)]}'
{"id":"openvpn~31","triplet_id":"openvpn~master~I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0","project":"openvpn","branch":"master","topic":"multipeer","attention_set":{"1000003":{"account":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"last_update":"2026-07-17 14:56:16.000000000","reason":"\u003cGERRIT_ACCOUNT_1000001\u003e replied on the change","reason_account":{"_account_id":1000001,"name":"flichtenheld","display_name":"Frank Lichtenheld","email":"frank@lichtenheld.com","username":"flichtenheld","status":"OpenVPN Inc."}}},"removed_from_attention_set":{"1000001":{"account":{"_account_id":1000001,"name":"flichtenheld","display_name":"Frank Lichtenheld","email":"frank@lichtenheld.com","username":"flichtenheld","status":"OpenVPN Inc."},"last_update":"2026-07-17 14:56:16.000000000","reason":"\u003cGERRIT_ACCOUNT_1000001\u003e replied on the change","reason_account":{"_account_id":1000001,"name":"flichtenheld","display_name":"Frank Lichtenheld","email":"frank@lichtenheld.com","username":"flichtenheld","status":"OpenVPN Inc."}}},"hashtags":[],"change_id":"I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0","subject":"Allow to use OpenSSL\u0027s SIPHASH implementation when available","status":"NEW","created":"2023-02-23 18:07:42.000000000","updated":"2026-07-17 15:16:16.000000000","submit_type":"CHERRY_PICK","submittable":false,"total_comment_count":9,"unresolved_comment_count":4,"has_review_started":true,"meta_rev_id":"8666ffec2f43e6c391ba2b82342e95fa2eb0aef1","_number":31,"virtual_id_number":31,"owner":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"actions":{},"labels":{"Code-Review":{"rejected":{"_account_id":1000001,"name":"flichtenheld","display_name":"Frank Lichtenheld","email":"frank@lichtenheld.com","username":"flichtenheld","status":"OpenVPN Inc."},"all":[{"value":-2,"date":"2026-07-17 14:56:16.000000000","permitted_voting_range":{"min":-2,"max":2},"_account_id":1000001,"name":"flichtenheld","display_name":"Frank Lichtenheld","email":"frank@lichtenheld.com","username":"flichtenheld","status":"OpenVPN Inc."}],"values":{"-2":"This shall not be submitted","-1":"I would prefer this is not submitted as is"," 0":"No score","+1":"Looks good to me, but someone else must approve","+2":"Looks good to me, approved"},"description":"","default_value":0,"blocking":true}},"removable_reviewers":[],"reviewers":{"REVIEWER":[{"_account_id":1000001,"name":"flichtenheld","display_name":"Frank Lichtenheld","email":"frank@lichtenheld.com","username":"flichtenheld","status":"OpenVPN Inc."}],"CC":[{"_account_id":1000026,"name":"openvpn-devel","email":"openvpn-devel@lists.sourceforge.net","username":"openvpn-devel"}]},"pending_reviewers":{},"reviewer_updates":[{"updated":"2024-09-21 14:16:18.000000000","updated_by":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"reviewer":{"_account_id":1000026,"name":"openvpn-devel","email":"openvpn-devel@lists.sourceforge.net","username":"openvpn-devel"},"state":"CC"},{"updated":"2024-09-21 14:16:18.000000000","updated_by":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"reviewer":{"_account_id":1000001,"name":"flichtenheld","display_name":"Frank Lichtenheld","email":"frank@lichtenheld.com","username":"flichtenheld","status":"OpenVPN Inc."},"state":"REVIEWER"}],"messages":[{"id":"ddbe22be8fc3eebec4e4d5175b2a7ab36f08ef80","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2023-02-23 18:07:42.000000000","message":"Uploaded patch set 1.","accounts_in_message":[],"_revision_number":1},{"id":"3f2fe45f1c46779877694c0cbf2bc64554c8f1f6","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2023-02-26 03:12:26.000000000","message":"Uploaded patch set 2.","accounts_in_message":[],"_revision_number":2},{"id":"ab9934aae18a629febcca68fbac3517da4a48b17","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2023-02-27 01:07:37.000000000","message":"Uploaded patch set 3.","accounts_in_message":[],"_revision_number":3},{"id":"f485c0a69e506d994fb899a951d29ace2ec8d5d6","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2023-02-27 01:29:38.000000000","message":"Uploaded patch set 4.","accounts_in_message":[],"_revision_number":4},{"id":"979558d1ebc394847575d87e108287382e8e1b15","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2023-02-27 12:43:08.000000000","message":"Uploaded patch set 5: Patch Set 4 was rebased.","accounts_in_message":[],"_revision_number":5},{"id":"c5d06bb74a741375ad00be483df97a6b1b3a6b82","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2023-03-01 14:02:53.000000000","message":"Uploaded patch set 6.","accounts_in_message":[],"_revision_number":6},{"id":"7bfec496ac3ca39bfe31804f3542808a71d6646b","tag":"autogenerated:gerrit:setTopic","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2023-03-02 12:01:17.000000000","message":"Topic set to bloom","accounts_in_message":[],"_revision_number":6},{"id":"20efb6d2a8fabaf3abb3394b6dbef689ac3e4ccc","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2023-03-06 