Re: working with kernels 2.6.12.[3-5]?

Larry Mulder <[email protected]> Mon, 15 Aug 2005 16:57:47 -0500
Newsgroups gmane.comp.encryption.cipe
Message-ID <[email protected]>
<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<html>
<head>
  <meta content="text/html;charset=ISO-8859-1" http-equiv="Content-Type">
</head>
<body bgcolor="#ffffff" text="#000000">
I am curious about this 75 line long patch!??&nbsp; All the patches that I
found necessary to compile cipe on kernel 2.6.12 and newer were posted
to <br>
<br>
<a class="moz-txt-link-freetext" href="http://sourceforge.net/tracker/?group_id=66201&atid=513682">http://sourceforge.net/tracker/?group_id=66201&amp;atid=513682</a><br>
<br>
and were nowhere near 75 lines long.&nbsp; Give the posted patches/fixes a
try and see what happens?<br>
<br>
-Larry<br>
<br>
<br>
<br>
Greg Louis wrote:
<blockquote cite="[email protected]"
 type="cite">
  <pre wrap="">I've managed to get cipe-1.6.0 to compile with the latest stable 2.6
kernels.  The patch (75 lines long, available on request) doesn't work
right: I have trouble receiving.  Many packets seem ok, but others
fail, and so far I've no idea what makes the difference.  The symptom
is that services like www, ssh (gets as far as [net]), nfs and pop3 may
just hang.

The topology is

  notebook&lt;==cipe-link==&gt;cipe-peer&lt;--ethernet--&gt;webserver

with cipe-1.6.0/linux-2.6.12.y on the notebook and
cipe-1.5.4/linux-2.4.32pre3 on the peer.

With tcpdump -vv running at both ends, a packet that failed looked like
this leaving the webserver:

16:00:15.438216 IP (tos 0x0, ttl  64, id 30162, offset 0, flags [DF],
proto: TCP (6), length: 912) webserver.farend.internal.www
  </pre>
  <blockquote type="cite">
    <pre wrap="">notebook.nearend.internal.48080: P 1:861(860) ack 2769 win 10928
    </pre>
  </blockquote>
  <pre wrap=""><!---->&lt;nop,nop,timestamp 81295539 9305319&gt;

It also looked right at the peer, but got reported this way on arrival
at the notebook, and apparently discarded:

16:00:15.456269 unknown ip 0

If the far-end peer acts as gateway with SNAT to the Internet, the same
problem is encountered with connections to remote sites.

Despite having run 1.5.4 and predecessors for several years on 2.2 and
2.4 kernels, I'm a pretty complete newbie at network code so I'm not
very surprised I'm having trouble, but if anybody has pointers or hints
I'd be most grateful for the assistance.

  </pre>
</blockquote>
<br>
</body>
</html>

--
Message sent by the [email protected] mailing list.
Unsubscribe: mail [email protected], "unsubscribe cipe-l" in body
Other commands available with "help" in body to the same address.
CIPE info and list archive: <URL:http://sites.inka.de/~bigred/devel/cipe.html>