netdev
[Top] [All Lists]

Re: take 2 WAS(Re: PATCH: IPSEC xfrm events

To: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx>
Subject: Re: take 2 WAS(Re: PATCH: IPSEC xfrm events
From: jamal <hadi@xxxxxxxxxx>
Date: 03 Apr 2005 22:39:56 -0400
Cc: Patrick McHardy <kaber@xxxxxxxxx>, Masahide NAKAMURA <nakam@xxxxxxxxxxxxxx>, "David S. Miller" <davem@xxxxxxxxxxxxx>, netdev <netdev@xxxxxxxxxxx>
In-reply-to: <20050404022601.GA17293@xxxxxxxxxxxxxxxxxxx>
Organization: jamalopolous
References: <1112358278.1096.160.camel@xxxxxxxxxxxxxxxx> <20050401123554.GA3468@xxxxxxxxxxxxxxxxxxx> <1112403845.1088.14.camel@xxxxxxxxxxxxxxxx> <20050402012813.GA24575@xxxxxxxxxxxxxxxxxxx> <1112406164.1088.54.camel@xxxxxxxxxxxxxxxx> <20050402014619.GB24861@xxxxxxxxxxxxxxxxxxx> <1112469601.1088.173.camel@xxxxxxxxxxxxxxxx> <1112538718.1096.394.camel@xxxxxxxxxxxxxxxx> <20050404005805.GA16543@xxxxxxxxxxxxxxxxxxx> <1112579761.1096.412.camel@xxxxxxxxxxxxxxxx> <20050404022601.GA17293@xxxxxxxxxxxxxxxxxxx>
Reply-to: hadi@xxxxxxxxxx
Sender: netdev-bounce@xxxxxxxxxxx
On Sun, 2005-04-03 at 22:26, Herbert Xu wrote:
> On Sun, Apr 03, 2005 at 09:56:01PM -0400, jamal wrote:

> > I dont think we should broadcast out keys. 
> 
> I think that decision should be made by the KM.  So you wouldn't do it
> for PFKEY, but netlink should definitely do it.
> 

Is it possible to have non-root privileged pfkey sockets. If yes,
then it makes sense.

> Yes unless you're using elvis :)

Elvis left the building a while back ;->
But sightings of him in some doughnought shops in a small town not far
from here are rampant ;->

> The code above is in pfkey_spdget().
> 

How did i miss that? ;-> 

cheers,
jamal


<Prev in Thread] Current Thread [Next in Thread>