[Swan-dev] mystery in linux/net/ipsec/ipsec_rcv.c

D. Hugh Redelmeier hugh at mimosa.com
Sat Jun 30 17:08:07 UTC 2018


| From: Paul Wouters <paul at nohats.ca>

| > If I'm not wrong, why have we not noticed this since it was introduced
| > by c90c46be434cc0a68a8f5e1b0e88a9d019a9f733 in 2010?
| 
| I don't know, but I do see this code is within
| sysctl_ipsec_inbound_policy_check, and I do have some vague memory of
| people needing to change that setting?

Consider building a test for this?

That would help convince us that we understand what is going on.

I understand that this might be more work than it is worth.

| Please commit the fix. I don't see any valid reason for leaving it as
| is.

OK.  Done.


More information about the Swan-dev mailing list