File:  [ELWIX - Embedded LightWeight unIX -] / embedtools / etc / config.xml
Revision 1.2: download - view: text, annotated - select for diffs - revision graph
Wed Jun 8 12:45:40 2011 UTC (13 years ago) by misho
Branches: MAIN
CVS tags: tools3_0, tools2_9, tools2_8, tools2_7, tools2_6, tools2_5, tools2_4, tools2_3, tools2_2, tools2_1, tools2_0, tools1_2, tools1_1, TOOLS2_9, TOOLS2_8, TOOLS2_7, TOOLS2_6, TOOLS2_5, TOOLS2_4, TOOLS2_3, TOOLS2_2, TOOLS2_1, TOOLS2_0, TOOLS1_2, TOOLS1_1, TOOLS1_0, HEAD
new ver

    1: <?xml version="1.0"?>
    2: <!-- elwix default system configuration -->
    3: <!-- $Id: config.xml,v 1.2 2011/06/08 12:45:40 misho Exp $ -->
    4: <elwix>
    5: 	<version>1.0</version>
    6: 	<lastchange></lastchange>
    7: 	<system>
    8: 		<hostname>elwix</hostname>
    9: 		<domain>elwix.org</domain>
   10: 		<dnsserver></dnsserver>
   11: 		<dnsallowoverride/>
   12: 		<username>admin</username>
   13: 		<password>$1$2xGLA75j$W/jiJc00HYBZX7kFjxjQv0</password>
   14: 		<timezone>Europe/Sofia</timezone>
   15: 		<time-update-interval>300</time-update-interval>
   16: 		<timeservers>pool.ntp.org</timeservers>
   17: 		<timeservers-randomize/>	<!-- first time usage only -->
   18: 		<webgui>
   19: 			<protocol>http</protocol>
   20: 			<!--
   21: 			<port></port>
   22: 			<certificate></certificate>
   23: 			<private-key></private-key>
   24: 			<noassigninterfaces/>
   25: 			<expanddiags/>
   26: 			<noantilockout></noantilockout>
   27: 			-->
   28: 		</webgui>
   29: 		<!--
   30: 		<user>
   31: 			<name></name>
   32: 			<fullname></fullname>
   33: 			<groupname></groupname>
   34: 			<password></password>
   35: 		</user>
   36: 		-->
   37: 		<!--
   38: 		<group>
   39: 			<name></name>
   40: 			<description></description>
   41: 			<pages></pages>
   42: 		</group>
   43: 		-->
   44: 		<!-- <disableconsolemenu/> -->
   45: 		<!-- <disablefirmwarecheck/> -->
   46: 		<!-- <shellcmd></shellcmd> -->
   47: 		<!-- <earlyshellcmd></earlyshellcmd> -->
   48: 		<!-- <harddiskstandby></harddiskstandby> -->
   49: 		<!-- <polling/> -->
   50: 		<!-- <notes></notes> -->
   51: 		<!-- <enableipv6/> -->
   52: 	</system>
   53: 	<interfaces>
   54: 		<lan>
   55: 			<if>fxp0</if>
   56: 			<ipaddr>192.168.1.1</ipaddr>
   57: 			<subnet>24</subnet>
   58: 			<media></media>
   59: 			<mediaopt></mediaopt>
   60: 			<!--
   61: 			<ipaddr6>xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx|6to4</ipaddr6>
   62: 			<subnet6></subnet6>
   63: 			<ipv6ra />
   64: 			<wireless>
   65: 				*see below (opt[n])*
   66: 			</wireless>
   67: 			-->
   68: 		</lan>
   69: 		<wan>
   70: 			<if>sis1</if>
   71: 			<ipaddr>dhcp</ipaddr>
   72: 			<!-- *or* ipv4-address *or* 'pppoe' *or* 'pptp' -->
   73: 			<subnet></subnet>
   74: 			<gateway></gateway>
   75: 			<blockpriv/>
   76: 			<dhcphostname></dhcphostname>
   77: 			<media></media>
   78: 			<mediaopt></mediaopt>
   79: 			<!--
   80: 			<ipaddr6>xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx|6to4|ppp|aiccu</ipaddr6>
   81: 			<subnet6></subnet6>
   82: 			<gateway6></gateway6>
   83: 			<tunnel6>xxx.xxx.xxx.xxx</tunnel6>
   84: 			<aiccu>
   85: 				<username></username>
   86: 				<password></password>
   87: 				<tunnelid></tunnelid>
   88: 			</aiccu>
   89: 			<ispointtopoint/>
   90: 			<wireless>
   91: 				*see below (opt[n])*
   92: 			</wireless>
   93: 			-->
   94: 		</wan>
   95: 		<!--
   96: 		<opt[n]>
   97: 			<enable/>
