On Wed, 4 Oct 2006, [EMAIL PROTECTED] wrote: > No, both NETKEY. Nearly identical means the working one is running x86 vs > the other amd64; Debian stable (but with the openswan 2.4 package from > backports.org which is in essence a rebuild of the testing version - > needed because 2.4 on the other gateway makes the 2.2 from stable crash, > see http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=360735) on the > working one vs Debian testing on the other, since the hardware is nowhere > near working with stable; and single CPU on the working one vs dual-core > on the other.
Running openswan-2.2 is really a bad idea. As you found out, it is not "stable". I am also not sure how many of the security patches that have made it into 2.3 and 2.4 have been patched into this 2.2 version. And that's apart from all the crashers, of which apparently not all of them made it into the debian version. openswan series 2.4 is our "stable" tree. Development is happening in 2.5.x (git #public) and 2.6.x (git #ocf). Debian stable should upgrade their openswan to 2.4.x Paul -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]