]> git.ipfire.org Git - people/pmueller/ipfire-2.x.git/blobdiff - src/patches/openswan-2.4.9-updown_x509-1.patch
Added some custom patches for openswan
[people/pmueller/ipfire-2.x.git] / src / patches / openswan-2.4.9-updown_x509-1.patch
diff --git a/src/patches/openswan-2.4.9-updown_x509-1.patch b/src/patches/openswan-2.4.9-updown_x509-1.patch
new file mode 100644 (file)
index 0000000..9109ab7
--- /dev/null
@@ -0,0 +1,24 @@
+--- /usr/lib/ipsec/_updown_x509        2007-10-14 00:56:15.000000000 +0200
++++ /usr/lib/ipsec/_updown_x509        2007-10-27 00:00:26.000000000 +0200
+@@ -359,8 +359,8 @@
+               # opportunistic encryption work around
+               # need to provide route that eclipses default, without 
+               # replacing it.
+-              it="ip route $1 0.0.0.0/1 $parms2 $parms3 &&
+-                      ip route $1 128.0.0.0/1 $parms2 $parms3"
++              #it="ip route $1 0.0.0.0/1 $parms2 $parms3 &&
++              #       ip route $1 128.0.0.0/1 $parms2 $parms3"
+               ;;
+       *)      it="ip route $1 $parms $parms2 $parms3"
+               ;;
+@@ -389,8 +389,8 @@
+               # replacing it.
+               parms1="0.0.0.0/1"
+               parms2="128.0.0.0/1"
+-              it="ip route delete $parms1 $IPROUTEARGS 2>&1 ; ip route delete $parms2 $IPROUTEARGS 2>&1"
+-              oops="`ip route delete $parms1 $IPROUTEARGS 2>&1 ; ip route delete $parms2 $IPROUTEARGS 2>&1`"
++              #it="ip route delete $parms1 $IPROUTEARGS 2>&1 ; ip route delete $parms2 $IPROUTEARGS 2>&1"
++              #oops="`ip route delete $parms1 $IPROUTEARGS 2>&1 ; ip route delete $parms2 $IPROUTEARGS 2>&1`"
+               ;;
+       *)
+               parms="$PLUTO_PEER_CLIENT $IPROUTEARGS"