docs:ipsec:policy
Differences
This shows you the differences between two versions of the page.
| Next revision | Previous revision | ||
| docs:ipsec:policy [2013/09/27 12:23] – created root | docs:ipsec:policy [2013/09/27 12:57] (current) – root | ||
|---|---|---|---|
| Line 1: | Line 1: | ||
| ====== IPSec policy ====== | ====== IPSec policy ====== | ||
| - | ===== Policy | + | ===== Policy |
| + | Policy format is **__direction__ [__priority__ __specification__] __policy__** | ||
| + | * '' | ||
| + | * '' | ||
| + | * '' | ||
| + | * '' | ||
| - | The level must be set to one of the following: **default**, | + | ===== Request Format ===== |
| + | Request format for IPSec is **__protocol__ / __mode__ / __src__ - __dst__ [/ __level__]**. | ||
| + | |||
| + | * **protocol** is either '' | ||
| + | * **mode** is either '' | ||
| + | * **src** and **dst** specifies the IPsec endpoint. **src** always means the " | ||
| + | |||
| + | **level** must be set to one of the following: **default**, | ||
| * **default** means that the kernel should consult the system default policy defined by sysctl(8), such as net.inet.ipsec.esp_trans_deflev. See ipsec(4) regarding the system default. | * **default** means that the kernel should consult the system default policy defined by sysctl(8), such as net.inet.ipsec.esp_trans_deflev. See ipsec(4) regarding the system default. | ||
docs/ipsec/policy.1380277416.txt.gz · Last modified: 2013/09/27 12:23 by root