Juniper SSL VPN support

Olda Bartunek olda at
Thu Mar 26 16:08:24 PDT 2015

David Woodhouse <dwmw2 <at>> writes:

> Hm. And with --no-dtls it works OK, I presume?
> This is verify_packet_seqno() in esp.c. Can you make it print the 
> values of esp->seq_backlog and esp->seq so we can see what's happening?
> And try just making it return zero :)

With --no-dtls this message about discarding disappear but still nothing 
pass the tunnel (while on linux everything works ok even without --no-dtls)
Is there a way how to get debug output or I need to touch esp.c?

