Considering our requirement for the ability to perform IKE exchanges over localhost I thought I would take a quick look at the ipsec-tools sources and see if anything jumped out at me. After taking a look I think I have found a solution which should work.
I've hacked up a simple proof of concept patch (see next mail) which attempts to demonstrate the solution. It is backed against the sources from the ipsec-tools-0.6.2-6 RPM and works for the simple testing I have done. I wouldn't consider this patch ready for prime time but I wanted to throw it out on the list to help foster discussion and move things along. -- paul moore linux security @ hp -- redhat-lspp mailing list [email protected] https://www.redhat.com/mailman/listinfo/redhat-lspp
