summaryrefslogtreecommitdiffstats
path: root/src/vnet/ipsec
diff options
context:
space:
mode:
authorFilip Tehlar <ftehlar@cisco.com>2018-11-30 07:27:27 -0800
committerNeale Ranns <nranns@cisco.com>2018-12-03 14:27:13 +0000
commitb4a7a7dcf81f85ca3a22c791fb57d7eddc111661 (patch)
tree2a3caa652332c513916f4b888ba4862e1fa8a886 /src/vnet/ipsec
parent494a09a3959f3782a7c7f1fa42b7d16a99c98630 (diff)
Add UDP encap flag
Change-Id: Ic6a8b9aaec7e5dee4fb1971168988dbe4f931f86 Signed-off-by: Filip Tehlar <ftehlar@cisco.com>
Diffstat (limited to 'src/vnet/ipsec')
-rw-r--r--src/vnet/ipsec/ipsec.api2
-rw-r--r--src/vnet/ipsec/ipsec_api.c1
2 files changed, 3 insertions, 0 deletions
diff --git a/src/vnet/ipsec/ipsec.api b/src/vnet/ipsec/ipsec.api
index 148cdcdc675..610f2325ebc 100644
--- a/src/vnet/ipsec/ipsec.api
+++ b/src/vnet/ipsec/ipsec.api
@@ -562,6 +562,7 @@ define ipsec_spd_interface_details {
@param remote_integ_key - integrity key for inbound IPsec SA
@param renumber - intf display name uses a specified instance if != 0
@param show_instance - instance to display for intf if renumber is set
+ @param udp_encap - enable UDP encapsulation for NAT traversal
*/
define ipsec_tunnel_if_add_del {
u32 client_index;
@@ -585,6 +586,7 @@ define ipsec_tunnel_if_add_del {
u8 remote_integ_key[128];
u8 renumber;
u32 show_instance;
+ u8 udp_encap;
};
/** \brief Add/delete IPsec tunnel interface response
diff --git a/src/vnet/ipsec/ipsec_api.c b/src/vnet/ipsec/ipsec_api.c
index f2333646cd0..3f30a7dc321 100644
--- a/src/vnet/ipsec/ipsec_api.c
+++ b/src/vnet/ipsec/ipsec_api.c
@@ -470,6 +470,7 @@ vl_api_ipsec_tunnel_if_add_del_t_handler (vl_api_ipsec_tunnel_if_add_del_t *
tun.integ_alg = mp->integ_alg;
tun.local_integ_key_len = mp->local_integ_key_len;
tun.remote_integ_key_len = mp->remote_integ_key_len;
+ tun.udp_encap = mp->udp_encap;
memcpy (&tun.local_ip, mp->local_ip, 4);
memcpy (&tun.remote_ip, mp->remote_ip, 4);
memcpy (&tun.local_crypto_key, &mp->local_crypto_key,