[CentOS] 40 second delay on automounts with 2.6.18-53.1.21.el5 kernel

Tue May 27 15:21:03 UTC 2008
Joe Pruett <joey at clean.q7.com>

i have found the underlying cause of this.  it is dns resolution taking 
too long.  and this is because my primary dns server is over an ipsec 
tunnel and the ipsec tunnel doesn't seem to want to work.  i am getting a 
session established, but traffic doesn't flow.  i have reset both ends and 
still no joy.  i do have some firewalling in place and will be testing 
that next.

so, has anyone seen ipsec get messed up with the latest kernel?