[Openswan Users] uncover the mystery about kernel patching?

David McCullough David_Mccullough at securecomputing.com
Wed Jul 1 07:16:31 EDT 2009

Jivin Andraz Sraka lays it down ...
> re
> On Wed, 2009-07-01 at 18:09 +1000, David McCullough wrote:
> > With openswan-2.6.22 and any 2.6 kernel from 2.6.23 onwards,  you
> > should not need to patch the kernel at all :-)
> And what you really want to use KLIPS to be able to have ipsecX
> interfaces?

I'm not sure what you mean here,  but with 2.6.22 you can run klips or
netkey (your choice) and do NAT-T or not all without patching your kernel.

At least thats the theory :-)


David McCullough,  david_mccullough at securecomputing.com,  Ph:+61 734352815
McAfee - SnapGear  http://www.snapgear.com                http://www.uCdot.org

More information about the Users mailing list