Subject: Re: IPsec policy cache hint
To: Michael Richardson <mcr@sandelman.ottawa.on.ca>
From: Jason Thorpe <thorpej@wasabisystems.com>
List: tech-net
Date: 02/28/2004 09:23:19
--Apple-Mail-24-897551668
Content-Transfer-Encoding: 7bit
Content-Type: text/plain; charset=US-ASCII; format=flowed


On Feb 28, 2004, at 9:10 AM, Michael Richardson wrote:

> You are basically talking about leaving appropriate space so that IPsec
> doesn't have to cope with oversize packets - shouldn't that be a more
> general situation - that IPsec updates the MTU of the socket itself?
>
> Or do you want to adjust the MSS in the initial TCP exchange?

Neither.  I need to determine if I can let an offload card do some 
parts of the TCP processing.

         -- Jason R. Thorpe <thorpej@wasabisystems.com>


--Apple-Mail-24-897551668
content-type: application/pgp-signature; x-mac-type=70674453;
	name=PGP.sig
content-description: This is a digitally signed message part
content-disposition: inline; filename=PGP.sig
content-transfer-encoding: 7bit

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (Darwin)

iD8DBQFAQM6MOpVKkaBm8XkRAqGpAJsHXEkSJMEsp1bbjs2FkStn/nticwCgvwpQ
da95nQGS5V6I8mak6PPVoBU=
=VvX1
-----END PGP SIGNATURE-----

--Apple-Mail-24-897551668--