Racoon not synchronizing keys? (was: none)

From: Thomas Fritz (tf@slash10.com)
Date: 05/22/02


Date: Wed, 22 May 2002 10:51:41 +0200
To: freebsd-security@freeBSD.ORG
From: Thomas Fritz <tf@slash10.com>

Hi again!

Forgot the subject the first time...

I already got an answer to my question, which stated,
that I should use manual keys instead.

But that's not an option for me.

Is there really no other solution?

Thanks
/tom

>Hi there!
>
>On the URL http://www.onlamp.com/pub/a/bsd/2001/12/10/ipsec.html I found
>this warning below:
>
>One other word of warning -- if you reboot one of the hosts, and suddenly
>have connectivity problems, flush the keys on both machines by running
>setkey -F. It's possible for the keys to get out of sync.
>
>
>Is there any way to overcome this problem without flushing the keys by hand?
>
>
>Thanks in advance
>
>/tom

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



Relevant Pages

  • (no subject)
    ... One other word of warning -- if you reboot one of the hosts, ... have connectivity problems, flush the keys on both machines by running ... It's possible for the keys to get out of sync. ...
    (FreeBSD-Security)
  • Re: Symmetric Keys / Hash Algorithm / Discret Log
    ... > keys. ... [warning]. ... is required to break the math" where math could be a cipher, ... This sounds vaguely familiar....oh yeah...looking into my crystal ball I ...
    (sci.crypt)
  • Re: Can size_t be used as a substitute to unsigned long int ?
    ... users don't enter integers; they press keys. ... I got a warning from the compiler: ... Result of unsigned comparison is constant. ...
    (comp.lang.c)
  • Re: iterating through hash of hash references
    ... How can I dynamically assign new keys to a hash without ... Which is the line where it prints out the values in the hash. ... the same as it give me the other warning with the quotes. ...
    (perl.beginners)
  • Re: NTFS encryption on second drive inaccesible
    ... That is nice Robert, but we still believe there should be ... warning when starting to use EFS with XP ... very brief step-by-step on doing EFS safely with XP ... You can also use the "rundll32" to backup the EFS certs+ keys with ...
    (microsoft.public.windowsxp.security_admin)