Annotation of elwix/config/etc/default/config.xml, revision 1.1.1.1
1.1 misho 1: <?xml version="1.0"?>
2: <!-- elwix default system configuration -->
3: <!-- $Id: config.xml,v 1.1.2.2 2010/09/29 15:32:33 misho Exp $ -->
4: <elwix>
5: <version>1.0</version>
6: <lastchange></lastchange>
7: <system>
8: <hostname>elwix</hostname>
9: <domain>elwix.org</domain>
10: <dnsserver></dnsserver>
11: <dnsallowoverride/>
12: <username>admin</username>
13: <password>$1$2xGLA75j$W/jiJc00HYBZX7kFjxjQv0</password>
14: <timezone>Europe/Sofia</timezone>
15: <time-update-interval>300</time-update-interval>
16: <timeservers>pool.ntp.org</timeservers>
17: <timeservers-randomize/> <!-- first time usage only -->
18: <webgui>
19: <protocol>http</protocol>
20: <!--
21: <port></port>
22: <certificate></certificate>
23: <private-key></private-key>
24: <noassigninterfaces/>
25: <expanddiags/>
26: <noantilockout></noantilockout>
27: -->
28: </webgui>
29: <!--
30: <user>
31: <name></name>
32: <fullname></fullname>
33: <groupname></groupname>
34: <password></password>
35: </user>
36: -->
37: <!--
38: <group>
39: <name></name>
40: <description></description>
41: <pages></pages>
42: </group>
43: -->
44: <!-- <disableconsolemenu/> -->
45: <!-- <disablefirmwarecheck/> -->
46: <!-- <shellcmd></shellcmd> -->
47: <!-- <earlyshellcmd></earlyshellcmd> -->
48: <!-- <harddiskstandby></harddiskstandby> -->
49: <!-- <polling/> -->
50: <!-- <notes></notes> -->
51: <!-- <enableipv6/> -->
52: </system>
53: <interfaces>
54: <lan>
55: <if>fxp0</if>
56: <ipaddr>192.168.1.1</ipaddr>
57: <subnet>24</subnet>
58: <media></media>
59: <mediaopt></mediaopt>
60: <!--
61: <ipaddr6>xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx|6to4</ipaddr6>
62: <subnet6></subnet6>
63: <ipv6ra />
64: <wireless>
65: *see below (opt[n])*
66: </wireless>
67: -->
68: </lan>
69: <wan>
70: <if>sis1</if>
71: <ipaddr>dhcp</ipaddr>
72: <!-- *or* ipv4-address *or* 'pppoe' *or* 'pptp' -->
73: <subnet></subnet>
74: <gateway></gateway>
75: <blockpriv/>
76: <dhcphostname></dhcphostname>
77: <media></media>
78: <mediaopt></mediaopt>
79: <!--
80: <ipaddr6>xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx|6to4|ppp|aiccu</ipaddr6>
81: <subnet6></subnet6>
82: <gateway6></gateway6>
83: <tunnel6>xxx.xxx.xxx.xxx</tunnel6>
84: <aiccu>
85: <username></username>
86: <password></password>
87: <tunnelid></tunnelid>
88: </aiccu>
89: <ispointtopoint/>
90: <wireless>
91: *see below (opt[n])*
92: </wireless>
93: -->
94: </wan>
95: <!--
96: <opt[n]>
97: <enable/>
98: <descr></descr>
99: <if></if>
100: <ipaddr></ipaddr>
101: <subnet></subnet>
102: <ipaddr6>xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx|6to4</ipaddr6>
103: <subnet6></subnet6>
104: <ipv6ra />
105: <media></media>
106: <mediaopt></mediaopt>
107: <bridge>lan|wan|opt[n]</bridge>
108: <wireless>
109: <standard>11a|11b|11g</standard>
110: <mode>hostap *or* bss *or* ibss</mode>
111: <ssid></ssid>
112: <channel></channel>
113: <wep>
114: <enable/>
115: <key>
116: <txkey/>
117: <value></value>
118: </key>
119: </wep>
120: <hidessid/>
121: <wpa>
122: <mode>none|psk|enterprise</mode>
123: <version>1|2|3</version>
124: <cipher>tkip|ccmp|both</cipher>
125: <psk></psk>
126: <radius>
127: <server></server>
128: <authport></authport>
129: <acctport></acctport>
130: <secret></secret>
131: </radius>
132: </wpa>
133: </wireless>
134: </opt[n]>
135: -->
136: </interfaces>
137: <!--
138: <vlans>
139: <vlan>