   98: 			<descr></descr>
   99: 			<if></if>
  100: 			<ipaddr></ipaddr>
  101: 			<subnet></subnet>
  102: 			<ipaddr6>xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx|6to4</ipaddr6>
  103: 			<subnet6></subnet6>
  104: 			<ipv6ra />
  105: 			<media></media>
  106: 			<mediaopt></mediaopt>
  107: 			<bridge>lan|wan|opt[n]</bridge>
  108: 			<wireless>
  109: 				<standard>11a|11b|11g</standard>
  110: 				<mode>hostap *or* bss *or* ibss</mode>
  111: 				<ssid></ssid>
  112: 				<channel></channel>
  113: 				<wep>
  114: 					<enable/>
  115: 					<key>
  116: 						<txkey/>
  117: 						<value></value>
  118: 					</key>
  119: 				</wep>
  120: 				<hidessid/>
  121: 				<wpa>
  122: 					<mode>none|psk|enterprise</mode>
  123: 					<version>1|2|3</version>
  124: 					<cipher>tkip|ccmp|both</cipher>
  125: 					<psk></psk>
  126: 					<radius>
  127: 						<server></server>
  128: 						<authport></authport>
  129: 						<acctport></acctport>
  130: 						<secret></secret>
  131: 					</radius>
  132: 				</wpa>
  133: 			</wireless>
  134: 		</opt[n]>
  135: 		-->
  136: 	</interfaces>
  137: 	<!--
  138: 	<vlans>
  139: 		<vlan>
  140: 			<tag></tag>
  141: 			<if></if>
  142: 			<descr></descr>
  143: 		</vlan>
  144: 	</vlans>
  145: 	-->
  146: 	<staticroutes>
  147: 		<!--
  148: 		<route>
  149: 			<interface>lan|opt[n]|pptp</interface>
  150: 			<network>xxx.xxx.xxx.xxx/xx</network>
  151: 			<gateway>xxx.xxx.xxx.xxx</gateway>
  152: 			<descr></descr>
  153: 		</route>
  154: 		<route6>
  155: 			<interface>lan|opt[n]</interface>
  156: 			<network>xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx/xx</network>
  157: 			<gateway>xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx</gateway>
  158: 			<descr></descr>
  159: 		</route6>
  160: 		-->
  161: 	</staticroutes>
  162: 	<pppoe>
  163: 		<username></username>
  164: 		<password></password>
  165: 		<provider></provider>
  166: 		<!--
  167: 		<mtu></mtu>
  168: 		<dnsnosec/>
  169: 		-->
  170: 	</pppoe>
  171: 	<pptp>
  172: 		<username></username>
  173: 		<password></password>
  174: 		<local></local>
  175: 		<subnet></subnet>
  176: 		<remote></remote>
  177: 		<!--
  178: 		<local-ip></local-ip>
  179: 		<remote-ip></remote-ip>
  180: 		-->
  181: 	</pptp>
  182: 	<dyndns>
  183: 		<!-- <enable/> -->
  184: 		<type>dyndns</type>
  185: 		<username></username>
  186: 		<password></password>
  187: 		<host></host>
  188: 		<mx></mx>
  189: 		<!-- <wildcard/> -->
  190: 		<server></server>
  191: 		<port></port>
  192: 	</dyndns>
  193: 	<dnsupdate>
  194: 		<!--
  195: 		<enable/>
  196: 		<host></host>
  197: 		<ttl></ttl>
  198: 		<keyname></keyname>
  199: 		<keydata></keydata>
  200: 		</usetcp>
  201: 		-->
  202: 	</dnsupdate>
  203: 	<dhcpd>
  204: 		<lan>
  205: 			<enable/>
  206: 			<range>
  207: 				<from>192.168.1.100</from>
  208: 				<to>192.168.1.199</to>
  209: 			</range>
  210: 			<!--
  211: 			<winsserver>xxx.xxx.xxx.xxx</winsserver>
  212: 			<defaultleasetime></defaultleasetime>
  213: 			<maxleasetime></maxleasetime>
  214: 			<gateway>xxx.xxx.xxx.xxx</gateway>
  215: 			<domain></domain>
  216: 			<dnsserver></dnsserver>
  217: 			<next-server></next-server>
  218: 			<filename></filename>
  219: 			<staticmap>
  220: 				<mac>xx:xx:xx:xx:xx:xx</mac>
  221: 				<ipaddr>xxx.xxx.xxx.xxx</ipaddr>
  222: 				<descr></descr>
  223: 			</staticmap>
  224: 			-->
  225: 		</lan>
  226: 		<!--
  227: 		<opt[n]>
  228: 			...
