[dpdk-users] IPsec offload

De Lara Guarch, Pablo pablo.de.lara.guarch at intel.com
Tue Nov 7 10:42:51 CET 2017


Hi Avi,

> -----Original Message-----
> From: Avi Cohen (A) [mailto:avi.cohen at huawei.com]
> Sent: Monday, November 6, 2017 5:16 PM
> To: De Lara Guarch, Pablo <pablo.de.lara.guarch at intel.com>; Thomas
> Monjalon <thomas at monjalon.net>
> Cc: users at dpdk.org; olgas at mellanox.com
> Subject: RE: [dpdk-users] IPsec offload
> 
> Pablo
> This cmd-line is for a crypto-device - correct ?
> What is the cmd-line for Ethernet device ?  (I already bound this Ethernet
> device to dpdk) Regards Avi

That command line is initializing a software-based crypto device.
It assumes that you have one physical Ethernet device (it will use it due to the -p and --config options).

Pablo

> 
> > -----Original Message-----
> > From: De Lara Guarch, Pablo [mailto:pablo.de.lara.guarch at intel.com]
> > Sent: Monday, 06 November, 2017 6:48 PM
> > To: Avi Cohen (A); Thomas Monjalon
> > Cc: users at dpdk.org; olgas at mellanox.com
> > Subject: RE: [dpdk-users] IPsec offload
> >
> >
> >
> > > -----Original Message-----
> > > From: Avi Cohen (A) [mailto:avi.cohen at huawei.com]
> > > Sent: Monday, November 6, 2017 4:42 PM
> > > To: De Lara Guarch, Pablo <pablo.de.lara.guarch at intel.com>; Thomas
> > > Monjalon <thomas at monjalon.net>
> > > Cc: users at dpdk.org; olgas at mellanox.com
> > > Subject: RE: [dpdk-users] IPsec offload
> > >
> > > Thank you Pablo
> > > Can you supply an example command line to run the ipsec-secgw ?
> >
> > ./examples/ipsec-secgw/build/ipsec-secgw -l 10,11 -n 4 --
> > vdev="crypto_aesni_gcm0" /
> > -- -p 0x1 -P --config="(0,0,10)" -f ep-sample.cfg
> >
> > Where ep-sample.cfg contains:
> >
> > sp ipv4 out esp protect 0010 pri 1 dst 001.0.0.0/24 sport 0:65535
> > dport 0:65535 sa out 0010 aead_algo aes-128-gcm aead_key
> de:ad:be:ef:de:ad:be:ef:de:ad:be:
> > ef:de:ad:be:ef:de:ad:be:ef mode ipv4-tunnel src 20.0.0.0 dst 21.0.0.0
> > rt ipv4 dst
> > 21.0.0.0/8 port 0
> >
> >
> > > Regards
> > > Avi
> > >
> > > > -----Original Message-----
> > > > From: De Lara Guarch, Pablo
> > > > [mailto:pablo.de.lara.guarch at intel.com]
> > > > Sent: Monday, 06 November, 2017 6:37 PM
> > > > To: Avi Cohen (A); Thomas Monjalon
> > > > Cc: users at dpdk.org; olgas at mellanox.com
> > > > Subject: RE: [dpdk-users] IPsec offload
> > > >
> > > > Hi Avi,
> > > >
> > > >
> > > > > -----Original Message-----
> > > > > From: users [mailto:users-bounces at dpdk.org] On Behalf Of Avi
> > > > > Cohen
> > > > > (A)
> > > > > Sent: Monday, November 6, 2017 3:53 PM
> > > > > To: Thomas Monjalon <thomas at monjalon.net>
> > > > > Cc: users at dpdk.org; olgas at mellanox.com
> > > > > Subject: Re: [dpdk-users] IPsec offload
> > > > >
> > > > > Thank you Thomas
> > > > > When I run the ipsec-secgw sample app. The program is exiting
> > > > > with error 'Mandatory option "-f" not present'
> > > > > What is this option ? config file ?
> > > >
> > > > Yes, that's a configuration file, like the one that you can find
> > > > in ep0.cfg or ep1.cfg.
> > > >
> > > > Pablo



More information about the users mailing list