Age | Commit message (Collapse) | Author | |
---|---|---|---|
2005-04-17 | document effects of net.inet.ip.forwarding=2, and refer to related | Jason McIntyre | |
sysctls in sysctl(3); pointed out by msf@ | |||
2005-04-17 | merge/remove EXAMPLES: | Jason McIntyre | |
previously we were documenting in 2 places how to set up ipsecadm stuff, and in one place isakmpd. this led to inconsistencies and repitition. sanity checks + ok hshoexer@ | |||
2005-04-16 | add isakmpd.policy to FILES and sort; | Jason McIntyre | |
2005-04-15 | spacing, and a typo; | Jason McIntyre | |
2005-04-15 | make the examples in this page work for a simple 2 machine, directly | Jason McIntyre | |
connected, setup; encourage people to try this way before using for real; ok hshoexer@ | |||
2005-04-15 | add `enable packet forwarding' to initial summary; | Jason McIntyre | |
use `automated' keying, not `automatic', since the rest of the page does; | |||
2005-04-14 | detail missing step in summary; | Jason McIntyre | |
2005-04-14 | remove BUGS section, as no longer relevant; | Jason McIntyre | |
ok hshoexer@ markus@ | |||
2005-04-14 | don't forget to enable pf and load ruleset; | Jason McIntyre | |
2005-04-14 | simplify filter rules somewhat: | Jason McIntyre | |
- use a macro for ext_if - use 1 block rule (rather than block in and out) | |||
2005-04-14 | - example policy files are identical for machines A and B, so combine | Jason McIntyre | |
into one step - mention necessary permissions for isakmpd.policy - document these permissions are needed because of sensitive information, not just because of shared secrets: isakmpd.policy need not contain a shared secret - remove useless .Pp agreed w/ hshoexer@ | |||
2005-04-14 | tidy up "Choosing a key exchange method", and do not confuse punter; | Jason McIntyre | |
ok hshoexer@ | |||
2005-04-14 | reduce diff between isakmpd.conf sections for machines A and B; | Jason McIntyre | |
2005-04-14 | we already have a section on configuring firewall rules, so refer to it | Jason McIntyre | |
in EXAMPLES rather than reproducing info (and confusing people); make the firewall section of manual and automatic keying the same; this also fixes an issue reported by steve murdoch back in november, that parts of vpn(8) were repeating themselves; sorry to take so long to fix this, steve; | |||
2005-04-14 | make this part consistent too; | Jason McIntyre | |
2005-04-14 | do not mess about w/ the order of macros in pf rules, it just makes | Jason McIntyre | |
the page harder to read; | |||
2005-04-14 | make the intro a little more consistent; | Jason McIntyre | |
2005-04-13 | although the example gateway addresses given are private IP addresses, make it | Jason McIntyre | |
clear that this is an example only, and would normally be public addresses; ok hshoexer@ henning@ msf@ | |||
2005-04-12 | remove /32 netmasks as they're confusing and not needed; | Jason McIntyre | |
ok hshoexer@ | |||
2005-04-08 | make distrib-dirs, ok otto | Henning Brauer | |
2005-04-05 | since csh is no longer the default root shell, and advice to not log in as | Jason McIntyre | |
`root' was removed in dot.login -r1.11, remove text which says it happens; tweak the rest while i'm in here; spotted by david@ | |||
2005-04-02 | .Dt arg should be hppa64, not hppa; | Jason McIntyre | |
2005-04-02 | enter the right directory... | Theo de Raadt | |
2005-04-02 | make one out of hppa w/ old pdc sections deleted | Michael Shalayeff | |
2005-04-02 | make this page look better; | Jason McIntyre | |
2005-04-01 | build some | Theo de Raadt | |
2005-04-01 | + man8.hppa64 | Theo de Raadt | |
2005-04-01 | sync | Theo de Raadt | |
2005-03-29 | Regen | Miod Vallat | |
2005-03-29 | Regen. | Miod Vallat | |
2005-03-27 | tweaks; | Jason McIntyre | |
2005-03-26 | some minimalistic hppa/hpux additions | Michael Shalayeff | |
2005-03-12 | escape `.' at eol to avoid double spacing issue; | Jason McIntyre | |
2005-03-11 | cdrom/CDROM -> CD-ROM; | Jason McIntyre | |
2005-03-02 | back out sendbug rejection line; | Jason McIntyre | |
requested by deraadt@ | |||
2005-03-02 | note that non-generic kernels not advised; | Jason McIntyre | |
diff originally from stuart henderson, reworded by krw@ ok ian@ krw@ hshoexer@ | |||
2005-03-02 | clarify section on packet forwarding; | Jason McIntyre | |
kill redundant blurb about virtual interfaces; ok hshoexer@ deraadt@ | |||
2005-03-01 | Regen | Miod Vallat | |
2005-02-18 | update SEE ALSO, and a tweak; | Jason McIntyre | |
2005-02-17 | Xr fstat, netstat, ps | Marc Espie | |
after discussion with henning/otto, okay various people... | |||
2005-01-31 | fix ugly line split: from raymond lillard; | Jason McIntyre | |
use displays where possible - they're much tidier; | |||
2005-01-29 | kernel can be gzipped on the MacOS side | Martin Reindl | |
help from miod@, ok jmc@ | |||
2005-01-28 | sync | Dan Harnett | |
2005-01-19 | sync | Theo de Raadt | |
2005-01-18 | sync | Dale Rahn | |
2005-01-14 | Regen | Miod Vallat | |
2005-01-10 | regen | David Gwynne | |
2005-01-07 | document bsd.mp; | Jason McIntyre | |
2005-01-06 | - document /etc/security's .secure hooks | Jason McIntyre | |
- sync the comments in /etc/security ok millert@ | |||
2005-01-02 | Regen | Mark Kettenis | |