Wind River Support Network


LIN6-4507 : SCTP over IPSec is not working when SCTP checksum is offloaded to hardware

Created: Sep 26, 2013    Updated: Dec 3, 2018
Resolved Date: Jan 7, 2014
Previous ID: LIN4-5940
Found In Version: 6.0
Fix Version:
Severity: Severe
Applicable for: Wind River Linux 6
Component/s: Networking


SCTP IPv4 issues:

    When SCTP session is created over an IPSec tunnel [ with the properties mentioned in IPSec configuration" ], at the receiving end SCTP packets are getting dropped because of wrong SCTP header checksum , this can be seen in proc file /proc/net/sctp/snmp with increasing count for SctpChecksumErrors at the receiving end.


    When IPSec rule is added for specific SCTP [ client/server ] ports then port based IPSec policies were never applied for SCTP traffic.

SCTP IPv6 issues:

    IPSec policy lookup is not happening for SCTP traffic.

NOTE: Along with (3), all the IPv4 issues are applicable to IPv6 also.

Steps to Reproduce

problem happens on common_pc_64 hardware on wrl 4.3. 

Other Downloads

Live chat