ospfd in 6.6 when dying doesn't recover database before adj timer expires

2020-04-03 Thread Tobias Urdin
Hello, We've seen a issue where if you perform a ospfctl reload and have a faulty configuration for example a interface that doesn't exist it dies (which is fair in itself) but the seq num for the database never catches up with the DR until the adjacency timer expires over and over again, can

Re: IPSec Flow and SA to unexpected subnet

2017-11-27 Thread Tobias Urdin
Had the same problem with a shitty Netgear on the other end. OpenBSD happily accepted the flow with a 0/0 from forcing all traffic to the destination over that tunnel. I logged in to the Netgear GUI and explicitly set the subnets to tunnel instead of all which was selected before. Best regards