Subject: Re: Patch for Fast-IPsec over loopback
To: None <jonathan@DSG.Stanford.EDU>
From: Jun-ichiro itojun Hagino <itojun@itojun.org>
List: tech-net
Date: 08/16/2003 07:04:11
> > as for if_loop.c:
> > your logic makes sense, but we may want to use tags to packet loop
> > prevention within the kernel. [...]
> I'm not convinced, but willing to listen. The point is, the semantics
> need to be _documented_. Particularly now the KAME code is no longer
> the only, or fastest, game in town.
m_tag is not just for ipsec. yes, we need more documentation.
i will check if openbsd has some docs. Angelos wrote a paper on m_tag
for this coming Freenix IIRC.
to be perfectly clear, loop prevention is not related to ipsec.
itojun