]> git.ipfire.org Git - thirdparty/kernel/stable.git/commitdiff
net/mlx5: HWS, Enable IPSec hardware offload in legacy mode
authorLama Kayal <lkayal@nvidia.com>
Wed, 16 Jul 2025 14:17:47 +0000 (17:17 +0300)
committerJakub Kicinski <kuba@kernel.org>
Fri, 18 Jul 2025 01:53:07 +0000 (18:53 -0700)
IPSec hardware offload in legacy mode should not be affected by the
steering mode, hence it should also work properly with hmfs mode.

Remove steering mode validation when calculating the cap for packet
offload, this will also enable the missing cap MLX5_IPSEC_CAP_PRIO
needed for crypto offload.

Signed-off-by: Lama Kayal <lkayal@nvidia.com>
Reviewed-by: Jianbo Liu <jianbol@nvidia.com>
Signed-off-by: Tariq Toukan <tariqt@nvidia.com>
Reviewed-by: Michal Swiatkowski <michal.swiatkowski@linux.intel.com>
Link: https://patch.msgid.link/1752675472-201445-2-git-send-email-tariqt@nvidia.com
Signed-off-by: Jakub Kicinski <kuba@kernel.org>
drivers/net/ethernet/mellanox/mlx5/core/en_accel/ipsec_offload.c

index 820debf3fbbf220c2179096a20fd4065f94f06dd..ef7322d381af65d0a2d01780725c5d6f30629e9c 100644 (file)
@@ -42,8 +42,7 @@ u32 mlx5_ipsec_device_caps(struct mlx5_core_dev *mdev)
 
        if (MLX5_CAP_IPSEC(mdev, ipsec_full_offload) &&
            (mdev->priv.steering->mode == MLX5_FLOW_STEERING_MODE_DMFS ||
-            (mdev->priv.steering->mode == MLX5_FLOW_STEERING_MODE_SMFS &&
-            is_mdev_legacy_mode(mdev)))) {
+            is_mdev_legacy_mode(mdev))) {
                if (MLX5_CAP_FLOWTABLE_NIC_TX(mdev,
                                              reformat_add_esp_trasport) &&
                    MLX5_CAP_FLOWTABLE_NIC_RX(mdev,