140: <tag></tag>
141: <if></if>
142: <descr></descr>
143: </vlan>
144: </vlans>
145: -->
146: <staticroutes>
147: <!--
148: <route>
149: <interface>lan|opt[n]|pptp</interface>
150: <network>xxx.xxx.xxx.xxx/xx</network>
151: <gateway>xxx.xxx.xxx.xxx</gateway>
152: <descr></descr>
153: </route>
154: <route6>
155: <interface>lan|opt[n]</interface>
156: <network>xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx/xx</network>
157: <gateway>xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx</gateway>
158: <descr></descr>
159: </route6>
160: -->
161: </staticroutes>
162: <pppoe>
163: <username></username>
164: <password></password>
165: <provider></provider>
166: <!--
167: <mtu></mtu>
168: <dnsnosec/>
169: -->
170: </pppoe>
171: <pptp>
172: <username></username>
173: <password></password>
174: <local></local>
175: <subnet></subnet>
176: <remote></remote>
177: <!--
178: <local-ip></local-ip>
179: <remote-ip></remote-ip>
180: -->
181: </pptp>
182: <dyndns>
183: <!-- <enable/> -->
184: <type>dyndns</type>
185: <username></username>
186: <password></password>
187: <host></host>
188: <mx></mx>
189: <!-- <wildcard/> -->
190: <server></server>
191: <port></port>
192: </dyndns>
193: <dnsupdate>
194: <!--
195: <enable/>
196: <host></host>
197: <ttl></ttl>
198: <keyname></keyname>
199: <keydata></keydata>
200: </usetcp>
201: -->
202: </dnsupdate>
203: <dhcpd>
204: <lan>
205: <enable/>
206: <range>
207: <from>192.168.1.100</from>
208: <to>192.168.1.199</to>
209: </range>
210: <!--
211: <winsserver>xxx.xxx.xxx.xxx</winsserver>
212: <defaultleasetime></defaultleasetime>
213: <maxleasetime></maxleasetime>
214: <gateway>xxx.xxx.xxx.xxx</gateway>
215: <domain></domain>
216: <dnsserver></dnsserver>
217: <next-server></next-server>
218: <filename></filename>
219: <staticmap>
220: <mac>xx:xx:xx:xx:xx:xx</mac>
221: <ipaddr>xxx.xxx.xxx.xxx</ipaddr>
222: <descr></descr>
223: </staticmap>
224: -->
225: </lan>
226: <!--
227: <opt[n]>
228: ...
229: </opt[n]>
230: -->
231: </dhcpd>
232: <pptpd>
233: <mode><!-- off *or* server *or* redir --></mode>
234: <nunits>16</nunits>
235: <redir></redir>
236: <localip></localip>
237: <remoteip></remoteip>
238: <!-- <dnsserver></dnsserver> -->
239: <!-- <accounting/> -->
240: <!--
241: <user>
242: <name></name>
243: <password></password>
244: </user>
245: <radius>
246: <enable/>
247: <accounting/>
248: <radiusip/>
249: <server></server>
250: <secret></secret>
251: </radius>
252: -->
253: <!-- <nofwrulegen/> -->
254: </pptpd>
255: <dnsmasq>
256: <enable/>
257: <!--
258: <hosts>
259: <host></host>
260: <domain></domain>
261: <ip></ip>
262: <descr></descr>
263: </hosts>
264: <domainoverrides>
265: <domain></domain>
266: <ip></ip>
267: <descr></descr>
268: </domainoverrides>
269: -->
270: </dnsmasq>
271: <snmpd>
272: <!-- <enable/> -->
273: <syslocation></syslocation>
274: <syscontact></syscontact>
275: <rocommunity>public</rocommunity>
276: <!-- <bindlan/> -->
277: </snmpd>
278: <diag>
279: <!-- <ipfstatentries></ipfstatentries> -->
280: </diag>
281: <bridge>
282: <!-- <filteringbridge/> -->
283: </bridge>
284: <syslog>
285: <!--
286: <reverse/>
287: <enable/>
288: <remoteserver>xxx.xxx.xxx.xxx</remoteserver>
289: <remoteport>514</remoteport>
290: <filter/>
291: <dhcp/>
292: <system/>
293: <portalauth/>
294: <vpn/>
295: <nologdefaultblock/>
296: <resolve/>
297: -->
298: </syslog>
299: <!--
300: <captiveportal>
301: <enable/>