12:59:20.000000000","message":"Uploaded patch set 7.","accounts_in_message":[],"_revision_number":7},{"id":"641ee2f59d8ae5d196ecf3db4c4266f71610e665","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2023-03-06 13:04:57.000000000","message":"Uploaded patch set 8.","accounts_in_message":[],"_revision_number":8},{"id":"33ad2b112a30fd5a3e39e080cab77fd4db8849ce","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2024-09-21 14:16:16.000000000","message":"Uploaded patch set 9.","accounts_in_message":[],"_revision_number":9},{"id":"8fe79f6f2bc34d1e8f85c5256e31a3b9402e65c4","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2026-03-11 17:48:37.000000000","message":"Uploaded patch set 10.","accounts_in_message":[],"_revision_number":10},{"id":"d06a9ded19a7b278baa89cceac530c3cd1b2ad47","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2026-03-11 18:51:06.000000000","message":"Uploaded patch set 11: Patch Set 10 was rebased.","accounts_in_message":[],"_revision_number":11},{"id":"8ef16c2126e7936ffdc768717ff506976d345c44","author":{"_account_id":1000001,"name":"flichtenheld","display_name":"Frank Lichtenheld","email":"frank@lichtenheld.com","username":"flichtenheld","status":"OpenVPN Inc."},"date":"2026-03-12 11:42:11.000000000","message":"Patch Set 11: Code-Review-1\n\n(2 comments)","accounts_in_message":[],"_revision_number":11},{"id":"bad93794626ab76d69bccbd3e0a2f103b6a342b6","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2026-03-12 13:04:18.000000000","message":"Uploaded patch set 12: Patch Set 11 was rebased.\n\nCopied Votes:\n* Code-Review-1 (copy condition: \"changekind:NO_CHANGE OR **changekind:TRIVIAL_REBASE** OR is:MIN\")\n","accounts_in_message":[],"_revision_number":12},{"id":"4e495251e1f5be18f35b85891390ec4a7555dd3e","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2026-03-19 13:01:11.000000000","message":"Patch Set 12:\n\n(1 comment)","accounts_in_message":[],"_revision_number":12},{"id":"b104396ff77f232ad17d498f910b20735d40c93f","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2026-03-19 13:03:38.000000000","message":"Patch Set 12:\n\n(1 comment)","accounts_in_message":[],"_revision_number":12},{"id":"fcfb75fcfacdd7c62ef3bdb3ca2713c3d4900e38","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2026-03-19 13:05:30.000000000","message":"Patch Set 12:\n\n(1 comment)","accounts_in_message":[],"_revision_number":12},{"id":"eac2ae88c8c03ef2887403811a5bb7f1b2471ad6","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2026-03-19 14:17:13.000000000","message":"Uploaded patch set 13.\n\nOutdated Votes:\n* Code-Review-1 (copy condition: \"changekind:NO_CHANGE OR changekind:TRIVIAL_REBASE OR is:MIN\")\n","accounts_in_message":[],"_revision_number":13},{"id":"d326441bbb0e914ede8a7c01181c49863c380ac9","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2026-06-22 13:23:08.000000000","message":"Uploaded patch set 14.","accounts_in_message":[],"_revision_number":14},{"id":"f343415bd525bbc300ee5fe65d31b35789ef0003","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2026-06-22 15:31:08.000000000","message":"Uploaded patch set 15: Patch Set 14 was rebased.","accounts_in_message":[],"_revision_number":15},{"id":"b7a1f2d3134afb2d8a2de9ca1f4049eb21d94103","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2026-06-25 13:37:02.000000000","message":"Uploaded patch set 16: Patch Set 15 was rebased.","accounts_in_message":[],"_revision_number":16},{"id":"518a861771696c9ab2b304c5f1852edc821424d3","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"date":"2026-07-14 13:01:06.000000000","message":"Uploaded patch set 17.","accounts_in_message":[],"_revision_number":17},{"id":"b63bad86cb5ecec06b08cf9bf25a523350ef7ff0","author":{"_account_id":1000001,"name":"flichtenheld","display_name":"Frank Lichtenheld","email":"frank@lichtenheld.com","username":"flichtenheld","status":"OpenVPN Inc."},"date":"2026-07-17 14:56:16.000000000","message":"Patch Set 17: Code-Review-2\n\n(3 comments)","accounts_in_message":[],"_revision_number":17},{"id":"8666ffec2f43e6c391ba2b82342e95fa2eb0aef1","author":{"_account_id":1000001,"name":"flichtenheld","display_name":"Frank Lichtenheld","email":"frank@lichtenheld.com","username":"flichtenheld","status":"OpenVPN Inc."},"date":"2026-07-17 15:16:16.000000000","message":"Patch Set 17:\n\n(1 comment)","accounts_in_message":[],"_revision_number":17}],"current_revision_number":17,"current_revision":"d25ee55822a9d23aaa20648ed86b0d14607f3e0e","revisions":{"f4197161dede3c2ca4f8c4596848fe5be5c63f8f":{"kind":"REWORK","_number":1,"created":"2023-02-23 18:07:42.