Hello, That's a patch which adds support for SPNEGO authentication (i.e., GSSAPI - kerberos) to openconnect. Currently it interoperates with ocserv's gssapi branch. I'm not sure whether re-using the proxy auth structures is the right thing (i.e., whether it wouldn't interfere with it). regards, Nikos -------------- next part -------------- A non-text attachment was scrubbed... Name: 0001-Added-support-for-SPNEGO-in-the-CSTP-channel.patch Type: text/x-diff Size: 9270 bytes Desc: not available URL: <http://lists.infradead.org/pipermail/openconnect-devel/attachments/20150217/12811810/attachment-0001.bin>