Project

General

Profile

Download (36.3 KB) Statistics
| Branch: | Tag: | Revision:

# Date Author Comment
218939a9 05/19/2008 10:37 PM Scott Ullrich

Start PPTPD.

67629270 05/19/2008 10:35 PM Scott Ullrich

Start MPD correctly on newer mpd

6a4d47a1 05/19/2008 10:22 PM Scott Ullrich

Fix mpd startup

194d9340 05/19/2008 09:16 PM Scott Ullrich

Unbreak racoon

d597b0b9 05/17/2008 02:16 AM Scott Ullrich

Do not quote an empty string when the DN identifier is blank.

Obtained-from: m0n0wall

172c6dd7 04/10/2008 08:09 AM Seth Mos

Bump dpd from 20 to 120

60399592 04/05/2008 10:19 PM Seth Mos

Use DPD and frag support we already have

3a1259ae 04/01/2008 09:11 PM Seth Mos

Send extra sighup after starting

938ca3f3 03/22/2008 10:52 PM Scott Ullrich

Pass -c along to mpd

c9c9ad4a 02/05/2008 09:11 AM Seth Mos

With the current Racoon we need to inform that we are reloading our SPD
entries with a SIGHUP

448f4e11 02/01/2008 09:34 PM Seth Mos

Update to racoon-0.7-cvs with Timo Teras patches.
Use setkey -f because spd loading works normally now.

87b5deb1 01/15/2008 05:28 PM Seth Mos

attempt loading SPD entries 4 times

d319d7d8 01/15/2008 11:35 AM Seth Mos

Somehow sending a SIGHUP before flushing and reloading works better then
after. Technically a SIGHUP to racoon should not do anything.

cdf779cd 01/15/2008 08:21 AM Seth Mos

Flush both SA and SPD entries

4515fb79 01/14/2008 09:44 PM Seth Mos

repair logic I think. Can we please use more curlies?

eea54038 01/14/2008 09:34 PM Seth Mos

Make 3 passes at loading the SPD entries as this will fail on large configurations > 250 tunnels.
Tested by smos@ 399 tunnels, 239 active, ok by sullrich@

5fc2f163 01/08/2008 02:18 AM Chris Buechler

touch up text

Ticket #1569

a35c2033 12/21/2007 11:10 PM Martin Fuchs

freeradius and pptp changes by forum-user 'cybrsrfr'

979cd6db 12/17/2007 12:30 AM Scott Ullrich

Adding dnswatch support.

Obtained-from: m0n0wall

cbcc5530 11/05/2007 05:29 PM Scott Ullrich

IPSEC keep alive pinger using the wrong source IP address

Ticket #1482

d6c79741 11/01/2007 05:54 PM Scott Ullrich

Adding keep alive host to IPsec causes warning in webGUI

Ticket #1509

fb748ac4 10/19/2007 08:52 PM Bill Marquette

Ticket #1482 - set the source to an interface that is inside the subnet definition

725dd10a 08/04/2007 08:26 PM Scott Ullrich

Sync NATT support from m0n0wall

d852c526 07/08/2007 09:06 PM Seth Mos

Unbreak IPSEC, correct pathnames

b9d8cc51 07/04/2007 12:11 PM Seth Mos

Fix loading and reloading config for IPSEC.
MFC: Possible candidate, works for seth. Needs test.

66cc67c6 06/30/2007 08:57 PM Scott Ullrich

Add ASN1DN identities support to IPSEC.

Subbmitted-by: Nic Bernstein <nic_AT_onlight.com>

fc041d55 06/02/2007 09:17 PM Scott Ullrich

use killall

4614df6b 06/02/2007 09:10 PM Scott Ullrich
  • Flush SPD's on reload
  • Kilall -HUP racoon if its already running since racoonctl is brokie brokie
2eae7fc9 06/02/2007 08:51 PM Scott Ullrich
  • Remove path from racoon grep
  • Remove [r] from racoon and simply grep for racoon
c9b0942d 06/02/2007 08:49 PM Scott Ullrich

Correct ps location

cbe2ebe0 05/27/2007 12:25 AM Scott Ullrich

Remove trailing space / cr

36db0082 05/20/2007 04:51 PM Seth Mos

Commit forgotten vpn_ipsec_force_reload()

842294f3 05/11/2007 07:12 AM Seth Mos

Do not flush SPA and SPD before starting. It upsets racoon.

