conf: Document recommended lower limit for SPIs
This commit is contained in:
@@ -353,6 +353,10 @@ charon.signature_authentication_constraints = yes
|
|||||||
charon.spi_min = 0xc0000000
|
charon.spi_min = 0xc0000000
|
||||||
The lower limit for SPIs requested from the kernel for IPsec SAs.
|
The lower limit for SPIs requested from the kernel for IPsec SAs.
|
||||||
|
|
||||||
|
The lower limit for SPIs requested from the kernel for IPsec SAs. Should not
|
||||||
|
be set lower than 0x00000100 (256), as SPIs between 1 and 255 are reserved
|
||||||
|
by IANA.
|
||||||
|
|
||||||
charon.spi_max = 0xcfffffff
|
charon.spi_max = 0xcfffffff
|
||||||
The upper limit for SPIs requested from the kernel for IPsec SAs.
|
The upper limit for SPIs requested from the kernel for IPsec SAs.
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user