RE: port bound SAs

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
From: Paul Moore
Date: Tuesday, January 27, 2009 - 10:24 am

>>I believe thats intentional, RFC2367 specifies to ignore port
numbers except for larval states.

the ietf ipsec list thinks thats not the case. The consensus there is
that the port owns the SA (and thats what Windows, and solaris actually
do)

-----Original Message-----
From: Patrick McHardy [mailto:kaber@trash.net] 
Sent: Tuesday, January 27, 2009 9:22 AM
To: Paul Moore
Cc: David Miller; netdev@vger.kernel.org
Subject: Re: port bound SAs

Paul Moore wrote:

I misparsed that statement, I thought you meant both. Yes, you
seem to be right, pfkey ignores them.


I believe thats intentional, RFC2367 specifies to ignore port
numbers except for larval states.
--
To unsubscribe from this list: send the line "unsubscribe netdev" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
port bound SAs, Paul Moore, (Mon Jan 26, 12:21 pm)
Re: port bound SAs, David Miller, (Mon Jan 26, 11:20 pm)
Re: port bound SAs, Patrick McHardy, (Tue Jan 27, 3:26 am)
RE: port bound SAs, Paul Moore, (Tue Jan 27, 9:46 am)
RE: port bound SAs, Paul Moore, (Tue Jan 27, 9:53 am)
Re: port bound SAs, Patrick McHardy, (Tue Jan 27, 10:01 am)
RE: port bound SAs, Paul Moore, (Tue Jan 27, 10:05 am)
Re: port bound SAs, Patrick McHardy, (Tue Jan 27, 10:12 am)
RE: port bound SAs, Paul Moore, (Tue Jan 27, 10:13 am)
Re: port bound SAs, David Miller, (Tue Jan 27, 10:21 am)
Re: port bound SAs, Patrick McHardy, (Tue Jan 27, 10:21 am)
RE: port bound SAs, Paul Moore, (Tue Jan 27, 10:21 am)
RE: port bound SAs, Paul Moore, (Tue Jan 27, 10:24 am)
Re: port bound SAs, Patrick McHardy, (Tue Jan 27, 10:29 am)
RE: port bound SAs, Paul Moore, (Tue Jan 27, 10:38 am)
Re: port bound SAs, Patrick McHardy, (Tue Jan 27, 10:42 am)
RE: port bound SAs, Paul Moore, (Wed Jan 28, 10:17 am)
Re: port bound SAs, Patrick McHardy, (Wed Jan 28, 11:03 am)
RE: port bound SAs, Paul Moore, (Wed Jan 28, 11:07 am)
Re: port bound SAs, Patrick McHardy, (Wed Jan 28, 11:11 am)
RE: port bound SAs, Paul Moore, (Wed Jan 28, 11:27 am)
RE: port bound SAs, Paul Moore, (Thu Jan 29, 10:23 am)
Re: port bound SAs, Herbert Xu, (Thu Jan 29, 11:30 pm)
xfrm selector generating IKE, Paul Moore, (Mon Feb 23, 6:31 pm)
Re: xfrm selector generating IKE, Herbert Xu, (Mon Feb 23, 7:08 pm)
RE: xfrm selector generating IKE, Paul Moore, (Tue Feb 24, 10:23 am)
Re: xfrm selector generating IKE, Herbert Xu, (Tue Feb 24, 5:33 pm)
RE: xfrm selector generating IKE, Paul Moore, (Tue Feb 24, 7:07 pm)
Re: xfrm selector generating IKE, Herbert Xu, (Tue Feb 24, 7:27 pm)
RE: xfrm selector generating IKE, Paul Moore, (Tue Feb 24, 7:30 pm)
Re: xfrm selector generating IKE, Herbert Xu, (Tue Feb 24, 7:38 pm)