>>  We do not remove the trailing authentication data before doing the
>>next header/pad processing. The result is garbage.
>I thought I fixed this (if we're talking about the same thing) in
>late August, at least for IPv4.  I guess I'd better go double-check
>if I ever committed it.

        I don't think you can fix it, unless you know that there's
        authentication data (or there's no authentication data), before you
        start looking at the packet.  authentication data may or may not be
        there depending on IPsec peer's agreement.
        a new command line option, or whatever, is necessary.

itojun
-
This is the TCPDUMP workers list. It is archived at
http://www.tcpdump.org/lists/workers/index.html
To unsubscribe use mailto:[EMAIL PROTECTED]?body=unsubscribe

Reply via email to