Document ipsec.conf leftprotoport extensions in manpage

This commit is contained in:
Martin Willi
2013-02-21 11:52:33 +01:00
parent 0e7ef7f522
commit 0abeac3a0b
+8
View File
@@ -737,6 +737,14 @@ can be used to the same effect, e.g.
.B leftprotoport=udp/%any
or
.BR leftprotoport=%any/53 .
The port value can alternatively take the value
.B %opaque
for RFC 4301 OPAQUE selectors, or a numerical range in the form
.BR 1024-65535 .
None of the kernel backends currently supports opaque or port ranges and uses
.B %any
for policy installation instead.
.TP
.BR leftrsasigkey " = <raw rsa public key> | <path to public key>"
the left participant's public key for RSA signature authentication, in RFC 2537