OpenBSD CVS

CVS log for www/faq/faq17.html


[BACK] Up to [local] / www / faq

Request diff between arbitrary revisions


Default branch: MAIN


Revision 1.20 / (download) / (as text) - annotate - [select for diffs], Fri Sep 22 12:09:39 2023 UTC (8 months, 2 weeks ago) by solene
Branch: MAIN
CVS Tags: HEAD
Changes since 1.19: +3 -1 lines
Diff to previous 1.19 (colored)

update the TOC to reflect reality in the document

reported by "txt.file"

Revision 1.19 / (download) / (as text) - annotate - [select for diffs], Fri Jun 11 18:33:39 2021 UTC (2 years, 11 months ago) by landry
Branch: MAIN
Changes since 1.18: +3 -3 lines
Diff to previous 1.18 (colored)

faq17.html: use lo1 instead of vether0 in iked.conf examples

suggested by deraadt@, ok tobhe@

Revision 1.18 / (download) / (as text) - annotate - [select for diffs], Mon May 31 15:07:43 2021 UTC (3 years ago) by tj
Branch: MAIN
Changes since 1.17: +1 -1 lines
Diff to previous 1.17 (colored)

typo fix from marfaba stewart

Revision 1.17 / (download) / (as text) - annotate - [select for diffs], Thu May 20 14:32:13 2021 UTC (3 years ago) by tobhe
Branch: MAIN
Changes since 1.16: +24 -71 lines
Diff to previous 1.16 (colored)

Update examples to OpenBSD 6.9 configuration syntax.
Instead of using 0.0.0.0 or 0.0.0.0/0 we can now use the keyword dynamic
and any.  As of 6.9 iked clients now support client side dynamic IP
configuration so the workaround using NAT is no longer necessary.

Discussed with patrick@ and landry@

Revision 1.16 / (download) / (as text) - annotate - [select for diffs], Sat Dec 12 19:07:25 2020 UTC (3 years, 5 months ago) by tobhe
Branch: MAIN
Changes since 1.15: +6 -3 lines
Diff to previous 1.15 (colored)

Use 'to 0.0.0.0' in examples where config address is used, which is the
only way to have multiple roadwarrior clients work with the same responder.
Those should be replaced with the 'dynamic' keyword once 6.9 is out.

discussed with landry@
ok patrick@

Revision 1.15 / (download) / (as text) - annotate - [select for diffs], Sun Oct 18 02:37:17 2020 UTC (3 years, 7 months ago) by tj
Branch: MAIN
Changes since 1.14: +6 -0 lines
Diff to previous 1.14 (colored)

briefly mention wireguard; from tb

Revision 1.14 / (download) / (as text) - annotate - [select for diffs], Sun Jun 7 19:54:52 2020 UTC (3 years, 11 months ago) by tobhe
Branch: MAIN
Changes since 1.13: +8 -8 lines
Diff to previous 1.13 (colored)

Fix indentation

Revision 1.13 / (download) / (as text) - annotate - [select for diffs], Sat Jun 6 16:27:46 2020 UTC (4 years ago) by tobhe
Branch: MAIN
Changes since 1.12: +2 -4 lines
Diff to previous 1.12 (colored)

Drop 'rsa' from examples. iked should automatically figure out the right
authentication method.

Revision 1.12 / (download) / (as text) - annotate - [select for diffs], Thu Jun 4 08:51:51 2020 UTC (4 years ago) by tobhe
Branch: MAIN
Changes since 1.11: +2 -2 lines
Diff to previous 1.11 (colored)

server2.domain is the srcid for server2.

Revision 1.11 / (download) / (as text) - annotate - [select for diffs], Fri Jun 21 08:22:16 2019 UTC (4 years, 11 months ago) by bentley
Branch: MAIN
Changes since 1.10: +1 -1 lines
Diff to previous 1.10 (colored)

Missing period.

