On 06/06/2012 06:11 PM, Paul Wouters wrote:
Apart from the RFC stating so, what is the reasoning behind favouring an "arbitrary top down list" over longest prefix match?
For example, if your policy only specifies remote or local port, like 80 (to cover all HTTP traffic, regarless of origin). It would be hard to see how longest match would apply to it? _______________________________________________ IPsec mailing list [email protected] https://www.ietf.org/mailman/listinfo/ipsec
