[Openswan Users] openswan+netkey <-> racoon on linux

Paul Wouters paul at xelerance.com
Thu Jul 17 17:27:09 EDT 2008


On Thu, 17 Jul 2008, Peter Rosenthal wrote:

> After looking at the racoon code, racoon is rejecting the proposal
> because it does not have the same number of proto entries. OpenSwan's
> proposal contains just ESP while racoon's proposal has ESP and AH.
> 
> What is correct spec behaviour here? Do I need to configure openswan to
> use AH?

ESP + AH is just wrong. Racoon shouldnt even allow it.

Paul


More information about the Users mailing list