Racoon and setkey problems

Misak Khachatryan kmisak at gmail.com
Tue Feb 20 07:01:20 UTC 2018


One of the machines didn't connected to the Internet, have only private ip
address on it's interfaces, so i have doubts about that. But thanks, I'll
check for that too. I'm exporting traffic from two machines to netflow
collector, should be easy.

On Feb 20, 2018 9:55 AM, "Eugene Grosbein" <eugen at grosbein.net> wrote:

On 20.02.2018 00:44, Misak Khachatryan wrote:
> Hi Andrey,
>
> yes, all output is from same machine. I'll recheck all configs again,
> or, if it's OK, I can post them here. The most confusing thing is that
> everything worked as a charm several years. And nothing changed in
> configurations until logs stars to fill up with these messages and i
> tried to play with some settings to troubleshoot.

You may be suffering from some kind of massive IPSEC-scanning bots activity
that try to expoit IPSEC-related bugs and trigger some memory leak.

You should really try 11.1.


More information about the freebsd-net mailing list