New commits:
commit 6a9aac807a89659c874beaaa5af2a0ba801a7c90
Author: Andrew Cagney <[email protected]>
Date: Tue Sep 21 11:29:23 2021 -0400
ikev2: rebuild fragmented messages using fragment 1 as the starting point
Hence, save fragment 1 when it arrives.
Fragment 1 can contain integrity protected (but unencrypted) payloads
and those payloads need to be included.
SKEYSEED complicates this: if fragment 1 isn't first, then another
fragment is saved initially. This way should SKEYSEED fail then
there's a message to use when building the unprotected error response.
_______________________________________________
Swan-commit mailing list
[email protected]
https://lists.libreswan.org/mailman/listinfo/swan-commit