302: <interface>lan|opt[n]</interface>
303: <idletimeout>minutes</idletimeout>
304: <timeout>minutes</timeout>
305: <page>
306: <htmltext></htmltext>
307: <errtext></errtext>
308: </page>
309: <httpslogin/>
310: <httpsname></httpsname>
311: <certificate></certificate>
312: <private-key></private-key>
313: <redirurl></redirurl>
314: <auth_method>none|radius|local</auth_method>
315: <radiusip></radiusip>
316: <radiusip2></radiusip2>
317: <radiusport></radiusport>
318: <radiusport2></radiusport2>
319: <radiuskey></radiuskey>
320: <radiuskey2></radiuskey2>
321: <radiussession_timeout></radiussession_timeout>
322: <nomacfilter/>
323: <reauthenticate/>
324: <reauthenticateacct>stopstart|interimupdate</reauthenticateacct>
325: <maxproc></maxproc>
326: <maxprocperip></maxprocperip>
327: <croninterval></croninterval>
328:
329: <user>
330: <name></name>
331: <fullname></fullname>
332: <password></password>
333: <expirationdate></expirationdate>
334: </user>
335:
336: <element>
337: <name></name>
338: <size></size>
339: <content></content>
340: </element>
341: </captiveportal>
342: -->
343: <nat>
344: <!--
345: <rule>
346: <interface></interface>
347: <external-address></external-address>
348: <protocol></protocol>
349: <external-port></external-port>
350: <target></target>
351: <local-port></local-port>
352: <descr></descr>
353: </rule>
354: -->
355: <!--
356: <onetoone>
357: <interface></interface>
358: <external>xxx.xxx.xxx.xxx</external>
359: <internal>xxx.xxx.xxx.xxx</internal>
360: <subnet></subnet>
361: <descr></descr>
362: </onetoone>
363: -->
364: <!--
365: <advancedoutbound>
366: <enable/>
367: <rule>
368: <interface></interface>
369: <source>
370: <network>xxx.xxx.xxx.xxx/xx</network>
371: </source>
372: <destination>
373: <not/>
374: <any/>
375: *or*
376: <network>xxx.xxx.xxx.xxx/xx</network>
377: </destination>
378: <target>xxx.xxx.xxx.xxx</target>
379: <descr></descr>
380: <noportmap/>
381: </rule>
382: </advancedoutbound>
383: -->
384: <!--
385: <servernat>
386: <ipaddr></ipaddr>
387: <descr></descr>
388: </servernat>
389: -->
390: <!--
391: <portrange-low></portrange-low>
392: <portrange-high></portrange-high>
393: -->
394: </nat>
395: <filter>
396: <!-- <tcpidletimeout></tcpidletimeout> -->
397: <!-- <bypassstaticroutes/> -->
398: <!-- <allowipsecfrags/> -->
399: <rule>
400: <type>pass</type>
401: <descr>Default LAN -> any</descr>
402: <interface>lan</interface>
403: <source>
404: <network>lan</network>
405: </source>
406: <destination>
407: <any/>
408: </destination>
409: </rule>
410: <rule>
411: <type>pass</type>
412: <descr>Default IPsec VPN</descr>
413: <interface>ipsec</interface>
414: <source>
415: <any/>
416: </source>
417: <destination>
418: <any/>
419: </destination>
420: </rule>
421: <!-- rule syntax:
422: <rule/rule6>
423: <disabled/>
424: <type>pass|block|reject</type>
425: <descr>...</descr>
426: <interface>lan|opt[n]|wan|pptp|ipsec</interface>
427: <protocol>tcp|udp|tcp/udp|...</protocol>
428: <icmptype></icmptype>
429: <source>
430: <not/>
431:
432: <address>xxx.xxx.xxx.xxx(/xx) or alias</address>
433: *or*
434: <network>lan|opt[n]|pptp</network>
435: *or*
436: <any/>
437:
438: <port>a[-b]</port>
439: </source>
440: <destination>
441: *same as for source*
442: </destination>
443: <frags/>
444: <log/>
445: </rule/rule6>
446: -->
447: </filter>
448: <shaper>
449: <!-- <enable/> -->
450: <!-- rule syntax:
451: <rule>
452: <disabled/>
453: <descr></descr>
454:
