On Thu, 17 Oct 2002, Jonathan Feally wrote:
>
> I think a solution to the problem would be to have ipsec processing take
> place both before and after ipfw(or ipf).
> Somebody else though will have to figure out how to make a custom kernel
> to do double ipsec processing because I'm not a C progra
I was just looking at the latest postings from the net list and was
reading yours when I found this e-mail you sent directly to me.
I've had some success with IPSEC/IPFW and NATD.
The problem lies in the kernel, ipsec and ipfw ordering of where the
packets flow.
What you are trying to do - makes