  229: 		</opt[n]>
  230: 		-->
  231: 	</dhcpd>
  232: 	<pptpd>
  233: 		<mode><!-- off *or* server *or* redir --></mode>
  234: 		<nunits>16</nunits>
  235: 		<redir></redir>
  236: 		<localip></localip>
  237: 		<remoteip></remoteip>
  238: 		<!-- <dnsserver></dnsserver> -->
  239: 		<!-- <accounting/> -->
  240: 		<!--
  241: 		<user>
  242: 			<name></name>
  243: 			<password></password>
  244: 		</user>
  245: 		<radius>
  246: 			<enable/>
  247: 			<accounting/>
  248: 			<radiusip/>
  249: 			<server></server>
  250: 			<secret></secret>
  251: 		</radius>
  252: 		-->
  253: 		<!-- <nofwrulegen/> -->
  254: 	</pptpd>
  255: 	<dnsmasq>
  256: 		<enable/>
  257: 		<!--
  258: 		<hosts>
  259: 			<host></host>
  260: 			<domain></domain>
  261: 			<ip></ip>
  262: 			<descr></descr>
  263: 		</hosts>
  264: 		<domainoverrides>
  265: 			<domain></domain>
  266: 			<ip></ip>
  267: 			<descr></descr>
  268: 		</domainoverrides>
  269: 		-->
  270: 	</dnsmasq>
  271: 	<snmpd>
  272: 		<!-- <enable/> -->
  273: 		<syslocation></syslocation>
  274: 		<syscontact></syscontact>
  275: 		<rocommunity>public</rocommunity>
  276: 		<!-- <bindlan/> -->
  277: 	</snmpd>
  278: 	<diag>
  279: 		<!-- <ipfstatentries></ipfstatentries> -->
  280: 	</diag>
  281: 	<bridge>
  282: 		<!-- <filteringbridge/> -->
  283: 	</bridge>
  284: 	<syslog>
  285: 		<!--
  286: 		<reverse/>
  287: 		<enable/>
  288: 		<remoteserver>xxx.xxx.xxx.xxx</remoteserver>
  289: 		<remoteport>514</remoteport>
  290: 		<filter/>
  291: 		<dhcp/>
  292: 		<system/>
  293: 		<portalauth/>
  294: 		<vpn/>
  295: 		<nologdefaultblock/>
  296: 		<resolve/>
  297: 		-->
  298: 	</syslog>
  299: 	<!--
  300: 	<captiveportal>
  301: 		<enable/>
  302: 		<interface>lan|opt[n]</interface>
  303: 		<idletimeout>minutes</idletimeout>
  304: 		<timeout>minutes</timeout>
  305: 		<page>
  306: 			<htmltext></htmltext>
  307: 			<errtext></errtext>
  308: 		</page>
  309: 		<httpslogin/>
  310: 		<httpsname></httpsname>
  311: 		<certificate></certificate>
  312: 		<private-key></private-key>
  313: 		<redirurl></redirurl>
  314: 		<auth_method>none|radius|local</auth_method>
  315: 		<radiusip></radiusip>
  316: 		<radiusip2></radiusip2>
  317: 		<radiusport></radiusport>
  318: 		<radiusport2></radiusport2>
  319: 		<radiuskey></radiuskey>
  320: 		<radiuskey2></radiuskey2>
  321: 		<radiussession_timeout></radiussession_timeout>
  322: 		<nomacfilter/>
  323: 		<reauthenticate/>
  324: 		<reauthenticateacct>stopstart|interimupdate</reauthenticateacct>
  325: 		<maxproc></maxproc>
  326: 		<maxprocperip></maxprocperip>
  327: 		<croninterval></croninterval>
  328: 		
  329: 		<user>
  330: 			<name></name>
  331: 			<fullname></fullname>
  332: 			<password></password>
  333: 			<expirationdate></expirationdate>
  334: 		</user>
  335: 		
  336: 		<element>
  337: 			<name></name>
  338: 			<size></size>
  339: 			<content></content>
  340: 		</element>
  341: 	</captiveportal>
  342: 	-->
  343: 	<nat>
  344: 		<!--
  345: 		<rule>
  346: 			<interface></interface>
  347: 			<external-address></external-address>
  348: 			<protocol></protocol>
  349: 			<external-port></external-port>
  350: 			<target></target>
  351: 			<local-port></local-port>
  352: 			<descr></descr>
  353: 		</rule>
  354: 		-->
  355: 		<!--
  356: 		<onetoone>
