37b1ad2317
to ``registered'' sockets -- be treated ``specially'', as suggested by RFC-2367. The "special" treatment sys/netipsec now gives such messages is that we use sbappendaddrchain() to deliver the (single) kernel-generated message to each registered PF_KEY socket, with an sbprio argument of SB_PRIO_BESTEFFORT, thus by-passing For now, we check for registered messages, set a local `sbprio' argument, and call sbappendaddrchain() (as opposed to sbappendaddr()) if and only if sbprio is non-NULL. As noted, we can rework key_sendup_mbuf(), and all its callers, to pass the sbprio argument; pending consensus (and hopeful KAME buy-back). |
||
---|---|---|
.. | ||
ah_var.h | ||
ah.h | ||
esp_var.h | ||
esp.h | ||
files.netipsec | ||
ipcomp_var.h | ||
ipcomp.h | ||
ipip_var.h | ||
ipsec6.h | ||
ipsec_input.c | ||
ipsec_mbuf.c | ||
ipsec_netbsd.c | ||
ipsec_osdep.h | ||
ipsec_output.c | ||
ipsec_var.h | ||
ipsec.c | ||
ipsec.h | ||
key_debug.c | ||
key_debug.h | ||
key_var.h | ||
key.c | ||
key.h | ||
keydb.h | ||
keysock.c | ||
keysock.h | ||
Makefile | ||
xform_ah.c | ||
xform_esp.c | ||
xform_ipcomp.c | ||
xform_ipip.c | ||
xform_tcp.c | ||
xform.h |