Wind River Support Network

HomeDefectsLIN6-4507
Fixed

LIN6-4507 : SCTP over IPSec is not working when SCTP checksum is offloaded to hardware

Created: Sep 26, 2013    Updated: Dec 3, 2018
Resolved Date: Jan 7, 2014
Previous ID: LIN4-5940
Found In Version: 6.0
Fix Version: 6.0.0.2
Severity: Severe
Applicable for: Wind River Linux 6
Component/s: Networking

Description

SCTP IPv4 issues:
 

    When SCTP session is created over an IPSec tunnel [ with the properties mentioned in IPSec configuration" ], at the receiving end SCTP packets are getting dropped because of wrong SCTP header checksum , this can be seen in proc file /proc/net/sctp/snmp with increasing count for SctpChecksumErrors at the receiving end.

 

    When IPSec rule is added for specific SCTP [ client/server ] ports then port based IPSec policies were never applied for SCTP traffic.

 
SCTP IPv6 issues:
 

    IPSec policy lookup is not happening for SCTP traffic.

 
NOTE: Along with (3), all the IPv4 issues are applicable to IPv6 also.
 

Steps to Reproduce

problem happens on common_pc_64 hardware on wrl 4.3. 

Other Downloads


Live chat
Online