[Openswan Users] One Way Traffic Flow?

Paul Wouters paul at xelerance.com
Mon Mar 5 11:07:05 EST 2007


On Mon, 5 Mar 2007, Ben Batten wrote:

> I think I'm looking at a busted NATT config, as you previously
> suspected, but wanted to run it by folks who may know better.  I keep seeing
> a "udp_encap_rcv(): Unhandled UDP encap type: 1" message.  The SA
> establishes itself and I see the UDP encapsulated traffic going into
> the linux 2.4.21 endpoint but no return traffic (e.g., ping replies, etc.).

Yes, looks like nat-t realted.

> When I tried a clean natt-patch and build of the 2.4.21 kernel I get a bunch
> of hunk-failed messages, I think only a couple succeed.

The patch is not that big, try to manually look at the *.rej files and fix it?

> Is there a patch that is known to work or a workaround?  I tried both the
> 2.4.7 and 2.4.8rc1 natt patches and both failed the same way.  I saw a
> Mandrake workaround listed when I searched the wiki but the link is broken.

Never versions have a harder time getting patched to older kernels. We have
been thinking of making only nat-t patches per kernel version instead of the
automatically generated version, but we've not had time to do this yet.

Paul
-- 
Building and integrating Virtual Private Networks with Openswan:
http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155


More information about the Users mailing list