[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Date: Wed, 12 Dec 2007 09:52:54 +0800
From: Herbert Xu <herbert@...dor.apana.org.au>
To: Tyler Hicks <tyhicks@...edu>
Cc: netdev@...r.kernel.org, latten@...ibm.com, davem@...emloft.net
Subject: Re: [IPSEC] RFC 4301 PFP Support
On Tue, Dec 11, 2007 at 01:34:45PM -0800, Tyler Hicks wrote:
>
> Should we just use the larval selectors or should we assume that
> openswan will begin to send valid selectors? I asked for the openswan
> dev's opinions and they referred me to Herbert Xu. It seems as though
> the correct solution would be for openswan to pass valid selectors in
> UPDSA messages, even if it is the larval selectors we gave them.
Yes we should patch openswan to generate the correct SA selectors.
With the previous standard SA selectors were redundant due to the
presence of policy selectors. But with RFC 4301 the KM should
start setting them.
Cheers,
--
Visit Openswan at http://www.openswan.org/
Email: Herbert Xu ~{PmV>HI~} <herbert@...dor.apana.org.au>
Home Page: http://gondor.apana.org.au/~herbert/
PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt
--
To unsubscribe from this list: send the line "unsubscribe netdev" in
the body of a message to majordomo@...r.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Powered by blists - more mailing lists