summaryrefslogtreecommitdiff
path: root/doc/manpage.d/ipsec_verify.8.html
diff options
context:
space:
mode:
Diffstat (limited to 'doc/manpage.d/ipsec_verify.8.html')
-rw-r--r--doc/manpage.d/ipsec_verify.8.html107
1 files changed, 107 insertions, 0 deletions
diff --git a/doc/manpage.d/ipsec_verify.8.html b/doc/manpage.d/ipsec_verify.8.html
new file mode 100644
index 000000000..09d04894b
--- /dev/null
+++ b/doc/manpage.d/ipsec_verify.8.html
@@ -0,0 +1,107 @@
+Content-type: text/html
+
+<HTML><HEAD><TITLE>Manpage of IPSEC_VERIFY</TITLE>
+</HEAD><BODY>
+<H1>IPSEC_VERIFY</H1>
+Section: Maintenance Commands (8)<BR>Updated: 8 June 2002<BR><A HREF="#index">Index</A>
+<A HREF="http://localhost/cgi-bin/man/man2html">Return to Main Contents</A><HR>
+
+
+<A NAME="lbAB">&nbsp;</A>
+<H2>NAME</H2>
+
+ipsec verify - see if FreeSWAN has been installed correctly
+<A NAME="lbAC">&nbsp;</A>
+<H2>SYNOPSIS</H2>
+
+<B>ipsec</B>
+
+<B>verify</B>
+
+[
+<B>--host</B>
+
+&nbsp;name&nbsp;]
+<A NAME="lbAD">&nbsp;</A>
+<H2>DESCRIPTION</H2>
+
+<P>
+
+Invoked without argument,
+<I>verify </I>
+
+examines the local system for a number of common system faults:
+IPsec not in path, no secrets file generated,
+pluto not running, and IPsec support not present in kernel
+(or IPsec module not loaded).
+If two or more interfaces are found, it performs checks relevant on an
+IPsec gateway: whether IP forwarding is allowed, and if so,
+whether MASQ or NAT rules are in play.
+<P>
+
+In addition,
+<I>verify </I>
+
+performs checks relevant to Opportunistic Encryption.
+It looks in forward DNS for a TXT record for the system's hostname, and
+in reverse DNS for a TXT record for the system's IP addresses.
+It checks whether the system has a public IP.
+<P>
+
+The
+<B>--host</B>
+
+option causes
+<B>verify</B>
+
+to look for a TXT record for
+<I>name</I>
+
+in forward and reverse DNS.
+<A NAME="lbAE">&nbsp;</A>
+<H2>FILES</H2>
+
+<PRE>
+/proc/net/ipsec_eroute
+/etc/ipsec.secrets
+</PRE>
+
+<A NAME="lbAF">&nbsp;</A>
+<H2>HISTORY</H2>
+
+Written for the Linux FreeS/WAN project
+&lt;<A HREF="http://www.freeswan.org">http://www.freeswan.org</A>&gt;
+by Michael Richardson.
+<A NAME="lbAG">&nbsp;</A>
+<H2>BUGS</H2>
+
+<I>Verify </I>
+
+does not check for
+<B>ipchains</B>
+
+masquerading.
+<P>
+
+<I>Verify</I>
+
+does not look for TXT records for Opportunistic clients behind the system.
+<P>
+
+<HR>
+<A NAME="index">&nbsp;</A><H2>Index</H2>
+<DL>
+<DT><A HREF="#lbAB">NAME</A><DD>
+<DT><A HREF="#lbAC">SYNOPSIS</A><DD>
+<DT><A HREF="#lbAD">DESCRIPTION</A><DD>
+<DT><A HREF="#lbAE">FILES</A><DD>
+<DT><A HREF="#lbAF">HISTORY</A><DD>
+<DT><A HREF="#lbAG">BUGS</A><DD>
+</DL>
+<HR>
+This document was created by
+<A HREF="http://localhost/cgi-bin/man/man2html">man2html</A>,
+using the manual pages.<BR>
+Time: 21:40:18 GMT, November 11, 2003
+</BODY>
+</HTML>