notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photos
All times are UTC
Ukraine
The recently imposed "must be logged in" restriction is a response to increased bot traffic on the site. This affects search, commits, and vuxml pages.
Search engines are not blocked. Try using "site:www.freshports.org" and your search terms.
After the ports freeze to fix some stuff, the freeze is over. I have some work to do before FreshPorts can start processing commits again before it can start processing again. I've created an issue for that.
Port details on branch 2026Q2
openvpn-devel Secure IP/Ethernet tunnel daemon
g20270422,1 security on this many watch lists=0 search for ports that depend on this port This port version is marked as vulnerable. Find issues related to this port Report an issue related to this port View this port on Repology. pkg-fallout g20260721,2Version of this port present on the latest quarterly branch.
Maintainer: gert@greenie.muc.de search for ports maintained by this maintainer
Port Added: 2026-07-02 02:15:09
Last Update: 2026-07-02 02:13:22
Commit Hash: ced5ef8
Also Listed In: net net-vpn
License: GPLv2
WWW:
https://openvpn.net/community/
Description:
OpenVPN is a robust, scalable and highly configurable VPN (Virtual Private Network) daemon which can be used to securely link two or more private networks using an encrypted tunnel over the internet. It can operate over UDP or TCP, can use SSL or a pre-shared secret to authenticate peers, and in SSL mode, one server can handle many clients. This development port is updated frequently and is much less well tested than the formal releases, and functionality and APIs may change without warning. DO NOT USE IN PRODUCTION WITHOUT PRIOR TESTING FOR YOUR USE CASE.
Homepage    cgit ¦ Codeberg ¦ GitHub ¦ GitLab ¦ SVNWeb - no subversion history for this port

Manual pages:
pkg-plist: as obtained via: make generate-plist
Expand this list (15 items)
Collapse this list.
  1. /usr/local/share/licenses/openvpn-devel-g20270422,1/catalog.mk
  2. /usr/local/share/licenses/openvpn-devel-g20270422,1/LICENSE
  3. /usr/local/share/licenses/openvpn-devel-g20270422,1/GPLv2
  4. include/openvpn-msg.h
  5. include/openvpn-plugin.h
  6. lib/openvpn/plugins/openvpn-plugin-auth-pam.so
  7. lib/openvpn/plugins/openvpn-plugin-down-root.so
  8. share/man/man5/openvpn-examples.5.gz
  9. share/man/man8/openvpn.8.gz
  10. sbin/openvpn
  11. sbin/openvpn-client
  12. libexec/openvpn/dns-updown
  13. @owner
  14. @group
  15. @mode
Collapse this list.
USE_RC_SUBR (Service Scripts)
  • openvpn
Dependency lines:
  • openvpn-devel>0:security/openvpn-devel
Conflicts:
CONFLICTS_INSTALL:
  • openvpn-2.*
To install the port:
cd /usr/ports/security/openvpn-devel/ && make install clean
To add the package, run one of these commands:
  • pkg install security/openvpn-devel
  • pkg install openvpn-devel
NOTE: If this package has multiple flavors (see below), then use one of them instead of the name specified above.
PKGNAME: openvpn-devel
Flavors: there is no flavor information for this port.
distinfo:
TIMESTAMP = 1776872343 SHA256 (openvpn-openvpn-64fae9d82989ede6c92e230c594ab9335c05df8d_GL0.tar.gz) = 799aea2ab9d4d42784402e4438a465f86e94f61884b0b54e81ede3e89c2ca08b SIZE (openvpn-openvpn-64fae9d82989ede6c92e230c594ab9335c05df8d_GL0.tar.gz) = 1343378

Packages (timestamps in pop-ups are UTC):
openvpn-devel
ABIaarch64amd64armv6armv7i386powerpcpowerpc64powerpc64le
FreeBSD:13:latestg20270220,1g20270220,1202049g20250905,1g20270220,1n/an/an/a
FreeBSD:13:quarterlyg20260128,1g20260128,1g20230331,1g20250629,1g20260128,1n/an/an/a
FreeBSD:14:latestg20260721,2g20260721,2g20221228,1g20250801,1g20260721,2g20230331,1-g20230331,1
FreeBSD:14:quarterlyg20260721,2g20260721,2-g20250629,1g20260721,2g20231109,1g20231109,1g20231109,1
FreeBSD:15:latestg20260721,2g20260721,2n/a-n/an/ag20231109_1,1g20240211_1,1
FreeBSD:15:quarterlyg20260721,2g20260721,2n/a-n/an/a--
FreeBSD:16:latestg20260721,2g20260721,2n/a-n/an/a--
Dependencies
NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
Build dependencies:
  1. cmocka>=0 : sysutils/cmocka
  2. rst2man : textproc/py-docutils@py311
  3. pkgconf>=1.3.0_1 : devel/pkgconf
  4. python3.11 : lang/python311
  5. autoconf>=2.73 : devel/autoconf
  6. automake>=1.18.1 : devel/automake
  7. libtoolize : devel/libtool
Runtime dependencies:
  1. easy-rsa>=0 : security/easy-rsa
Library dependencies:
  1. liblzo2.so : archivers/lzo2
  2. liblz4.so : archivers/liblz4
There are no ports dependent upon this port

