IPSEC, IPv6, RELENG_5_2
Arne Schwabe
arne at rfc2549.org
Fri Apr 30 03:17:26 PDT 2004
Eivind Olsen <eivind at aminor.no> writes:
> Hello.
> Does anyone know of a way to make hardware accelerated (Soekris
> vpn1401 card) VPN work on a RELENG_5_2 box (or CURRENT, if need be..)
> and at the same time support IPv6?
>
> I believe I need FAST_IPSEC to get hardware accelerated VPN/IPSEC, and
> it doesn't look like I can compile in both FAST_IPSEC and INET6 at the
> same time in the kernel.
> I have read that FAST_IPSEC doesn't do IPSEC for IPv6 and that's OK
> with me, but I'd still like to be able to use IPv6 for some
> connections and IPSEC for a VPN-connection (running over IPv4).
>
> Anyone who knows if this is somehow possible?
I had no problem compiling both FAST_IPSEC and IPv6 into a current
kernel. If you want I can you my config. But be warned it is a
stripped down config for a soekris router (no ps/2, no vga support,
etc)
yavin:options INET6 # IPv6 communications protocols
yavin:options FAST_IPSEC
arne at yavin:~% uname -a
FreeBSD yavin.rfc1149.org 5.2-CURRENT FreeBSD 5.2-CURRENT #0: Thu Apr 22 20:41:02 CEST 2004 arne at kamino.rfc1149.org:/usr/src/sys/i386/compile/yavin i386
--
Ah, the beauty of OSS. Hundreds of volunteers worldwide volunteering
their time inventing and implementing new exciting ways of old fashioned wheels.
More information about the freebsd-current
mailing list