[Openswan Users] NETKEY vs KLIPS on a 2.6 kernel
Paul Wouters
paul at xelerance.com
Sat Jun 11 01:39:57 CEST 2005
On Thu, 9 Jun 2005, Randy B wrote:
> AFAICT, it's mostly preference - there are tools available to do just
> about everything in NETKEY that you would want to do in KLIPS, it's just
> that NETKEY is kernel-default. KLIPS seems to have been kept around to
> maintain compatibility for those who need it for scripts or other *things*.
That is not correct. One of the biggest problems of NETKEY is that it does
not support path mtu discovery, which breaks 90% of the setups people want
to do.
Paul
More information about the Users
mailing list