[Bug 194690] New: options IPSEC disables TCP keepalives

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Wed Oct 29 16:34:06 UTC 2014


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=194690

            Bug ID: 194690
           Summary: options IPSEC disables TCP keepalives
           Product: Base System
           Version: 10.1-RC1
          Hardware: Any
                OS: Any
            Status: Needs Triage
          Severity: Affects Some People
          Priority: ---
         Component: kern
          Assignee: freebsd-bugs at FreeBSD.org
          Reporter: mail at ross.cx

Compiling IPSEC into the kernel disables TCP keepalives even on connections not
using IPSEC.

I stumbled over this because I had lots of stale sshd processes and sockets
from days-long physically disconnected clients lingering, the connection never
times out.
If I remove IPSEC from the kernel, these processes and sockets disappear after
a while.

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-bugs mailing list