Re: FreeBSD 5.4 - TCP MD5

From: Lee Johnston (lee_at_wildcard.net.uk)
Date: 05/26/05

  • Next message: Olivier Casasole: "mping"
    Date: Thu, 26 May 2005 17:32:27 +0100
    To: Kris Kennaway <kris@obsecurity.org>
    
    

    Hi Kris,

    Thanks for your reply.. I've checked /usr/src/sys/i386/conf/NOTES but can't
    see any mention of the options anymore.. Any other ideas?

    Regards,
    Lee.

    At 17:27 26/05/2005, Kris Kennaway wrote:
    >On Thu, May 26, 2005 at 05:22:47PM +0100, Lee Johnston wrote:
    > > Hi,
    > >
    > > I'm trying to configure a 5.4 box with Quagga to support TCP MD5
    > Passwords.
    > > I've achieved this previously with 4.10, but when I try to add the
    > > following kernel options, 5.4 doesn't like it:
    > >
    > > options FAST_IPSEC
    > > options crypto
    > > options TCP_MD5
    > >
    > > config gives:
    > > VENUS: unknown option "TCP_MD5"
    > >
    > >
    > > I have this in /etc/ipsec.conf
    > >
    > > add 192.168.1.1 192.168.1.2 tcp 0x1000 -A tcp-md5 "[password]";
    > >
    > > setkey -f /etc/ipsec.conf gives:
    > > pfkey_open: Protocol not supported
    > >
    > >
    > > What is the correct way for enabling TCP MD5 signatures on 5.4?
    >
    >When in doubt, check the two NOTES files.
    >
    >Kris

    --
    Lee @ Wildcard Internet
    t: (0845) 165 1510
    f: (0845) 165 1511
    m: (07795) 423 617
    e: lee@wildcard.net.uk
    Web Development - Domains - Hosting - Co-location - Dedicated Servers  
    _______________________________________________
    freebsd-net@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-net
    To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org"
    

  • Next message: Olivier Casasole: "mping"