Page MenuHomeFreeBSD

nfs tls: Update for SSL_OP_ENABLE_KTLS.
ClosedPublic

Authored by jhb on Aug 6 2021, 11:39 PM.
Tags
None
Referenced Files
Unknown Object (File)
Mon, Aug 10, 9:58 AM
Unknown Object (File)
Mon, Aug 10, 8:41 AM
Unknown Object (File)
Sun, Aug 9, 3:23 PM
Unknown Object (File)
Sun, Aug 9, 11:59 AM
Unknown Object (File)
Sun, Aug 9, 10:21 AM
Unknown Object (File)
Sat, Aug 8, 4:17 AM
Unknown Object (File)
Sat, Aug 8, 3:33 AM
Unknown Object (File)
Fri, Aug 7, 2:22 AM
Subscribers

Details

Summary

Upstream OpenSSL (and the KTLS backport) have switched to an opt-in
option (SSL_OP_ENABLE_KTLS) in place of opt-out modes
(SSL_MODE_NO_KTLS_TX and SSL_MODE_NO_KTLS_RX) for controlling kernel
TLS.

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable

Event Timeline

jhb requested review of this revision.Aug 6 2021, 11:39 PM

I have only tested that this compiles ok in a branch where OpenSSL has been updated. I have not run tested it. The full branch is available at https://github.com/bsdjhb/freebsd/tree/openssl_get_ktls

Built and tested ok with an old OpenSSL.
Looks fine to me, rick.

This revision is now accepted and ready to land.Aug 7 2021, 2:01 AM
This revision was automatically updated to reflect the committed changes.