Revision 1.10 / (download) / (as text) - annotate - [select for diffs], Thu Jun 13 05:45:51 2019 UTC (4 years, 11 months ago) by bentley
Branch: MAIN
Changes since 1.9: +1 -1 lines
Diff to previous 1.9 (colored)

Fix typos caught by validator.

Revision 1.9 / (download) / (as text) - annotate - [select for diffs], Tue May 28 01:53:10 2019 UTC (5 years ago) by bentley
Branch: MAIN
Changes since 1.8: +1 -1 lines
Diff to previous 1.8 (colored)

Give FAQ pages their own HTML id, for future use.

Revision 1.8 / (download) / (as text) - annotate - [select for diffs], Wed Apr 24 03:59:12 2019 UTC (5 years, 1 month ago) by tj
Branch: MAIN
Changes since 1.7: +1 -2 lines
Diff to previous 1.7 (colored)

tidy up table of contents

Revision 1.7 / (download) / (as text) - annotate - [select for diffs], Tue Apr 16 19:35:36 2019 UTC (5 years, 1 month ago) by landry
Branch: MAIN
Changes since 1.6: +1 -1 lines
Diff to previous 1.6 (colored)

Fix thinko in full site-to-site sample config.

I need to get back to this someday, hopefully.

Revision 1.6 / (download) / (as text) - annotate - [select for diffs], Sun Mar 31 17:22:27 2019 UTC (5 years, 2 months ago) by landry
Branch: MAIN
Changes since 1.5: +2 -2 lines
Diff to previous 1.5 (colored)

the service name is isakmp, not isakmpd.

From Peter Wens via tj@, thanks !

Revision 1.5 / (download) / (as text) - annotate - [select for diffs], Thu Mar 14 01:19:19 2019 UTC (5 years, 2 months ago) by tj
Branch: MAIN
Changes since 1.4: +2 -2 lines
Diff to previous 1.4 (colored)

fix a typo found by nam nguyen, a typo found by stephane huc, a typo found
by me, and two broken links found by mikesee on freenode.

Revision 1.4 / (download) / (as text) - annotate - [select for diffs], Sat Mar 2 22:40:04 2019 UTC (5 years, 3 months ago) by tj
Branch: MAIN
Changes since 1.3: +23 -15 lines
Diff to previous 1.3 (colored)

make formatting more consistent with the other faq pages

Revision 1.3 / (download) / (as text) - annotate - [select for diffs], Thu Feb 28 18:56:48 2019 UTC (5 years, 3 months ago) by sthen
Branch: MAIN
Changes since 1.2: +11 -9 lines
Diff to previous 1.2 (colored)

- tweak the list of supported authentication methods, mention a few other
implementations that use the various methods

- be more specific than "default ciphers advertised by the Windows client
-are too weak, and might need to be adapted" (the defaults are very poor)
and point the reader at the relevant powershell command to fix it

the above are ok landry@ tj@

- add XXX comment for openbsd-as-roadwarrier example, multiple clients
trying to route the same /24 (rather than a /32 from within it sent via
mode-config) are going to install conflicting SAs.

Revision 1.2 / (download) / (as text) - annotate - [select for diffs], Sat Feb 23 11:45:55 2019 UTC (5 years, 3 months ago) by sthen
Branch: MAIN
Changes since 1.1: +3 -3 lines
Diff to previous 1.1 (colored)

fix IPsec capitalisation; Raf Czlonka

Revision 1.1 / (download) / (as text) - annotate - [select for diffs], Fri Feb 22 22:07:05 2019 UTC (5 years, 3 months ago) by landry
Branch: MAIN

Add a (wip!) VPN FAQ, because 'How do i VPN with OpenBSD?' seems to be a
frequently asked question, and IPSec is hard. Now is the time to polish
it in-tree.

With feedback from solene@, tj@, tb@ & sthen@, thanks!
ok tb@ tj@

This form allows you to request diff's between any two revisions of a file. You may select a symbolic revision name using the selection box or you may type in a numeric name using the type-in text box.