VPN with FAST_IPSEC and ipsec tools

Michael Vince mv at thebeastie.org
Mon Jun 26 07:16:31 UTC 2006


David DeSimone wrote:

>-----BEGIN PGP SIGNED MESSAGE-----
>Hash: SHA1
>
>David DeSimone <fox at verio.net> wrote:
>  
>
>>Hmm...  In examining my kernel configuration I found these options:
>>
>>    options     IPSEC
>>    options     IPSEC_ESP
>>    options     IPSEC_DEBUG
>>    # options   IPSEC_FILTERGIF
>>    # options   FAST_IPSEC
>>
>>So it appears that I am NOT using FAST_IPSEC.
>>    
>>
>
>I have now recompiled my kernel with the following options:
>
>    # options       IPSEC
>    # options       IPSEC_ESP
>    # options       IPSEC_DEBUG
>    # options       IPSEC_FILTERGIF
>    options         FAST_IPSEC
>
>    device          crypto
>
>After rebooting, I noticed the startup messages show I am indeed using
>FAST_IPSEC.
>
>My other configuration remains unchanged.  I can still establish and use
>the tunnels I have set up, so I don't believe this is an IPSEC vs
>FAST_IPSEC problem you're seeing.
>
>- -- 
>David DeSimone == Network Admin == fox at verio.net
>
Darn, maybe you should try upgrading to 6.1 release and see if that does 
any thing.
Also I am using the latest ipsec-tools in the ports tree 0.6.6

Mike




More information about the freebsd-net mailing list