[Openswan dev] next payload type of ISAKMP Hash Payload has an
unknown value XX error
mcr at xelerance.com
Mon Oct 18 16:43:25 CEST 2004
-----BEGIN PGP SIGNED MESSAGE-----
Paul, what does the openswan end say?
In head are some fixes to better deal with notifies in a situation where
they are received when we have not yet gone encrypted. Clearly, you
can't complain that they aren't encrypted, if they couldn't have been.
Also, two openswan's could get into a notify battle, as each sent an
encrypted notify, saying that the payload was invalid, but since there
wasn't a valid key, each notify would be invalid...
As well, we will kill the SA attempt if the total number of notifies
sent and received is 10, as long as we sent as least 5.
] "Elmo went to the wrong fundraiser" - The Simpson | firewalls [
] Michael Richardson, Xelerance Corporation, Ottawa, ON |net architect[
] mcr at xelerance.com http://www.sandelman.ottawa.on.ca/mcr/ |device driver[
] panic("Just another Debian GNU/Linux using, kernel hacking, security guy"); [
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)
Comment: Finger me for keys
-----END PGP SIGNATURE-----
More information about the Dev