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/1","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/1","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/1 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/1 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/1 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/1 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/1","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/1 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"a4c591c3e2f347d5487cf2db428fd3c29264a4ff","subject":"WIP Bloom filter"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 18:07:37.000000000","tz":60},"subject":"Implement using OpenSSL\u0027s SIPHASH implementation","message":"Implement using OpenSSL\u0027s SIPHASH implementation\n\nOpenSSL library is significantly faster than the reference implementation\n(almost 2x). Prefer using this when available. The API for using the SIPHASH\nMAC is different enough from using normal HMAC or Digest that we already\nimplement that combining them into one API does not make sense.\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\n"},"branch":"refs/heads/master"},"8a12db67e6ef3b7a89093975ea07117c771e036e":{"kind":"REWORK","_number":2,"created":"2023-02-26 03:12:26.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/2","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/2","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/2 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/2 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/2 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/2 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/2","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/2 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"af32ad616310c315b13708cf0b90f05ae0251818","subject":"Implement initial packet reflection protection using bloom filter"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-26 03:10:25.000000000","tz":60},"subject":"Prefer OpenSSL\u0027s SIPHASH implementation when available","message":"Prefer OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is significantly faster than the reference implementation\n(almost 2x). Prefer using this when available. The API for using the SIPHASH\nMAC is different enough from using normal HMAC or Digest that we already\nimplement that combining them into one API does not make sense.\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\n"},"branch":"refs/heads/master"},"91ecfc2057d65826125af187ec61d7a2393d6b67":{"kind":"REWORK","_number":3,"created":"2023-02-27 01:07:37.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/3","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/3","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/3 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/3 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/3 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/3 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/3","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/3 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"c3dc7d359342cc7e9f55fcf19e015ab319a83e89","subject":"Implement initial packet reflection protection using bloom filter"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-27 01:03:53.000000000","tz":60},"subject":"Prefer OpenSSL\u0027s SIPHASH implementation when available","message":"Prefer OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is significantly faster than the reference implementation\n(almost 2x). Prefer using this when available. The API for using the SIPHASH\nMAC is different enough from using normal HMAC or Digest that we already\nimplement that combining them into one API does not make sense.\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\n"},"branch":"refs/heads/master"},"0c3a78c2041e618315c1af8444906a363e3e1240":{"kind":"REWORK","_number":4,"created":"2023-02-27 01:29:38.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/4","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/4","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/4 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/4 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/4 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/4 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/4","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/4 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"86d3e2d4007c733375a3cc2f20c43e79f8248070","subject":"Implement initial packet reflection protection using bloom filter"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-27 01:28:53.000000000","tz":60},"subject":"Prefer OpenSSL\u0027s SIPHASH implementation when available","message":"Prefer OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is significantly faster than the reference implementation\n(almost 2x). Prefer using this when available. The API for using the SIPHASH\nMAC is different enough from using normal HMAC or Digest that we already\nimplement that combining them into one API does not make sense.\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\n"},"branch":"refs/heads/master"},"e3c75b752304845cad2a265bc8998390581ed11d":{"kind":"TRIVIAL_REBASE","_number":5,"created":"2023-02-27 12:43:08.