Bug 46511

Summary: Small fixes for VPN article
Product: Documentation Reporter: Jon O. <jono>
Component: Books & ArticlesAssignee: freebsd-doc (Nobody) <doc>
Status: Closed FIXED    
Severity: Affects Only Me    
Priority: Normal    
Version: Latest   
Hardware: Any   
OS: Any   

Description Jon O. 2002-12-24 08:50:06 UTC
	Just some small fixes to some links, etc. in the VPN doc

Fix: 

-    <para>The FreeBSD gateway (<acronym>GW</acronym> serves as a firewall and
+    <para>The FreeBSD gateway <acronym>GW</acronym> serves as a firewall and
       <acronym>NAT</acronym> device for <quote>internal nets.</quote></para>

     <para>The FreeBSD kernel must be compiled to support IPSec.
@@ -104,7 +104,7 @@
 options         IPSEC_DEBUG</programlisting>

     <para>For instructions on building a custom kernel, refer to the
-      <ulink url="http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/x3663.html">
+      <ulink url="http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/kernelconfig.html">
       FreeBSD handbook</ulink>. Please note that <acronym>IP</acronym>
       protocol 50 (<acronym>ESP</acronym>) and <acronym>UDP</acronym>
       port <literal>500</literal> must be open between the Firewall-1
@@ -142,7 +142,7 @@
       (Do not use our example.)</para>

 <programlisting>Support Aggressive Mode:                 Checked
-Supports Subnets:                       Checked</programlisting>
+Supports Subnets:                        Checked</programlisting>

     <para>After setting the pre-shared secret in the Firewall-1 Network
       Object definition, place this secret in
@@ -213,8 +213,8 @@
 # IP addresses
 #
 #     External Interface                    External Interface
-#       208.229.100.6                    216.218.197.2
-#                   |                    |
+#       208.229.100.6                       216.218.197.2
+#                   |                       |
 #        +--&gt; Firewall-1 &lt;--&gt; Internet &lt;--&gt; FreeBSD GW &lt;--+
 #        |                                                |
 # FW-1 Protected Nets                              Internal Nets
@@ -304,7 +304,7 @@
        #certificate_type x509 "" "";

        nonce_size 16;
-       lifetime time 10 min;    # sec,min,hour
+       lifetime time 10 min;   # sec,min,hour
        lifetime byte 5 MB;     # B,KB,GB
        initial_contact on;
        support_mip6 on;
@@ -329,7 +329,7 @@
       }</programlisting>

     <para>Ensure that <filename>/usr/local/etc/racoon/psk.txt</filename>
-      contains the shared secret configured in the "Firewall-1 Network Object
+      contains the pre-shared secret configured in the "Firewall-1 Network Object
       Configuration" section of this document and has mode <literal>600</literal>
       permissions.</para>--fSZYJHscscIvAt8HOXqW4mmnCjxbCKrQjk7KobU9PmIeF7uf
Content-Type: text/plain; name="file.diff"
Content-Transfer-Encoding: 7bit
Content-Disposition: attachment; filename="file.diff"

--- article.sgml        Mon Dec 23 14:38:17 2002
+++ article.jono.sgml   Tue Dec 24 00:31:17 2002
@@ -93,7 +93,7 @@
 FW-1 Protected Nets                              Internal Nets
 199.208.192.0/24                               192.168.10.0/24</programlisting>
Comment 1 Tom Rhodes freebsd_committer freebsd_triage 2002-12-24 08:56:33 UTC
On Tue, 24 Dec 2002 00:43:15 -0800 (PST)
"Jon O." <jono@securityreports.com> wrote:

> >Description:
> 	Just some small fixes to some links, etc. in the VPN doc
> >How-To-Repeat:
> >Fix:
> --- article.sgml        Mon Dec 23 14:38:17 2002
> +++ article.jono.sgml   Tue Dec 24 00:31:17 2002
> @@ -93,7 +93,7 @@
>  FW-1 Protected Nets                              Internal Nets
>  199.208.192.0/24                              
>  192.168.10.0/24</programlisting>
> 
> -    <para>The FreeBSD gateway (<acronym>GW</acronym> serves as a
> firewall and+    <para>The FreeBSD gateway <acronym>GW</acronym>
> serves as a firewall and
>        <acronym>NAT</acronym> device for <quote>internal
>        nets.</quote></para>
> 
>      <para>The FreeBSD kernel must be compiled to support IPSec.
> @@ -104,7 +104,7 @@
>  options         IPSEC_DEBUG</programlisting>
> 
>      <para>For instructions on building a custom kernel, refer to the
> -      <ulink
> url="http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/x3663.
> html">+      <ulink
> url="http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/kernel
> config.html">
>        FreeBSD handbook</ulink>. Please note that
>        <acronym>IP</acronym> protocol 50 (<acronym>ESP</acronym>) and
>        <acronym>UDP</acronym> port <literal>500</literal> must be open
>        between the Firewall-1
> @@ -142,7 +142,7 @@
>        (Do not use our example.)</para>
> 
>  <programlisting>Support Aggressive Mode:                 Checked
> -Supports Subnets:                       Checked</programlisting>
> +Supports Subnets:                        Checked</programlisting>
> 
>      <para>After setting the pre-shared secret in the Firewall-1
>      Network
>        Object definition, place this secret in
> @@ -213,8 +213,8 @@
>  # IP addresses
>  #
>  #     External Interface                    External Interface
> -#       208.229.100.6                    216.218.197.2
> -#                   |                    |
> +#       208.229.100.6                       216.218.197.2
> +#                   |                       |
>  #        +--&gt; Firewall-1 &lt;--&gt; Internet &lt;--&gt; FreeBSD GW
>  &lt;--+#        |                                                |
>  # FW-1 Protected Nets                              Internal Nets
> @@ -304,7 +304,7 @@
>         #certificate_type x509 "" "";
> 
>         nonce_size 16;
> -       lifetime time 10 min;    # sec,min,hour
> +       lifetime time 10 min;   # sec,min,hour
>         lifetime byte 5 MB;     # B,KB,GB
>         initial_contact on;
>         support_mip6 on;
> @@ -329,7 +329,7 @@
>        }</programlisting>
> 
>      <para>Ensure that
>      <filename>/usr/local/etc/racoon/psk.txt</filename>
> -      contains the shared secret configured in the "Firewall-1
> Network Object+      contains the pre-shared secret configured in the
> "Firewall-1 Network Object
>        Configuration" section of this document and has mode
>        <literal>600</literal> permissions.</para>

Ok, we have some whitespace fixes && some content fixes here, I'll
handle them.  Noone else need take a worry.  Thanks!

--
Tom Rhodes
Comment 2 Tom Rhodes freebsd_committer freebsd_triage 2002-12-29 22:14:04 UTC
State Changed
From-To: open->closed

Committed!  Thanks for the submission!