[Bug 266947] security/strongswan does not kldload the ipsec modules on 13.x

From: <bugzilla-noreply_at_freebsd.org>
Date: Mon, 10 Oct 2022 17:57:26 UTC
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=266947

            Bug ID: 266947
           Summary: security/strongswan does not kldload the ipsec modules
                    on 13.x
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Many People
          Priority: ---
         Component: Individual Port(s)
          Assignee: ports-bugs@FreeBSD.org
          Reporter: karl@denninger.net
                CC: strongswan@Nanoteq.com
             Flags: maintainer-feedback?(strongswan@Nanoteq.com)
                CC: strongswan@Nanoteq.com

On 13.x the IPSEC kernel module is loadable and a stub is in the GENERIC
declaration.

Strongswan's RC file does not kldload the module, and thus while it comes up
and runs attempting to connect will fail with a rather cryptic message on the
client claiming authentication was unsuccessful when in fact it succeeded but
the kernel on the server end could not insert the SPI entries.

kldload ipsec fixes it; ergo that should be in the startup script so the ipsec
module is present before the software starts.

-- 
You are receiving this mail because:
You are the assignee for the bug.