Commits on Aug 25, 2005
  1. revert the previous changes for IPsec SADB_X_EXT_PACKET extention,

    keiichi committed
    since we received a report that racoon stoped working.
  2. - in6_ifattach_linklocal(): do not set IN6_IFF_TENTATIVE after

    jinmei committed
      in6_update_ifa(), which now takes care of DAD for all the cases.
      This will also fix the problem that a link-local address remains "tentative"
      when ip6_dad_count is 0.
    - clean up 'if 0'ed part
  3. typo

    jinmei committed
    (hint: ispell is Emacser's friend)
  4. SADB_X_NAT_T_NEW_MAPPING must be defined to construct proper

    keiichi committed
    a pointer table for message processing in netkey directory.
  5. Thu Aug 25 14:21:44 JST 2005

    keiichi committed
    	* kame/sys/net/pfkeyv2.h,kame/sys/netinet6/ipsec.c,
    	- added SADB_X_PACKET message type to deliver the information
    	  of triggering packet of IKE negotiation when sending a
    	  KEY_ACQUIRE message.  This change should not cause any
    	  binary compatibility issues, but if you found any, let us
    	  Great thanks to Francis Dupont for this extention.
  6. added SADB_X_PACKET message type to deliver the information of

    keiichi committed
    triggering packet of IKE negotiation when sending a KEY_ACQUIRE message.
    the change should keep binary compatibility.  If you find any compatibility
    issues, let me ( know.
    Great thanks to Francis Dupont.
  7. use a macro for better readability

    suz committed
  8. fixed a mistake in the previous commit

    suz committed
Commits on Aug 24, 2005
  1. thoroughly make sure that NULL is not zero

    suz committed
  2. added SADB_X_MIGRATE message type.

    keiichi committed
    derived from draft-sugimoto-mip6-pfkey-migrate.
  3. skip IPsec policy integrity check if the next

    keiichi committed
    hop is me.  This is dirty but we need this trick
    when we use an IPsec tunnel mode policy for
    protocol 'any' between a home agent and a mobile
  4. added 'key-management' config parameter.

    keiichi committed
    when set on a mobile node, the mobile node will add the K flag to its
    binding update messages to its home agent.
    when set on a home agent, the node will reflect the K flag in incoming
    binding update messages when sending binding ack messages.
Commits on Aug 23, 2005
  1. fixed a bug not setting a correct prefix length of the destination

    keiichi committed
    address of a migrate message (reported by Francis Dupont)
  2. typo

    t-momose committed
  3. - home agent forwards icmp6 packets as specified rfc2473 when error o…

    t-momose committed
    …ccured on tunneling
    - Codes in icmp6_input_common() are splitted to each functions.
Commits on Aug 22, 2005
  1. fixed a bug that not setting a length field of a sadb_migrate message

    keiichi committed
    when sending those messages to user space programs.
Commits on Aug 19, 2005
  1. Compile on OpenBSD

    t-momose committed
Commits on Aug 18, 2005
  1. fixed TAHI HA Conformance test #172 fail.

    t-momose committed
    Should send destination unreach when received packet destined MN linklocal HoA
  2. consistently use the ND macro

    suz committed
  3. removed unnecessay splnet() for freebsd5

    suz committed
    (some other fine-grain-locking mechanism has been already applied)
Commits on Aug 17, 2005
  1. fixed compile erorrs on NetBSD.

    keiichi committed
    reported by Manabu Tsukada.
Commits on Aug 15, 2005
  1. nuked a compilation warning

    suz committed
  2. yet another cosmetic change

    suz committed
  3. router-alert checking function shouldn't do anything other than route…

    suz committed
    …r-alert checking
  4. refined code: just a cosmetic change

    suz committed
  5. refined code:

    suz committed
    - nuked lengthy function-like macros
    - aggregated some if-then conditions
  6. refined code:

    suz committed
    - use IGMP_PRINTF() to output debug info
    - declares local functions as "static"
