Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 3 Dec 2008 09:25:49 +0100
From:      VANHULLEBUS Yvan <vanhu@FreeBSD.org>
To:        Eygene Ryabinkin <rea-fbsd@codelabs.ru>
Cc:        freebsd-net@freebsd.org, Christian Weisgerber <naddy@mips.inka.de>, gnn@freebsd.org
Subject:   Re:  [ipsec] aes-ctr question
Message-ID:  <20081203082549.GA62889@zeninc.net>
In-Reply-To: <JsLl5HMkEyWlPKM1sYjNK0G%2BM34@%2BFxG3S39oD8KW2mcneDQRW6aq9s>
References:  <49349E26.30002@redhat.com> <gh44rc$11fc$1@lorvorc.mips.inka.de> <JsLl5HMkEyWlPKM1sYjNK0G%2BM34@%2BFxG3S39oD8KW2mcneDQRW6aq9s>

next in thread | previous in thread | raw e-mail | index | archive | help
On Wed, Dec 03, 2008 at 10:54:55AM +0300, Eygene Ryabinkin wrote:
[...]
> Good catch.  Perhaps setkey should be extended to warn the user about
> this neat.  The patch is attached.  George, people, what do you think
> about it?

If we're going to add security warnings in setkey, we could just put a
warning when using static keys (so basically put a warning for "add"
command....).


Yvan.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20081203082549.GA62889>