Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 08 Apr 2007 23:25:37 +0900
From:      gnn@FreeBSD.org
To:        Jeremie Le Hen <jeremie@le-hen.org>
Cc:        "Bruce M. Simpson" <bms@FreeBSD.org>, net@FreeBSD.org
Subject:   Re: A radical restructuring of IPsec...
Message-ID:  <m2y7l32ba6.wl%gnn@neville-neil.com>
In-Reply-To: <20070407101600.GF11297@obiwan.tataz.chchile.org>
References:  <m21wix61iy.wl%gnn@neville-neil.com> <46171DB2.6070705@FreeBSD.org> <20070407101600.GF11297@obiwan.tataz.chchile.org>

index | next in thread | previous in thread | raw e-mail

At Sat, 7 Apr 2007 12:16:00 +0200,
Jeremie Le Hen wrote:
> 
> Hi, Bruce,
> 
> On Sat, Apr 07, 2007 at 05:27:30AM +0100, Bruce M. Simpson wrote:
> > I'm all for this in principle. I believe that the case for FAST_IPSEC 
> > over KAME IPSEC is fairly clear for those of us who have read the USENIX 
> > paper. Qualitatively speaking I can say FAST_IPSEC has been more 
> > pleasant to work with when introducing the TCP-MD5 support.
> 
> Would you point out the paper you're talking about please ?
> 
http://www.usenix.org/events/bsdcon03/tech/leffler_ipsec.html

You need a password (i.e. you need to be a USENIX member) to read it.

> George,
> 
> Thank you for your work!
> 

Thank me when it's done ;-)

> I'm a little sorrowful to see KAME's work going to be forgotten, but
> well, this is Darwin's law :-).
> 
> BTW, a couple of years ago, I've tried KAME's snapshot against my
> RELENG_4's tree.  There was a number of features that weren't in the
> base system and I'm pretty sure this is still the case.  I can't
> remember them all but one: NAT-PT (RFC2766) (IPv4<->IPv6
> translation).  Do you have any idea what those features will become
> in later days ?

I am working with another person who is interested in that and who has
patches, Yvan VANHULLEBUS, who also posts here.

Best,
George


help

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?m2y7l32ba6.wl%gnn>