[Openswan Users] Openswan+KLIPS+Padlock not working

Harald Scharf h.scharf at nestec.at
Mon Feb 26 08:44:53 EST 2007


Hello List,

 

I have problems,getting openswan (2.4.8rc1) with KLIPS + the via padlock
module

to work.

Openswan seems to ignore the padlock modules and tries to use the

"normal" cryptoapi aes. The padlock module loads, but the

performace boost, which I got with openswan/netkey/padlock

did not appear.

When I disable the standard aes in cryproapi and only enable

the padlock module, my connection does not get up:

 

pluto[6017]: "leftside": requested kernel enc ealg_id=12 not present

...

003 "leftside": requested kernel enc ealg_id=12 not present

034 "leftside": can not initiate: no acceptable kernel algorithms loaded

 

 

 

lsmod says:

padlock_aes            23360  0

 

 

Strage, because ipsec auto -status says:

 

000 "leftside":   ESP algorithms wanted: AES(12)_128-MD5(1);
flags=strict

000 "leftside":   ESP algorithms loaded: AES(12)_128-MD5(1);
flags=strict

 

 

Any ideas, what could be wrong?

Does KLIPS not support the Padlock patches right now?

 

Tia

 

Harald Scharf

 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20070226/a617637a/attachment.html 


More information about the Users mailing list