Date: Sun, 08 Apr 2007 23:25:37 +0900 From: gnn@FreeBSD.org To: Jeremie Le Hen <jeremie@le-hen.org> Cc: "Bruce M. Simpson" <bms@FreeBSD.org>, net@FreeBSD.org Subject: Re: A radical restructuring of IPsec... Message-ID: <m2y7l32ba6.wl%gnn@neville-neil.com> In-Reply-To: <20070407101600.GF11297@obiwan.tataz.chchile.org> References: <m21wix61iy.wl%gnn@neville-neil.com> <46171DB2.6070705@FreeBSD.org> <20070407101600.GF11297@obiwan.tataz.chchile.org>
next in thread | previous in thread | raw e-mail | index | archive | help
At Sat, 7 Apr 2007 12:16:00 +0200, Jeremie Le Hen wrote: > > Hi, Bruce, > > On Sat, Apr 07, 2007 at 05:27:30AM +0100, Bruce M. Simpson wrote: > > I'm all for this in principle. I believe that the case for FAST_IPSEC > > over KAME IPSEC is fairly clear for those of us who have read the USENIX > > paper. Qualitatively speaking I can say FAST_IPSEC has been more > > pleasant to work with when introducing the TCP-MD5 support. > > Would you point out the paper you're talking about please ? > http://www.usenix.org/events/bsdcon03/tech/leffler_ipsec.html You need a password (i.e. you need to be a USENIX member) to read it. > George, > > Thank you for your work! > Thank me when it's done ;-) > I'm a little sorrowful to see KAME's work going to be forgotten, but > well, this is Darwin's law :-). > > BTW, a couple of years ago, I've tried KAME's snapshot against my > RELENG_4's tree. There was a number of features that weren't in the > base system and I'm pretty sure this is still the case. I can't > remember them all but one: NAT-PT (RFC2766) (IPv4<->IPv6 > translation). Do you have any idea what those features will become > in later days ? I am working with another person who is interested in that and who has patches, Yvan VANHULLEBUS, who also posts here. Best, George
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?m2y7l32ba6.wl%gnn>