  357: 			<interface></interface>
  358: 			<external>xxx.xxx.xxx.xxx</external>
  359: 			<internal>xxx.xxx.xxx.xxx</internal>
  360: 			<subnet></subnet>
  361: 			<descr></descr>
  362: 		</onetoone>
  363: 		-->
  364: 		<!--
  365: 		<advancedoutbound>
  366: 			<enable/>
  367: 			<rule>
  368: 				<interface></interface>
  369: 				<source>
  370: 					<network>xxx.xxx.xxx.xxx/xx</network>
  371: 				</source>
  372: 				<destination>
  373: 					<not/>
  374: 					<any/>
  375: 					*or*
  376: 					<network>xxx.xxx.xxx.xxx/xx</network>
  377: 				</destination>
  378: 				<target>xxx.xxx.xxx.xxx</target>
  379: 				<descr></descr>
  380: 				<noportmap/>
  381: 			</rule>
  382: 		</advancedoutbound>
  383: 		-->
  384: 		<!--
  385: 		<servernat>
  386: 			<ipaddr></ipaddr>
  387: 			<descr></descr>
  388: 		</servernat>
  389: 		-->
  390: 		<!--
  391: 		<portrange-low></portrange-low>
  392: 		<portrange-high></portrange-high>
  393: 		-->
  394: 	</nat>
  395: 	<filter>
  396: 		<!-- <tcpidletimeout></tcpidletimeout> -->
  397: 		<!-- <bypassstaticroutes/> -->
  398: 		<!-- <allowipsecfrags/> -->
  399: 		<rule>
  400: 			<type>pass</type>
  401: 			<descr>Default LAN -&gt; any</descr>
  402: 			<interface>lan</interface>
  403: 			<source>
  404: 				<network>lan</network>
  405: 			</source>
  406: 			<destination>
  407: 				<any/>
  408: 			</destination>
  409: 		</rule>
  410: 		<rule>
  411: 			<type>pass</type>
  412: 			<descr>Default IPsec VPN</descr>
  413: 			<interface>ipsec</interface>
  414: 			<source>
  415: 				<any/>
  416: 			</source>
  417: 			<destination>
  418: 				<any/>
  419: 			</destination>
  420: 		</rule>
  421: 		<!-- rule syntax:
  422: 		<rule/rule6>
  423: 			<disabled/>
  424: 			<type>pass|block|reject</type>
  425: 			<descr>...</descr>
  426: 			<interface>lan|opt[n]|wan|pptp|ipsec</interface>
  427: 			<protocol>tcp|udp|tcp/udp|...</protocol>
  428: 			<icmptype></icmptype>
  429: 			<source>
  430: 				<not/>
  431: 				
  432: 				<address>xxx.xxx.xxx.xxx(/xx) or alias</address>
  433: 				*or*
  434: 				<network>lan|opt[n]|pptp</network>
  435: 				*or*
  436: 				<any/>
  437: 				
  438: 				<port>a[-b]</port>
  439: 			</source>
  440: 			<destination>
  441: 				*same as for source*
  442: 			</destination>
  443: 			<frags/>
  444: 			<log/>
  445: 		</rule/rule6>
  446: 		-->
  447: 	</filter>
  448: 	<shaper>
  449: 		<!-- <enable/> -->
  450: 		<!-- rule syntax:
  451: 		<rule>
  452: 			<disabled/>
  453: 			<descr></descr>
  454: 			
  455: 			<targetpipe>number (zero based)</targetpipe>
  456: 			*or*
  457: 			<targetqueue>number (zero based)</targetqueue>
  458: 			
  459: 			<interface>lan|wan|opt[n]|pptp</interface>
  460: 			<protocol>tcp|udp</protocol>
  461: 			<direction>in|out</direction>
  462: 			<source>
  463: 				<not/>
  464: 				
  465: 				<address>xxx.xxx.xxx.xxx(/xx)</address>
  466: 				*or*
  467: 				<network>lan|opt[n]|pptp</network>
  468: 				*or*
  469: 				<any/>
  470: 				
  471: 				<port>a[-b]</port>
  472: 			</source>
  473: 			<destination>
  474: 				*same as for source*
  475: 			</destination>
  476: 			
  477: 			<iplen>from[-to]</iplen>
  478: 			<iptos>(!)lowdelay,throughput,reliability,mincost,congestion</iptos>
  479: 			<tcpflags>(!)fin,syn,rst,psh,ack,urg</tcpflags>
  480: 		</rule>
