)]}'
{"/PATCHSET_LEVEL":[{"author":{"_account_id":1000053,"name":"razvanc","display_name":"Razvan Cojocaru","email":"razvanc@mailbox.org","username":"razvanc"},"change_message_id":"80f6c43c1bf719283d7f1a13619dd07e82977246","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":1,"id":"c21e6d75_3d8a2161","updated":"2026-08-13 18:27:54.000000000","message":"I suggest the following further edits to the .md file:\n\n\n```diff\ndiff --git a/Changes.md b/Changes.md\n--- a/Changes.md\n+++ b/Changes.md\n@@ -165,6 +165,8 @@\n\n **PQE support for WolfSSL**\n\n+**New environment variables for gateway redirection**\n+\n Two new environment variables have been introduced to communicate desired\n default gateway redirection to plugins like Network Manager,\n `route_redirect_gateway_ipv4` and `route_redirect_gateway_ipv6`. See the\n@@ -256,13 +258,19 @@\n this feature. This feature provided very limited statistics (number of users,\n link bytes read/written) and we do not except any usage because of this.\n\n+**Warning when using `--push` without `--mode server`**\n+\n Using `--push` in a mode that is not `--mode server` will now print a\n clear warning that this is an unsupported operation and might cause negotiation\n failures.\n\n+**Warning for `--reneg-bytes` and `--reneg-packets` in DCO mode**\n+\n `--reneg-bytes` and `--reneg-packets` do not work in DCO mode, and will\n now print an appropriate warning.\n\n+**On-connect resolving of `--remote` in `--tcp-server` mode removed**\n+\n On-connect resolving of `--remote` addresses in `--tcp-server` mode\n was not working since 2.4, so the code was completely removed.\n\n@@ -380,6 +388,8 @@\n just allows OpenVPN to be run on a system that be configured OpenSSL in FIPS\n mode.\n\n+**`mlock` now checks available memlock-able memory**\n+\n `mlock` will now check if enough memlock-able memory has been reserved,\n and if less than 100MB RAM are available, use setrlimit() to upgrade the limit.\n See Trac #1390. Not available on OpenSolaris.\n@@ -872,6 +882,8 @@\n to avoid client connections to IPv6-enabled servers leaking \"around\" the\n IPv4-only VPN.\n\n+**`--ifconfig-ipv6` and `--ifconfig-ipv6-push` accept hostnames**\n+\n `--ifconfig-ipv6` and `--ifconfig-ipv6-push` will now accept hostnames and do\n a DNS lookup to get the IPv6 address to use.\n\n@@ -1117,7 +1129,7 @@\n\n **keying-material-exporter**\n\n-Keying Material Exporter \\[RFC-5705\\] allow additional keying material to be\n+Keying Material Exporter [RFC-5705] allow additional keying material to be\n derived from existing TLS channel.\n\n **Android platform support**\n```","commit_id":"ad864a699245649191d347c152193c8e7f59d8b8"}]}