2f1e0311 05/10/2007 08:01 AM Seth Mos

Rework stop and start logic. If we are already alive, reload instead of stop and start.
Tested by Seth.

c8c416db 05/04/2007 04:48 PM Scott Ullrich

further changes to 1.3 for pppoe server and pptp server. added to gui add radius acct and auth ports add acct update in seconds option for external radius servers add backup radius server changes

rearranges xml for better use moved radius specific features inside tags added options for additional server above 2 miner bug fixes

Ticket #1306

07cae4b2 04/29/2007 11:24 PM Scott Ullrich

Switch over to mpd4

Code-submitted-by: alan_AT_radiowave.ie

47facba8 04/27/2007 08:21 PM Scott Ullrich

PPPoE server fixes

Ticket #1283

357cde41 03/20/2007 05:46 PM Scott Ullrich

Add link_carp_interface_to_parent() function

87e72a58 03/18/2007 01:58 AM Scott Ullrich

Allow CARP addresses to be the IPSEC endpoint.

This cleans up the code GREATLY and removes the FAILOVER IPSEC hack.

0caf2436 03/18/2007 12:40 AM Scott Ullrich

Make tabs consistent

0f9c365d 03/18/2007 12:36 AM Scott Ullrich

Use a comma to seperate multiple hosts instead of a carriage return which is being stripped by the package manager

8da8f2f8 03/17/2007 07:53 PM Scott Ullrich

Allow multiple racoon listen ips so that racoon can live on two different wan carp ips (multiple isps)

71602b14 03/02/2007 08:20 PM Scott Ullrich

Only install listen directive when value is filled in.

0feec714 02/08/2007 10:03 PM Scott Ullrich

Backport IPSEC filtering to 1.0.1.

Requested and will be tested by Seth

4f181571 01/19/2007 04:36 PM Scott Ullrich

Add back missing WINS statement that was accidently chopped in commit #9051

Ticket #1209

c52719a8 09/22/2006 11:22 PM Scott Ullrich

Do not destroy previous items, whiping out the listen directive.

dc50c7ec 06/08/2006 04:51 AM Scott Ullrich

Disable sasyncd. Sniff sniff. I gave it all I could, cap'n.

Maybe 1.1.

0e16b9ca 04/08/2006 02:04 AM Scott Ullrich

We're in 2006 now, toto

88964924 03/11/2006 08:35 PM Scott Ullrich

Ticket #854 fixes

  • Compute the correct amount of ng interface for pptp and pppoe
  • Restart mpd processes in one function so that duplicates do not end up in mpd.conf file
48bff85c 02/05/2006 10:03 PM Scott Ullrich
  • Sleep a little longer after killing mpd to allow it to cleanup
  • If there was a problem killing mpd, try killing once more and log the attempt
f5969e91 01/25/2006 01:58 AM Scott Ullrich

Add c/r

c1f5a46b 01/24/2006 11:51 PM Scott Ullrich

MFC vpn ping code

e263fe9a 01/18/2006 08:00 PM Scott Ullrich

Remove trailing newline

110d1076 01/15/2006 07:27 PM Scott Ullrich

Use correct variable for radius issued ips

767a716e 01/15/2006 03:33 AM Scott Ullrich

Correct warnings and errors found eclipse

68d408c7 01/05/2006 11:13 PM Scott Ullrich

Set: set link mru 1492 in addition to set link mtu 1492

5264023a 01/05/2006 10:50 PM Scott Ullrich

Do not apply option when radius is disabled

5dfdc1fb 01/05/2006 07:16 PM Scott Ullrich

Allow issuing of PPOE ips from RADIUS server

Ticket #709

ee953edc 01/04/2006 01:26 AM Scott Ullrich

Import m0n0wall 1.21 PPTP Server

c25a575f 12/26/2005 02:51 AM Scott Ullrich

Remove auto establish. It's never worked.

d1d7f663 12/26/2005 01:59 AM Scott Ullrich

Alert that we are auto establishing tunnel

af1f6a1f 12/24/2005 09:22 PM Scott Ullrich

Back off a little bit on the insane debugging levels. This brings the debugging levels back similar to m0n0wall.

fe227c69 12/22/2005 06:59 PM Scott Ullrich

Move setkey to /sbin/setkey from /usr/sbin/setkey due to FreeBSD changing the location.