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/5","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/5","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/5 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/5 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/5 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/5 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/5","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/5 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"f4abb1fd176048982fbddea8f0987819477b342c","subject":"Implement initial packet reflection protection using bloom filter"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-27 12:41:39.000000000","tz":60},"subject":"Prefer OpenSSL\u0027s SIPHASH implementation when available","message":"Prefer OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is significantly faster than the reference implementation\n(almost 2x). Prefer using this when available. The API for using the SIPHASH\nMAC is different enough from using normal HMAC or Digest that we already\nimplement that combining them into one API does not make sense.\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\n"},"branch":"refs/heads/master"},"b548e164b02ad9c19c0a6f26c9d16e24ec6ce3d3":{"kind":"TRIVIAL_REBASE_WITH_MESSAGE_UPDATE","_number":6,"created":"2023-03-01 14:02:53.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/6","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/6","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/6 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/6 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/6 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/6 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/6","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/6 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"93f1ddc0ce8e0abbb5e7b7f628811578ac2735a4","subject":"Implement initial packet reflection protection using bloom filter"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-03-01 14:02:35.000000000","tz":60},"subject":"Prefer OpenSSL\u0027s SIPHASH implementation when available","message":"Prefer OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is significantly faster than the reference implementation\n(almost 2x). Prefer using this when available. The API for using the SIPHASH\nMAC is different enough from using normal HMAC or Digest that we already\nimplement that combining them into one API does not make sense.\n\nSIPHASH is only available on OpenSSL 3.1 and later. We still check for\nsupport on 3.0 and later as the whole API to allow using the SIPHASH alrady\nexists in OpenSSL 3.0. Some of the later OpenSSL 3.0.x might get support\nfor it. Theoretically, a provider can be loaded in OpenSSL 3.0 that\nimplements SIPHASH.\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\n"},"branch":"refs/heads/master"},"47b70ae9c0394b69297e111d7548dcef896608e8":{"kind":"REWORK","_number":7,"created":"2023-03-06 12:59:20.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/7","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/7","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/7 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/7 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/7 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/7 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/7","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/7 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"3f1dcada5633462e3dcba0460b1cfe80631618b1","subject":"Implement initial packet reflection protection using bloom filter"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-03-06 12:59:06.000000000","tz":60},"subject":"Prefer OpenSSL\u0027s SIPHASH implementation when available","message":"Prefer OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is significantly faster than the reference implementation\n(almost 2x). Prefer using this when available. The API for using the SIPHASH\nMAC is different enough from using normal HMAC or Digest that we already\nimplement that combining them into one API does not make sense.\n\nSIPHASH is only available on OpenSSL 3.1 and later. We still check for\nsupport on 3.0 and later as the whole API to allow using the SIPHASH alrady\nexists in OpenSSL 3.0. Some of the later OpenSSL 3.0.x might get support\nfor it. Theoretically, a provider can be loaded in OpenSSL 3.0 that\nimplements SIPHASH.\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\n"},"branch":"refs/heads/master"},"3dc178ab4df438afc65559d612e82740fbfd40b6":{"kind":"REWORK","_number":8,"created":"2023-03-06 13:04:57.