natt (again) in 7.2 stable and a forticlient

VANHULLEBUS Yvan vanhu at FreeBSD.org
Sat Jul 25 13:30:56 UTC 2009


On Fri, Jul 24, 2009 at 06:10:42PM +0200, Ingo Flaschberger wrote:
> Hi,
>
>> attached a patch for ports-security-ipsec-tools Makefile
>> to disable to offer NATT-IKE-ENCAP.
>
> aii.. bug in the batch, sorry.
>
> attached new patch.

Drafts 05+ should NOT be used, as they use IANA numbers which have
been assigned to other RFCs.

The cleaner change will probably be to enable only RFC support by
default directly in ipsec-tools (for 0.8.0 release), and perhaps to
add some optiond to enable a specific list of drafts to support in
FreeBSD's patch.



Yvan.


More information about the freebsd-net mailing list