Merge branch 'android-ndk'
This branch comes with some preliminary changes for the user-land IPsec implementation and the Android App. One important change is that the UDP ports used by the socket-default plugin were made configurable (either via ./configure or strongswan.conf). Also, the plugin does randomly allocate a port if it is configured to 0, which is useful for client implementations. A consequence of these changes is that the local UDP port used when creating ike_cfg_t objects has to be fetched from the socket.
This commit is contained in:
+2
-1
@@ -1051,7 +1051,8 @@ A comma separated list containing type/level-pairs may
|
||||
be specified, e.g:
|
||||
.B dmn 3, ike 1, net -1.
|
||||
Acceptable values for types are
|
||||
.B dmn, mgr, ike, chd, job, cfg, knl, net, asn, enc, lib, tls, tnc, imc, imv, pts
|
||||
.B dmn, mgr, ike, chd, job, cfg, knl, net, asn, enc, lib, esp, tls,
|
||||
.B tnc, imc, imv, pts
|
||||
and the level is one of
|
||||
.B -1, 0, 1, 2, 3, 4
|
||||
(for silent, audit, control, controlmore, raw, private). By default, the level
|
||||
|
||||
@@ -210,6 +210,15 @@ Enable multiple authentication exchanges (RFC 4739)
|
||||
.BR charon.nbns2
|
||||
WINS servers assigned to peer via configuration payload (CP)
|
||||
.TP
|
||||
.BR charon.port " [500]"
|
||||
UDP port used locally. If set to 0 a random port will be allocated.
|
||||
.TP
|
||||
.BR charon.port_nat_t " [4500]"
|
||||
UDP port used locally in case of NAT-T. If set to 0 a random port will be
|
||||
allocated. Has to be different from
|
||||
.BR charon.port ,
|
||||
otherwise a random port will be allocated.
|
||||
.TP
|
||||
.BR charon.process_route " [yes]"
|
||||
Process RTM_NEWROUTE and RTM_DELROUTE events
|
||||
.TP
|
||||
@@ -272,7 +281,7 @@ Section to define syslog loggers, see LOGGER CONFIGURATION
|
||||
Number of worker threads in charon
|
||||
.SS charon.plugins subsection
|
||||
.TP
|
||||
.BR charon.plugins.android.loglevel " [1]"
|
||||
.BR charon.plugins.android_log.loglevel " [1]"
|
||||
Loglevel for logging to Android specific logger
|
||||
.TP
|
||||
.BR charon.plugins.attr
|
||||
@@ -486,6 +495,9 @@ is appended to this prefix to make it unique. The result has to be a valid
|
||||
interface name according to the rules defined by resolvconf. Also, it should
|
||||
have a high priority according to the order defined in interface-order(5).
|
||||
.TP
|
||||
.BR charon.plugins.socket-default.set_source " [yes]"
|
||||
Set source address on outbound packets, if possible.
|
||||
.TP
|
||||
.BR charon.plugins.sql.database
|
||||
Database URI for charons SQL plugin
|
||||
.TP
|
||||
@@ -922,6 +934,9 @@ Packet encoding/decoding encryption/decryption operations
|
||||
.B tls
|
||||
libtls library messages
|
||||
.TP
|
||||
.B esp
|
||||
libipsec library messages
|
||||
.TP
|
||||
.B lib
|
||||
libstrongwan library messages
|
||||
.TP
|
||||
|
||||
Reference in New Issue
Block a user