imx6ul: IPSec encryption problem for outgoing packets

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

imx6ul: IPSec encryption problem for outgoing packets

811 Views
alampret
Contributor I

Hi,

I'm facing different problems with IPSec aes-ctr encryption, based on different kernel.

Linux 4.1.15_2.0.0_ga:

aes-ctr out encryption seems to be wrong. All packages are dropped by the receiver. Unfortunately I'm not able to find the cause of this issue. Receiving and decryption works fine. Only outgoing packages are affected. Maybe related to this issue:  Encryption of IPSEC ESP-packets coming from eth0 fails with CAAM when using AES 

Linux 3.14.52_1.1.1_ga:

I'm getting an error on calling /etc/init.d/setkey restart. Seems to be already know key length issue of aes-ctr, as I'm getting the same response as mentioned here: IPSEC AES key length in kernel 3.9.3 - Server Fault 

I have a different platform (not NXP) and there everything works fine. So my configuration is definitely correct. The only difference is kernel and platform.

Any ideas how to fix this?

Thank you so much!

Labels (1)
0 Kudos
2 Replies

591 Views
alampret
Contributor I

I switched to yocto kernel 4.10 and now it works fine

0 Kudos

591 Views
Yuri
NXP Employee
NXP Employee

Hello,

  Perhaps it makes sense to apply to 

NXP Professional Services|NXP 

Professional Services Software Technology|NXP 

Regards,

Yuri.