Re: IPSec broken in -current

From: Sascha Holzleiter <sascha_at_daemonground.de>
Date: Thu, 10 Jun 2004 16:34:14 +0200
On Sun, 2004-06-06 at 04:53, Hannes Mehnert wrote:
> I have a FreeBSD-CURRENT from Fri Jun  4 17:24:01 CEST 2004 where IPSec
> is broken:
> 
> I tried IPSEC & IPSEC_ESP (kame stack) as well as FAST_IPSEC and always
> get the following error during phase2 (output from racoon):
> DEBUG: oakley.c:436:oakley_compute_keymat(): KEYMAT computed.
> DEBUG: isakmp_quick.c:649:quick_i2send(): call pk_sendupdate
> DEBUG: algorithm.c:513:alg_ipsec_encdef(): encription(rijndael)
> DEBUG: algorithm.c:556:alg_ipsec_hmacdef(): hmac(hmac_sha1)
> DEBUG: pfkey.c:1061:pk_sendupdate(): call pfkey_send_update
> ERROR: pfkey.c:1076:pk_sendupdate(): libipsec failed send update
>        (No buffer space available)
> ERROR: isakmp_quick.c:651:quick_i2send(): pfkey update failed.
> ERROR: isakmp.c:750:quick_main(): failed to process packet.
> 
> anyone has seen this?
> 

I see the same problem with a yesterday -CURRENT build:

2004-06-10 16:20:04: ERROR: pfkey.c:1076:pk_sendupdate(): libipsec
failed send update (No buffer space available)
2004-06-10 16:20:04: ERROR: isakmp_quick.c:651:quick_i2send(): pfkey
update failed.
2004-06-10 16:20:04: ERROR: isakmp.c:750:quick_main(): failed to process
packet.
2004-06-10 16:20:04: ERROR: isakmp.c:541:isakmp_main(): phase2
negotiation failed.


-- 
  Sascha
Received on Thu Jun 10 2004 - 12:34:25 UTC

This archive was generated by hypermail 2.4.0 : Wed May 19 2021 - 11:37:56 UTC