From owner-freebsd-net@FreeBSD.ORG Sun Jan 23 16:15:07 2011 Return-Path: Delivered-To: freebsd-net@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id E2E5D1065670 for ; Sun, 23 Jan 2011 16:15:07 +0000 (UTC) (envelope-from bzeeb-lists@lists.zabbadoz.net) Received: from mail.cksoft.de (mail.cksoft.de [IPv6:2001:4068:10::3]) by mx1.freebsd.org (Postfix) with ESMTP id 710C18FC13 for ; Sun, 23 Jan 2011 16:15:07 +0000 (UTC) Received: from localhost (amavis.fra.cksoft.de [192.168.74.71]) by mail.cksoft.de (Postfix) with ESMTP id 785B041C650 for ; Sun, 23 Jan 2011 17:15:06 +0100 (CET) X-Virus-Scanned: amavisd-new at cksoft.de Received: from mail.cksoft.de ([192.168.74.103]) by localhost (amavis.fra.cksoft.de [192.168.74.71]) (amavisd-new, port 10024) with ESMTP id Itz9zrSVJB11 for ; Sun, 23 Jan 2011 17:15:05 +0100 (CET) Received: by mail.cksoft.de (Postfix, from userid 66) id B619641C64A; Sun, 23 Jan 2011 17:15:05 +0100 (CET) Received: from maildrop.int.zabbadoz.net (maildrop.int.zabbadoz.net [10.111.66.10]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mail.int.zabbadoz.net (Postfix) with ESMTP id 91EAB4448F3 for ; Sun, 23 Jan 2011 16:13:48 +0000 (UTC) Date: Sun, 23 Jan 2011 16:13:48 +0000 (UTC) From: "Bjoern A. Zeeb" X-X-Sender: bz@maildrop.int.zabbadoz.net To: freebsd-net@freebsd.org Message-ID: <20110123161137.A3489@maildrop.int.zabbadoz.net> X-OpenPGP-Key: 0x14003F198FEFA3E77207EE8D2B58B8F83CCF1842 MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII; format=flowed Subject: NAT-T/UDPENCAP patch from stable/7 X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 23 Jan 2011 16:15:08 -0000 Hi, here is a version of the NAT-T/UDPENCAP patch as in 8 and 9 for today's stable/7 for anyone who might want/need it. I would expect it will equally apply to 7.4-RELEASE once that happened. http://people.freebsd.org/~bz/20110123-01-stable7-natt.diff You will need to figure out the right version of ipsec-tools or other IKE clients yourself though. /bz -- Bjoern A. Zeeb You have to have visions! Going to jail sucks -- All my daemons like it! http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/jails.html