New commits:
commit 6a9aac807a89659c874beaaa5af2a0ba801a7c90
Author: Andrew Cagney <[email protected]>
Date:   Tue Sep 21 11:29:23 2021 -0400

    ikev2: rebuild fragmented messages using fragment 1 as the starting point
    
    Hence, save fragment 1 when it arrives.
    
    Fragment 1 can contain integrity protected (but unencrypted) payloads
    and those payloads need to be included.
    
    SKEYSEED complicates this: if fragment 1 isn't first, then another
    fragment is saved initially.  This way should SKEYSEED fail then
    there's a message to use when building the unprotected error response.

_______________________________________________
Swan-commit mailing list
[email protected]
https://lists.libreswan.org/mailman/listinfo/swan-commit

Reply via email to