summaryrefslogtreecommitdiff
path: root/share/man/man8/vpn.8
AgeCommit message (Expand)Author
2005-08-19add /etc/ipsec.conf to FILES;Jason McIntyre
2005-08-19document manual keying with ipsecctlHans-Joerg Hoexer
2005-06-07note that netstat output may differ slightly for manual keying;Jason McIntyre
2005-05-24fix wrong option and clarify a sentence; ok jmc@David Krause
2005-04-27some improvements from markus@ and ho@;Jason McIntyre
2005-04-23- add a Listen-on tag to the example isakmpd.conf filesJason McIntyre
2005-04-21- remove section on pf "quick" rules: this is not the place to describeJason McIntyre
2005-04-21kill SPD section: it is neither relevant nor helpful here;Jason McIntyre
2005-04-21this is not the correct place to ref options(4);Jason McIntyre
2005-04-21add a section on testing the vpn is working;Jason McIntyre
2005-04-17document effects of net.inet.ip.forwarding=2, and refer to relatedJason McIntyre
2005-04-17merge/remove EXAMPLES:Jason McIntyre
2005-04-16add isakmpd.policy to FILES and sort;Jason McIntyre
2005-04-15spacing, and a typo;Jason McIntyre
2005-04-15make the examples in this page work for a simple 2 machine, directlyJason McIntyre
2005-04-15add `enable packet forwarding' to initial summary;Jason McIntyre
2005-04-14detail missing step in summary;Jason McIntyre
2005-04-14remove BUGS section, as no longer relevant;Jason McIntyre
2005-04-14don't forget to enable pf and load ruleset;Jason McIntyre
2005-04-14simplify filter rules somewhat:Jason McIntyre
2005-04-14- example policy files are identical for machines A and B, so combineJason McIntyre
2005-04-14tidy up "Choosing a key exchange method", and do not confuse punter;Jason McIntyre
2005-04-14reduce diff between isakmpd.conf sections for machines A and B;Jason McIntyre
2005-04-14we already have a section on configuring firewall rules, so refer to itJason McIntyre
2005-04-14make this part consistent too;Jason McIntyre
2005-04-14do not mess about w/ the order of macros in pf rules, it just makesJason McIntyre
2005-04-14make the intro a little more consistent;Jason McIntyre
2005-04-13although the example gateway addresses given are private IP addresses, make itJason McIntyre
2005-04-12remove /32 netmasks as they're confusing and not needed;Jason McIntyre
2005-04-02make this page look better;Jason McIntyre
2004-11-12typos from joel gudknecht;Jason McIntyre
2004-06-02need to explicitly pass ipencap traffic on the encapsulation interfacePedro Martelletto
2004-05-27No need to mention kernel configuration for ipsec, it's enabled by default.Hans-Joerg Hoexer
2004-03-12match GENERIC;Jason McIntyre
2004-02-25remove -w option to sysctl;Jason McIntyre
2004-02-06typo from Tamas Tevesz, via nick@;Jason McIntyre
2003-09-08fix command line; deraadt@ jmc@ ok.Federico G. Schwindt
2003-09-05remove some erroneous backslashes, and add some indent;Jason McIntyre
2003-07-10simplify and cleanup examples; we now only setup flows forMarkus Friedl
2003-06-26remove -inset from .Bl;Jason McIntyre
2003-06-06- section reorderJason McIntyre
2003-05-10typos;Jason McIntyre
2002-09-07remove discussion about photurisd; ok hoTheo de Raadt
2002-05-23'SEE ALSO' audit in 'share/man/':Mike Pechkin
2002-02-19IPsec is written ``IPsec'', not ``IPSec''.Miod Vallat
2002-02-12Add 128-bits as recommended AES key length.Kjell Wooding
2002-01-21Fix typo, noted by ciph3r@securebydefault.orgAngelos D. Keromytis
2001-12-10ESP and AH now enabled by default. Mention IPv6 forwarding. Various typo fixes.Hakan Olsson
2001-11-14typo; nulld@norm.nulld.netTheo de Raadt
2001-11-06Fix symbolic address in example (noticed by kbob@jogger-egg.com)Angelos D. Keromytis