NAT-T on current 8

VANHULLEBUS Yvan vanhu at FreeBSD.org
Thu Jun 4 09:29:09 UTC 2009


On Thu, Jun 04, 2009 at 10:44:00AM +0200, Giulio Ferro wrote:
[....]
> Sorry for late feedback, very little time on my hands...

Hi.


> I've tried to interoperate with an old version of ipsec-tools (0.6.7)
> and it takes a long time to start working, but it does in the end.
> I didn't have much time to try anything more in-depth, but I'll keep
> you posted.

Do you mean "with an ipsec-tools 0.6.7 as the peer" ?
It should work, as changes are only in the kernel/userland interface,
and as (AFAIR) no changes have been done in the way NAT-T is
negociated with the peer between ipsec-tools 0.6 and 0.7.

Could you please give us more informations about that ?
And what do you mean by "it takes some time to start working" ???


Thanks,

Yvan.


More information about the freebsd-net mailing list