Open main menu

OpenVZ Virtuozzo Containers Wiki β

IPsec

Revision as of 18:43, 19 November 2013 by Kir (talk | contribs) (moar kernel modules)

For IPsec to work inside a container:

  • Kernel 042stab084.8 or later
  • The following kernel modules must be loaded before container start:
af_key esp4 esp6 xfrm4_mode_tunnel xfrm6_mode_tunnel
  • Capability net_admin must be granted to a container

Tested with libreswan.