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/8","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/8","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/8 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/8 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/8 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/8 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/8","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/8 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"9ad1a4d4b8c54017f2a5fdb12c5697a85bde5d5b","subject":"Implement initial packet reflection protection using bloom filter"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-03-06 13:04:18.000000000","tz":60},"subject":"Prefer OpenSSL\u0027s SIPHASH implementation when available","message":"Prefer OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is significantly faster than the reference implementation\n(almost 2x). Prefer using this when available. The API for using the SIPHASH\nMAC is different enough from using normal HMAC or Digest that we already\nimplement that combining them into one API does not make sense.\n\nSIPHASH is only available on OpenSSL 3.1 and later. We still check for\nsupport on 3.0 and later as the whole API to allow using the SIPHASH alrady\nexists in OpenSSL 3.0. Some of the later OpenSSL 3.0.x might get support\nfor it. Theoretically, a provider can be loaded in OpenSSL 3.0 that\nimplements SIPHASH.\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\n"},"branch":"refs/heads/master"},"91881eadf25f9f2c76014ceb0bb5d01eb1b5f1d1":{"kind":"REWORK","_number":9,"created":"2024-09-21 14:16:16.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/9","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/9","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/9 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/9 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/9 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/9 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/9","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/9 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"d43f1cc810efceedecd674b1351a189098d2355a","subject":"Implement initial packet reflection protection using bloom filter"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2024-09-21 14:15:59.000000000","tz":120},"subject":"Prefer OpenSSL\u0027s SIPHASH implementation when available","message":"Prefer OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is significantly faster than the reference implementation\n(almost 2x). Prefer using this when available. The API for using the SIPHASH\nMAC is different enough from using normal HMAC or Digest that we already\nimplement that combining them into one API does not make sense.\n\nSIPHASH is only available on OpenSSL 3.1 and later. We still check for\nsupport on 3.0 and later as the whole API to allow using the SIPHASH alrady\nexists in OpenSSL 3.0. Some of the later OpenSSL 3.0.x might get support\nfor it. Theoretically, a provider can be loaded in OpenSSL 3.0 that\nimplements SIPHASH.\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\nSigned-off-by: Arne Schwabe \u003carne@rfc2549.org\u003e\n"},"branch":"refs/heads/master"},"c5dd5ef79e7a82e93c29dfe8b76db52cb809f8d3":{"kind":"REWORK","_number":10,"created":"2026-03-11 17:48:37.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/10","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/10","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/10 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/10 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/10 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/10 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/10","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/10 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"abdf2754deb9904c6344bfbfe5e1a8897d08ae15","subject":"Add siphash reference implementation"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2026-03-11 17:27:42.000000000","tz":60},"subject":"Allow to use OpenSSL\u0027s SIPHASH implementation when available","message":"Allow to use OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is currently slower than the reference implementation\n(about 1.5x to 2x depending of the compiler).\n\nThe OpenSSL API for using the SIPHASH MAC is different enough from using\nnormal HMAC or Digest that we already implement that combining them into\none API does not make sense.\n\nSIPHASH is only available on OpenSSL 3.1 and later. We still check for\nsupport on 3.0 and later as the whole API to allow using the SIPHASH alrady\nexists in OpenSSL 3.0. Some of the later OpenSSL 3.0.x might get support\nfor it. Theoretically, a provider can be loaded in OpenSSL 3.0 that\nimplements SIPHASH.\n\nWith OpenSSL\u0027s implementation being slower, we currently only use it to\ncheck that our reference implementation and the OpenSSL implementation\nyield the same result in unit tests\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\nSigned-off-by: Arne Schwabe \u003carne@rfc2549.org\u003e\n"},"branch":"refs/heads/master"},"dfc6c8afd68d67084577f676fb091542356eba55":{"kind":"TRIVIAL_REBASE","_number":11,"created":"2026-03-11 18:51:06.