[Openswan Users] IPSEC problems between 2.6 kernels...

Sven Schuster schuster.sven at gmx.de
Mon May 31 23:35:21 CEST 2004


Hi Paul,

On Mon, May 31, 2004 at 10:09:41PM +0200, Paul Wouters told us:
> Transport mode? I would personally only use tunnel mode on both ends.

Just for testing :)

> With KLIPS, one can set klipsdebug=all and you would see why the
> packet is being dropped. I
> am not sure if there is such mechanism for the 2.6 native code.

I'm not sure myself if there's any debugging mechanism in 26sec's
code.

> 
> You could try a 2.4 kernel with KLIPS and that configuration to see
> wether the problem is
> in the openswan userland, or in the kernel ipsec stack.

Well, I'll at first test tunnel mode, and then investigate a bit more
in this.


Thank you!!

Sven

> 
> Paul 

-- 
Linux zion 2.6.7-rc2 #1 Mon May 31 00:42:33 CEST 2004 i686 athlon i386 GNU/Linux
 22:32:31  up  3:59,  2 users,  load average: 0.00, 0.02, 0.00
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.openswan.org/pipermail/users/attachments/20040531/47d3333e/attachment.bin


More information about the Users mailing list