[Openswan Users] One Way Traffic Flow?
paul at xelerance.com
Mon Mar 5 11:07:05 EST 2007
On Mon, 5 Mar 2007, Ben Batten wrote:
> I think I'm looking at a busted NATT config, as you previously
> suspected, but wanted to run it by folks who may know better. I keep seeing
> a "udp_encap_rcv(): Unhandled UDP encap type: 1" message. The SA
> establishes itself and I see the UDP encapsulated traffic going into
> the linux 2.4.21 endpoint but no return traffic (e.g., ping replies, etc.).
Yes, looks like nat-t realted.
> When I tried a clean natt-patch and build of the 2.4.21 kernel I get a bunch
> of hunk-failed messages, I think only a couple succeed.
The patch is not that big, try to manually look at the *.rej files and fix it?
> Is there a patch that is known to work or a workaround? I tried both the
> 2.4.7 and 2.4.8rc1 natt patches and both failed the same way. I saw a
> Mandrake workaround listed when I searched the wiki but the link is broken.
Never versions have a harder time getting patched to older kernels. We have
been thinking of making only nat-t patches per kernel version instead of the
automatically generated version, but we've not had time to do this yet.
Building and integrating Virtual Private Networks with Openswan:
More information about the Users