cloudstack/patches/systemvm/debian/config/opt/cloud/bin
Sheng Yang 76abb27a3c S2S VPN: Add back pfs=no for ipsec.conf
According to ipsec.conf manual:

pfs

whether Perfect Forward Secrecy of keys is desired on the connection's keying
channel (with PFS, penetration of the key-exchange protocol does not compromise
keys negotiated earlier); Since there is no reason to ever refuse PFS, Openswan
will allow a connection defined with pfs=no to use PFS anyway. Acceptable values
are yes (the default) and no.

Found removing the option would make it impossible to work with no PFS setting
router. It may related to CS-15511.
2012-07-23 19:33:11 -07:00
..
checks2svpn.sh CS-6840: Add status checking for site 2 site VPN 2012-06-29 18:58:52 -07:00
cloud-nic.sh VPC : open 80 for vmdata 2012-07-06 17:59:26 -07:00
get_template_version.sh Switch to Apache license 2012-04-03 04:54:14 -07:00
ipassoc.sh CS-15657: Mgmt server fails to associate ip addess to public interface on VPC router VM 2012-07-23 11:17:54 -07:00
ipsectunnel.sh S2S VPN: Add back pfs=no for ipsec.conf 2012-07-23 19:33:11 -07:00
listeth.sh VPC : listeth.sh is used to list all eth devices in domr 2012-06-26 16:37:30 -07:00
netusage.sh VPC : use routerProxy to call networkUsage.sh 2012-06-06 16:36:47 -07:00
passwd_server bug 14558: Add log for passwd_server 2012-03-30 14:19:59 -07:00
patchsystemvm.sh Fix keepalived process not started issue 2012-05-01 16:20:48 -07:00
serve_password.sh Switch to Apache license 2012-04-03 04:54:14 -07:00
vpc_acl.sh VPC : CS-15520, fix for acl revoke 2012-07-10 16:19:12 -07:00
vpc_func.sh VPC : remove rules in nat table if ip is removed 2012-07-11 16:05:15 -07:00
vpc_guestnw.sh CS-15635 : fixed the part introduced by VPC, there is anther part needs to be fixed for regular network 2012-07-23 16:11:47 -07:00
vpc_ipassoc.sh VPC : fixes for static nat 2012-06-27 11:20:19 -07:00
vpc_loadbalancer.sh VPC : loadbalance go through inbound chain 2012-07-09 10:16:33 -07:00
vpc_netusage.sh VPC : network usage works in VPC 2012-06-29 17:33:17 -07:00
vpc_portforwarding.sh VPC : add vpc_staticnat 2012-06-26 13:54:05 -07:00
vpc_snat.sh CS-15506 : allow traffic going out domr in FORWARD chain 2012-07-09 18:33:37 -07:00
vpc_staticnat.sh VPC : CS-11503, deleting staticnat works even ip is not there. 2012-07-11 14:44:32 -07:00
vpc_staticroute.sh VPC : in no route in setStaticRoute, just remove all routes 2012-07-10 18:41:13 -07:00