On Tue, Nov 8, 2011 at 8:24 AM, Peter P Waskiewicz Jr <peter.p.waskiewicz.jr@xxxxxxxxx> wrote: > On Mon, 2011-11-07 at 19:10 -0800, Daniil Stolnikov wrote: >> Hello! >> >> Found that the stack IPSec in Linux does not support any IP range. Many people ask this question. The archives say strongswan said that their daemon supports a range, but the Linux IPSec stack supports only the subnets. I am writing to you to implement support for IP range in Linux. I think that a lot more people will appreciate this innovation. > > It'd be even better if you could write a patch for us to review. oh, come on! changing addr_match() is trivial for ipv4 and easy for ipv6. :-) -- To unsubscribe from this list: send the line "unsubscribe linux-crypto" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html