<feed xmlns='http://www.w3.org/2005/Atom'>
<title>src-test2/sys/netinet/ip_ipsec.c, branch release/7.0.0_cvs</title>
<subtitle>FreeBSD source tree</subtitle>
<id>https://cgit-dev.freebsd.org/src-test2/atom?h=release%2F7.0.0_cvs</id>
<link rel='self' href='https://cgit-dev.freebsd.org/src-test2/atom?h=release%2F7.0.0_cvs'/>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/'/>
<updated>2008-02-24T05:45:17Z</updated>
<entry>
<title>This commit was manufactured by cvs2svn to create tag</title>
<updated>2008-02-24T05:45:17Z</updated>
<author>
<name>cvs2svn</name>
<email>cvs2svn@FreeBSD.org</email>
</author>
<published>2008-02-24T05:45:17Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=a9c219fa3cec18ef9f30edec6fa106bf0e2d423d'/>
<id>urn:sha1:a9c219fa3cec18ef9f30edec6fa106bf0e2d423d</id>
<content type='text'>
'RELENG_7_0_0_RELEASE'.

This commit was manufactured to restore the state of the 7.0-RELEASE image.
</content>
</entry>
<entry>
<title>Add FBSDID to all files in netinet so that people can more</title>
<updated>2007-10-07T20:44:24Z</updated>
<author>
<name>Mike Silbersack</name>
<email>silby@FreeBSD.org</email>
</author>
<published>2007-10-07T20:44:24Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=4b421e2daaa3e23db6b5a51f8ca5b2da0d894a56'/>
<id>urn:sha1:4b421e2daaa3e23db6b5a51f8ca5b2da0d894a56</id>
<content type='text'>
easily include file version information in bug reports.

Approved by:	re (kensmith)
</content>
</entry>
<entry>
<title>Rename option IPSEC_FILTERGIF to IPSEC_FILTERTUNNEL.</title>
<updated>2007-08-05T16:16:15Z</updated>
<author>
<name>Bjoern A. Zeeb</name>
<email>bz@FreeBSD.org</email>
</author>
<published>2007-08-05T16:16:15Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=cc977adc71830f7bee0af42cd2ddb647991fe430'/>
<id>urn:sha1:cc977adc71830f7bee0af42cd2ddb647991fe430</id>
<content type='text'>
Also rename the related functions in a similar way.
There are no functional changes.

For a packet coming in with IPsec tunnel mode, the default is
to only call into the firewall with the "outer" IP header and
payload.

With this option turned on, in addition to the "outer" parts,
the "inner" IP header and payload are passed to the
firewall too when going through ip_input() the second time.

The option was never only related to a gif(4) tunnel within
an IPsec tunnel and thus the name was very misleading.

Discussed at:			BSDCan 2007
Best new name suggested by:	rwatson
Reviewed by:			rwatson
Approved by:			re (bmah)
</content>
</entry>
<entry>
<title>Commit the change from FAST_IPSEC to IPSEC.  The FAST_IPSEC</title>
<updated>2007-07-03T12:13:45Z</updated>
<author>
<name>George V. Neville-Neil</name>
<email>gnn@FreeBSD.org</email>
</author>
<published>2007-07-03T12:13:45Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=b2630c29344385f13f1ab2a973158c9a5afd71d4'/>
<id>urn:sha1:b2630c29344385f13f1ab2a973158c9a5afd71d4</id>
<content type='text'>
option is now deprecated, as well as the KAME IPsec code.
What was FAST_IPSEC is now IPSEC.

Approved by: re
Sponsored by: Secure Computing
</content>
</entry>
<entry>
<title>Commit IPv6 support for FAST_IPSEC to the tree.</title>
<updated>2007-07-01T11:41:27Z</updated>
<author>
<name>George V. Neville-Neil</name>
<email>gnn@FreeBSD.org</email>
</author>
<published>2007-07-01T11:41:27Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=2cb64cb272ad94f7a5e903f76fb9817f1b8452ba'/>
<id>urn:sha1:2cb64cb272ad94f7a5e903f76fb9817f1b8452ba</id>
<content type='text'>
This commit includes only the kernel files, the rest of the files
will follow in a second commit.

Reviewed by:    bz
Approved by:    re
Supported by:   Secure Computing
</content>
</entry>
<entry>
<title>Move universally to ANSI C function declarations, with relatively</title>
<updated>2007-05-10T15:58:48Z</updated>
<author>
<name>Robert Watson</name>
<email>rwatson@FreeBSD.org</email>
</author>
<published>2007-05-10T15:58:48Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=f2565d68a4e5922928b92ad6043be96ada8cb7b3'/>
<id>urn:sha1:f2565d68a4e5922928b92ad6043be96ada8cb7b3</id>
<content type='text'>
consistent style(9)-ish layout.
</content>
</entry>
<entry>
<title>Remove unneeded mac.h include.</title>
<updated>2006-07-06T13:25:01Z</updated>
<author>
<name>Robert Watson</name>
<email>rwatson@FreeBSD.org</email>
</author>
<published>2006-07-06T13:25:01Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=be54a5eeb3d6864317597a0a67c22e87772c99e5'/>
<id>urn:sha1:be54a5eeb3d6864317597a0a67c22e87772c99e5</id>
<content type='text'>
MFC after:	3 days
</content>
</entry>
<entry>
<title>Make sure the ip data pointer is correct before touching it again</title>
<updated>2006-05-05T07:31:03Z</updated>
<author>
<name>Bjoern A. Zeeb</name>
<email>bz@FreeBSD.org</email>
</author>
<published>2006-05-05T07:31:03Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=91b309a1c484e80449b1b748025fd435c8f7b8a2'/>
<id>urn:sha1:91b309a1c484e80449b1b748025fd435c8f7b8a2</id>
<content type='text'>
after ipsec4_output processing else KAME IPSec using the handbook
configuration with gif(4) will panic the kernel.

Problem reported by:    t. patterson &lt;tp lot.org&gt;
Tested by:              t. patterson &lt;tp lot.org&gt;
</content>
</entry>
<entry>
<title>Move the IPSEC related code blocks to their own file to unclutter</title>
<updated>2006-02-01T13:55:03Z</updated>
<author>
<name>Andre Oppermann</name>
<email>andre@FreeBSD.org</email>
</author>
<published>2006-02-01T13:55:03Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=1dfcf0d2a318738a8a933bd6b12316f34a61b28e'/>
<id>urn:sha1:1dfcf0d2a318738a8a933bd6b12316f34a61b28e</id>
<content type='text'>
and signifincantly improve the readability of ip_input() and
ip_output() again.

The resulting IPSEC hooks in ip_input() and ip_output() may be
used later on for making IPSEC loadable.

This move is mostly mechanical and should preserve current IPSEC
behaviour as-is.  Nothing shall prevent improvements in the way
IPSEC interacts with the IPv4 stack.

Discussed with:	bz, gnn, rwatson; (earlier version)
</content>
</entry>
</feed>
