> Apart from enabling SPD on an interface, anything else needs to be > configured to be able to use ipsec4_output_feature?
Not sure what you mean here, but obviously you'll need to also program SAs and policies for it to do anything useful, see https://wiki.fd.io/view/VPP/IPSec#Policy_Mode for example. > Is it like enabling SPD on an interface will implicitly enable this > feature arc ip4-output===>ipsec4_output_feature()? Enabling SPD is enabling the feature on the feature arc. The feature is only there for policy mode, it is not used in tunnel mode. ben
-=-=-=-=-=-=-=-=-=-=-=- Links: You receive all messages sent to this group. View/Reply Online (#20811): https://lists.fd.io/g/vpp-dev/message/20811 Mute This Topic: https://lists.fd.io/mt/88855433/21656 Group Owner: vpp-dev+ow...@lists.fd.io Unsubscribe: https://lists.fd.io/g/vpp-dev/unsub [arch...@mail-archive.com] -=-=-=-=-=-=-=-=-=-=-=-