Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 30 Jan 2008 08:40:16 +0000 (UTC)
From:      "Bjoern A. Zeeb" <bzeeb-lists@lists.zabbadoz.net>
To:        "Bruce M. Simpson" <bms@FreeBSD.org>
Cc:        freebsd-net@freebsd.org, Ingo Flaschberger <if@xip.at>
Subject:   Re: tcp-md5 check for incomming connection
Message-ID:  <20080130083105.S36482@maildrop.int.zabbadoz.net>
In-Reply-To: <479FF09B.4050705@FreeBSD.org>
References:  <alpine.LFD.1.00.0801291905020.17757@filebunker.xip.at> <479FF09B.4050705@FreeBSD.org>

index | next in thread | previous in thread | raw e-mail

On Wed, 30 Jan 2008, Bruce M. Simpson wrote:

Hi,

> Ingo Flaschberger wrote:
>> Hi,
>> 
>> linux does already support tcp-md5 checks for incomming connections, but 
>> freebsd not.
>> 
>> I would like to implement this feature into freebsd.
>> Any hints/wishes/considerations that I should consider?
>
> Someone(tm) keeps threatening to do this every 9-12 months, but I've yet to 
> see patches.
> ...

As a result of fixing tcp-md5 end of last year,

both of this (incoming validation + SPD integ) is on my TODO list on
position 10 (I am currently working on item 3) and there is more ipsec
work in the middle.

I also have tcp-md5 for IPv6 implementation on the same card.

I am willing to help or review patches in case someone wants to do it
now.


/bz

-- 
Bjoern A. Zeeb                                 bzeeb at Zabbadoz dot NeT
Software is harder than hardware  so better get it right the first time.


help

Want to link to this message? Use this
URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20080130083105.S36482>