aboutsummaryrefslogtreecommitdiff
path: root/sys/netipsec/key.c
Commit message (Expand)AuthorAgeFilesLines
* MFC r285204:Andrey V. Elsukov2015-07-151-8/+60
* MFC r283146:Andrey V. Elsukov2015-06-031-2/+3
* MFC r283101:Andrey V. Elsukov2015-06-021-40/+38
* MFC r275390:Andrey V. Elsukov2015-06-021-311/+188
* MFC r275392:Andrey V. Elsukov2015-06-021-25/+0
* MFC r279735:Andrey V. Elsukov2015-03-141-1/+1
* MFC r275575:Andrey V. Elsukov2014-12-161-1/+2
* MFC r273904:Andrey V. Elsukov2014-11-131-21/+2
* MFC r266606:Bjoern A. Zeeb2014-08-161-6/+20
* Use corresponding macros to update statistics for AH, ESP, IPIP, IPCOMP,Andrey V. Elsukov2013-06-201-19/+19
* Use m_get2() + m_align() instead of hand made key_alloc_mbuf(). CodeGleb Smirnoff2013-03-151-104/+50
* Mechanically substitute flags from historic mbuf allocator withGleb Smirnoff2012-12-051-21/+21
* Mechanically remove the last stray remains of spl* calls from net*/*.Andre Oppermann2012-10-181-6/+0
* In NAT-T transport mode, allow a client to open a new connection just afterVANHULLEBUS Yvan2012-09-121-3/+5
* Unexpand a couple of TAILQ_FOREACH()s.John Baldwin2012-08-171-2/+1
* Add missing va_end() in an error case to clean up after va_start()Christian Brueffer2011-10-071-0/+1
* Release SP's refcount in key_get_spdbyid().VANHULLEBUS Yvan2011-05-091-0/+1
* Make IPsec compile without INET adding appropriate #ifdef checks.Bjoern A. Zeeb2011-04-271-1/+1
* Optimisation in IPSEC(4):Fabien Thomas2011-03-311-30/+27
* Fixed IPsec's HMAC_SHA256-512 support to be RFC4868 compliant.VANHULLEBUS Yvan2011-02-181-1/+8
* After some off-list discussion, revert a number of changes to theDimitry Andric2010-11-221-18/+18
* Apply the STATIC_VNET_DEFINE and STATIC_DPCPU_DEFINE macros throughoutDimitry Andric2010-11-141-18/+18
* Make the IPsec SADB embedded route cache a union to be able to hold both theBjoern A. Zeeb2010-10-231-4/+4
* Set SA's natt_type before calling key_mature() in key_add(),VANHULLEBUS Yvan2010-05-051-6/+6
* Update SA's NAT-T stuff before calling key_mature() in key_update(),VANHULLEBUS Yvan2010-05-051-6/+6
* MFP4: @176978-176982, 176984, 176990-176994, 177441Bjoern A. Zeeb2010-04-291-10/+11
* Locks SPTREE when setting some SP entries to state DEAD.VANHULLEBUS Yvan2010-04-151-0/+6
* When tearing down IPsec as part of a (virtual) network stack,Bjoern A. Zeeb2010-03-281-7/+9
* fixed two race conditions when inserting/removing SAs via PFKey,VANHULLEBUS Yvan2009-11-171-2/+3
* When checking traffic endpoint's adresses families in key_spdadd(),VANHULLEBUS Yvan2009-09-161-12/+2
* Silent gcc? Yeah, you wish. What I ment was to silence gcc.Pawel Jakub Dawidek2009-09-061-2/+2
* Initialize state_valid and arraysize variable so gcc won't complain.Pawel Jakub Dawidek2009-09-061-1/+3
* Improve code a bit by eliminating goto and having one unlock per lock.Pawel Jakub Dawidek2009-09-061-4/+3
* Merge the remainder of kern_vimage.c and vimage.h into vnet.c andRobert Watson2009-08-011-1/+0
* Reimplement and/or implement vnet list locking by replacing a mostlyRobert Watson2009-07-191-2/+2
* Remove unused VNET_SET() and related macros; only VNET_GET() isRobert Watson2009-07-161-18/+18
* Build on Jeff Roberson's linker-set based dynamic per-CPU allocatorRobert Watson2009-07-141-135/+70
* Add address list locking for in6_ifaddrhead/ia_link: as with lockingRobert Watson2009-06-251-2/+8
* Add a new global rwlock, in_ifaddr_lock, which will synchronize use of theRobert Watson2009-06-251-0/+3
* Convert netinet6 to using queue(9) rather than hand-crafted linked listsRobert Watson2009-06-241-1/+1
* Move setting of ports from NAT-T below key_getsah() and actuallyBjoern A. Zeeb2009-06-191-8/+9
* Added support for NAT-Traversal (RFC 3948) in IPsec stack.VANHULLEBUS Yvan2009-06-121-5/+616
* Introduce an infrastructure for dismantling vnet instances.Marko Zec2009-06-081-1/+67
* Lock SPTREE before parsing it in key_spddump()VANHULLEBUS Yvan2009-05-271-1/+5
* Only decrease refcnt once when flushing SPD entries, toVANHULLEBUS Yvan2009-05-271-4/+14
* Stub out IN6_LOOKUP_MULTI() for GETSPI requests, for now.Bruce M Simpson2009-04-291-0/+4
* key_gettunnel() has been unsued with FAST_IPSEC (now IPSEC).Bjoern A. Zeeb2009-04-271-0/+2
* First pass at separating per-vnet initializer functionsMarko Zec2009-04-061-6/+9
* Fixed comments so it stays in 80 chars by lineVANHULLEBUS Yvan2009-03-231-5/+9
* Spelling fix in a commentVANHULLEBUS Yvan2009-03-201-1/+1