Date: Tue, 23 Feb 2010 14:31:29 +0000 (UTC) From: "Bjoern A. Zeeb" <bzeeb-lists@lists.zabbadoz.net> To: VANHULLEBUS Yvan <vanhu@FreeBSD.org> Cc: freebsd-net@freebsd.org, Denis Antrushin <DAntrushin@mail.ru> Subject: Re: IPSec connection troubles Message-ID: <20100223142839.K27327@maildrop.int.zabbadoz.net> In-Reply-To: <20100223142048.GA45899@zeninc.net> References: <4B73E902.6050301@mail.ru> <20100211124756.GA9528@zeninc.net> <20100211125420.G27327@maildrop.int.zabbadoz.net> <4B83B79F.102@mail.ru> <20100223122127.GA45649@zeninc.net> <4B83CEE6.9040409@mail.ru> <20100223142048.GA45899@zeninc.net>
next in thread | previous in thread | raw e-mail | index | archive | help
On Tue, 23 Feb 2010, VANHULLEBUS Yvan wrote: Hi, > On Tue, Feb 23, 2010 at 03:49:42PM +0300, Denis Antrushin wrote: >> On 02/23/10 15:21, VANHULLEBUS Yvan wrote: > [....] >> Taking into account this quote: >> >> On 02/11/10 15:55, Bjoern A. Zeeb wrote: >>> Him saying it works on linux - has ipsec-tools grown proper OA support >>> these days? If that would be the case the kernel would probably a >>> minor task. >> >> this means that I have to come up with patches for both FreeBSD kernel >> and racoon at the same time. :-) >> May I contact you off-list with patches for both, when ready? >> As far as I understand, you are the one who can review both. > > Yes, but please keep Bjoern in CC of the mail, he'll probably also > review at lest the kernel part. Yeah, I should probably mention that if someone starts to generate patches, (s)he should make sure that the double-NAT scenario as described in the RFC will work as well from the beginning; else this will be kind of wasted efforts as someone would have to re-do the entire thing again. /bz -- Bjoern A. Zeeb It will not break if you know what you are doing.
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20100223142839.K27327>