Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 11 Dec 2016 16:13:53 +0700
From:      Eugene Grosbein <eugen@grosbein.net>
To:        "Andrey V. Elsukov" <ae@FreeBSD.org>, freebsd-net@FreeBSD.org
Subject:   Re: [RFC/RFT] projects/ipsec
Message-ID:  <584D18D1.8090400@grosbein.net>
In-Reply-To: <2bd32791-944f-2417-41e9-e0fe1c705502@FreeBSD.org>
References:  <2bd32791-944f-2417-41e9-e0fe1c705502@FreeBSD.org>

next in thread | previous in thread | raw e-mail | index | archive | help
11.12.2016 6:07, Andrey V. Elsukov пишет:

> * use transport mode IPsec for forwarded IPv4 packets now unsupported.
> This matches the IPv6 behavior, and since we can handle the replies, I
> think it is useless.

Does it include a case of packets going from LAN and forwarded into gif(4) tunnel
connected to remote IPSEC gateway and encrypted with transport mode?

That is, will this configuration break?

Eugene




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?584D18D1.8090400>