[ previous ] [ next ] [ threads ]
 From:  Michael Sierchio <kudzu at tenebras dot com>
 To:  m0n0wall at lists dot m0n0 dot ch
 Subject:  Re: [m0n0wall] IPsec over two ADSL links
 Date:  Tue, 09 Sep 2003 12:49:30 -0700
Joe Doran wrote:
> You will also have to consider that the VPN code will need to work with
> hardware accelerators like the one you can by from soekris.
> http://www.soekris.com/

The VPN code should IMO use the /dev/crypto API ( man 9 crypto ) as much as
possible.  The HiFn chip used in the Soekris 1201/1211 is supported, though
not completely.  I believe the 7951 can do IKE calcs directly, and supports
key lengths for RSA and DH up to 2048 bits.