Subject: ipsec policy API change
To: None <>
From: Jun-ichiro itojun Hagino <>
List: tech-net
Date: 06/04/2000 20:18:06
	I'm trying to bring in latest KAME ipsec policy API, so that
	we can run more recent racoon on it.  One thing I'm very annoyed about
	is that there's struct size change in PF_KEY messages.  Simple upgrade
	will cause PF_KEY related programs like setkey(8) to choke.
	It is rather hard to put backward compatibility crap.

	Is it okay to require recompilation of setkey(8) in this case?
	Note that we have never released setkey(8) nor PF_KEY API in NetBSD
	official releases.