45449ae0 12/19/2005 05:34 PM Scott Ullrich
  • Use 0.0.0.0/0 so radius can allocate ips
  • Do not set link mtu twice
637acd36 11/12/2005 06:35 PM Scott Ullrich
  • Turn of ACE. It doesn't work at all.
  • Killall racoon. IPSEC Tools racoon seems to work a bit diff
a636c6ba 11/05/2005 01:30 AM Scott Ullrich

Enable padlock support

a5a0c4c7 10/13/2005 09:31 PM Scott Ullrich

Move )

Pointy-hat-to: Me

89e910c6 10/13/2005 09:29 PM Scott Ullrich

Missing )

Pointy-hat-to: Me

cefde762 10/13/2005 08:50 PM Scott Ullrich

Forced commit to note that failover ipsec should be enabled as well (even if your not using failover, it simply sets the racoon listen ip address)

ab80b66f 10/13/2005 08:49 PM Scott Ullrich

Add NATT support. Currently this option is disabled. To enable simply set the <developer/> tag inside <system> in config.xml

816f2e58 09/23/2005 10:05 PM Scott Ullrich

Use correct mtu for pptp when wan is pppoe.

Have I mentioned how much I HATE pptp lately?

93f2d54e 08/31/2005 11:45 PM Scott Ullrich

Set /sbin/sysctl net.inet.ipsec.crypto_support=1 if Padlock

13beee7d 08/31/2005 11:34 PM Scott Ullrich

Detect ACE in CPU line

e6f48f2e 08/31/2005 11:13 PM Scott Ullrich

Do not set net.inet.ipsec.crypto_support

913b18e4 08/14/2005 09:22 PM Scott Ullrich

Only run padlock functions if <developer> bit is set

b7d4a627 08/14/2005 08:13 PM Scott Ullrich

Query Features line for ACE

c9c1bb3b 08/13/2005 10:10 PM Scott Ullrich

Echo out when enabling padlock

48f9d64f 08/13/2005 10:08 PM Scott Ullrich

Clear out setkey after enabling as instructions show.

65fdf7af 08/13/2005 07:14 PM Scott Ullrich

Only enable Padlock if we find ACE in the dmesg

2631018f 08/13/2005 04:39 PM Bill Marquette

Spello in comments

a15b7fdb 08/13/2005 12:32 PM Scott Ullrich

Enable hardware IPSEC

b454f16e 08/12/2005 07:35 PM Scott Ullrich

Padlock -> ACE

5b33809e 08/12/2005 06:23 PM Scott Ullrich

Minor style cleanups

1a5eeb97 08/12/2005 06:18 PM Scott Ullrich

Only setup via padlock on bootup.

b26cc217 08/12/2005 05:20 PM Scott Ullrich

Alert on bootup if we are enabling padlock

8c5096aa 08/12/2005 04:55 PM Scott Ullrich

Add via padlock support

8ee9b271 08/12/2005 03:09 PM Scott Ullrich

Check to see if item is dynamic dns a little better

5aad0d39 08/11/2005 06:53 PM Scott Ullrich

Detect DNS names and correctly set

0b03c149 08/06/2005 07:51 PM Scott Ullrich

dir_exist() -> dir_exists()

a429d105 08/06/2005 07:14 PM Scott Ullrich

Allow PPPoE server subnet to be defined by user.

Ticket #282

48918ed5 08/06/2005 06:53 PM Scott Ullrich

Make sure /var/etc/mpd-vpn exists

bc090ffc 08/01/2005 12:55 AM Scott Ullrich

Set pppoe interface

8b3500fe 07/31/2005 09:48 PM Scott Ullrich

Use unique variable name for interface

0ad64be0 07/31/2005 09:42 PM Scott Ullrich

Do not accept encryption

15fffebf 07/31/2005 09:40 PM Scott Ullrich

Kill sasyncd before restarting

2991a0d6 07/31/2005 09:37 PM Scott Ullrich

Assign a unique pppoe id

3775a3a4 07/31/2005 09:35 PM Scott Ullrich

Set mtu to 1492

0301deff 07/31/2005 09:34 PM Scott Ullrich

Translate interface

985db425 07/31/2005 09:20 PM Scott Ullrich

Do not set 10.* dns address

83773ab0 07/31/2005 09:20 PM Scott Ullrich

Add PPPoE server interface field