since we received a report that racoon stoped working.
in6_update_ifa(), which now takes care of DAD for all the cases. This will also fix the problem that a link-local address remains "tentative" when ip6_dad_count is 0. - clean up 'if 0'ed part
(hint: ispell is Emacser's friend)
a pointer table for message processing in netkey directory.
* kame/sys/net/pfkeyv2.h,kame/sys/netinet6/ipsec.c, kame/sys/netkey/key,c,key.h,key_debug.c - added SADB_X_PACKET message type to deliver the information of triggering packet of IKE negotiation when sending a KEY_ACQUIRE message. This change should not cause any binary compatibility issues, but if you found any, let us know. Great thanks to Francis Dupont for this extention.
triggering packet of IKE negotiation when sending a KEY_ACQUIRE message. the change should keep binary compatibility. If you find any compatibility issues, let me (email@example.com) know. Great thanks to Francis Dupont.
derived from draft-sugimoto-mip6-pfkey-migrate.
hop is me. This is dirty but we need this trick when we use an IPsec tunnel mode policy for protocol 'any' between a home agent and a mobile node.
when set on a mobile node, the mobile node will add the K flag to its binding update messages to its home agent. when set on a home agent, the node will reflect the K flag in incoming binding update messages when sending binding ack messages.
address of a migrate message (reported by Francis Dupont)
…ccured on tunneling - Codes in icmp6_input_common() are splitted to each functions.
when sending those messages to user space programs.
Should send destination unreach when received packet destined MN linklocal HoA
(some other fine-grain-locking mechanism has been already applied)
- nuked lengthy function-like macros - aggregated some if-then conditions
- use IGMP_PRINTF() to output debug info - declares local functions as "static"