On Sat, Oct 15, 2011 at 12:13 PM, Maxim Bourmistrov <[email protected]>wrote:
> Thanks for your replay, Trevor! > > Yes, indeed, PF was the case here. > Except "pass on enc0 from any to any keep state (if-bound)", I also decided > to > pass all ESP traffic. > > Tunnel, however, sometimes times out. Not sure about the reason for this > yet. > > //maxim > > Hi! There is a patch for 4.8 and 4.9 that probably fixes your timeouts problem. Please read this thread: http://marc.info/?l=openbsd-misc&m=130959664208980&w=2 It's not a critical bugfix, so it's not on the errata page, but it is in the cvs. Joosep

