11 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/11 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/11","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/11 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"ee308e7f3ded508dc8b7e92405a46aaf011ca0ed","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-07-28 15:00:13.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"bc96f8da5ebb9906aa1e6399d80e0b200ec2ab09":{"kind":"REWORK","_number":12,"created":"2026-07-29 12:22:54.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/12","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/12","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/12 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/12 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/12 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/12 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/12","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/12 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"7991c2014c7956b826359489ae9415a4f2a512a4","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-07-29 12:07:08.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"4504db84b1cba2300bb2cc7f831dd2abf19e88fe":{"kind":"TRIVIAL_REBASE","_number":13,"created":"2026-08-04 08:10:28.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/13","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/13","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/13 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/13 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/13 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/13 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/13","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/13 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"03f43bc44a01e3f2a43adf5c439a2ca1ac6a648c","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-08-04 08:08:33.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"8f4288b1e06841684a06f9750d24b9ff1bf4cf84":{"kind":"TRIVIAL_REBASE","_number":14,"created":"2026-08-28 12:51:00.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/14","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/14","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/14 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/14 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/14 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/14 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/14","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/14 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"65a9fa4092cf6022841b850664808467a9b6c8a4","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-08-28 12:33:23.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"c91351a36a99bb33a9338727063dcc25481c54f0":{"kind":"TRIVIAL_REBASE","_number":15,"created":"2026-09-09 07:27:02.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/15","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/15","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/15 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/15 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/15 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/15 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/15","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/15 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"5e4fd6b999f31f6839cb9441d477932a01709c64","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-09-09 06:53:51.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"64693024367638f3bb40d39f0409e058dc4d02a4":{"kind":"TRIVIAL_REBASE","_number":16,"created":"2026-09-11 08:18:16.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/16","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/16","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/16 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/16 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/16 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/16 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/16","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/16 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"511e1830b1191528c6650fb1c56afa92e31ba988","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-09-11 08:10:23.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"d9bd55db2ac03da4ece97aab53b207bfc2a349f1":{"kind":"REWORK","_number":17,"created":"2026-09-11 09:11:03.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/17","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/17","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/17 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/17 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/17 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/17 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/17","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/17 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"af99e3a2a3d9e6062ceba73202f06373bda305cc","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-09-11 09:03:59.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover the\nper-client key and unwrap it. Without tls-crypt-v2 the probe stays a plain\nP_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and report\n    \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"e999f45c962329ae86de2ff9171383846b1925dc":{"kind":"REWORK","_number":18,"created":"2026-09-11 15:23:13.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/18","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/18","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/18 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/18 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/18 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/18 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/18","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/18 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"66ce7a961bc597a230b68e241e37463885288cfe","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-09-11 15:05:20.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover\nthe per-client key and unwrap it. Without tls-crypt-v2 the probe stays a\nplain P_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and\n    report \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"3da5662f22b566c4b907941ad93c60f1ea8b045c":{"kind":"TRIVIAL_REBASE","_number":19,"created":"2026-09-12 07:08:46.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/19","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/19","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/19 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/19 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/19 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/19 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/19","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/19 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"bbbaeebcdf5d717f152e9cfd30dd82c6c2b4da0c","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-09-12 07:06:50.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover\nthe per-client key and unwrap it. Without tls-crypt-v2 the probe stays a\nplain P_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    init_instance()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and\n    report \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"695fbbde00e7a7d7d9ac262d45d789b37800485f":{"kind":"REWORK","_number":20,"created":"2026-09-14 14:18:32.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/20","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/20","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/20 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/20 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/20 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/20 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/20","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/20 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"fa0d208ff637fa763d3c7f41120e1bd2486b9b6e","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-09-14 13:44:49.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover\nthe per-client key and unwrap it. Without tls-crypt-v2 the probe stays a\nplain P_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    do_init_crypto_tls()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and\n    report \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"96116236b4d2f8d1cbd1db2f5f10350837aa8b86":{"kind":"TRIVIAL_REBASE","_number":21,"created":"2026-09-15 06:23:31.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/21","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/21","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/21 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/21 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/21 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/21 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/21","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/21 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"c5044766440d02c8689112178997133ffc87968d","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-09-15 05:32:37.