Re: Problems with xfrm (IPSec) and multicast

2006-07-11 Thread Herbert Xu
On Wed, Jun 14, 2006 at 01:09:59PM +, Roar Bj?rgum Rotvik wrote: > > So I cannot make encrypted multicast traffic to flow both ways at the same > time, and has no clue as to why the first packets after changing direction > is dropped somewhere. Sounds like conntrack. Check /proc/net/ip_con

Problems with xfrm (IPSec) and multicast

2006-06-14 Thread Roar Bjørgum Rotvik
Hi, I have configured two Linux PC's to use IPSec to encrypt some mcast traffic, using "ip xfrm". Each PC has two network cards, one connected to a LAN (unencrypted side, also called red side) and one connected to the other node (encrypted side, also called black side). Currently the setup use