aboutsummaryrefslogtreecommitdiffstats
path: root/man/ipsec.conf.5.in
diff options
context:
space:
mode:
authorMartin Willi <martin@revosec.ch>2012-07-31 11:20:22 +0200
committerMartin Willi <martin@revosec.ch>2012-08-21 09:38:01 +0200
commitc60f1da424b025fbc1b221c2b533e82a3bf623c7 (patch)
tree88dabec2c759fa8995ff780468beed6b7e9af0cb /man/ipsec.conf.5.in
parent63e460542c2cc9e1fb7707db34f483362f6a6c13 (diff)
downloadstrongswan-c60f1da424b025fbc1b221c2b533e82a3bf623c7.tar.bz2
strongswan-c60f1da424b025fbc1b221c2b533e82a3bf623c7.tar.xz
Add a description of the leftdns option to ipsec.conf.5
Diffstat (limited to 'man/ipsec.conf.5.in')
-rw-r--r--man/ipsec.conf.5.in10
1 files changed, 10 insertions, 0 deletions
diff --git a/man/ipsec.conf.5.in b/man/ipsec.conf.5.in
index ca77ee7de..b3210baa4 100644
--- a/man/ipsec.conf.5.in
+++ b/man/ipsec.conf.5.in
@@ -585,6 +585,16 @@ Comma separated list of certificate policy OIDs the peer's certificate must
have.
OIDs are specified using the numerical dotted representation.
.TP
+.BR leftdns " = <servers>"
+Comma separated list of DNS server addresses to exchange as configuration
+attributes. On the initiator, a server is a fixed IPv4 / IPv6 address, or
+.B %config4
+/
+.B %config6
+to request attributes without an address. On the responder,
+only fixed IPv4 /IPv6 addresses are allowed and define DNS servers assigned
+to the client.
+.TP
.BR leftfirewall " = yes | " no
whether the left participant is doing forwarding-firewalling
(including masquerading) using iptables for traffic from \fIleftsubnet\fR,