| Summary: | 2 tunnels (IPv4 and IPv6) do not work together using certs/keys | ||
|---|---|---|---|
| Product: | Red Hat Enterprise Linux 5 | Reporter: | RHEL Program Management <pm-rhel> |
| Component: | openswan | Assignee: | Avesh Agarwal <avagarwa> |
| Status: | CLOSED ERRATA | QA Contact: | BaseOS QE Security Team <qe-baseos-security> |
| Severity: | urgent | Docs Contact: | |
| Priority: | urgent | ||
| Version: | 5.5 | CC: | amarecek, avagarwa, cww, deepak.dg.gupta, ebenes, mbelangia, pm-eus, sgrubb, vincew |
| Target Milestone: | rc | Keywords: | ZStream |
| Target Release: | --- | ||
| Hardware: | x86_64 | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | openswan-2.6.21-5.el5_6.4 | Doc Type: | Bug Fix |
| Doc Text: |
Due to an error in a buffer initialization, the following message may have been written to the /var/log/secure log file during the IKE negotiation:
size ([size]) differs from size specified in ISAKMP HDR ([size])
Consequently, the establishment of secure connections could be significantly delayed. This update applies an upstream patch that resolves this issue, and the establishment of IPsec connections is is no longer delayed.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | 2011-03-28 12:39:46 UTC | Type: | --- |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Bug Depends On: | 652733 | ||
| Bug Blocks: | |||
|
Description
RHEL Program Management
2011-02-24 07:59:21 UTC
Technical note added. If any revisions are required, please edit the "Technical Notes" field
accordingly. All revisions will be proofread by the Engineering Content Services team.
New Contents:
Due to an error in a buffer initialization, the following message may have been written to the /var/log/secure log file during the IKE negotiation:
size ([size]) differs from size specified in ISAKMP HDR ([size])
Consequently, the establishment of secure connections could be significantly delayed. This update applies an upstream patch that resolves this issue, and the establishment of IPsec connections is is no longer delayed.
An advisory has been issued which should help the problem described in this bug report. This report is therefore being closed with a resolution of ERRATA. For more information on therefore solution and/or where to find the updated files, please follow the link below. You may reopen this bug report if the solution does not work for you. http://rhn.redhat.com/errata/RHBA-2011-0388.html |