On Jan 16, 2007, at 2:55 PM, Venkat Yekkirala wrote:

...apparently when you have negotiated
connection, the first
        packet gets dropped.

I think this problem was discussed at netconf 2006 by James Morris:
http://vger.kernel.org/jmorris_ipsec_sa_resolution_netconf2006.pdf

Longstanding issue:
http://oss.sgi.com/archives/netdev/2004-02/msg00611.html

This will break just about any TCP based app if the connection starts a new SA because they can't deal with an EAGAIN error on connect(2). In the past this is has been a rare occurrence, not so anymore.
I'm glad James is looking at it.

joe

--
redhat-lspp mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/redhat-lspp

Reply via email to