Re: Racoon 0.7 on FreeBSD 6 with a lot of VPN tunnels

2007-10-04 Thread VANHULLEBUS Yvan
On Thu, Oct 04, 2007 at 04:07:04PM +0200, Seth Mos wrote: > Hello Yvan, Hi. > I have tested the suggested workaorund in pfkey.c by raising the ceiling > to 768kbytes from 128. > > I also raised the limit in the socketvar.h in FreeBSD 6 Stable from the > default 128kbytes to 768kbytes. > > An

Re: Racoon 0.7 on FreeBSD 6 with a lot of VPN tunnels

2007-10-04 Thread Seth Mos
Hello Yvan, I have tested the suggested workaorund in pfkey.c by raising the ceiling to 768kbytes from 128. I also raised the limit in the socketvar.h in FreeBSD 6 Stable from the default 128kbytes to 768kbytes. Any higher values then 768kbytes result in a integer overflow and prevents a b

Re: Racoon 0.7 on FreeBSD 6 with a lot of VPN tunnels

2007-09-27 Thread VANHULLEBUS Yvan
On Thu, Sep 27, 2007 at 04:01:32PM +0200, Seth Mos wrote: > Hello there, Hi. > I have problems with racoon hanging in sbwait state with ipsec-tools 0.6.7 > or getting into a tailspin on ipsec-tools 0.7. > > The problem is that the pfkey interface breaks down with a lot of VPN > tunnels and spd

Racoon 0.7 on FreeBSD 6 with a lot of VPN tunnels

2007-09-27 Thread Seth Mos
Hello there, I have problems with racoon hanging in sbwait state with ipsec-tools 0.6.7 or getting into a tailspin on ipsec-tools 0.7. The problem is that the pfkey interface breaks down with a lot of VPN tunnels and spd entries. The FreeBSd PR is here. http://www.freebsd.org/cgi/query-pr.cgi?pr