Re: FreeBSD 5.4 - TCP MD5

From: Kris Kennaway (kris_at_obsecurity.org)
Date: 05/26/05

  • Next message: Lee Johnston: "Re: FreeBSD 5.4 - TCP MD5"
    Date: Thu, 26 May 2005 09:27:37 -0700
    To: Lee Johnston <lee@wildcard.net.uk>
    
    
    

    On Thu, May 26, 2005 at 05:22:47PM +0100, Lee Johnston wrote:
    > Hi,
    >
    > I'm trying to configure a 5.4 box with Quagga to support TCP MD5 Passwords.
    > I've achieved this previously with 4.10, but when I try to add the
    > following kernel options, 5.4 doesn't like it:
    >
    > options FAST_IPSEC
    > options crypto
    > options TCP_MD5
    >
    > config gives:
    > VENUS: unknown option "TCP_MD5"
    >
    >
    > I have this in /etc/ipsec.conf
    >
    > add 192.168.1.1 192.168.1.2 tcp 0x1000 -A tcp-md5 "[password]";
    >
    > setkey -f /etc/ipsec.conf gives:
    > pfkey_open: Protocol not supported
    >
    >
    > What is the correct way for enabling TCP MD5 signatures on 5.4?

    When in doubt, check the two NOTES files.

    Kris

    
    



  • Next message: Lee Johnston: "Re: FreeBSD 5.4 - TCP MD5"

    Relevant Pages

    • Re: Why no /proc/config.gz on FC-3 kernel?
      ... > and one certainly does not have to say Yes to all kernel options. ... > However, if you are going to save .config, I don't see any advantage ... there are a good amount of kernel developers who work with him ... suggestions always applicable to fedora. ...
      (Fedora)
    • Re: Anyone use Snapgear Linux?
      ... > there is no config for this platform and I will have to make my own which is ... > a very complex task etc. ... You'll still need to double check the kernel options for your PC hardware though - ...
      (comp.os.linux.embedded)