[Ocf-linux-users] OCF/OpenSwan tunnel crashes
Brought to you by:
david-m
From: Ronan M. <ron...@gm...> - 2007-09-07 14:33:10
|
Hello, I seem to be having some problems with setting OpenSwan (2.4.9) up on OCF(20070727) (using the lastest openSwan patch) and then up setting a VPN tunnel up. I have a RHEL5 system using a 2.6.18 kernel. I can setup a host to host connection and the tunnel works fine with pings, scp and ftp all working through the tunnel for both cryptosoft and my hardware accelerator. My problems arise when I try to setup the two hosts as gateways. When I setup a system where packets are coming from somewhere else on the network and are allowed to pass through the VPN (via the connection details in ipsec.conf) I get system crashes for cryptosoft and my hardware driver ( I can get no ouput log files :( ). >From what I have read on other forums some kind of race condition in OCF could be causing this. Has anyone else seen these kind of issues. There was a recommendation to try setting the USE_CBIMM flag to zero in ipsec_ocf.c which would disable immediate callbacks. This may resolve an appartently know race condition between the network stack and OCF! Is this true. What impact on performance would this action have -- Regards, Ronan |