The following issue was filed against the upstream versions of kde-plasma-networkmanagement [1] and kde-plasma-nm [2], a plasma applet to control wired and wireless network(s) in KDE 4 using the default NetworkManager service: """ KDE's network manager plasmoid does not tell OpenVPN to perform server certificate verification. Consequently, anyone with the preshared key is able to perform a MITM attack by impersonating the server. OpenVPN warns about this at start: Nov 17 22:40:56 t520 nm-openvpn[29005]: WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. """ Upstream patches are available at: plasma-nm - http://commits.kde.org/plasma-nm/863851110191d0480375d6c86ba8082dae9ac950 kde-plasma-networkmanagement - http://commits.kde.org/networkmanagement/918786c28f7657ad8deff084ae44a257a7d471f6 [1] https://bugs.kde.org/show_bug.cgi?id=341387 [2] https://bugs.kde.org/show_bug.cgi?id=341069
Created kde-plasma-nm tracking bugs for this issue: Affects: fedora-all [bug 1169888]
Created kde-plasma-networkmanagement tracking bugs for this issue: Affects: fedora-19 [bug 1169887]
References: http://commits.kde.org/plasma-nm/863851110191d0480375d6c86ba8082dae9ac950 http://commits.kde.org/networkmanagement/918786c28f7657ad8deff084ae44a257a7d471f6 https://bugs.kde.org/show_bug.cgi?id=341387 https://bugs.kde.org/show_bug.cgi?id=341069
kde-plasma-nm-0.9.3.5-2.fc20 has been pushed to the Fedora 20 stable repository. If problems still persist, please make note of it in this bug report.
kde-plasma-networkmanagement-0.9.0.11-2.fc19 has been pushed to the Fedora 19 stable repository. If problems still persist, please make note of it in this bug report.
kde-plasma-nm-0.9.3.5-2.fc21 has been pushed to the Fedora 21 stable repository. If problems still persist, please make note of it in this bug report.