From mboxrd@z Thu Jan 1 00:00:00 1970 From: "David S. Miller" Subject: Re: possible problem with TSO and ip_queue Date: Wed, 10 May 2006 13:09:19 -0700 (PDT) Message-ID: <20060510.130919.37497120.davem@davemloft.net> References: <20060510.124955.114056211.davem@davemloft.net> Mime-Version: 1.0 Content-Type: Text/Plain; charset=us-ascii Content-Transfer-Encoding: 7bit Cc: ccaputo@alt.net, netdev@vger.kernel.org, netfilter-devel@lists.netfilter.org Return-path: Received: from dsl027-180-168.sfo1.dsl.speakeasy.net ([216.27.180.168]:14242 "EHLO sunset.davemloft.net") by vger.kernel.org with ESMTP id S932277AbWEJUJu (ORCPT ); Wed, 10 May 2006 16:09:50 -0400 To: paul@clubi.ie In-Reply-To: Sender: netdev-owner@vger.kernel.org List-Id: netdev.vger.kernel.org From: Paul Jakma Date: Wed, 10 May 2006 21:07:31 +0100 (IST) > Is there a better way to deal with TSO besides documenting: > > "disable TSO on all interfaces which /ever/ potentially could be used > to reach TCP-MD5 authenticated BGP peers." > > ? When you have a rule installed that will add MD5, just mark the route as not being TSO capable. What's the problem?