[Ipsec-tools-devel] HEADS UP: privsep and config reload
Brought to you by:
mit_warlord,
netbsd
From: <ma...@ne...> - 2005-03-16 23:25:28
|
Emmanuel Dreyfus <ma...@ne...> wrote: > In order to avoid running random scripts, privilegied instance checks > that they are in the script path. That cause config that work on the 0.6 > branch to fail on HEAD. I'll add the same checks in 0.6 to avoid > regression after next release. This is done. If you use privilege separation, path certificate and path script are now required in racoon.conf on HEAD and 0.6 branch. racoon will refuse to load private keys and certificates that are not inside the directories given by these configuration directives. -- Emmanuel Dreyfus Le cahier de l'admin BSD 2eme ed. est dans toutes les bonnes librairies http://www.eyrolles.com/Informatique/Livre/9782212114638/livre-bsd.php ma...@ne... |