Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 29 Oct 2001 18:20:03 +0900
From:      Shoichi Sakane <sakane@kame.net>
To:        jus@security.za.net
Cc:        freebsd-security@freebsd.org
Subject:   Re: Upgrade to 4.4-STABLE introduces IPSec problems..?
Message-ID:  <20011029182003H.sakane@kame.net>
In-Reply-To: Your message of "Mon, 29 Oct 2001 11:06:16 %2B0200 (SAST)" <Pine.BSF.4.21.0110291103410.17108-100000@athena.za.net>
References:  <Pine.BSF.4.21.0110291103410.17108-100000@athena.za.net>

next in thread | previous in thread | raw e-mail | index | archive | help
> Here's my configuration..

> [root@athena] ~# cat /usr/local/etc/ipsec.conf
> flush;
> spdflush;
> add 196.30.167.130 196.30.167.200 esp 9991 -m transport -E blowfish-cbc "keyword erased";
> add 196.30.167.200 196.30.167.130 esp 9992 -m transport -E blowfish-cbc "keyword erased";
> spdadd 196.30.167.130 196.30.167.200 any -P out ipsec esp/transport/196.30.167.130-196.30.167.200/require;
> spdadd 196.30.167.200 196.30.167.130 any -P out ipsec esp/transport/196.30.167.200-196.30.167.130/require;

freebsd4.4-release has no problem in the transport mode case.
did you have any message in the system log, or did netstat talk anything ?

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20011029182003H.sakane>