AnsweredAssumed Answered

imx6ul: IPSec encryption problem for outgoing packets

Question asked by Alexander Lampret on Feb 9, 2017
Latest reply on Jun 11, 2017 by Alexander Lampret


I'm facing different problems with IPSec aes-ctr encryption, based on different kernel.

Linux 4.1.15_2.0.0_ga:

aes-ctr out encryption seems to be wrong. All packages are dropped by the receiver. Unfortunately I'm not able to find the cause of this issue. Receiving and decryption works fine. Only outgoing packages are affected. Maybe related to this issue: Encryption of IPSEC ESP-packets coming from eth0 fails with CAAM when using AES 


Linux 3.14.52_1.1.1_ga:

I'm getting an error on calling /etc/init.d/setkey restart. Seems to be already know key length issue of aes-ctr, as I'm getting the same response as mentioned here: IPSEC AES key length in kernel 3.9.3 - Server Fault 


I have a different platform (not NXP) and there everything works fine. So my configuration is definitely correct. The only difference is kernel and platform.


Any ideas how to fix this?


Thank you so much!