[Bug 171347] Review Request: l2tpd - Layer 2 Tunneling Protocol daemon

bugzilla at redhat.com bugzilla at redhat.com
Sun Dec 11 11:39:37 UTC 2005


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug report.

Summary: Review Request: l2tpd - Layer 2 Tunneling Protocol daemon


https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=171347





------- Additional Comments From dmitry at butskoy.name  2005-12-11 06:39 EST -------
> I do not know what you mean with "local-address".
Surely, "listen-address" :)
The problem is we should not allow world-wide access to this port by default. 

> It is far easier to just mark ESP and UDP 500/4500 packets and only allow
> marked packets to reach port 1701 (l2tp port).
Not easy for "end-users". Also IMHO in general it is possible to use l2tp even
without IPSec ...

If after the default installation and "service l2tpd start" there are no any
secure holes, all is OK. If not, the default config must be changed properly.

> I am still using high releases because otherwise the rpms in this
> correspondence would not be incremental in their release
I can guess incrementation by the comment's number :)

Paul,
This package cannot be added to FE with the current version-release scheme,
because of the appropriate Fedora versioning policy. I don't understand why you
want to save the wrong (for the Fedora) versioning, even temporary... :(

Also, please, either apply or answer something for comment #12 - comment #13

-- 
Configure bugmail: https://bugzilla.redhat.com/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.




More information about the fedora-extras-list mailing list