~ubuntu-branches/ubuntu/hardy/openswan/hardy-updates

« back to all changes in this revision

Viewing changes to testing/pluto/xauth-pluto-05/road.conf

  • Committer: Bazaar Package Importer
  • Author(s): Rene Mayrhofer
  • Date: 2005-01-27 16:10:11 UTC
  • mfrom: (1.1.1 upstream)
  • Revision ID: james.westby@ubuntu.com-20050127161011-idgybmyz3vwhpfiq
Tags: 2.3.0-2
Urgency HIGH due to security issue and problems with build-deps in sarge.
* Fix the security issue. Please see
  http://www.idefense.com/application/poi/display?id=190&
      type=vulnerabilities&flashstatus=false
  for more details. Thanks to Martin Schulze for informing me about
  this issue.
  Closes: #292458: Openswan XAUTH/PAM Buffer Overflow Vulnerability
* Added a Build-Dependency to lynx.
  Closes: #291143: openswan: FTBFS: Missing build dependency.

Show diffs side-by-side

added added

removed removed

Lines of Context:
 
1
# /etc/ipsec.conf - FreeS/WAN IPsec configuration file
 
2
 
 
3
version 2.0
 
4
 
 
5
config setup
 
6
        # put the logs in /tmp for the UMLs, so that we can operate
 
7
        # without syslogd, which seems to break on UMLs
 
8
        plutostderrlog=/tmp/pluto.log
 
9
        plutorestartoncrash=false
 
10
        dumpdir=/tmp
 
11
 
 
12
conn modecfg-road--eastnet-psk
 
13
        also=road--eastnet-psk
 
14
        rightmodecfgserver=yes
 
15
        leftmodecfgclient=yes
 
16
        rightxauthserver=yes
 
17
        leftxauthclient=yes
 
18
 
 
19
conn road--eastnet-psk
 
20
        also=eastnet
 
21
        also=road-east-psk
 
22
        left=%defaultroute
 
23
        ike=3des-sha1
 
24
        aggrmode=yes
 
25
        authby=secret
 
26
 
 
27
conn packetdefault
 
28
        auto=ignore
 
29
 
 
30
conn road-east-psk
 
31
        right=192.1.2.23
 
32
        rightid=@east
 
33
        rightnexthop=192.1.2.45
 
34
        leftid=@roadrandom
 
35
 
 
36
include /etc/ipsec.d/ipsec.conf.common
 
37