| From: Paul Wouters <p...@nohats.ca>

| > If I'm not wrong, why have we not noticed this since it was introduced
| > by c90c46be434cc0a68a8f5e1b0e88a9d019a9f733 in 2010?
| 
| I don't know, but I do see this code is within
| sysctl_ipsec_inbound_policy_check, and I do have some vague memory of
| people needing to change that setting?

Consider building a test for this?

That would help convince us that we understand what is going on.

I understand that this might be more work than it is worth.

| Please commit the fix. I don't see any valid reason for leaving it as
| is.

OK.  Done.
_______________________________________________
Swan-dev mailing list
Swan-dev@lists.libreswan.org
https://lists.libreswan.org/mailman/listinfo/swan-dev

Reply via email to