Known problems/limitations with FreeSWAN 2.00
- co-terminal connections of the "far" kind do not work.
- pluto/KLIPS melt down when /proc/net/ipsec_eroute is larger
than 4K in size. Critical number is somewhere near 7000 %pass
routes. (ARCH will fix)
- OE needs to work to machines on the same subnet.
- notebook booting
- can not mix OE and VPNs due to security conflicts (OE nodes get
priveledges of VPN). Thus, can not replace VPN with OE.
- "all these crazy scripts"- keeps it from being embedded.
- IPv6 support.
- DNSSEC support.
- FreeS/WAN needs to maintain the keying for connections which have
open file descriptors.
- integrated Super-FreeS/WAN
-