… | |
… | |
237 | other programs. |
237 | other programs. |
238 | |
238 | |
239 | The default is 47 (GRE), which has a good chance of tunneling |
239 | The default is 47 (GRE), which has a good chance of tunneling |
240 | through firewalls (but note that gvpe's rawip protocol is not GRE |
240 | through firewalls (but note that gvpe's rawip protocol is not GRE |
241 | compatible). Other common choices are 50 (IPSEC, ESP), 51 (IPSEC, AH), 4 |
241 | compatible). Other common choices are 50 (IPSEC, ESP), 51 (IPSEC, AH), 4 |
242 | (IPIP tunnels) or 98 (ENCAP, rfc1241) |
242 | (IPIP tunnels) or 98 (ENCAP, rfc1241). |
|
|
243 | |
|
|
244 | Many versions of Linux seem to have a bug that causes them to reorder |
|
|
245 | packets for some ip protocols (GRE, ESP) but not for others (AH), so |
|
|
246 | choose wisely (that is, use 51, AH). |
243 | |
247 | |
244 | =item http-proxy-host = hostname/ip |
248 | =item http-proxy-host = hostname/ip |
245 | |
249 | |
246 | The C<http-proxy-*> family of options are only available if gvpe was |
250 | The C<http-proxy-*> family of options are only available if gvpe was |
247 | compiled with the C<--enable-http-proxy> option and enable tunneling of |
251 | compiled with the C<--enable-http-proxy> option and enable tunneling of |
… | |
… | |
420 | |
424 | |
421 | Allow direct connections to this node. See C<deny-direct> for more info. |
425 | Allow direct connections to this node. See C<deny-direct> for more info. |
422 | |
426 | |
423 | =item compress = yes|true|on | no|false|off |
427 | =item compress = yes|true|on | no|false|off |
424 | |
428 | |
|
|
429 | For the current node, this specified whether it will accept compressed |
|
|
430 | packets, and for all other nodes, this specifies whether to try to |
425 | Wether to compress data packets sent to this node (default: C<yes>). |
431 | compress data packets sent to this node (default: C<yes>). Compression is |
426 | Compression is really cheap even on slow computers and has no size |
432 | really cheap even on slow computers, has no size overhead at all and will |
427 | overhead at all, so enabling this is often a good idea. |
433 | only be used when the other side supports compression, so enabling this is |
|
|
434 | often a good idea. |
428 | |
435 | |
429 | =item connect = ondemand | never | always | disabled |
436 | =item connect = ondemand | never | always | disabled |
430 | |
437 | |
431 | Sets the connect mode (default: C<always>). It can be C<always> (always |
438 | Sets the connect mode (default: C<always>). It can be C<always> (always |
432 | try to establish and keep a connection to the given node), C<never> |
439 | try to establish and keep a connection to the given node), C<never> |
… | |
… | |
558 | The value specified using this directive will be passed to the C<if-up> |
565 | The value specified using this directive will be passed to the C<if-up> |
559 | script in the environment variable C<IFUPDATA>. |
566 | script in the environment variable C<IFUPDATA>. |
560 | |
567 | |
561 | =item inherit-tos = yes|true|on | no|false|off |
568 | =item inherit-tos = yes|true|on | no|false|off |
562 | |
569 | |
563 | Wether to inherit the TOS settings of packets sent to the tunnel when |
570 | Whether to inherit the TOS settings of packets sent to the tunnel when |
564 | sending packets to this node (default: C<yes>). If set to C<yes> then |
571 | sending packets to this node (default: C<yes>). If set to C<yes> then |
565 | outgoing tunnel packets will have the same TOS setting as the packets sent |
572 | outgoing tunnel packets will have the same TOS setting as the packets sent |
566 | to the tunnel device, which is usually what you want. |
573 | to the tunnel device, which is usually what you want. |
567 | |
574 | |
568 | =item max-retry = positive-number |
575 | =item max-retry = positive-number |