50798e658c
Change-Id: I46a78ba9aa0ee721ac1e9294fc16074877cd4614
76 lines
2.6 KiB
Plaintext
76 lines
2.6 KiB
Plaintext
[DEFAULT]
|
|
|
|
|
|
[ipsec]
|
|
|
|
#
|
|
# From neutron.vpnaas.agent
|
|
#
|
|
|
|
# Location to store ipsec server config files (string value)
|
|
#config_base_dir = $state_path/ipsec
|
|
|
|
# Interval for checking ipsec status (integer value)
|
|
#ipsec_status_check_interval = 60
|
|
|
|
# Enable detail logging for ipsec pluto process. If the flag set to True, the
|
|
# detailed logging will be written into config_base_dir/<pid>/log. Note: This
|
|
# setting applies to OpenSwan and LibreSwan only. StrongSwan logs to syslog.
|
|
# (boolean value)
|
|
#enable_detailed_logging = false
|
|
|
|
|
|
[pluto]
|
|
|
|
#
|
|
# From neutron.vpnaas.agent
|
|
#
|
|
|
|
# Initial interval in seconds for checking if pluto daemon is shutdown (integer
|
|
# value)
|
|
# Deprecated group/name - [libreswan]/shutdown_check_timeout
|
|
#shutdown_check_timeout = 1
|
|
|
|
# The maximum number of retries for checking for pluto daemon shutdown (integer
|
|
# value)
|
|
# Deprecated group/name - [libreswan]/shutdown_check_retries
|
|
#shutdown_check_retries = 5
|
|
|
|
# A factor to increase the retry interval for each retry (floating point value)
|
|
# Deprecated group/name - [libreswan]/shutdown_check_back_off
|
|
#shutdown_check_back_off = 1.5
|
|
|
|
# Enable this flag to avoid from unnecessary restart (boolean value)
|
|
# Deprecated group/name - [libreswan]/restart_check_config
|
|
#restart_check_config = false
|
|
|
|
|
|
[strongswan]
|
|
|
|
#
|
|
# From neutron.vpnaas.agent
|
|
#
|
|
|
|
# Template file for ipsec configuration. (string value)
|
|
#ipsec_config_template = /home/openstack/neutron-vpnaas/neutron_vpnaas/services/vpn/device_drivers/template/strongswan/ipsec.conf.template
|
|
|
|
# Template file for strongswan configuration. (string value)
|
|
#strongswan_config_template = /home/openstack/neutron-vpnaas/neutron_vpnaas/services/vpn/device_drivers/template/strongswan/strongswan.conf.template
|
|
|
|
# Template file for ipsec secret configuration. (string value)
|
|
#ipsec_secret_template = /home/openstack/neutron-vpnaas/neutron_vpnaas/services/vpn/device_drivers/template/strongswan/ipsec.secret.template
|
|
|
|
# The area where default StrongSwan configuration files are located. (string
|
|
# value)
|
|
#default_config_area = /etc/strongswan.d
|
|
|
|
|
|
[vpnagent]
|
|
|
|
#
|
|
# From neutron.vpnaas.agent
|
|
#
|
|
|
|
# The vpn device drivers Neutron will use (multi valued)
|
|
#vpn_device_driver = neutron_vpnaas.services.vpn.device_drivers.ipsec.OpenSwanDriver, neutron_vpnaas.services.vpn.device_drivers.cisco_ipsec.CiscoCsrIPsecDriver, neutron_vpnaas.services.vpn.device_drivers.vyatta_ipsec.VyattaIPSecDriver, neutron_vpnaas.services.vpn.device_drivers.strongswan_ipsec.StrongSwanDriver, neutron_vpnaas.services.vpn.device_drivers.fedora_strongswan_ipsec.FedoraStrongSwanDriver, neutron_vpnaas.services.vpn.device_drivers.libreswan_ipsec.LibreSwanDriver
|