diff options
-rw-r--r-- | man/strongswan.conf.5.in | 16 | ||||
-rw-r--r-- | src/libimcv/plugins/imc_os/imc_os.c | 2 | ||||
-rw-r--r-- | src/libimcv/plugins/imc_scanner/imc_scanner.c | 2 |
3 files changed, 16 insertions, 4 deletions
diff --git a/man/strongswan.conf.5.in b/man/strongswan.conf.5.in index a36889cc3..905c55233 100644 --- a/man/strongswan.conf.5.in +++ b/man/strongswan.conf.5.in @@ -811,15 +811,24 @@ Preferred measurement hash algorithm .BR libimcv.plugins.imv-attestation.min_nonce_len " [0]" DH minimum nonce length .TP -.BR libimcv.plugins.imc-os.send_info " [yes]" +.BR libimcv.plugins.imv-attestation.remediation_uri +URI pointing to attestation remediation instructions +.TP +.BR libimcv.plugins.imc-os.push_info " [yes]" Send operating system info without being prompted .TP -.BR libimcv.plugins.imc-scanner.send_ports " [yes]" +.BR libimcv.plugins.imv-os.remediation_uri +URI pointing to operating system remediation instructions +.TP +.BR libimcv.plugins.imc-scanner.push_info " [yes]" Send open listening ports without being prompted .TP .BR libimcv.plugins.imv-scanner.closed_port_policy " [yes]" By default all ports must be closed (yes) or can be open (no) .TP +.BR libimcv.plugins.imv-scanner.remediation_uri +URI pointing to scanner remediation instructions +.TP .BR libimcv.plugins.imv-scanner.tcp_ports List of TCP ports that can be open or must be closed .TP @@ -841,6 +850,9 @@ Do a handshake retry .BR libimcv.plugins.imc-test.retry_command Command to be sent to the Test IMV in the handshake retry .TP +.BR libimcv.plugins.imv-test.remediation_uri +URI pointing to test remediation instructions +.TP .BR libimcv.plugins.imv-test.rounds " [0]" Number of IMC-IMV retry rounds .SS libtls section diff --git a/src/libimcv/plugins/imc_os/imc_os.c b/src/libimcv/plugins/imc_os/imc_os.c index a179e4507..f6e205ce7 100644 --- a/src/libimcv/plugins/imc_os/imc_os.c +++ b/src/libimcv/plugins/imc_os/imc_os.c @@ -355,7 +355,7 @@ TNC_Result TNC_IMC_BeginHandshake(TNC_IMCID imc_id, return TNC_RESULT_FATAL; } if (lib->settings->get_bool(lib->settings, - "libimcv.plugins.imc-os.send_info", TRUE)) + "libimcv.plugins.imc-os.push_info", TRUE)) { out_msg = imc_msg_create(imc_os, state, connection_id, imc_id, TNC_IMVID_ANY, msg_types[0]); diff --git a/src/libimcv/plugins/imc_scanner/imc_scanner.c b/src/libimcv/plugins/imc_scanner/imc_scanner.c index f233f22b0..3496ddd18 100644 --- a/src/libimcv/plugins/imc_scanner/imc_scanner.c +++ b/src/libimcv/plugins/imc_scanner/imc_scanner.c @@ -270,7 +270,7 @@ TNC_Result TNC_IMC_BeginHandshake(TNC_IMCID imc_id, return TNC_RESULT_FATAL; } if (lib->settings->get_bool(lib->settings, - "libimcv.plugins.imc-scanner.send_ports", TRUE)) + "libimcv.plugins.imc-scanner.push_info", TRUE)) { out_msg = imc_msg_create(imc_scanner, state, connection_id, imc_id, TNC_IMVID_ANY, msg_types[0]); |