[Swan] No ipsec0 device with XFRMi

Tuomo Soini tis at foobar.fi
Mon Jul 27 10:05:11 UTC 2020

On Mon, 27 Jul 2020 09:50:44 +0200
"Wolfgang Nothdurft" <wolfgang at linogate.de> wrote:

> does it have technical reasons that the setting ipsec-interface=0
> disables xfrmi, instead of generating a ipsec0 device, or was it a
> design decision, because of the hybrid value yes, no, number?

Yes. XFRMI interface id must be >= 1. That means 0 is not possible
interface id and keeping interface name in sync with interface id was
just implementation decision.

Tuomo Soini <tis at foobar.fi>
Foobar Linux services
+358 40 5240030
Foobar Oy <https://foobar.fi/>

More information about the Swan mailing list