I have tried "ip xfrm policy list" and it dumps all the thousands of rules, no problem.
I see this uses netlink which uses wait queues. Could using wait queues be a solution to the PF_KEY problem? Thanks. > -----Original Message----- > From: jamal [mailto:[EMAIL PROTECTED] > Sent: Tuesday, January 31, 2006 10:59 AM > To: Venkat Yekkirala > Cc: netdev@vger.kernel.org; Chad Hanson; Darrel Goeddel > Subject: Re: IPSec DUMP issue > > > On Tue, 2006-31-01 at 11:42 -0500, Venkat Yekkirala wrote: > > > > I gather this is a known issue and was wondering about > possible/acceptable > > solutions as I would like to help resolve this problem. > > > > Pseudo-known issue. The challenge is pfkey which doesnt scale well. > Try dumping with iproute2 ip xfrm and see if you see the same thing. > > cheers, > jamal > - To unsubscribe from this list: send the line "unsubscribe netdev" in the body of a message to [EMAIL PROTECTED] More majordomo info at http://vger.kernel.org/majordomo-info.html