[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

(usagi-users 03130) Re: [Ipsec-tools-devel] How to send additional data from kernel to racoon?



Park Lee <parklee_sel@xxxxxxxxx> wrote:

>     Now, I'm doing some research on IPsec. Here in kernel space, I've
>   acquired some data (These data have nothing with the original IPsec,
>   It's merely some data I got in the kernel space). What I want to do is
>   to send these data from kernel to racoon before racoon begins its
>   negotiation. and thus when racoon begins the negotiation, it can also
>   send these data to its peer when setting up a SA (i.e. when racoon
>   finish its work, these data should also be included in the SA on both
>   sides for later use). I've looked through the RFC2367 (PF_KEY Key
>   Management API, Version 2), But it seems that the messages, such as
>   SADB_ACQUIRE, are unsuitable to carry my data from kernel to racoon. How
>   to acheive this? Could you please give me some hints?

What about making a pseudo-device driver to get your data from the
kernel?  

-- 
Emmanuel Dreyfus
Il y a 10 sortes de personnes dans le monde: ceux qui comprennent 
le binaire et ceux qui ne le comprennent pas.
manu@xxxxxxxxxx