Subject: Re: kern/30437
To: None <manu@netbsd.org, gnats-admin@netbsd.org, netbsd-bugs@netbsd.org>
From: Thor Lancelot Simon <tls@rek.tjls.com>
List: netbsd-bugs
Date: 09/28/2005 17:00:03
The following reply was made to PR bin/30437; it has been noted by GNATS.
From: Thor Lancelot Simon <tls@rek.tjls.com>
To: gnats-bugs@netbsd.org
Cc:
Subject: Re: kern/30437
Date: Wed, 28 Sep 2005 12:59:25 -0400
I tried the latest patch in this PR on build.netbsd.org, which runs a
3.0_BETA (from three days ago) kernel without NAT_T. It did not restore
the ability to install transport-mode AH SAs negotiated with ftp.netbsd.org,
which worked fine under 2.0.
As another data point, switching the kernel to FAST_IPSEC made it all work
fine, so it seems like the bug is in fact probably still in the KAME version
of the netkey code, not in racoon.
--
Thor Lancelot Simon tls@rek.tjls.com
"The inconsistency is startling, though admittedly, if consistency is to be
abandoned or transcended, there is no problem." - Noam Chomsky