cloudstack/patches/systemvm/debian/config
Sheng Yang 4d42845853 S2S VPN: Add back pfs=no for ipsec.conf
According to ipsec.conf manual:

pfs

whether Perfect Forward Secrecy of keys is desired on the connection's keying
channel (with PFS, penetration of the key-exchange protocol does not compromise
keys negotiated earlier); Since there is no reason to ever refuse PFS, Openswan
will allow a connection defined with pfs=no to use PFS anyway. Acceptable values
are yes (the default) and no.

Found removing the option would make it impossible to work with no PFS setting
router. It may related to CS-15511.
2012-07-23 19:35:08 -07:00
..
bin add vhd-util which comes from xen-4.0.0/tools/blktaps/vhd, it doesn't check timestamp 2010-12-22 19:54:36 -08:00
etc VPC : revert dnsmasq.conf 2012-06-15 14:33:22 -07:00
opt/cloud/bin S2S VPN: Add back pfs=no for ipsec.conf 2012-07-23 19:35:08 -07:00
root Merge branch 'master' into vpc 2012-07-23 10:36:25 -07:00
var remove patches/systemv, and mv tools/systemvm into patches 2010-10-05 20:41:39 -07:00