From owner-freebsd-net@FreeBSD.ORG Tue Nov 18 17:49:18 2008 Return-Path: Delivered-To: freebsd-net@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 9EF001065672 for ; Tue, 18 Nov 2008 17:49:18 +0000 (UTC) (envelope-from sclark46@earthlink.net) Received: from elasmtp-spurfowl.atl.sa.earthlink.net (elasmtp-spurfowl.atl.sa.earthlink.net [209.86.89.66]) by mx1.freebsd.org (Postfix) with ESMTP id 69FF68FC1E for ; Tue, 18 Nov 2008 17:49:18 +0000 (UTC) (envelope-from sclark46@earthlink.net) DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=dk20050327; d=earthlink.net; b=qec8sezB6qcL/s3G7QECUB1txnmTVfmesrE9Sb63ujfIDNAtr4EpK2IK2F5eOoAm; h=Received:Message-ID:Date:From:Reply-To:User-Agent:MIME-Version:To:Subject:References:In-Reply-To:Content-Type:Content-Transfer-Encoding:X-ELNK-Trace:X-Originating-IP; Received: from [208.118.36.229] (helo=joker.seclark.com) by elasmtp-spurfowl.atl.sa.earthlink.net with esmtpsa (TLSv1:AES256-SHA:256) (Exim 4.67) (envelope-from ) id 1L2UhR-0007dm-Td for freebsd-net@freebsd.org; Tue, 18 Nov 2008 12:49:18 -0500 Message-ID: <49230017.3050409@earthlink.net> Date: Tue, 18 Nov 2008 12:49:11 -0500 From: Stephen Clark User-Agent: Thunderbird 2.0.0.16 (X11/20080723) MIME-Version: 1.0 To: freebsd-net@freebsd.org References: <491C2235.4090509@earthlink.net> <1226589468.1976.12.camel@wombat.2hip.net> <491C4EC2.2000802@earthlink.net> <491D6CED.50006@earthlink.net> <491DC28E.80804@elischer.org> <1226688153.1719.23.camel@squirrel.corp.cox.com> <20081115102746.K61259@maildrop.int.zabbadoz.net> <4921DBB4.4060505@earthlink.net> <20081118113823.T61259@maildrop.int.zabbadoz.net> <4922BF6A.1000108@earthlink.net> <20081118173337.GA19402@verio.net> In-Reply-To: <20081118173337.GA19402@verio.net> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-ELNK-Trace: a437fbc6971e80f61aa676d7e74259b7b3291a7d08dfec79f1c406e031efcd1e93c747cb7e6693a9350badd9bab72f9c350badd9bab72f9c350badd9bab72f9c X-Originating-IP: 208.118.36.229 Subject: Re: FreeBSD 6.3 gre and tracerouteo X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: sclark46@earthlink.net List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 18 Nov 2008 17:49:18 -0000 David DeSimone wrote: > Stephen Clark wrote: >> switch (proto) { >> case IPPROTO_GRE: >> hlen += sizeof(struct gre_h); >> + >> + m->m_flags &= ~(M_DECRYPTED); >> + > > Are there security implications from removing this flag? > That is a very good question. I was wondering the same thing myself. Hopefully someone with a better understanding will comment on it. Steve -- "They that give up essential liberty to obtain temporary safety, deserve neither liberty nor safety." (Ben Franklin) "The course of history shows that as a government grows, liberty decreases." (Thomas Jefferson)