Hi
Did anybody got blowfish working in IKE with superfreeswan and
isakmpd?
As soon as I tell superfreeswan to use blowfish (ike=blowfish-sha),
I get INVALID_PAYLOAD_TYPE on the isakmpd end:
Default message_parse_payloads: invalid next payload type 27 in payload
of type 5
Default dropped message from 192.168.0.5 port 500 due to notification
type INVALID_PAYLOAD_TYPE
Default message_parse_payloads: reserved field non-zero: 2a
Default dropped message from 192.168.0.5 port 500 due to notification
type PAYLOAD_MALFORMED
SSH Sentinel has no problem to use blowfish with isakmpd, so it seems
not to be a problem with isakmpd.
It's not a serious problem, since 3DES in IKE works fine as well as AES
in ESP, but I'd still like to know what the problem is.
--
Fridtjof Busse
Yes, it is written. Good shall always destroy evil.
-- Sirah the Yang, "The Omega Glory", stardate unknown