Is there any particular reason (performance, stability concerns...)
IPSEC support is not enabled in GENERIC?

In Debian GNU/kFreeBSD we're considering enabling it in our default
builds, due to increased user demand and as it is already enabled for
our Linux-based flavours.

However we're concerned about diverging from FreeBSD as there might be
unforeseen consequences. Is there any specific concern on your side?

If not, perhaps it could be considered for HEAD after 10.0 release?


Robert Millan