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover\nthe per-client key and unwrap it. Without tls-crypt-v2 the probe stays a\nplain P_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    do_init_crypto_tls()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and\n    report \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"6c2b8603b91ce8465e49395c3953b0e9324e7cd3":{"kind":"TRIVIAL_REBASE","_number":22,"created":"2026-09-15 12:59:19.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/22","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/22","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/22 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/22 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/22 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/22 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/22","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/22 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"862d00d2abe8260f3cfe179eae95a8173f6255f2","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-09-15 12:49:01.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover\nthe per-client key and unwrap it. Without tls-crypt-v2 the probe stays a\nplain P_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    do_init_crypto_tls()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and\n    report \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"a6ac814c0a4e992aa0ef0496e804032034f3680a":{"kind":"TRIVIAL_REBASE","_number":23,"created":"2026-09-17 07:01:11.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/23","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/23","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/23 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/23 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/23 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/23 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/23","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/23 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"7d5fc1ca55f0bc7c51ad1ac00b94c1af84c1a848","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-09-17 06:52:30.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover\nthe per-client key and unwrap it. Without tls-crypt-v2 the probe stays a\nplain P_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    do_init_crypto_tls()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and\n    report \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"2eb0e36989ec1797c53c9cd5849c239b1f1286da":{"kind":"TRIVIAL_REBASE","_number":24,"created":"2026-09-17 07:39:07.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/24","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/24","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/24 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/24 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/24 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/24 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/24","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/24 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"487f1459b5babecb43f628a297ee0e5b5166cc8d","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-09-17 07:31:46.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover\nthe per-client key and unwrap it. Without tls-crypt-v2 the probe stays a\nplain P_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    do_init_crypto_tls()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and\n    report \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"240c548334815ba1cae7136b8049938df7ec2647":{"kind":"TRIVIAL_REBASE","_number":25,"created":"2026-09-17 11:30:36.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/25","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/25","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/25 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/25 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/25 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/25 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/25","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/25 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"c749552b08ea894584de3585bb480edcdec906bb","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-09-17 07:54:06.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover\nthe per-client key and unwrap it. Without tls-crypt-v2 the probe stays a\nplain P_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    do_init_crypto_tls()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and\n    report \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"7226eadf8d989d5222390a7f572f2c39fef1bddc":{"kind":"TRIVIAL_REBASE","_number":26,"created":"2026-09-17 12:28:12.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/26","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/26","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/26 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/26 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/26 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/26 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/26","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/26 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"7533effa0634e1a6e89548df836403bfc2c2b1af","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-09-17 11:45:25.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover\nthe per-client key and unwrap it. Without tls-crypt-v2 the probe stays a\nplain P_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    do_init_crypto_tls()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and\n    report \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"},"2c7c0a581349f44304b7c9da44a1d80682022b77":{"kind":"TRIVIAL_REBASE","_number":27,"created":"2026-09-18 08:31:39.000000000","uploader":{"_account_id":1000008,"name":"stipa","display_name":"Lev Stipakov","email":"lstipakov@gmail.com","username":"stipa"},"ref":"refs/changes/59/1759/27","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/59/1759/27","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/27 \u0026\u0026 git checkout -b change-1759 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/27 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/27 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/27 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/59/1759/27","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/59/1759/27 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"21988787f31d2c2ada5ff44da777eb0ca86063ec","subject":"oob: Unwrap tls-crypt-v2 server probes (P_CONTROL_OOB_WKC_V1)"}],"author":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-06-30 11:03:54.000000000","tz":180},"committer":{"name":"Lev Stipakov","email":"lev@openvpn.net","date":"2026-09-18 08:26:43.000000000","tz":180},"subject":"oob: Send tls-crypt-v2 SERVER_PROBE from the client","message":"oob: Send tls-crypt-v2 SERVER_PROBE from the client\n\nWhen tls-crypt-v2 is configured, send the probe as P_CONTROL_OOB_WKC_V1\nwith the wrapped client key (WKc) appended, so the server can recover\nthe per-client key and unwrap it. Without tls-crypt-v2 the probe stays a\nplain P_CONTROL_OOB_V1, unchanged.\n\n  - drop the \"skip probing under tls-crypt-v2\" bail-out\n  - make the WKc available on the probe\u0027s wrap context (mirroring\n    do_init_crypto_tls()), so tls_wrap_control() appends it\n  - choose the opcode (P_CONTROL_OOB_WKC_V1 vs P_CONTROL_OOB_V1) and\n    report \"tls-crypt-v2\" in the wrapping log line\n\nChange-Id: I5cc100dd7dc810d7d1e6f29bb57584905fbcf4a0\nSigned-off-by: Lev Stipakov \u003clev@openvpn.net\u003e\n"},"branch":"refs/heads/master"}},"requirements":[{"status":"NOT_READY","fallback_text":"All required checks must pass","type":"checks_pass"}],"submit_records":[{"rule_name":"gerrit~DefaultSubmitRule","status":"NOT_READY","labels":[{"label":"Code-Review","status":"NEED"}]},{"rule_name":"checks~ChecksSubmitRule","status":"NOT_READY","requirements":[{"status":"NOT_READY","fallback_text":"All required checks must pass","type":"checks_pass"}]}],"submit_requirements":[{"name":"Code-Review","status":"UNSATISFIED","is_legacy":true,"submittability_expression_result":{"expression":"label:Code-Review\u003dMAX -label:Code-Review\u003dMIN","fulfilled":false,"status":"FAIL","passing_atoms":[],"failing_atoms":["label:Code-Review\u003dMAX","-label:Code-Review\u003dMIN"]}},{"name":"checks~ChecksSubmitRule","status":"UNSATISFIED","is_legacy":true,"submittability_expression_result":{"expression":"rule:checks~ChecksSubmitRule","fulfilled":false,"status":"FAIL","passing_atoms":[],"failing_atoms":["checks~ChecksSubmitRule"]}}]}
