From 79c7386bb0b6b43693a71943792d8c1ee91db3aa Mon Sep 17 00:00:00 2001 From: Jason McIntyre Date: Fri, 15 Sep 2006 11:45:05 +0000 Subject: clarification; --- sbin/ipsecctl/ipsec.conf.5 | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) (limited to 'sbin') diff --git a/sbin/ipsecctl/ipsec.conf.5 b/sbin/ipsecctl/ipsec.conf.5 index f45c0a71085..f1e8df4dd42 100644 --- a/sbin/ipsecctl/ipsec.conf.5 +++ b/sbin/ipsecctl/ipsec.conf.5 @@ -1,4 +1,4 @@ -.\" $OpenBSD: ipsec.conf.5,v 1.95 2006/09/15 11:35:50 jmc Exp $ +.\" $OpenBSD: ipsec.conf.5,v 1.96 2006/09/15 11:45:04 jmc Exp $ .\" .\" Copyright (c) 2004 Mathieu Sauve-Frankel All rights reserved. .\" @@ -682,7 +682,7 @@ set skip on enc0 .Ed .Pp In the following example, all traffic is blocked by default. -IPsec traffic from hosts {192.168.3.1, 192.168.3.2} and +IPsec traffic from gateways {192.168.3.1, 192.168.3.2} and networks {10.0.1.0/24, 10.0.2.0/24} is permitted. The external interface, sk0, has to allow the keying daemons to talk to each other. -- cgit v1.2.3