Re: [ovs-dev] [PATCH] ovs-monitor-ipsec: Add force-encapsulation option to force NAT-T

2022-03-01 Thread Andreas Karis
Thank you, I posted a new version. On Fri, Feb 25, 2022 at 10:17 PM Mike Pattrick wrote: > On Thu, 2022-01-20 at 16:33 +0100, Andreas Karis wrote: > > Both LibreSwan and OpenSwan allow administrators to unconditionally > > force enable NAT-T for ESP. This may help to surmount restrictive > >

Re: [ovs-dev] [PATCH] ovs-monitor-ipsec: Add force-encapsulation option to force NAT-T

2022-02-25 Thread Mike Pattrick
On Thu, 2022-01-20 at 16:33 +0100, Andreas Karis wrote: > Both LibreSwan and OpenSwan allow administrators to unconditionally > force enable NAT-T for ESP. This may help to surmount restrictive > firewalls in scenarios where IP protocol number 50 is blocked, but > where > NAT autodetection fails.

[ovs-dev] [PATCH] ovs-monitor-ipsec: Add force-encapsulation option to force NAT-T

2022-01-20 Thread Andreas Karis
Both LibreSwan and OpenSwan allow administrators to unconditionally force enable NAT-T for ESP. This may help to surmount restrictive firewalls in scenarios where IP protocol number 50 is blocked, but where NAT autodetection fails. Add a switch --force-encapsulation to expose this feature to users