Re: 2.4.21 IPSEC problems

Henrique de Moraes Holschuh <hmh@debian.org> wrote:
> Herbert, it would be a Very Good Thing if Debian sarge shipped IPSEC ready
> to go out-of-the-box (provided one installed the correct packages and
> configured them, I suppose).
> Are we at that stage yet?  What is needed to get IPSEC as included in your
> kernel images to work out-of-the-box (after configured), without the need
> for anything not packaged in Debian?

We're almost there.  The kernel side is ready as it is.

In user space, we have:

ipsec-tools: Needs a recompile to catch up with the kernel ABI.
isakmpd: As above.
freeswan: 2.01 needs my patch to work with the new stack.

