From owner-freebsd-net@FreeBSD.ORG Tue Apr 10 08:08:50 2007 Return-Path: X-Original-To: net@FreeBSD.org Delivered-To: freebsd-net@FreeBSD.ORG Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 99EF816A404; Tue, 10 Apr 2007 08:08:50 +0000 (UTC) (envelope-from vanhu@zeninc.net) Received: from smtp.zeninc.net (reverse-25.fdn.fr [80.67.176.25]) by mx1.freebsd.org (Postfix) with ESMTP id 5B87E13C483; Tue, 10 Apr 2007 08:08:49 +0000 (UTC) (envelope-from vanhu@zeninc.net) Received: by smtp.zeninc.net (smtpd, from userid 1000) id DEAF23F6D; Tue, 10 Apr 2007 09:42:13 +0200 (CEST) Date: Tue, 10 Apr 2007 09:42:13 +0200 From: VANHULLEBUS Yvan To: gnn@FreeBSD.org Message-ID: <20070410074213.GA29265@zen.inc> References: <46171DB2.6070705@FreeBSD.org> <20070407101600.GF11297@obiwan.tataz.chchile.org> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: User-Agent: All mail clients suck. This one just sucks less. Cc: "Bruce M. Simpson" , Jeremie Le Hen , net@FreeBSD.org Subject: Re: A radical restructuring of IPsec... X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 10 Apr 2007 08:08:50 -0000 On Sun, Apr 08, 2007 at 11:25:37PM +0900, gnn@FreeBSD.org wrote: > At Sat, 7 Apr 2007 12:16:00 +0200, > Jeremie Le Hen wrote: [....] > > I'm a little sorrowful to see KAME's work going to be forgotten, but > > well, this is Darwin's law :-). > > > > BTW, a couple of years ago, I've tried KAME's snapshot against my > > RELENG_4's tree. There was a number of features that weren't in the > > base system and I'm pretty sure this is still the case. I can't > > remember them all but one: NAT-PT (RFC2766) (IPv4<->IPv6 > > translation). Do you have any idea what those features will become > > in later days ? > > I am working with another person who is interested in that and who has > patches, Yvan VANHULLEBUS, who also posts here. I'm not sure my patch is directly related to what Jeremie is talking about, but my NAT-T patchset (RFCS 3947 - 3948) should be quite easy to port to the source code (with your patch), as the actual version works with both IPSEC FAST_IPSEC (with some thanks to Manu from NetBSD and to Larry Baird). I'll try to generate quicly a new version for FreeBSD-HEAD as soon as possible. Yvan. -- NETASQ http://www.netasq.com