netdev
[Top] [All Lists]

Re: [IPSEC] Stop using dst->xfrm

To: Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx>
Subject: Re: [IPSEC] Stop using dst->xfrm
From: David Dillow <dave@xxxxxxxxxxxxxx>
Date: Sat, 22 Jan 2005 00:58:33 -0500
Cc: "David S. Miller" <davem@xxxxxxxxxxxxx>, Netdev <netdev@xxxxxxxxxxx>
In-reply-to: <20050121102319.GA3160@gondor.apana.org.au>
References: <20050121102319.GA3160@gondor.apana.org.au>
Sender: netdev-bounce@xxxxxxxxxxx
On Fri, 2005-01-21 at 21:23 +1100, Herbert Xu wrote:

> Here is a precursor to the xfrm dst consolidation that I talked about.
> In order to be able to store multiple SAs in one dst, we need to stop
> using dst->xfrm directly.

Can you tell me more about this? A quick search of google and the netdev
archives didn't turn up anything that looked relevant.

I'd like to see where you're going, so I can meet you there. The xfrm
offload patches currently add dst->xfrm_offload to cache the info needed
to offload the crypto operations. It'll be slower, but I could lookup
that up each time if need be.

The part I'm most curious about is the storing of multiple SAs in one
dst, since I think may cause the most changes for me. I'd like to start
thinking about them early.
-- 
David Dillow <dave@xxxxxxxxxxxxxx>

<Prev in Thread] Current Thread [Next in Thread>