[Swan-dev] testing: use newer strongswan packages

Andrew Cagney andrew.cagney at gmail.com
Thu Dec 18 17:48:28 EET 2014


Yea,

The padding assumption wasn't unexpected.  We're going to need a
general strategy on how to abstract things like:
- IV construction
- padding
My default is to put them into the crypto vector.

Andrew


On 18 December 2014 at 10:08, Paul Wouters <paul at nohats.ca> wrote:
>
> hi,
>
> The stock fedora package and the one we have been using up to now did
> not enable CTR and CCM. (--enable-ctr and --enable-ccm). I've created
> a new set of rpms that have these enabled. You can find them at
>
> ftp://ftp.nohats.ca/ssw/
>
> Some dependancies seem to have changed, and so you do need to install
> the core package as well as the strongswan-tnc-imcvs.
>
> this build also completely disabled libipsec as that is causing many
> algorithms to be disabled as it is a whole XFRM/netkey replacement
> stack. Why fedora enables that I don't know. AFAIK, it is only useful
> on the android phone.
>
> Paul
> _______________________________________________
> Swan-dev mailing list
> Swan-dev at lists.libreswan.org
> https://lists.libreswan.org/mailman/listinfo/swan-dev


More information about the Swan-dev mailing list