Age | Commit message (Collapse) | Author |
|
phase 2 traffic. this allows policy-based filtering of encrypted and
unencrypted ipsec traffic with pf(4). see ipsec.conf(5) and
isakmpd.conf(5) for details and examples.
this is work in progress and still needs some testing and feedback,
but it is safe to put it in now.
ok hshoexer@
|
|
|
|
however, this workaround might leak config entries in isakmpd;
ok (for now) hshoexer
|
|
consistently in the rest of the page;
help/ok hshoexer
|
|
|
|
|
|
ok msf@
|
|
fixes PR5262
ok hshoexer@
|
|
|
|
not only ESP+AH (ie. ESP inside AH).
|
|
|
|
|
|
ok hshoexer
|
|
|
|
|
|
the list; move the rc stuff from ipsecctl to ipsec.conf;
ok hshoexer
|
|
ok hshoexer
|
|
- move example ruleset into a more logical order
- correct the if-bound example (spotted by hshoexer)
help/ok markus hshoexer
|
|
|
|
|
|
|
|
ok hshoexer ho
|
|
|
|
help/ok markus
|
|
|
|
pointed out by msf; explained by markus
|
|
|
|
|
|
input henning markus mcbride
ok mcbride hshoexer
|
|
|
|
- remove hazy tcp md5 blurb
ok hshoexer
|
|
|
|
|
|
help from ho hshoexer
|
|
ok hshoexer
|
|
|
|
|
|
ok hshoexer
|
|
|
|
remove some duplicate text;
ok hshoexer
|
|
|
|
'SADB'. jmc@, hshoexer@ ok.
|
|
|
|
ok hshoexer mpf
|
|
|
|
|
|
ok hshoexer
|
|
|
|
|
|
|