[ipsec] aes-ctr question

VANHULLEBUS Yvan vanhu at FreeBSD.org
Wed Dec 3 00:41:22 PST 2008


On Wed, Dec 03, 2008 at 10:54:55AM +0300, Eygene Ryabinkin wrote:
[...]
> Good catch.  Perhaps setkey should be extended to warn the user about
> this neat.  The patch is attached.  George, people, what do you think
> about it?

If we're going to add security warnings in setkey, we could just put a
warning when using static keys (so basically put a warning for "add"
command....).


Yvan.


More information about the freebsd-net mailing list