IPsec filtertunnel broken on FreeBSD 10

Andrey V. Elsukov bu7cher at yandex.ru
Fri Feb 7 11:31:47 UTC 2014


On 07.02.2014 02:21, Nicolas DEFFAYET wrote:
> Hello,
> 
> The IPsec filtertunnel is broken on FreeBSD 10: incoming packets
> decapsulated are not going to firewall and to the pseudo interface enc.
> 
> This issue affect 10.0-RELEASE and 10.0-STABLE.
> 9.1-RELEASE and 9.2-RELEASE are not affected.
> 
> Of course the systctl show that filtertunnel is enabled:
> net.inet.ipsec.filtertunnel=1
> net.inet6.ipsec.filtertunnel=1

Can you show what values do you have in the
sysctl net.enc ?

-- 
WBR, Andrey V. Elsukov


More information about the freebsd-net mailing list