IPSec transport mode, mtu, fragmentation...

Victor Sudakov vas at sibptus.ru
Sun Jan 19 03:36:50 UTC 2020


Michael Sierchio wrote:
> 
> What is the result of
> 
> > sysctl net.enc

ot at fbsd-test1:~ # sysctl net.enc
net.enc.out.ipsec_bpf_mask: 3
net.enc.out.ipsec_filter_mask: 0
net.enc.in.ipsec_bpf_mask: 1
net.enc.in.ipsec_filter_mask: 0

> 
> ?  This might be a clue about the packets, which you could be seeing twice.
> 

An artifact of enc0, you think ? Are the above settings sending the
packets to if_enc twice?

-- 
Victor Sudakov,  VAS4-RIPE, VAS47-RIPN
2:5005/49 at fidonet http://vas.tomsk.ru/
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 455 bytes
Desc: not available
URL: <http://lists.freebsd.org/pipermail/freebsd-net/attachments/20200119/8d0f1eb8/attachment.sig>


More information about the freebsd-net mailing list