Bugzilla – Bug 103736
Netfilter policy match not available in Beta 1 Kernel
Last modified: 2005-08-19 18:43:18 UTC
SuSE kernels since 9.2+ have included Patrick McHardy's IPSEC policy match extension (and the requisite IPSEC-NAT patches) as have iptables. The 2.6.13-rc5-git3-3-default kernel and iptables 1.3.3 included with SuSE 10 Beta 1 does not include this extension. This is a significant functional regression from earlier releases since policy match is the only mechanism currently available to rigorously configure Netfilter to work with the native IPSEC facility included with the 2.6 kernels.
Hmm, we should include it, I think. Olaf, can someone in your team (Jiri) look at this?
They will be in the upcoming beta. I'm closing as resolved/fixed; if you find any problems with the code, please file a new report, Tom! Thanks!