mirror of
https://git.hardenedbsd.org/hardenedbsd/HardenedBSD.git
synced 2024-12-30 15:38:06 +01:00
Add ipsec_enable and ipsec_file options to run IPSEC's setkey program
with the specified configuration file at the appropriate time.
This commit is contained in:
parent
6d2718d964
commit
ba3ed2268c
Notes:
svn2git
2020-12-20 02:59:44 +00:00
svn path=/head/; revision=60628
@ -156,6 +156,8 @@ nis_yppasswdd_flags="" # Flags to rpc.yppasswdd (if enabled).
|
||||
defaultrouter="NO" # Set to default gateway (or NO).
|
||||
static_routes="" # Set to static route list (or leave empty).
|
||||
gateway_enable="NO" # Set to YES if this host will be a gateway.
|
||||
ipsec_enable="NO" # Set to YES to run setkey on ipsec_file
|
||||
ipsec_file="/etc/ipsec.conf" # Name of config file for setkey
|
||||
router_enable="NO" # Set to YES to enable a routing daemon.
|
||||
router="routed" # Name of routing daemon to use if enabled.
|
||||
router_flags="-q" # Flags for routing daemon.
|
||||
|
@ -352,6 +352,17 @@ network_pass1() {
|
||||
esac
|
||||
echo '.'
|
||||
|
||||
case ${ipsec_enable} in
|
||||
[Yy][Ee][Ss])
|
||||
if [ -f ${ipsec_file} ]; then
|
||||
echo ' ipsec: enabled'
|
||||
setkey -f ${ipsec_file}
|
||||
else
|
||||
echo ' ipsec: file not found'
|
||||
fi
|
||||
;;
|
||||
esac
|
||||
|
||||
echo -n 'routing daemons:'
|
||||
case ${router_enable} in
|
||||
[Yy][Ee][Ss])
|
||||
|
@ -352,6 +352,17 @@ network_pass1() {
|
||||
esac
|
||||
echo '.'
|
||||
|
||||
case ${ipsec_enable} in
|
||||
[Yy][Ee][Ss])
|
||||
if [ -f ${ipsec_file} ]; then
|
||||
echo ' ipsec: enabled'
|
||||
setkey -f ${ipsec_file}
|
||||
else
|
||||
echo ' ipsec: file not found'
|
||||
fi
|
||||
;;
|
||||
esac
|
||||
|
||||
echo -n 'routing daemons:'
|
||||
case ${router_enable} in
|
||||
[Yy][Ee][Ss])
|
||||
|
@ -352,6 +352,17 @@ network_pass1() {
|
||||
esac
|
||||
echo '.'
|
||||
|
||||
case ${ipsec_enable} in
|
||||
[Yy][Ee][Ss])
|
||||
if [ -f ${ipsec_file} ]; then
|
||||
echo ' ipsec: enabled'
|
||||
setkey -f ${ipsec_file}
|
||||
else
|
||||
echo ' ipsec: file not found'
|
||||
fi
|
||||
;;
|
||||
esac
|
||||
|
||||
echo -n 'routing daemons:'
|
||||
case ${router_enable} in
|
||||
[Yy][Ee][Ss])
|
||||
|
@ -352,6 +352,17 @@ network_pass1() {
|
||||
esac
|
||||
echo '.'
|
||||
|
||||
case ${ipsec_enable} in
|
||||
[Yy][Ee][Ss])
|
||||
if [ -f ${ipsec_file} ]; then
|
||||
echo ' ipsec: enabled'
|
||||
setkey -f ${ipsec_file}
|
||||
else
|
||||
echo ' ipsec: file not found'
|
||||
fi
|
||||
;;
|
||||
esac
|
||||
|
||||
echo -n 'routing daemons:'
|
||||
case ${router_enable} in
|
||||
[Yy][Ee][Ss])
|
||||
|
@ -352,6 +352,17 @@ network_pass1() {
|
||||
esac
|
||||
echo '.'
|
||||
|
||||
case ${ipsec_enable} in
|
||||
[Yy][Ee][Ss])
|
||||
if [ -f ${ipsec_file} ]; then
|
||||
echo ' ipsec: enabled'
|
||||
setkey -f ${ipsec_file}
|
||||
else
|
||||
echo ' ipsec: file not found'
|
||||
fi
|
||||
;;
|
||||
esac
|
||||
|
||||
echo -n 'routing daemons:'
|
||||
case ${router_enable} in
|
||||
[Yy][Ee][Ss])
|
||||
|
@ -352,6 +352,17 @@ network_pass1() {
|
||||
esac
|
||||
echo '.'
|
||||
|
||||
case ${ipsec_enable} in
|
||||
[Yy][Ee][Ss])
|
||||
if [ -f ${ipsec_file} ]; then
|
||||
echo ' ipsec: enabled'
|
||||
setkey -f ${ipsec_file}
|
||||
else
|
||||
echo ' ipsec: file not found'
|
||||
fi
|
||||
;;
|
||||
esac
|
||||
|
||||
echo -n 'routing daemons:'
|
||||
case ${router_enable} in
|
||||
[Yy][Ee][Ss])
|
||||
|
@ -352,6 +352,17 @@ network_pass1() {
|
||||
esac
|
||||
echo '.'
|
||||
|
||||
case ${ipsec_enable} in
|
||||
[Yy][Ee][Ss])
|
||||
if [ -f ${ipsec_file} ]; then
|
||||
echo ' ipsec: enabled'
|
||||
setkey -f ${ipsec_file}
|
||||
else
|
||||
echo ' ipsec: file not found'
|
||||
fi
|
||||
;;
|
||||
esac
|
||||
|
||||
echo -n 'routing daemons:'
|
||||
case ${router_enable} in
|
||||
[Yy][Ee][Ss])
|
||||
|
Loading…
Reference in New Issue
Block a user