Configuration Options:
===> The following configuration options are available for openvpn-devel-g20270422,1: ASYNC_PUSH=off: Enable async-push support DCO=on: Build with Data Channel Offload (ovpn(4)) support DOCS=on: Build and/or install documentation EASYRSA=on: Install security/easy-rsa RSA helper package EXAMPLES=on: Build and/or install examples LZ4=on: LZ4 compression support PKCS11=off: Use security/pkcs11-helper SMALL=off: Build a smaller executable with fewer features TEST=on: Build and/or run tests UNITTESTS=off: Enable unit tests ====> SSL protocol support: you have to select exactly one of them MBEDTLS=off: SSL/TLS support via mbed TLS OPENSSL=on: SSL/TLS support via OpenSSL ===> Use 'make config' to modify these settings
Options name:
security_openvpn-devel
USES:
autoreconf cpe libtool pkgconfig python:build shebangfix tar:xz ssl
FreshPorts was unable to extract/find any pkg message
Master Sites:
Expand this list (1 items)
Collapse this list.
  1. https://gitlab.com/openvpn/openvpn/-/archive/64fae9d82989ede6c92e230c594ab9335c05df8d.tar.gz?dummy=/
Collapse this list.

Number of commits found: 2

Commit History - (may be incomplete: for full details, see links to repositories near top of page)
CommitCreditsLog message
g20270422,1
02 Jul 2026 02:13:22
commit hash: ced5ef87cb313e3af44d0a15e5ecd9613d868ed4commit hash: ced5ef87cb313e3af44d0a15e5ecd9613d868ed4commit hash: ced5ef87cb313e3af44d0a15e5ecd9613d868ed4commit hash: ced5ef87cb313e3af44d0a15e5ecd9613d868ed4 files touched by this commit This port version is marked as vulnerable.
Vladimir Druzenko (vvd) search for other commits by this committer
Author: Gert Doering
security/openvpn-devel: upgrade to commit 64fae9d829

this brings in the upstream development work that has happened over
the last two months, plus two CVE fixes:

  - fix race condition in TLS handshake that could lead to leaking of
    packet data from a previous handshake under specific circumstances
    (CVE-2026-40215)

    (Bug found by XlabAI Team of Tencent Xuanwu Lab (xlabai@tencent.com))

  - fix server ASSERT() on receiving a suitably malformed packet with
    a valid tls-crypt-v2 key (CVE-2026-35058)

    (Bug found by XlabAI Team of Tencent Xuanwu Lab (xlabai@tencent.com)
(Only the first 15 lines of the commit message are shown above View all of this commit message)
g20270220,1
02 Jul 2026 02:13:15
commit hash: 757a85aedec4197fef012d7589d910b6b36d457acommit hash: 757a85aedec4197fef012d7589d910b6b36d457acommit hash: 757a85aedec4197fef012d7589d910b6b36d457acommit hash: 757a85aedec4197fef012d7589d910b6b36d457a files touched by this commit This port version is marked as vulnerable.
Vladimir Druzenko (vvd) search for other commits by this committer
Author: Gert Doering
security/openvpn-devel: Update 2.7_rc6 -> post-2.7 commit 38243844

OpenVPN 2.7.0 has been released and will show up as "security/openvpn"
soon.

This port skips 2.7.0 release and continues to track development versions,
which will focus on code cleanup / refactoring for the next few months.

Use this opportunity to bring option and dependency handling more in
line with main port

 - X509ALTUSERNAME is gone (always-on now in upstream source)
 - ASYNC_PUSH added, with freebsd-version dependent handling of
   libinotify dependency (see PR 293176)
 - UNITTEST added, with libcmocka dependency if unit tests are desired

(cherry picked from commit da00fa0ed292ff71ea1eeaa6902f70d53de9d512)

Number of commits found: 2