Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 28 Apr 2009 12:15:16 -0400
From:      Scott Ullrich <sullrich@gmail.com>
To:        VANHULLEBUS Yvan <vanhu@freebsd.org>
Cc:        freebsd-net@freebsd.org, Giulio Ferro <auryn@zirakzigil.org>
Subject:   Re: IPSEC NAT traversal
Message-ID:  <d5992baf0904280915m1fa07b0aq59fefa872a2d0d4e@mail.gmail.com>
In-Reply-To: <20090428120751.GA68471@zeninc.net>
References:  <49F6D598.6040503@zirakzigil.org> <20090428120751.GA68471@zeninc.net>

next in thread | previous in thread | raw e-mail | index | archive | help
On Tue, Apr 28, 2009 at 8:07 AM, VANHULLEBUS Yvan <vanhu@freebsd.org> wrote:
> See recent archives, there is actually an issue with the patchset, as
> there are no more available bits in struct inp's flags.
> We're working on that to find and implement the best solution.

Hi,

Ermal Luci recently whipped the pfSense's NATT patch into shape:
http://cvs.pfsense.com/~sullrich/NATT.RELENG_8.diff

I am not sure if this is how Yvan wants to solve it for the long term
but it does seem to work OK for the short term until the patch is
brought up to speed.

Scott



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?d5992baf0904280915m1fa07b0aq59fefa872a2d0d4e>