NetBSD-Bugs archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: bin/47894: racoon w/NAT-T - pfkey update: wrong ports



On Jun 9,  6:26pm, gergely%egervary.hu@localhost 
(=?ISO-8859-1?Q?Egerv=E1ry_Gergely?=) wrote:
-- Subject: Re: bin/47894: racoon w/NAT-T - pfkey update: wrong ports

| >  Good debugging. Please see:
| >  
| >  
| >  PR/47886: Dr. Wolfgang Stukenbrock: IPSEC_NAT_T enabled kernels may access
| >  outdated pointers and pass ESP data to UPD-sockets.
| >  While here, simplify the code and remove the IPSEC_NAT_T option; always
| >  compile nat-traversal in so that it does not bitrot.
| 
| Now I have a NetBSD-6.99.21 sandbox with yesterday's CURRENT.
| No difference - still UDP/500...
| 
| You can find my racoon debug log here:
|   http://pastebin.com/sNyxeA4V
| 

Can you send me your configuration so I can replicate your setup?

thanks,

christos


Home | Main Index | Thread Index | Old Index