Contributed by grey on from the dept.
According to the last CVS log, Hakan Olson starts to add NAT-Traversal and Dead-Peer-Detection in isakmpd daemon for IKE/IPsec :
CVSROOT: /cvs Module name: src Changes by: ho@cvs.openbsd.org 2004/06/20 09:24:05 Modified files: sbin/isakmpd : Makefile exchange.h ike_phase_1.c init.c ipsec.c isakmp.h isakmp_fld.fld message.c policy.c transport.c transport.h udp.c udp.h util.c util.h Added files: sbin/isakmpd : nat_traversal.c nat_traversal.h udp_encap.c udp_encap.h virtual.c virtual.h sbin/isakmpd/features: nat_traversal Log message: NAT-Traversal for isakmpd. Work in progress... hshoexer@ ok. CVSROOT: /cvs Module name: src Changes by: ho@cvs.openbsd.org 2004/06/20 09:20:07 Modified files: sbin/isakmpd : exchange.c isakmp_num.cst sa.h Added files: sbin/isakmpd : dpd.c dpd.h sbin/isakmpd/features: dpd Log message: A start towards Dead Peer Detection (DPD) support, as specified in RFC 3706Great news :-)
(Comments are closed)
By Anonymous Coward (213.119.4.16) on
Comments
By Anonymous Coward (64.81.74.226) on
By Anonymous Coward (209.162.224.62) on
Comments
By Anonymous Coward (216.27.182.22) on
On Wed, Jul 30, 2003 at 10:25:01AM +0200, Markus Friedl wrote:
>I understand the patent issues with SSH re: NAT Traversal. However, the >> lack of this feature is holding back any use of isakmpd on our OpenBSD >> firewalls-- we're forced to use a separate FreeSWAN box. :( Any plans to >> incorporate the NAT-T draft this year?
We'll release NAT-T after you've resolved that patent issues.
Thanks! so why the change of heart?
Comments
By Anonymous Coward (209.5.161.221) on
Comments
By Anonymous Coward (64.81.74.226) on
By Anonymous Coward (67.153.107.130) on
By Anonymous Coward (206.47.145.36) on
By cellx (209.49.5.252) on