summaryrefslogtreecommitdiff
path: root/net/xfrm/xfrm_policy.c
diff options
context:
space:
mode:
authorLeon Romanovsky <leonro@nvidia.com>2022-12-02 21:41:31 +0300
committerSteffen Klassert <steffen.klassert@secunet.com>2022-12-05 12:36:16 +0300
commit5958372ddf628fe6f4c3e49425734ad32fcfb13c (patch)
treee7c71be090504966c5136ec9311d42775cf948b3 /net/xfrm/xfrm_policy.c
parentf8a70afafc1759b1fca4baaa891625dde49c10b7 (diff)
downloadlinux-5958372ddf628fe6f4c3e49425734ad32fcfb13c.tar.xz
xfrm: add RX datapath protection for IPsec packet offload mode
Traffic received by device with enabled IPsec packet offload should be forwarded to the stack only after decryption, packet headers and trailers removed. Such packets are expected to be seen as normal (non-XFRM) ones, while not-supported packets should be dropped by the HW. Reviewed-by: Raed Salem <raeds@nvidia.com> Signed-off-by: Leon Romanovsky <leonro@nvidia.com> Signed-off-by: Steffen Klassert <steffen.klassert@secunet.com>
Diffstat (limited to 'net/xfrm/xfrm_policy.c')
0 files changed, 0 insertions, 0 deletions