[bug] allow tls 1.0 as a workaround for buster/sid

in systems with newer openssl, tls 1.0 has been disabled.
however, this breaks the ability of a client in a newer system to
connect with the openvpn servers on providers that are still on stretch.

platform needs to be upgraded.

Related: bitmask-vpn#105
parent e86f028c
......@@ -123,6 +123,7 @@ FIXED_FLAGS = [
"--user", "nobody",
"--tls-version-min", "1.0",
if OPENVPN_GROUP is not None:
