~ubuntu-branches/ubuntu/hardy/openswan/hardy-updates

« back to all changes in this revision

Viewing changes to testing/pluto/xauth-pluto-04/road.conf

  • Committer: Bazaar Package Importer
  • Author(s): Rene Mayrhofer
  • Date: 2005-01-27 16:10:11 UTC
  • mfrom: (1.1.1 upstream)
  • Revision ID: james.westby@ubuntu.com-20050127161011-idgybmyz3vwhpfiq
Tags: 2.3.0-2
Urgency HIGH due to security issue and problems with build-deps in sarge.
* Fix the security issue. Please see
  http://www.idefense.com/application/poi/display?id=190&
      type=vulnerabilities&flashstatus=false
  for more details. Thanks to Martin Schulze for informing me about
  this issue.
  Closes: #292458: Openswan XAUTH/PAM Buffer Overflow Vulnerability
* Added a Build-Dependency to lynx.
  Closes: #291143: openswan: FTBFS: Missing build dependency.

Show diffs side-by-side

added added

removed removed

Lines of Context:
 
1
# /etc/ipsec.conf - FreeS/WAN IPsec configuration file
 
2
 
 
3
version 2.0
 
4
 
 
5
config setup
 
6
        # put the logs in /tmp for the UMLs, so that we can operate
 
7
        # without syslogd, which seems to break on UMLs
 
8
        plutostderrlog=/tmp/pluto.log
 
9
        plutorestartoncrash=false
 
10
        dumpdir=/tmp
 
11
 
 
12
conn xauth-road--eastnet-psk
 
13
        also=road--eastnet-psk
 
14
        rightxauthserver=yes
 
15
        leftxauthclient=yes
 
16
 
 
17
conn road--eastnet-psk
 
18
        also=eastnet
 
19
        also=road-east-psk
 
20
        left=%defaultroute
 
21
        ike=3des-sha1
 
22
        aggrmode=yes
 
23
        authby=secret
 
24
 
 
25
conn packetdefault
 
26
        auto=ignore
 
27
 
 
28
conn road-east-psk
 
29
        right=192.1.2.23
 
30
        rightid=@east
 
31
        rightnexthop=192.1.2.45
 
32
        leftid=@roadrandom
 
33
 
 
34
include /etc/ipsec.d/ipsec.conf.common
 
35