Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

Re: linux-ipsec: can this work ?!

From: William Allen Simpson <bsimpson(at)morningstar.com>
Date: Wed May 13 1998 - 10:16:31 EDT


> From: Mark Pilon <mpilon@compatible.com>
> my description of the problem/goal is:
I just joined this list last Friday, on the recommendation of Angelos, as we are having the same kind of discussion over on the Photuris list.

I wish someone had told me about this list sooner. Is there an archive of this list?

I'd really like to come up with the same API mechanisms for both Linux and BSD-derived kernels, so that applications will require the fewest changes when porting.

> -- I want to visit as few places in the stack as possible. at
Following Karn's KA9Q code direction, how hard would it be to add an SA or SPI parameter to ip output calls from the sockets?

Then, the security information would be stored in the socket structure, and could easily be duplicated on forks.

Is it possible to avoid adding anything above the sockets, that would require application changes?

WSimpson@UMich.edu

    Key fingerprint = 17 40 5E 67 15 6F 31 26 DD 0D B9 9B 6A 15 2C 32 Received on Wed May 13 11:25:55 1998

Do you need help?X

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 12:59:10 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library