From 1787d6dcbb0cc54e78043e6093ac45b09f0986a7 Mon Sep 17 00:00:00 2001 From: Arne Schwabe Date: Sun, 13 May 2012 02:03:20 +0200 Subject: Version 0.5.3 Fix a few new bugs before pushing to the market :) --- res/values/strings.xml | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) (limited to 'res/values') diff --git a/res/values/strings.xml b/res/values/strings.xml index e2121d4b..41f229de 100644 --- a/res/values/strings.xml +++ b/res/values/strings.xml @@ -210,5 +210,7 @@ Do not bind to local address and port No local binding Please not that the config importer is an experimental feature. - Import configuration file + Import configuration file + Security considerations + "As openvpn is security sensitive a few notes about security are sensible. All data on the sdcard is inherently unsecure. Every app can read it (for example this program requires no special sd card rights). The data of this application can only be read by the application itself. By using the import option for cacert/cert/key in the file dialog the data is stored in the vpn profile. The vpn profiles are only accessable by this application. (Do not forget to delte the copies on the sdcard afterwards). Even though accessible only by this application the data is stil unecrypted. By rooting the telephone or other exploits it may be possible to retrieve the data. Saved passwords are stored in plain text as well. For pkcs12 files it is highly recommended that you import them into the android keystore." -- cgit v1.2.3