/mandos/trunk

To get this branch, use:
bzr branch http://bzr.recompile.se/loggerhead/mandos/trunk

« back to all changes in this revision

Viewing changes to clients.conf

  • Committer: Teddy Hogeborn
  • Date: 2008-08-03 01:09:36 UTC
  • mfrom: (24.1.9 mandos)
  • Revision ID: teddy@fukt.bsnet.se-20080803010936-ujme8tgxceszfbi1
* plugbasedclient.c (main): New "--userid" and "--groupid" options.
                            Take an additional non-option argument and
                            parse it as a plus-separated and -prefixed
                            list of additional options.

* plugins.d/mandosclient.c (DH_BITS): Replaced with
                                      "mandos_context.dh_bits".  All
                                      users changed.
  (certdir): Renamed to "keydir".  All users changed.
  (certfile): Renamed to "pubkeyfile".  All users changed.
  (certkey): Renamed to "seckeyfile".  All users changed.
  (encrypted_session): Replaced with "mandos_context".  All users
                       changed.
  (initgnutls): Take additional "session" and "dh_params" arguments.
                All callers changed.
  (start_mandos_communication): Take additional "mc" argument.  All
                                callers changed.  Print target IPv6
                                address if different than supplied
                                string.
  (simple_poll) Replaced with "mandos_context.simple_poll".  All users
                changed.
  (server): Replaced with "mandos_context.server".  All users changed.
  (main): Default interface to "eth0".  Rename "--certdir" to
          "--keydir", "--certkey" to "--seckey", and "--certfile" to
          "--pubkey".  New options "--dh-bits" and "--priority".  If
          the interface is not up, bring it up.

Show diffs side-by-side

added added

removed removed

Lines of Context:
 
1
[DEFAULT]
 
2
timeout = 1h
 
3
interval = 5m
 
4
checker = fping -q -- %%(fqdn)s
 
5
 
1
6
# Example
2
 
#[foo]
3
 
#fingerprint = 3e393aeaefb84c7e89e2f547b3a107558fca3a27
4
 
#secfile = openpgp/secret.txt.asc
5
 
#fqdn = foo.example.org
6
 
#checker = echo %%(fqdn)s >&2; false
7
 
#
 
7
[foo]
 
8
fingerprint = 3e393aeaefb84c7e89e2f547b3a107558fca3a27
 
9
secret = Base+64+encoded+OpenPGP+encrypted+data/=
 
10
# secfile = /etc/mandos/foo-secret.txt.asc
 
11
fqdn = foo.example.org
 
12
checker = fping -q -- %%(fqdn)s
 
13
timeout = 10m
 
14
 
8
15
[braxen_client]
9
16
fingerprint =  7788 2722 5BA7 DE53 9C5A  7CFA 59CF F7CD BD9A 5920
10
17
secret =