[IPSEC] esp: Defer output IV initialization to first use.
authorDavid S. Miller <davem@davemloft.net>
Fri, 22 Sep 2006 22:17:35 +0000 (15:17 -0700)
committerDavid S. Miller <davem@davemloft.net>
Fri, 22 Sep 2006 22:17:35 +0000 (15:17 -0700)
First of all, if the xfrm_state only gets used for input
packets this entropy is a complete waste.

Secondly, it is often the case that a configuration loads
many rules (perhaps even dynamically) and they don't all
necessarily ever get used.

This get_random_bytes() call was showing up in the profiles
for xfrm_state inserts which is how I noticed this.

Signed-off-by: David S. Miller <davem@davemloft.net>

No differences found