NAT-T Implementation

From: Crist J. Clark (cristjc_at_comcast.net)
Date: 02/02/05

  • Next message: Helge Oldach: "Re: racoon behaviour when SA expires"
    Date: Tue, 1 Feb 2005 23:20:25 -0800
    To: net@freebsd.org
    
    

    Now that NAT-T has moved on from Internet Draft to RFC, does
    anyone out there know if anyone is working on an implementation
    for FAST_IPSEC or KAME? I believe the isakmpd(8) daemon in
    ports supports it, but AFAIK, the kernel does not. Short of
    some really ugly divert(4) or netgraph(4) kludges (that is
    not a totally idle threat either), are we going to see in-kernel
    support for that anytime soon? Or is this code out there and
    I just haven't seen it?

    -- 
    Crist J. Clark                     |     cjclark@alum.mit.edu
    _______________________________________________
    freebsd-net@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-net
    To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org"
    

  • Next message: Helge Oldach: "Re: racoon behaviour when SA expires"