[ovs-git] Open vSwitch: ovs-monitor-ipsec: Don't reconfigure cert-based authentication as often. (master)

dev at openvswitch.org dev at openvswitch.org
Tue Jan 10 18:22:45 UTC 2012

This is an automated email from the git hooks/post-receive script. It was
generated because a ref change was pushed to the repository containing
the project "Open vSwitch".

The branch, master has been updated
       via  3831d6f4ce1b0023702ad5e4bf75a455d57dc187 (commit)
      from  a685eb5a760579f0fe45cf5e5fe8db93468cb91d (commit)

Those revisions listed above that are new to this repository have
not appeared on any other notification email; so we list those
revisions in full, below.

- Log -----------------------------------------------------------------
commit 3831d6f4ce1b0023702ad5e4bf75a455d57dc187
Diffs: http://openvswitch.org/cgi-bin/gitweb.cgi?p=openvswitch;a=commitdiff;h=3831d6f4ce1b0023702ad5e4bf75a455d57dc187
Author: Justin Pettit <jpettit at nicira.com>
ovs-monitor-ipsec: Don't reconfigure cert-based authentication as often.
ovs-monitor-ipsec wakes up when the Interface table is modified.  To
prevent needless reconfiguration, it maintains a dictionary of the
currently implemented configuration and compares it to any new changes.
Unfortunately, for certificate-based authentication we create a new
"peer_cert_file" key in our local dictionary, which always causes the
comparison to fail.  This forces expensive renegotiation for any change
in the Interface tables.  This commit uses set difference to detect
changes from the previous configuration as opposed to a straight simple

Bug #9103

Signed-off-by: Justin Pettit <jpettit at nicira.com>


Summary of changes:
 debian/ovs-monitor-ipsec |   10 ++++++----
 1 files changed, 6 insertions(+), 4 deletions(-)

Open vSwitch

More information about the git mailing list