Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 30 Jan 2008 08:40:16 +0000 (UTC)
From:      "Bjoern A. Zeeb" <bzeeb-lists@lists.zabbadoz.net>
To:        "Bruce M. Simpson" <bms@FreeBSD.org>
Cc:        freebsd-net@freebsd.org, Ingo Flaschberger <if@xip.at>
Subject:   Re: tcp-md5 check for incomming connection
Message-ID:  <20080130083105.S36482@maildrop.int.zabbadoz.net>
In-Reply-To: <479FF09B.4050705@FreeBSD.org>
References:  <alpine.LFD.1.00.0801291905020.17757@filebunker.xip.at> <479FF09B.4050705@FreeBSD.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On Wed, 30 Jan 2008, Bruce M. Simpson wrote:

Hi,

> Ingo Flaschberger wrote:
>> Hi,
>> 
>> linux does already support tcp-md5 checks for incomming connections, but 
>> freebsd not.
>> 
>> I would like to implement this feature into freebsd.
>> Any hints/wishes/considerations that I should consider?
>
> Someone(tm) keeps threatening to do this every 9-12 months, but I've yet to 
> see patches.
> ...

As a result of fixing tcp-md5 end of last year,

both of this (incoming validation + SPD integ) is on my TODO list on
position 10 (I am currently working on item 3) and there is more ipsec
work in the middle.

I also have tcp-md5 for IPv6 implementation on the same card.

I am willing to help or review patches in case someone wants to do it
now.


/bz

-- 
Bjoern A. Zeeb                                 bzeeb at Zabbadoz dot NeT
Software is harder than hardware  so better get it right the first time.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20080130083105.S36482>