IPSec connection troubles

Bjoern A. Zeeb bzeeb-lists at lists.zabbadoz.net
Tue Feb 23 14:35:08 UTC 2010


On Tue, 23 Feb 2010, VANHULLEBUS Yvan wrote:

Hi,

> On Tue, Feb 23, 2010 at 03:49:42PM +0300, Denis Antrushin wrote:
>> On 02/23/10 15:21, VANHULLEBUS Yvan wrote:
> [....]
>> Taking into account this quote:
>>
>> On 02/11/10 15:55, Bjoern A. Zeeb wrote:
>>> Him saying it works on linux - has ipsec-tools grown proper OA support
>>> these days? If that would be the case the kernel would probably a
>>> minor task.
>>
>> this means that I have to come up with patches for both FreeBSD kernel
>> and racoon at the same time. :-)
>> May I contact you off-list with patches for both, when ready?
>> As far as I understand, you are the one who can review both.
>
> Yes, but please keep Bjoern in CC of the mail, he'll probably also
> review at lest the kernel part.

Yeah, I should probably mention that if someone starts to generate
patches, (s)he should make sure that the double-NAT scenario as
described in the RFC will work as well from the beginning; else this
will be kind of wasted efforts as someone would have to re-do the
entire thing again.

/bz

-- 
Bjoern A. Zeeb         It will not break if you know what you are doing.


More information about the freebsd-net mailing list