summaryrefslogtreecommitdiff
path: root/src/conf_mode/vpn_ipsec.py
diff options
context:
space:
mode:
authorChristian Poessinger <christian@poessinger.com>2021-06-24 19:40:36 +0200
committerChristian Poessinger <christian@poessinger.com>2021-06-24 19:40:36 +0200
commit95bbbb8bed92a60a320ff255c8b8656145f3c540 (patch)
treea5ad2a98d854d40138736950523062a202e94296 /src/conf_mode/vpn_ipsec.py
parentf8f867adeb9893756e8ce89f9c8bf9a70b7a1c67 (diff)
downloadvyos-1x-95bbbb8bed92a60a320ff255c8b8656145f3c540.tar.gz
vyos-1x-95bbbb8bed92a60a320ff255c8b8656145f3c540.zip
ipsec: T3643: move swanctl.conf to /run
This is the completion of commit 50a742b5 ("IPSec: T3643: Fix path for swanctl.conf file") that moves the generated swanctl file from non-volatile to a volatile (tmpfs backed) storage like we do for all out configuration files. Thus it is ensured after a reboot or service deprecation there are no accidential leftovers from previous configurations stored on the system.
Diffstat (limited to 'src/conf_mode/vpn_ipsec.py')
-rwxr-xr-xsrc/conf_mode/vpn_ipsec.py2
1 files changed, 1 insertions, 1 deletions
diff --git a/src/conf_mode/vpn_ipsec.py b/src/conf_mode/vpn_ipsec.py
index 433c51e7e..535e633ed 100755
--- a/src/conf_mode/vpn_ipsec.py
+++ b/src/conf_mode/vpn_ipsec.py
@@ -386,7 +386,7 @@ def generate(ipsec):
render("/etc/ipsec.conf", "ipsec/ipsec.conf.tmpl", data)
render("/etc/ipsec.secrets", "ipsec/ipsec.secrets.tmpl", data)
render("/etc/strongswan.d/interfaces_use.conf", "ipsec/interfaces_use.conf.tmpl", data)
- render("/etc/swanctl/swanctl.conf", "ipsec/swanctl.conf.tmpl", data)
+ render("/run/swanctl/swanctl.conf", "ipsec/swanctl.conf.tmpl", data)
def resync_l2tp(ipsec):
if ipsec and not ipsec['l2tp_exists']: