[strongSwan] strongswan 4.6.4 and IOS6

Kris KRI2183876 at maricopa.edu
Sat Dec 1 20:36:11 CET 2012


This issue seems to break OSX 10.8 also, small certs not help, hope
the patch can be ported to SS 5 soon.

--
Kris


On Tue, Nov 27, 2012 at 8:05 PM, Christian Scheele <chris at dd-wrt.com> wrote:
> Hi,
>
> Gerd v. Egidy <lists at ...> writes:
>
>>
>> Hi Andreas,
>>
>> > I did have some time to look at it. You will find a patch implementing
>> > Ciscos proprietary IKE fragmentation in the patches tarball in the
>> > chroot-ipsec source rpm. It's based on Strongswan 4.4.1. I managed
>> > to port (it did not apply cleanly) that patch to the 4.5.2 based
>> > debian backports version and it at least compiles. Tests are still pending.
>>
>> Would you mind to post your patch for 4.5.2?
>>
>> > This is however a temporary workaround as this will surely not
>> > work on 5.x. and therefore most likely never get into the
>> > official srongswan repos.
>>
>> sure. Let's hope someone will make or sponsor a true port to 5 soon.
>
> i uploaded the patch on pastebin:
>
> http://pastebin.com/mHS68juq
>
> We are using 5.0.1 right now, small certs work, but we would like to get this
> implemented in 5.0.x as well.
>
>
>
> _______________________________________________
> Users mailing list
> Users at lists.strongswan.org
> https://lists.strongswan.org/mailman/listinfo/users




More information about the Users mailing list