[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

(usagi-users 00770) New version of IPSec for IPv6 available (based on FreeSWAN 1.91 and kernel 2.4.7)



Hi all,

IABG is pleased to announce a new available version of IPSec for IPv6.
You can download it at 
"http://www.ipv6.iabg.de";, in the Download-Section.

This code is based on the FreeS/WAN 19.91 distribution and on the IPSec
transport mode implementation done by Stefan Schlott (University of
Ulm, Germany). The implementation of IPSec tunnel mode and the
integration in FreeS/WAN was done by IABG as part of the EU project
6INIT (www.6init.org) 6WINIT (www.6winit.org).

Currently the following features have been tested successfully:
- IPv6 tunnel mode
- IPv6 transport mode
- Encryption algorithm: 3DES
- Authentication algorithm: MD5
- Preshared secrets and RSA authentication
- Tested with Linux kernel 2.4.7 (others might work)
- Tested with static routing
- Supports Road Warrior configuration

Definitly not working:
- Building FreeS/WAN and IPSec for IPv6 as modules
- No support for multi-homing (more than one global unicast IPv6
  address per interface)
- ...

Still to do:
- Support compilation as module
- Support IP compression
- Test opportunistic encryption
- ...

Changes from version 0.1.1:
- FreeS/WAN updated (now 1.91)
- Linux kernel 2.4.7 now works
- UDP, TCP, ICMP and fragmented packets are supported
- Road Warrior configuration supported
- Transport mode works (again)
- Code clean up
- Many bug fixes and improvements

Comments, feedback and testresults are welcome,

Gerhard Gessler, gessler@xxxxxxx
Florian Heissenhuber, heissenhuber@xxxxxxx


-- 
---------------------------------------------------
Gerhard Geßler

Communication Networks, IABG mbH
Einsteinstr. 20
85521 Ottobrunn, Germany

Telefon: +49 89 6088 - 2021
Fax: +49 89 6088 - 2845

E-Mail: gessler@xxxxxxx