Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 10 Jul 2000 15:34:32 +0900
From:      Jun-ichiro itojun Hagino <itojun@iijlab.net>
To:        "Louis A. Mamakos" <louie@TransSys.COM>
Cc:        mike@sentex.net (Mike Tancsa), freebsd-net@FreeBSD.ORG
Subject:   Re: Hardware crypto (Re: KAME stable 20000704) 
Message-ID:  <1034.963210872@localhost>
In-Reply-To: louie's message of Sun, 09 Jul 2000 18:21:31 -0400. <200007092221.SAA00894@whizzo.transsys.com> 

next in thread | previous in thread | raw e-mail | index | archive | help
>Note that their drivers export a user-mode device, which might be usable
>for TLS/SSL hardware assist, isn't applicable for IPSEC assist.  See the
>OpenBSD driver for software that addresses that need.
>
>That being said, the folks that sell the powercrypt board have been very
>helpful and supportive to folks using their products on UNIX platforms. 
>I've been very pleased in my interactions with them.

	In case anyone got confused: please note that "IPsec support for
	crypto card" and "crypto card support as user-mode device file"
	are totally different thing.  Former one needs MAJOR work in
	network IP layer design (BSD IP layer runs under software interrupt,
	killing possibility for offloading CPU).  OpenBSD did a truely
	super job on this.

itojun


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-net" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?1034.963210872>