3.9.3 kernel supports none AES-CTR key lengths
Bug #1199358 reported by
Alexander Gurvitz
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
ipsec-tools (Ubuntu) |
Invalid
|
Undecided
|
Unassigned |
Bug Description
Actually it is a kernel bug, but since it affects (only) setkey users, posting here.
The following ipsec-tools.conf:
#!/usr/sbin/setkey -f
flush;
add 1.1.1.1 1.1.1.2 esp 1000 -E aes-ctr 0x1111111111111
.....results is error:
line 3: Not supported at [0x111111111111
parse failed, line 3.
Any key length I try results in the same error message. With 3.2 kernel it worked well.
ipsec-tools version: 0.8.0
To post a comment you must log in.
It works in the latest release kernel (3.10.0-2.10).
I think this bug should be closed. (Sorry submitting bug before testing it with the latest release kernel.)
Alexander