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/11","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/11","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/11 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/11 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/11 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/11 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/11","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/11 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"c8f3b1a0b5918a1cf08c76b2e50f854cbd35282e","subject":"Add siphash reference implementation"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2026-03-11 18:49:56.000000000","tz":60},"subject":"Allow to use OpenSSL\u0027s SIPHASH implementation when available","message":"Allow to use OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is currently slower than the reference implementation\n(about 1.5x to 2x depending of the compiler).\n\nThe OpenSSL API for using the SIPHASH MAC is different enough from using\nnormal HMAC or Digest that we already implement that combining them into\none API does not make sense.\n\nSIPHASH is only available on OpenSSL 3.1 and later. We still check for\nsupport on 3.0 and later as the whole API to allow using the SIPHASH alrady\nexists in OpenSSL 3.0. Some of the later OpenSSL 3.0.x might get support\nfor it. Theoretically, a provider can be loaded in OpenSSL 3.0 that\nimplements SIPHASH.\n\nWith OpenSSL\u0027s implementation being slower, we currently only use it to\ncheck that our reference implementation and the OpenSSL implementation\nyield the same result in unit tests\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\nSigned-off-by: Arne Schwabe \u003carne@rfc2549.org\u003e\n"},"branch":"refs/heads/master"},"90fe87b1abe743a216189a5f1bf40a8784cc9eb3":{"kind":"TRIVIAL_REBASE","_number":12,"created":"2026-03-12 13:04:18.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/12","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/12","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/12 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/12 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/12 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/12 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/12","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/12 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"9406780a9a222e9989943d7e87c211a57d18f050","subject":"Add siphash reference implementation"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2026-03-12 13:04:00.000000000","tz":60},"subject":"Allow to use OpenSSL\u0027s SIPHASH implementation when available","message":"Allow to use OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is currently slower than the reference implementation\n(about 1.5x to 2x depending of the compiler).\n\nThe OpenSSL API for using the SIPHASH MAC is different enough from using\nnormal HMAC or Digest that we already implement that combining them into\none API does not make sense.\n\nSIPHASH is only available on OpenSSL 3.1 and later. We still check for\nsupport on 3.0 and later as the whole API to allow using the SIPHASH alrady\nexists in OpenSSL 3.0. Some of the later OpenSSL 3.0.x might get support\nfor it. Theoretically, a provider can be loaded in OpenSSL 3.0 that\nimplements SIPHASH.\n\nWith OpenSSL\u0027s implementation being slower, we currently only use it to\ncheck that our reference implementation and the OpenSSL implementation\nyield the same result in unit tests\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\nSigned-off-by: Arne Schwabe \u003carne@rfc2549.org\u003e\n"},"branch":"refs/heads/master"},"accc72676cab201166360b56d341eafa7bd81f20":{"kind":"REWORK","_number":13,"created":"2026-03-19 14:17:13.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/13","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/13","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/13 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/13 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/13 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/13 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/13","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/13 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"985a1b422ec1a921472265a21b7c9cb499d5d91d","subject":"Change hash iv to a dynamically allocated ctx"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2026-03-19 14:15:48.000000000","tz":60},"subject":"Allow to use OpenSSL\u0027s SIPHASH implementation when available","message":"Allow to use OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is currently slower than the reference implementation\n(about 1.5x to 2x depending of the compiler).\n\nThe OpenSSL API for using the SIPHASH MAC is different enough from using\nnormal HMAC or Digest that we already implement that combining them into\none API does not make sense.