Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 23 Feb 2010 14:31:29 +0000 (UTC)
From:      "Bjoern A. Zeeb" <bzeeb-lists@lists.zabbadoz.net>
To:        VANHULLEBUS Yvan <vanhu@FreeBSD.org>
Cc:        freebsd-net@freebsd.org, Denis Antrushin <DAntrushin@mail.ru>
Subject:   Re:  IPSec connection troubles
Message-ID:  <20100223142839.K27327@maildrop.int.zabbadoz.net>
In-Reply-To: <20100223142048.GA45899@zeninc.net>
References:  <4B73E902.6050301@mail.ru> <20100211124756.GA9528@zeninc.net> <20100211125420.G27327@maildrop.int.zabbadoz.net> <4B83B79F.102@mail.ru> <20100223122127.GA45649@zeninc.net> <4B83CEE6.9040409@mail.ru> <20100223142048.GA45899@zeninc.net>

next in thread | previous in thread | raw e-mail | index | archive | help
On Tue, 23 Feb 2010, VANHULLEBUS Yvan wrote:

Hi,

> On Tue, Feb 23, 2010 at 03:49:42PM +0300, Denis Antrushin wrote:
>> On 02/23/10 15:21, VANHULLEBUS Yvan wrote:
> [....]
>> Taking into account this quote:
>>
>> On 02/11/10 15:55, Bjoern A. Zeeb wrote:
>>> Him saying it works on linux - has ipsec-tools grown proper OA support
>>> these days? If that would be the case the kernel would probably a
>>> minor task.
>>
>> this means that I have to come up with patches for both FreeBSD kernel
>> and racoon at the same time. :-)
>> May I contact you off-list with patches for both, when ready?
>> As far as I understand, you are the one who can review both.
>
> Yes, but please keep Bjoern in CC of the mail, he'll probably also
> review at lest the kernel part.

Yeah, I should probably mention that if someone starts to generate
patches, (s)he should make sure that the double-NAT scenario as
described in the RFC will work as well from the beginning; else this
will be kind of wasted efforts as someone would have to re-do the
entire thing again.

/bz

-- 
Bjoern A. Zeeb         It will not break if you know what you are doing.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20100223142839.K27327>