K 10 svn:author V 2 ae K 8 svn:date V 27 2017-08-23T08:56:18.951189Z K 7 svn:log V 317 MFC r322310: Add to if_enc(4) ability to capture packets via BPF after pfil processing. New flag 0x4 can be configured in net.enc.[in|out].ipsec_bpf_mask. When it is set, if_enc(4) additionally captures a packet via BPF after invoking pfil hook. This may be useful for debugging. Sponsored by: Yandex LLC END