From mboxrd@z Thu Jan 1 00:00:00 1970 From: Radu Nicolau Subject: Re: [PATCH v5] examples/ipsec-secgw: fix usage of incorrect port Date: Tue, 12 Dec 2017 11:27:19 +0000 Message-ID: References: <1513006557-14898-1-git-send-email-anoob.joseph@caviumnetworks.com> <1513067545-19311-1-git-send-email-anoob.joseph@caviumnetworks.com> Mime-Version: 1.0 Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit Cc: Narayana Prasad , Jerin Jacob , dev@dpdk.org To: Anoob Joseph , Akhil Goyal , Declan Doherty , Sergio Gonzalez Monroy Return-path: Received: from mga14.intel.com (mga14.intel.com [192.55.52.115]) by dpdk.org (Postfix) with ESMTP id 4C7E51C00 for ; Tue, 12 Dec 2017 12:27:22 +0100 (CET) In-Reply-To: <1513067545-19311-1-git-send-email-anoob.joseph@caviumnetworks.com> Content-Language: en-US List-Id: DPDK patches and discussions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: dev-bounces@dpdk.org Sender: "dev" On 12/12/2017 8:32 AM, Anoob Joseph wrote: > When security offload is enabled, the packet should be forwarded on the > port configured in the SA. Security session will be configured on that > port only, and sending the packet on other ports could result in > unencrypted packets being sent out. > > This would have performance improvements too, as the per packet LPM > lookup would be avoided for IPsec packets, in inline mode. > > Fixes: ec17993a145a ("examples/ipsec-secgw: support security offload") > > Signed-off-by: Anoob Joseph > Acked-by: Akhil Goyal Acked-by: Radu Nicolau