summaryrefslogtreecommitdiff
path: root/sbin/isakmpd/sysdep/freeswan/README
diff options
context:
space:
mode:
Diffstat (limited to 'sbin/isakmpd/sysdep/freeswan/README')
-rw-r--r--sbin/isakmpd/sysdep/freeswan/README16
1 files changed, 16 insertions, 0 deletions
diff --git a/sbin/isakmpd/sysdep/freeswan/README b/sbin/isakmpd/sysdep/freeswan/README
new file mode 100644
index 00000000000..3990ab3e2e4
--- /dev/null
+++ b/sbin/isakmpd/sysdep/freeswan/README
@@ -0,0 +1,16 @@
+$OpenBSD: README,v 1.1 2003/05/14 20:49:37 ho Exp $
+
+Currently, you have to manually configure any IPsec interfaces and do the
+association betweent these and the physical ones. This is done like
+this in FreeS/WAN:
+
+ipsec tncfg --attach --virtual ipsec0 --physical eth0
+ifconfig ipsec0 A.B.C.D netmask E.F.G.H
+
+Then there is one special configuration option in the IPsec-connection
+sections for Phase 2 of the configuration file, named Next-hop, which
+should be set to the next hop's IP address along the way to the peer:
+
+Next-hop= I.J.K.L
+
+This is specific to the way FreeS/WAN works.