> On 5 Mar 2019, at 04:25, Zhang, Yuwei1 <yuwei1.zh...@intel.com> wrote:
> 
> Hello All,
>          I’m doing some investigation on ipsec in vpp recently, I noticed 
> that the ipsec policy matching part using a very simple linear search 
> algorithm which works fine in the case only have a few policy entries, but 
> once the policy entries number increase, the performance should be terrible. 
> Do we have any plan or better solution for this kind of scenario? Thanks for 
> your kindly help in advance.

Yes, it is on todo list but AFAIK nobody working on it. Contributions are 
welcome…
Main challenge is to convert address range into address mask(s) as RFC authors 
decided to make it hard for computers.


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#12429): https://lists.fd.io/g/vpp-dev/message/12429
Mute This Topic: https://lists.fd.io/mt/30222601/21656
Group Owner: vpp-dev+ow...@lists.fd.io
Unsubscribe: https://lists.fd.io/g/vpp-dev/unsub  [arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-

Reply via email to