~ubuntu-branches/ubuntu/hardy/openswan/hardy-updates

« back to all changes in this revision

Viewing changes to testing/pluto/basic-pluto-04/west.conf

  • Committer: Bazaar Package Importer
  • Author(s): Rene Mayrhofer
  • Date: 2005-01-27 16:10:11 UTC
  • mfrom: (1.1.1 upstream)
  • Revision ID: james.westby@ubuntu.com-20050127161011-idgybmyz3vwhpfiq
Tags: 2.3.0-2
Urgency HIGH due to security issue and problems with build-deps in sarge.
* Fix the security issue. Please see
  http://www.idefense.com/application/poi/display?id=190&
      type=vulnerabilities&flashstatus=false
  for more details. Thanks to Martin Schulze for informing me about
  this issue.
  Closes: #292458: Openswan XAUTH/PAM Buffer Overflow Vulnerability
* Added a Build-Dependency to lynx.
  Closes: #291143: openswan: FTBFS: Missing build dependency.

Show diffs side-by-side

added added

removed removed

Lines of Context:
 
1
# /etc/ipsec.conf - FreeS/WAN IPsec configuration file
 
2
 
 
3
version 2.0
 
4
 
 
5
config setup
 
6
        # put the logs in /tmp for the UMLs, so that we can operate
 
7
        # without syslogd, which seems to break on UMLs
 
8
        plutostderrlog=/tmp/pluto.log
 
9
        plutorestartoncrash=false
 
10
        dumpdir=/var/tmp
 
11
 
 
12
# conn for simulating OE.
 
13
# only used in test oe-fail-without-resp-client-txt-01
 
14
conn simulate-OE-east-west-1
 
15
        left=192.1.2.23         # east's public
 
16
        leftrsasigkey=%dnsondemand
 
17
        right=192.1.2.45        # west's public
 
18
        rightrsasigkey=%dnsondemand
 
19
        rightsubnet=192.0.1.1/32        # sunset's non-OE
 
20
        keyingtries=1   # fail quickly
 
21
 
 
22
 
 
23
conn westnet-eastnet-aes
 
24
        ike=aes256
 
25
        esp=aes256-sha1
 
26
        also=westnet-eastnet
 
27
 
 
28
include /etc/ipsec.d/ipsec.conf.common
 
29
 
 
30
conn us
 
31
        rightsubnet=192.0.2.0/24
 
32
 
 
33
conn them
 
34
        leftsubnet=192.0.1.0/24
 
35