Public bug reported:

StrongSwan with GCM and large packet sizes produces unstable behavior when used 
in Linux native environment. 
 
---uname output---
Linux ubu01 4.15.0-42-generic #45-Ubuntu SMP Thu Nov 15 19:29:11 UTC 2018 s390x 
s390x s390x GNU/Linux
 
Machine Type = 3906 / M04 (z14), LPAR (dedicated) 
 
---Debugger---
A debugger is not configured
 
---Steps to Reproduce---
On two separate machines (Linux native), install StrongSwan and on both 
machines, configure the encryption with aes128gcm8 for IPsec.

Then run the following command from one of the machine:

```
$# ping <other_machine_ip> -s 1024
```

Small packet sizes are working as expected. However, anything large (around 
1024 bytes or more) are sometimes returning wrong values, or the packets are 
getting lost. This problem does not occur for ciphers not involving GCM. 
 
Userspace tool common name: StrongSwan 
 
The userspace tool has the following bit modes: both 

Userspace package: StrongSwan

Userspace tool obtained from project website:  na 
 
-Attach ltrace and strace of userspace application.

** Affects: ubuntu-z-systems
     Importance: High
     Assignee: Canonical Server Team (canonical-server)
         Status: Triaged

** Affects: strongswan (Ubuntu)
     Importance: Undecided
     Assignee: Skipper Bug Screeners (skipper-screen-team)
         Status: New


** Tags: architecture-s39064 bugnameltc-177435 severity-high 
targetmilestone-inin18041

** Tags added: architecture-s39064 bugnameltc-177435 severity-high
targetmilestone-inin18041

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1828035

Title:
  StrongSwan with GCM and large packet sizes produces unstable behavior

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu-z-systems/+bug/1828035/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to