From owner-freebsd-net@FreeBSD.ORG Mon Oct 19 19:50:47 2009 Return-Path: Delivered-To: freebsd-net@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 003C7106566C for ; Mon, 19 Oct 2009 19:50:46 +0000 (UTC) (envelope-from ermal.luci@gmail.com) Received: from mail-yw0-f178.google.com (mail-yw0-f178.google.com [209.85.211.178]) by mx1.freebsd.org (Postfix) with ESMTP id 81AA68FC18 for ; Mon, 19 Oct 2009 19:50:46 +0000 (UTC) Received: by ywh8 with SMTP id 8so4230772ywh.3 for ; Mon, 19 Oct 2009 12:50:45 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:mime-version:sender:received:in-reply-to :references:from:date:x-google-sender-auth:message-id:subject:to:cc :content-type:content-transfer-encoding; bh=alAzdrmvH6GOxuYlAGMu5FuGkj69HZMe5jiAssX+X5k=; b=lGnynsNyqeu/LJ2udFZpNYw6naUvwVoLeqvtLn3yxtT2imNrLq7TC7WDGaLm+Uelj7 A9plW6fd9FMU7pQ5yQH8gU41nCDpcS2fqJDn5npcWxplbrG8xtnebNtEXtSFrsTiYuJs ZS7vyB0bnKT05Cg/TbdJqidHWCqjrlAyEnOtU= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=mime-version:sender:in-reply-to:references:from:date :x-google-sender-auth:message-id:subject:to:cc:content-type :content-transfer-encoding; b=gjoTVMQ4mSarAxPQZtgWDDXszi0aO7VywjR0ptAwXnN5jbm+nhchzhmIydIeFekUWJ mtd49J5sv20Zr0IHub58QMjgiqmBTPfJUiQo3G35mMzpH6NrxiNaVaw8xTYBLEokCjy+ o0RuBzeOTaHGF/12MQgpZ7EZA2wS90MnAeC3k= MIME-Version: 1.0 Sender: ermal.luci@gmail.com Received: by 10.150.72.25 with SMTP id u25mr8777609yba.273.1255981845180; Mon, 19 Oct 2009 12:50:45 -0700 (PDT) In-Reply-To: <86eiozjt6p.fsf@srvbsdnanssv.interne.kisoft-services.com> References: <861vkzlula.fsf@srvbsdnanssv.interne.kisoft-services.com> <9a542da30910190707q7eb173d9xf9085d220a213db1@mail.gmail.com> <86eiozjt6p.fsf@srvbsdnanssv.interne.kisoft-services.com> From: =?ISO-8859-1?Q?Ermal_Lu=E7i?= Date: Mon, 19 Oct 2009 21:50:25 +0200 X-Google-Sender-Auth: 7081d6299450bcb9 Message-ID: <9a542da30910191250r62a798a7m586343a800a3d65d@mail.gmail.com> To: Eric Masson Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Cc: Mailing List FreeBSD Network Subject: Re: IPSec, nat on enc device X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 19 Oct 2009 19:50:47 -0000 On Mon, Oct 19, 2009 at 5:32 PM, Eric Masson wrote: > Ermal Lu=E7i writes: > > Hello Ermal, > >> I think you should send this email to ipsec-tool mailing list! >> Basically the daemon should be modified for this and FreeBSD >> is not the owner of such code. > > I know ;) I'll bug them regarding ${suject} as well (some ipsec-tools > devs lurk there too) > > I'm not sure that pf & ipsec stack already support this feature. Maybe > bz@ or vanhu@ will shed a light on this point. > AFAIK, there is not limitation to allow this in the IPSec stack. So it is purely a daemon perspective to instrument the stack for this. --=20 Ermal