Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 28 Jun 2004 21:40:23 GMT
From:      "Bjoern A. Zeeb" <bzeeb-lists@lists.zabbadoz.net>
To:        net@FreeBSD.org
Subject:   Re: kern/23400: IPsec transport mode precludes filtering onunderlying transport header
Message-ID:  <200406282140.i5SLeNxL087321@freefall.freebsd.org>

next in thread | raw e-mail | index | archive | help
The following reply was made to PR kern/23400; it has been noted by GNATS.

From: "Bjoern A. Zeeb" <bzeeb-lists@lists.zabbadoz.net>
To: freebsd-gnats-submit@FreeBSD.org, seraf@2600.com
Cc:  
Subject: Re: kern/23400: IPsec transport mode precludes filtering on underlying
 transport header
Date: Mon, 28 Jun 2004 21:25:28 +0000 (UTC)

 > o [2000/12/09] kern/23400  net         IPsec transport mode precludes filtering
 
 I think this one can be closed.
 
 We can do filtering of IP encapsulated in IPSec since
 
 http://www.freebsd.org/cgi/cvsweb.cgi/src/sys/netinet/ip_fw2.c#rev1.34
 resp.
 http://www.freebsd.org/cgi/cvsweb.cgi/src/sys/netinet/ip_fw2.c#rev1.51
 
 with the ipsec flag.
 
 -- 
 Bjoern A. Zeeb				bzeeb at Zabbadoz dot NeT



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200406282140.i5SLeNxL087321>