remove IPsec SKIPJACK support...

Adrian Chadd adrian.chadd at gmail.com
Tue Jul 28 17:26:00 UTC 2015


Hi,

I'd put together a deprecation plan, which starts with the kernel
warning that this stuff is being removed, MFC that to stable/10 and
stable/9 so people aren't surprised when they upgrade, and then have
it removed in 11.



-adrian


On 28 July 2015 at 04:34, Daniel Plominski <Daniel at plominski.eu> wrote:
> instead of code to remove it is a better idea manuals to revise, people
> depend on old recommendations like
> https://www.freebsd.org/doc/handbook/ipsec.html
>
> would be better:
> https://blog.plitc.eu/2014/freebsd-10-ipv4-vpn-relay-ipsec-entryopenvpn-middleopenvpn-exit-node-mit-jails/
>
> or the racoon example from:
> https://blog.plitc.eu/2014/freebsd-10-ipv4-ipsec-net-to-net-vpn-in-der-jail/
>
> best regards
>
> Daniel
>


More information about the freebsd-net mailing list