Date: Fri, 14 Jun 2013 17:24:30 +0400 From: Slawa Olhovchenkov <slw@zxy.spb.ru> To: VANHULLEBUS Yvan <vanhu@FreeBSD.org> Cc: freebsd-net@freebsd.org Subject: Re: IPSec improvement Message-ID: <20130614132430.GS34554@zxy.spb.ru> In-Reply-To: <20130614131400.GA23375@zeninc.net> References: <20130614103615.GQ34554@zxy.spb.ru> <20130614131400.GA23375@zeninc.net>
next in thread | previous in thread | raw e-mail | index | archive | help
On Fri, Jun 14, 2013 at 03:14:00PM +0200, VANHULLEBUS Yvan wrote: > On Fri, Jun 14, 2013 at 02:36:15PM +0400, Slawa Olhovchenkov wrote: > > I am plan to do some improve in IPSec stack: > > > > - AES-GCM support (from OpenBSD) > > Dylan Castine already started to work on that last year (see ML's > archives), and we took some time to work together on that. > > Unfortunately, patch hasn't been commited since, as Dylan needed some > more time to do some important cleanups on the code. > > I'll try to recontact Dylan to see if he could take time to finish > that. OK, you inform about progress in this list? > > - GOST 28147-89 and 34.10-2001 support (by modules) > > - support for IPSec acceleration in network cards > > What kind of acceleration, in which kind of network card ? > > Are you talking about encryption/authentication done in the network > card (or CPUs, or .....), or do you want to use advanced IPsec > offloading provided by some chipsets ? IPSec offloadin (ex. Intel 82599).
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20130614132430.GS34554>