Bug#1053550: IKEv2 regression when IP address changes behind NAT-T

2024-03-11 Thread Daniel Kahn Gillmor
Control: forwarded 1053550 https://github.com/libreswan/libreswan/issues/1645 On Fri 2023-10-06 15:31:40 +0800, Herbert Xu wrote: > When the IP address of a host behind NAT changes, libreswan fails > to respond correctly when IKEv2 is used. This is a regression from > IKEv1 as libreswan will

Bug#1053550: IKEv2 regression when IP address changes behind NAT-T

2023-10-06 Thread Herbert Xu
Package: libreswan Version: 4.10-2+deb12u1 When the IP address of a host behind NAT changes, libreswan fails to respond correctly when IKEv2 is used. This is a regression from IKEv1 as libreswan will correctly shut down the existing connection and initiate a new one when DPD kicks in. Let the