[Openswan Users] Query

Paul Wouters paul at xelerance.com
Tue Nov 29 21:42:36 CET 2005


On Mon, 28 Nov 2005, Nayna Jain wrote:

> I am having a query.
> When kernel 2.6 has integrated ipsec what was the
> need for openswan to develop IPSec stack for kernel 2.6.
> How is it more useful??
> Thanks & Regards,

See archives, but the short answer:

- stable and proven to work code. Lots of experience
- ipsecX interfaces
- async/sync crypto offloading (eg hardware accelerators)
- non-lineair SA search
- most specific route first selection on SA's
- path mtu support
- faster hand assembly coded ciphers
- support for dynamic SA's and packet caching
  (needed for Opportunistic Encryption)

Paul


More information about the Users mailing list