From owner-freebsd-questions@FreeBSD.ORG Tue Jul 22 08:51:25 2008 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id F377D106564A for ; Tue, 22 Jul 2008 08:51:24 +0000 (UTC) (envelope-from ralf@best.homeunix.org) Received: from mail.ralf-hornik.de (mail.ralf-hornik.de [217.111.95.14]) by mx1.freebsd.org (Postfix) with ESMTP id 8636C8FC19 for ; Tue, 22 Jul 2008 08:51:24 +0000 (UTC) (envelope-from ralf@best.homeunix.org) Received: from localhost (localhost [127.0.0.1]) by mail.ralf-hornik.de (8.14.3/8.14.3) with ESMTP id m6M8chm5022539 for ; Tue, 22 Jul 2008 10:38:44 +0200 Received: from 82.210.242.242 ([82.210.242.242]) by www.ralf-hornik.de (Horde Framework) with HTTP; Tue, 22 Jul 2008 10:38:43 +0200 Message-ID: <20080722103843.38825yxtn0vl7vk0@www.ralf-hornik.de> Date: Tue, 22 Jul 2008 10:38:43 +0200 From: "Ralf Hornik Mailings" To: freebsd-questions@freebsd.org References: <20080717160027.13371z3sdsm60z9c@www.ralf-hornik.de> <20080717172811.19282i42ayvmawis@www.ralf-hornik.de> In-Reply-To: <20080717172811.19282i42ayvmawis@www.ralf-hornik.de> MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1; DelSp="Yes"; format="flowed" Content-Disposition: inline Content-Transfer-Encoding: 7bit User-Agent: Internet Messaging Program (IMP) H3 (4.2) X-Spam-Score: -2.592 () AWL,BAYES_00 X-Spam-Flag: NO X-Scanned-By: MIMEDefang 2.63 on 172.16.0.2 Subject: Re: Using OpenBSD's isakmpd in FreeBSD X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 22 Jul 2008 08:51:25 -0000 "Ralf Hornik Mailings" schreibte: > Appendix: > > The corresponding suite is: > > [AES-SHA-GRP5-RSA_SIG] > ENCRYPTION_ALGORITHM= AES_CBC > KEY_LENGTH= 256,128:256 > HASH_ALGORITHM= SHA > AUTHENTICATION_METHOD= RSA_SIG > GROUP_DESCRIPTION= MODP_1536 > > Might it be, that this aes cipher is missing in kernel? > A man (4) crypto shows: > Does nobody use isakmpd in freebsd? However I just switched to racoon that works for me but I have to rewrite all configuratons now. Are there any suggestions in (not) using isakmpd? It seems that the port was last updated in 2004. Is that right? Regards Ralf