\n\nSIPHASH is only available on OpenSSL 3.1 and later. We still check for\nsupport on 3.0 and later as the whole API to allow using the SIPHASH alrady\nexists in OpenSSL 3.0. Some of the later OpenSSL 3.0.x might get support\nfor it. Theoretically, a provider can be loaded in OpenSSL 3.0 that\nimplements SIPHASH.\n\nWith OpenSSL\u0027s implementation being slower, we currently only use it to\ncheck that our reference implementation and the OpenSSL implementation\nyield the same result in unit tests\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\nSigned-off-by: Arne Schwabe \u003carne@rfc2549.org\u003e\n"},"branch":"refs/heads/master"},"e89e56e52799706561d27c108ddb0a2630562b7d":{"kind":"REWORK","_number":14,"created":"2026-06-22 13:23:08.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/14","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/14","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/14 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/14 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/14 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/14 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/14","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/14 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"cec5d730f75582881ab94c57a3df6c32f26232fa","subject":"Change hash iv to a dynamically allocated ctx"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2026-06-22 13:14:54.000000000","tz":120},"subject":"Allow to use OpenSSL\u0027s SIPHASH implementation when available","message":"Allow to use OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is currently slower than the reference implementation\n(about 1.5x to 2x depending of the compiler).\n\nThe OpenSSL API for using the SIPHASH MAC is different enough from using\nnormal HMAC or Digest that we already implement that combining them into\none API does not make sense.\n\nSIPHASH is only available on OpenSSL 3.1 and later. We still check for\nsupport on 3.0 and later as the whole API to allow using the SIPHASH alrady\nexists in OpenSSL 3.0. Some of the later OpenSSL 3.0.x might get support\nfor it. Theoretically, a provider can be loaded in OpenSSL 3.0 that\nimplements SIPHASH.\n\nWith OpenSSL\u0027s implementation being slower, we currently only use it to\ncheck that our reference implementation and the OpenSSL implementation\nyield the same result in unit tests\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\nSigned-off-by: Arne Schwabe \u003carne@rfc2549.org\u003e\n"},"branch":"refs/heads/master"},"825c12f93a721514319c1f1d75d167abc44719a4":{"kind":"TRIVIAL_REBASE","_number":15,"created":"2026-06-22 15:31:08.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/15","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/15","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/15 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/15 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/15 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/15 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/15","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/15 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"2d8cf123844fdee5854b3d0fe82abd0747dc3662","subject":"Change hash iv to a dynamically allocated ctx"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2026-06-22 15:30:51.000000000","tz":120},"subject":"Allow to use OpenSSL\u0027s SIPHASH implementation when available","message":"Allow to use OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is currently slower than the reference implementation\n(about 1.5x to 2x depending of the compiler).\n\nThe OpenSSL API for using the SIPHASH MAC is different enough from using\nnormal HMAC or Digest that we already implement that combining them into\none API does not make sense.\n\nSIPHASH is only available on OpenSSL 3.1 and later. We still check for\nsupport on 3.0 and later as the whole API to allow using the SIPHASH alrady\nexists in OpenSSL 3.0. Some of the later OpenSSL 3.0.x might get support\nfor it. Theoretically, a provider can be loaded in OpenSSL 3.0 that\nimplements SIPHASH.\n\nWith OpenSSL\u0027s implementation being slower, we currently only use it to\ncheck that our reference implementation and the OpenSSL implementation\nyield the same result in unit tests\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\nSigned-off-by: Arne Schwabe \u003carne@rfc2549.org\u003e\n"},"branch":"refs/heads/master"},"ee9c28f9f59589516c8285470f2a284ba93df3a2":{"kind":"TRIVIAL_REBASE","_number":16,"created":"2026-06-25 13:37:02.