summaryrefslogtreecommitdiff
path: root/share
diff options
context:
space:
mode:
authorAngelos D. Keromytis <angelos@cvs.openbsd.org>1999-02-24 23:33:24 +0000
committerAngelos D. Keromytis <angelos@cvs.openbsd.org>1999-02-24 23:33:24 +0000
commit0494b5983a91088eed593ef4bc66af5be050435d (patch)
tree11d84a2ee94168636fd28a3e9d79587690182689 /share
parent1300d84f5aa89eb4c296d12a038f25da4f47f0dc (diff)
Update man page.
Diffstat (limited to 'share')
-rw-r--r--share/man/man4/ipsec.47
1 files changed, 5 insertions, 2 deletions
diff --git a/share/man/man4/ipsec.4 b/share/man/man4/ipsec.4
index d7c1f5f1058..92ded5ababc 100644
--- a/share/man/man4/ipsec.4
+++ b/share/man/man4/ipsec.4
@@ -1,4 +1,4 @@
-.\" $OpenBSD: ipsec.4,v 1.15 1999/02/23 03:49:51 angelos Exp $
+.\" $OpenBSD: ipsec.4,v 1.16 1999/02/24 23:33:23 angelos Exp $
.\" Copyright 1997 Niels Provos <provos@physnet.uni-hamburg.de>
.\" All rights reserved.
.\"
@@ -79,7 +79,10 @@ effect of multiple transactions being received by the peer. Consider the
attacker has got to know what the traffic is all about by other means than
cracking the encryption, and that the traffic causes events favourable for him,
like depositing money into his account. We need to make sure he cannot just
-replay that traffic later.
+replay that traffic later. WARNING: as per the standards specification, replay
+protection is not performed when using manual-keyed IPsec (e.g., when using
+.Xr ipsecadm 8
+).
.El
.Pp
.Tn IPSec