We tried to apply Colubris Crypto lib hardware acceleration patch to 2.4.18 kernel and freeswan 1.96. Couse it was a patch for 2.2.18 version we had several problems, most of which we solved by changing some lines in patch file.
But even after that our patched kernel and freswan 1.96 (which was
also patched ) did not work properly.
The all steps of connection establishment are successfull and we allways get an "IPSEC SA established" message so we can say that.
But (for example) "ping A" from B fails( we tried simple gateway-to-gateway connection).
So we tried to debug ( if it possible to
). We inserted some
printk-s to ipsec and crypto lib files and saw that ICMP packets which
were sent from machine B arrived to machine A and
decrypted successfully, but they were lost in IP stack.
Would you please help us to solve these problems or otherwise give us an
information about sites and documents about known problems or any
other hints which could be useful for us.