[Openswan Users] NETKEY vs KLIPS on a 2.6 kernel

Paul Wouters paul at xelerance.com
Sat Jun 11 01:39:57 CEST 2005


On Thu, 9 Jun 2005, Randy B wrote:

> AFAICT, it's mostly preference - there are tools available to do just
> about everything in NETKEY that you would want to do in KLIPS, it's just
> that NETKEY is kernel-default.  KLIPS seems to have been kept around to
> maintain compatibility for those who need it for scripts or other *things*.

That is not correct. One of the biggest problems of NETKEY is that it does
not support path mtu discovery, which breaks 90% of the setups people want
to do.

Paul


More information about the Users mailing list