455: <targetpipe>number (zero based)</targetpipe>
456: *or*
457: <targetqueue>number (zero based)</targetqueue>
458:
459: <interface>lan|wan|opt[n]|pptp</interface>
460: <protocol>tcp|udp</protocol>
461: <direction>in|out</direction>
462: <source>
463: <not/>
464:
465: <address>xxx.xxx.xxx.xxx(/xx)</address>
466: *or*
467: <network>lan|opt[n]|pptp</network>
468: *or*
469: <any/>
470:
471: <port>a[-b]</port>
472: </source>
473: <destination>
474: *same as for source*
475: </destination>
476:
477: <iplen>from[-to]</iplen>
478: <iptos>(!)lowdelay,throughput,reliability,mincost,congestion</iptos>
479: <tcpflags>(!)fin,syn,rst,psh,ack,urg</tcpflags>
480: </rule>
481: <pipe>
482: <descr></descr>
483: <bandwidth></bandwidth>
484: <delay></delay>
485: <mask>source|destination</mask>
486: </pipe>
487: <queue>
488: <descr></descr>
489: <targetpipe>number (zero based)</targetpipe>
490: <weight></weight>
491: <mask>source|destination</mask>
492: </queue>
493: -->
494: </shaper>
495: <ipsec>
496: <!-- <enable/> -->
497: <!-- <preferoldsa/> -->
498: <!-- <dns-interval></dns-interval> -->
499: <!-- syntax:
500: <tunnel>
501: <disabled/>
502: <auto/>
503: <descr></descr>
504: <dpddelay></dpddelay>
505: <interface>lan|wan|opt[n]</interface>
506: <local-subnet>
507: <address>xxx.xxx.xxx.xxx(/xx)</address>
508: *or*
509: <network>lan|opt[n]</network>
510: </local-subnet>
511: <remote-subnet>xxx.xxx.xxx.xxx/xx</remote-subnet>
512: <remote-gateway></remote-gateway>
513: <p1>
514: <mode></mode>
515: <myident>
516: <myaddress/>
517: *or*
518: <address>xxx.xxx.xxx.xxx</address>
519: *or*
520: <fqdn>the.fq.dn</fqdn>
521: </myident>
522: <encryption-algorithm></encryption-algorithm>
523: <hash-algorithm></hash-algorithm>
524: <dhgroup></dhgroup>
525: <lifetime></lifetime>
526: <pre-shared-key></pre-shared-key>
527: </p1>
528: <p2>
529: <protocol></protocol>
530: <encryption-algorithm-option></encryption-algorithm-option>
531: <hash-algorithm-option></hash-algorithm-option>
532: <pfsgroup></pfsgroup>
533: <lifetime></lifetime>
534: </p2>
535: </tunnel>
536: <mobileclients>
537: <enable/>
538: <dpddelay></dpddelay>
539: <p1>
540: <mode></mode>
541: <myident>
542: <myaddress/>
543: *or*
544: <address>xxx.xxx.xxx.xxx</address>
545: *or*
546: <fqdn>the.fq.dn</fqdn>
547: </myident>
548: <encryption-algorithm></encryption-algorithm>
549: <hash-algorithm></hash-algorithm>
550: <dhgroup></dhgroup>
551: <lifetime></lifetime>
552: </p1>
553: <p2>
554: <protocol></protocol>
555: <encryption-algorithm-option></encryption-algorithm-option>
556: <hash-algorithm-option></hash-algorithm-option>
557: <pfsgroup></pfsgroup>
558: <lifetime></lifetime>
559: </p2>
560: </mobileclients>
561: <mobilekey>
562: <ident></ident>
563: <pre-shared-key></pre-shared-key>
564: </mobilekey>
565: -->
566: </ipsec>
567: <aliases>
568: <!--
569: <alias>
570: <name></name>
571: <address>xxx.xxx.xxx.xxx(/xx)</address>
572: <descr></descr>
573: </alias>
574: -->
575: </aliases>
576: <proxyarp>
577: <!--
578: <proxyarpnet>
579: <network>xxx.xxx.xxx.xxx/xx</network>
580: *or*
581: <range>
582: <from>xxx.xxx.xxx.xxx</from>
583: <to>xxx.xxx.xxx.xxx</to>
584: </range>
585: </proxyarpnet>
586: -->
587: </proxyarp>
588: <wol>
589: <!--
590: <wolentry>
591: <interface>lan|opt[n]</interface>
592: <mac>xx:xx:xx:xx:xx:xx</mac>
593: <descr></descr>
594: </wolentry>
595: -->
596: </wol>
597: </elwix>
FreeBSD-CVSweb <freebsd-cvsweb@FreeBSD.org>