VPN with FAST_IPSEC and ipsec tools
Michael Vince
mv at thebeastie.org
Mon Jun 26 07:16:31 UTC 2006
David DeSimone wrote:
>-----BEGIN PGP SIGNED MESSAGE-----
>Hash: SHA1
>
>David DeSimone <fox at verio.net> wrote:
>
>
>>Hmm... In examining my kernel configuration I found these options:
>>
>> options IPSEC
>> options IPSEC_ESP
>> options IPSEC_DEBUG
>> # options IPSEC_FILTERGIF
>> # options FAST_IPSEC
>>
>>So it appears that I am NOT using FAST_IPSEC.
>>
>>
>
>I have now recompiled my kernel with the following options:
>
> # options IPSEC
> # options IPSEC_ESP
> # options IPSEC_DEBUG
> # options IPSEC_FILTERGIF
> options FAST_IPSEC
>
> device crypto
>
>After rebooting, I noticed the startup messages show I am indeed using
>FAST_IPSEC.
>
>My other configuration remains unchanged. I can still establish and use
>the tunnels I have set up, so I don't believe this is an IPSEC vs
>FAST_IPSEC problem you're seeing.
>
>- --
>David DeSimone == Network Admin == fox at verio.net
>
Darn, maybe you should try upgrading to 6.1 release and see if that does
any thing.
Also I am using the latest ipsec-tools in the ports tree 0.6.6
Mike
More information about the freebsd-net
mailing list