===================================================================
RCS file: /cvsrepo/anoncvs/cvs/www/49.html,v
retrieving revision 1.28
retrieving revision 1.29
diff -u -r1.28 -r1.29
--- www/49.html 2011/04/25 17:06:55 1.28
+++ www/49.html 2011/04/25 17:44:07 1.29
@@ -149,7 +149,7 @@
Reworking of the MCLGETI livelock algorithm to improve
forwarding and host performance under high network load.
Added support for socket splicing.
- Added AES-GCM support for IPSec.
+ Added AES-GCM support for IPsec.
Added automatic send and receive buffer scaling for TCP.
Added wpakey option to ifconfig(8) replacing wpa-psk(8).
TCP acknowledgments are no longer delayed on the loopback interface.
@@ -164,6 +164,17 @@
+
IPsec stack audit was performed resulting in:
+
+ - Several potential security problems have been identified and fixed.
+
- ARC4 based PRNG code was audited and revamped.
+
- New explicit_bzero kernel function was introduced to prevent a compiler
+ from optimizing
+ bzero
+ calls away.
+
+
+
SCSI improvements:
- Improved safety when detaching SCSI devices by waiting for
@@ -831,7 +842,7 @@
alt="OpenBSD">
www@openbsd.org
-$OpenBSD: 49.html,v 1.28 2011/04/25 17:06:55 mikeb Exp $
+$OpenBSD: 49.html,v 1.29 2011/04/25 17:44:07 mikeb Exp $