KezNews.com
DownloadsOther NewsForumBlogsWallpapersJokewareSearch

News letter:


Enter Your E-mail:

Linux Cannot Connect to Vista SP1 over Cryptographic Security Services


section: windows, for your questions: KezNews forum, 4.6.2008

Computers running open source Linux operating systems have problems connecting to Windows Vista Service Pack 1 machines when cryptographic security services are involved.




Essentially, the problem affects all distributions of Linux and both Vista RTM and SP1 and is related to failures to establish IPsec connections between the platforms, in scenarios where the connection is initiated from the machine powered by the open source operating system. Internet Protocol security (Ipsec) is, of course, related to the cryptographic security services which are used to protect network communications.

"Consider the following scenario. You use Windows Vista Local Security Policy on a Windows Vista-based computer. Or, you use the new Windows Firewall with Advanced Security on a Windows Vista-based computer. You try to initiate an Internet Protocol Security (IPsec) connection from a Linux-based computer to the Windows Vista-based computer. In this scenario, you cannot establish the connection," Microsoft revealed.

Previous versions of the Windows operating systems, including Windows XP and Windows Server 2008 have no issues communicating with Linux. The same is valid for IPsec communications between Vista SP1 and Linux, when the connection is initiated by the Vista computer. This is not an interoperability problem, but rather a glitch in Vista SP1. Microsoft offers a hotfix for the customers impacted by this specific issue.

"In IPsec negotiation for transform proposal of the combination where Authentication Header (AH) and Encapsulating Security Payload (ESP) are used for securing the same packet (AH+ESP), Windows Vista switches the order and replaces the packet with ESP+AH. This behavior breaks the negotiation. In this case, when you initiate the IPsec connection from a Linux-based computer, the Linux operating system proposes that the IPsec security format is AH+ESP. Therefore, the connection cannot be established," Microsoft explained.

source: news.softpedia.com

send email Send link 2 friend  |  Permalink
<< previouse article
SUPERAntiSpyware Free Edition 4.15.1000
next article >>
Wait for Windows 7 or not?

MORE RELATED ARTICLES:
Vista SP1 and XP SP3 vs. Mac OS X and Linux || XP SP3 and Vista SP1 Will Own Linux-Free Desktops until Windows 7 || Linux and Mac OS X Eat Away at Windows, Even with XP SP3 and Vista SP1 || XP SP3 and Vista SP1 Critical Security Patches || Windows-based Eee PC to outsell Linux version - Another blow for Linux

Comments(1)

Usual crap

By Kevin on 06.06.2008 - 13:06
yet another arbitrary decision taken by microsoft without consideration for its consequences. they departed from an accepted behavior just for the sake of it.


No new comments are allowed for this article.

For your questions use our KezNews Forum