Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 16 Mar 2001 14:29:36 +0900
From:      itojun@iijlab.net
To:        jomor <jomor@ahpcns.com>
Cc:        Mike Burgett <mburgett@awen.com>, "freebsd-security@FreeBSD.ORG" <freebsd-security@FreeBSD.ORG>
Subject:   Re: IPSEC tunnel without gif?
Message-ID:  <19427.984720576@coconut.itojun.org>
In-Reply-To: jomor's message of Thu, 15 Mar 2001 21:38:20 CST. <3AB18AAC.9069CBF2@ahpcns.com>

next in thread | previous in thread | raw e-mail | index | archive | help

>> >The gateway that received the pings was transmitting ARP
>> >requests but strangely, it was trying to get the hardware
>> >address of the other tunnel endpoint rather than that of
>> >the router in the middle. Since the ARP requests were never
>> >answered, the ping response was never transmitted.

	so you are seeing ARP for tunnel inner addresses?

http://www.kame.net/dev/cvsweb.cgi/kame/kame/sys/netinet6/ipsec.c.diff?r1=1.84&r2=1.85

	should fix the above issue.  not sure about freebsd merge status.

itojun

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?19427.984720576>