https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=221849

--- Comment #3 from Aragon Gouveia <ara...@phat.za.net> ---
Ok, finally I have a half-solution.  Just disable sha256 from racoon's phase2
(sainfo) configuration, and Android won't crash FreeBSD with its broken IKEv1
implementation.

More info on Android's broken sha256: https://wiki.strongswan.org/issues/1472

Would be nice if FreeBSD kernel handled this gracefully.  If it behaves like
this with a broken VPN client, what is possible with a malicious VPN client? 
Hmmm...

-- 
You are receiving this mail because:
You are the assignee for the bug.
_______________________________________________
freebsd-bugs@freebsd.org mailing list
https://lists.freebsd.org/mailman/listinfo/freebsd-bugs
To unsubscribe, send any mail to "freebsd-bugs-unsubscr...@freebsd.org"

Reply via email to