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/16","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/16","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/16 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/16 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/16 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/16 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/16","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/16 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"3d5e28f0683c691004b7b18966fc4a8caf35d50b","subject":"Change hash iv to a dynamically allocated ctx"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2026-06-25 12:35:45.000000000","tz":120},"subject":"Allow to use OpenSSL\u0027s SIPHASH implementation when available","message":"Allow to use OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is currently slower than the reference implementation\n(about 1.5x to 2x depending of the compiler).\n\nThe OpenSSL API for using the SIPHASH MAC is different enough from using\nnormal HMAC or Digest that we already implement that combining them into\none API does not make sense.\n\nSIPHASH is only available on OpenSSL 3.1 and later. We still check for\nsupport on 3.0 and later as the whole API to allow using the SIPHASH alrady\nexists in OpenSSL 3.0. Some of the later OpenSSL 3.0.x might get support\nfor it. Theoretically, a provider can be loaded in OpenSSL 3.0 that\nimplements SIPHASH.\n\nWith OpenSSL\u0027s implementation being slower, we currently only use it to\ncheck that our reference implementation and the OpenSSL implementation\nyield the same result in unit tests\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\nSigned-off-by: Arne Schwabe \u003carne@rfc2549.org\u003e\n"},"branch":"refs/heads/master"},"d25ee55822a9d23aaa20648ed86b0d14607f3e0e":{"kind":"REWORK","_number":17,"created":"2026-07-14 13:01:06.000000000","uploader":{"_account_id":1000003,"name":"plaisthos","display_name":"Arne Schwabe","email":"arne-openvpn@rfc2549.org","username":"plaisthos"},"ref":"refs/changes/31/31/17","fetch":{"anonymous http":{"url":"http://gerrit.openvpn.net/openvpn","ref":"refs/changes/31/31/17","commands":{"Branch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/17 \u0026\u0026 git checkout -b change-31 FETCH_HEAD","Checkout":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/17 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/17 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/17 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull http://gerrit.openvpn.net/openvpn refs/changes/31/31/17","Reset To":"git fetch http://gerrit.openvpn.net/openvpn refs/changes/31/31/17 \u0026\u0026 git reset --hard FETCH_HEAD"}}},"commit":{"parents":[{"commit":"6e4746b5ad1e73d7bf95b650d780b7a07e7a7506","subject":"Change hash iv to a dynamically allocated ctx"}],"author":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2023-02-23 17:05:24.000000000","tz":60},"committer":{"name":"Arne Schwabe","email":"arne@rfc2549.org","date":"2026-07-14 11:16:51.000000000","tz":120},"subject":"Allow to use OpenSSL\u0027s SIPHASH implementation when available","message":"Allow to use OpenSSL\u0027s SIPHASH implementation when available\n\nOpenSSL library is currently slower than the reference implementation\n(about 1.5x to 2x depending of the compiler).\n\nThe OpenSSL API for using the SIPHASH MAC is different enough from using\nnormal HMAC or Digest that we already implement that combining them into\none API does not make sense.\n\nSIPHASH is only available on OpenSSL 3.1 and later. We still check for\nsupport on 3.0 and later as the whole API to allow using the SIPHASH alrady\nexists in OpenSSL 3.0. Some of the later OpenSSL 3.0.x might get support\nfor it. Theoretically, a provider can be loaded in OpenSSL 3.0 that\nimplements SIPHASH.\n\nWith OpenSSL\u0027s implementation being slower, we currently only use it to\ncheck that our reference implementation and the OpenSSL implementation\nyield the same result in unit tests\n\nChange-Id: I09aa27caa1a3aab0d1be6118b26d54a1c1bf7aa0\nSigned-off-by: Arne Schwabe \u003carne@rfc2549.org\u003e\n"},"branch":"refs/heads/master"}},"requirements":[{"status":"NOT_READY","fallback_text":"All required checks must pass","type":"checks_pass"}],"submit_records":[{"rule_name":"gerrit~DefaultSubmitRule","status":"NOT_READY","labels":[{"label":"Code-Review","status":"REJECT","applied_by":{"_account_id":1000001,"name":"flichtenheld","display_name":"Frank Lichtenheld","email":"frank@lichtenheld.com","username":"flichtenheld","status":"OpenVPN Inc."}}]},{"rule_name":"checks~ChecksSubmitRule","status":"NOT_READY","requirements":[{"status":"NOT_READY","fallback_text":"All required checks must pass","type":"checks_pass"}]}],"submit_requirements":[{"name":"Code-Review","status":"UNSATISFIED","is_legacy":true,"submittability_expression_result":{"expression":"label:Code-Review\u003dMAX -label:Code-Review\u003dMIN","fulfilled":false,"status":"FAIL","passing_atoms":[],"failing_atoms":["label:Code-Review\u003dMAX","-label:Code-Review\u003dMIN"]}},{"name":"checks~ChecksSubmitRule","status":"UNSATISFIED","is_legacy":true,"submittability_expression_result":{"expression":"rule:checks~ChecksSubmitRule","fulfilled":false,"status":"FAIL","passing_atoms":[],"failing_atoms":["checks~ChecksSubmitRule"]}}]}
