lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [day] [month] [year] [list]
Message-ID: <CAP22eLEocTn8KQD9pQ9aDM6rxc-5eAA0P6RdxEzpX5e5X76CVw@mail.gmail.com>
Date: Mon, 29 Sep 2025 16:29:30 +0300
From: "Lev R. Oshvang" <levonshe@...il.com>
To: netdev@...r.kernel.org
Subject: Help : IPSEC and cellular modem produce corrupted SEC packet

Hi list,
We had some strange problem : Linux 6.12.16 , ARM64 armada-3720 IPSEC
in tunnel mode.
Userspace is strongswan.
It works ok for wired transmission and also for cellular on kernel 4.19
 SEC layer looks OK in tcpdump of wwan0.
We had offload EP97 engine, driver crypto-safexcel is loaded but ipsec
is not configured to make use of it
But receiver got corrupted SEC layer packets
We tried several cellular modems , same  problem
So the problem I conclude is in kernel

Now the MAGIC
On a hunch I disabled   INET_ESP_OFFLOAD and XFRM_OFFLOAD  in kernel config .
It fixed the problem.
Why ?

I am far from expert in kernel networking, not even close. Can u
please advice me in what direction I should dig ?

Br.
Lev

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