blob: 0faab6332586a3dd7af013196e9cf998f690a3ec [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001#
2# XFRM configuration
3#
Sam Ravnborg6a2e9b72005-07-11 21:13:56 -07004config XFRM
5 bool
6 depends on NET
7
Linus Torvalds1da177e2005-04-16 15:20:36 -07008config XFRM_USER
Masahide NAKAMURA654b32c2006-08-23 19:12:56 -07009 tristate "Transformation user configuration interface"
Linus Torvalds1da177e2005-04-16 15:20:36 -070010 depends on INET && XFRM
11 ---help---
Masahide NAKAMURA654b32c2006-08-23 19:12:56 -070012 Support for Transformation(XFRM) user configuration interface
13 like IPsec used by native Linux tools.
Linus Torvalds1da177e2005-04-16 15:20:36 -070014
15 If unsure, say Y.
16
Masahide NAKAMURAc11f1a12006-08-23 22:38:14 -070017config XFRM_SUB_POLICY
18 bool "Transformation sub policy support (EXPERIMENTAL)"
19 depends on XFRM && EXPERIMENTAL
20 ---help---
21 Support sub policy for developers. By using sub policy with main
22 one, two policies can be applied to the same packet at once.
23 Policy which lives shorter time in kernel should be a sub.
24
25 If unsure, say N.
26
Sam Ravnborg6a2e9b72005-07-11 21:13:56 -070027config NET_KEY
28 tristate "PF_KEY sockets"
29 select XFRM
30 ---help---
31 PF_KEYv2 socket family, compatible to KAME ones.
32 They are required if you are going to use IPsec tools ported
33 from KAME.
34
35 Say Y unless you know what you are doing.
36
37