📄 starter.8
字号:
.TH IPSEC_STARTER 8 "29 Nov 2004".\".\" RCSID $Id: starter.8,v 1.5 2005/01/11 17:52:51 ken Exp $.\".SH NAMEipsec starter \- start up the IPsec keying daemon (pluto) and loadconfiguration.SH SYNOPSIS.ad l.hy 0.HP 10ipsec starter [\fB\-\-debug \-\-auto_reload seconds \-\-parsedebug \-\-verbose \-\-dumpcfg\fR].ad.hy.SH "DESCRIPTION".PPOpenswan Starter is aimed to replace all the scripts which are used tostart and stop Openswan, and to do that in a quicker and a smarter way..PPIt can also reload the configuration file if given a \fRHUP\fB signal, and apply the changes..PPWhat it will do:.PPLoad and unload KLIPS, or NETKEY (ipsec kernel module).PPLaunch and monitor pluto..PPAdd, initiate, route and delete connections.PPAttach and detach interfaces according to config file.PPkill -HUP can be used to reload the config file. New connections will beadded, old ones will be removed and modified ones will be reloaded.Interfaces/Klips/Pluto will be reloaded if necessary..PPUpon startup, starter will save its pid to the file /var/run/pluto/ipsec-starter.pid.PPUpon reloading, dynamic DNS addresses will be resolved and updated. Use \-\-auto_reload to periodicaly check for dynamic DNS changes..PPkill \-USR1 can be used to reload all connections. This does a \fBdelete\fR, followed by an \fBadd\fR and then either a \fBroute\fR or \fBinitiate\fR operation..PP/var/run/pluto/dynip/xxxx can be used to use a virtual interface name inipsec.conf. By example, when adsl can be ppp0, ppp1, or some such, onecan do:.PP.B ipsec.conf: interfaces="ipsec0=adsl"And use /etc/ppp/ip-up to create /var/run/pluto/dynip/adsl /var/run/pluto/dynip/adsl: IP_PHYS=ppp0.PP%auto can be used to automaticaly name the connections.PPkill \-TERM can be used to stop Openswan. Pluto will be stopped and kernel modules unloaded..PP .SH FILES/etc/ipsec.conf.SH "SEE ALSO"ipsec(8), ipsec_tncfg(8), ipsec_pluto(8).SH HISTORYOriginal by mlafon@arkoon.net for Arkoon Network Security. Updated forFreeS/WAN version 2 by Michael Richardson <mcr@sandelman.ottawa.on.ca>.Merged into Openswan 2.2 by Xelerance Corporation.SH TODO/BUGS.PPhandle wildcards in include lines \-\- use glob() fct ex: include /etc/ipsec.*.conf.PP handle duplicates keywords and sections.PP Support also keyword.PP add unsupported keywords.PP manually keyed connections.PP %defaultroute.PP IPv6.PP
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -