[Openswan dev] Invalid argument NULL (patch from users)

Alain RICHARD alain.richard at equation.fr
Mon Dec 19 15:02:46 CET 2005


Le 19 déc. 05 à 14:54, Alain RICHARD a écrit :

>>> Question is : why this patch was not ported into mainstream for  
>>> the last year
>>> as it allows to establish an unencrypted tunnel with a Cisco  
>>> without apparent
>>> drawback ?
>>>
>>> (See attachment for a 2.4.5dr3 version of the patch)
>>
>> I've created bug #546 for this item and attached your patch. This  
>> has simply
>> been a matter of "low priority" to get this fixed. People who want  
>> to not use
>> encryption should really use AH, not ESP. ESP_NULL was only meant  
>> for testing
>> the code.
>>

Please note also that the IETF ipsec working group is not considering  
ESP_NULL as a testing stuff, but is indicated as required in the  
current drafts :

http://www.ietf.org/internet-drafts/draft-ietf-ipsec-esp-ah- 
algorithms-02.txt

regards,


-- 
Alain RICHARD <mailto:alain.richard at equation.fr>
EQUATION SA <http://www.equation.fr/>
Tel : +33 477 79 48 00     Fax : +33 477 79 48 01
Applications client/serveur, ingénierie réseau et Linux

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/dev/attachments/20051219/b0dbc843/attachment.htm


More information about the Dev mailing list