kern/137036: fastforwarding breaks ipsec

Florian Smeets flo at kasimir.com
Fri Jul 24 08:20:05 UTC 2009


The following reply was made to PR kern/137036; it has been noted by GNATS.

From: Florian Smeets <flo at kasimir.com>
To: bug-followup at FreeBSD.org, if at xip.at
Cc:  
Subject: Re: kern/137036: fastforwarding breaks ipsec
Date: Fri, 24 Jul 2009 10:13:25 +0200

 This is know and documented in inet(4):
 
 
                             All features of the normal (slow) IP forwarding
                             path are supported including firewall (through
                             pfil(9) hooks) checking, except ipsec(4) tunnel
                             brokering.  The IP fastforwarding path does not
                             generate ICMP redirect or source quench 
 messages.


More information about the freebsd-bugs mailing list