  481: 		<pipe>
  482: 			<descr></descr>
  483: 			<bandwidth></bandwidth>
  484: 			<delay></delay>
  485: 			<mask>source|destination</mask>
  486: 		</pipe>
  487: 		<queue>
  488: 			<descr></descr>
  489: 			<targetpipe>number (zero based)</targetpipe>
  490: 			<weight></weight>
  491: 			<mask>source|destination</mask>
  492: 		</queue>
  493: 		-->
  494: 	</shaper>
  495: 	<ipsec>
  496: 		<!-- <enable/> -->
  497: 		<!-- <preferoldsa/> -->
  498: 		<!-- <dns-interval></dns-interval> -->
  499: 		<!-- syntax:
  500: 		<tunnel>
  501: 			<disabled/>
  502: 			<auto/>
  503: 			<descr></descr>
  504: 			<dpddelay></dpddelay>
  505: 			<interface>lan|wan|opt[n]</interface>
  506: 			<local-subnet>
  507: 				<address>xxx.xxx.xxx.xxx(/xx)</address>
  508: 				*or*
  509: 				<network>lan|opt[n]</network>
  510: 			</local-subnet>
  511: 			<remote-subnet>xxx.xxx.xxx.xxx/xx</remote-subnet>
  512: 			<remote-gateway></remote-gateway>
  513: 			<p1>
  514: 				<mode></mode>
  515: 				<myident>
  516: 					<myaddress/>
  517: 					*or*
  518: 					<address>xxx.xxx.xxx.xxx</address>
  519: 					*or*
  520: 					<fqdn>the.fq.dn</fqdn>
  521: 				</myident>
  522: 				<encryption-algorithm></encryption-algorithm>
  523: 				<hash-algorithm></hash-algorithm>
  524: 				<dhgroup></dhgroup>
  525: 				<lifetime></lifetime>
  526: 				<pre-shared-key></pre-shared-key>
  527: 			</p1>
  528: 			<p2>
  529: 				<protocol></protocol>
  530: 				<encryption-algorithm-option></encryption-algorithm-option>
  531: 				<hash-algorithm-option></hash-algorithm-option>
  532: 				<pfsgroup></pfsgroup>
  533: 				<lifetime></lifetime>
  534: 			</p2>
  535: 		</tunnel>
  536: 		<mobileclients>
  537: 			<enable/>
  538: 			<dpddelay></dpddelay>
  539: 			<p1>
  540: 				<mode></mode>
  541: 				<myident>
  542: 					<myaddress/>
  543: 					*or*
  544: 					<address>xxx.xxx.xxx.xxx</address>
  545: 					*or*
  546: 					<fqdn>the.fq.dn</fqdn>
  547: 				</myident>
  548: 				<encryption-algorithm></encryption-algorithm>
  549: 				<hash-algorithm></hash-algorithm>
  550: 				<dhgroup></dhgroup>
  551: 				<lifetime></lifetime>
  552: 			</p1>
  553: 			<p2>
  554: 				<protocol></protocol>
  555: 				<encryption-algorithm-option></encryption-algorithm-option>
  556: 				<hash-algorithm-option></hash-algorithm-option>
  557: 				<pfsgroup></pfsgroup>
  558: 				<lifetime></lifetime>
  559: 			</p2>
  560: 		</mobileclients>
  561: 		<mobilekey>
  562: 			<ident></ident>
  563: 			<pre-shared-key></pre-shared-key>
  564: 		</mobilekey>
  565: 		-->
  566: 	</ipsec>
  567: 	<aliases>
  568: 		<!--
  569: 		<alias>
  570: 			<name></name>
  571: 			<address>xxx.xxx.xxx.xxx(/xx)</address>
  572: 			<descr></descr>
  573: 		</alias>
  574: 		-->
  575: 	</aliases>
  576: 	<proxyarp>
  577: 		<!--
  578: 		<proxyarpnet>
  579: 			<network>xxx.xxx.xxx.xxx/xx</network>
  580: 			*or*
  581: 			<range>
  582: 				<from>xxx.xxx.xxx.xxx</from>
  583: 				<to>xxx.xxx.xxx.xxx</to>
  584: 			</range>
  585: 		</proxyarpnet>
  586: 		-->
  587: 	</proxyarp>
  588: 	<wol>
  589: 		<!--
  590: 		<wolentry>
  591: 			<interface>lan|opt[n]</interface>
  592: 			<mac>xx:xx:xx:xx:xx:xx</mac>
  593: 			<descr></descr>
  594: 		</wolentry>
  595: 		-->
  596: 	</wol>
  597: </elwix>

FreeBSD-CVSweb <freebsd-cvsweb@FreeBSD.org>