Re: IPSEC stop works after r285336

From: Sydney Meyer <meyer.sydney_at_googlemail.com>
Date: Tue, 4 Aug 2015 03:23:41 +0200
> On 04 Aug 2015, at 02:18, John-Mark Gurney <jmg_at_funkthat.com> wrote:
> 
> Sydney Meyer wrote this message on Mon, Aug 03, 2015 at 01:15 +0200:
>> the revision i built included gnn's patches to setkey already.
>> 
>> I have tried to setup a tunnel using strongswan with gcm as esp cipher mode, but the connection fails with "algorithm AES_GCM_16 not supported by kernel"..
> 
> It looks like GCM isn't compiled by default by the port...  Try the
> attached patch to
> src/libhydra/plugings/kernel_pfkey/kernel_pfkey_ipsec.c...  it may
> require more modifications...

It works. I had/thought GCM ticked already as a option from "make config", but these 2 lines made it work.

> 
> Someone else would be better to work on this...

Off course, at last, this isn't an issue with CURRENT. I'm going to take this to the port maintainer..

Thank you anyway, for your help and the great work.

> 
> -- 
>  John-Mark Gurney				Voice: +1 415 225 5579
> 
>     "All that I will do, has been done, All that I have, has not."
> <strongswan.patch>
Received on Mon Aug 03 2015 - 23:23:44 UTC

This archive was generated by hypermail 2.4.0 : Wed May 19 2021 - 11:40:59 UTC