[strongSwan] charon disable ipv4/ipv6 + bind to single ip

Martin Kellermann kellermann at sk-datentechnik.com
Wed Jun 19 20:22:01 CEST 2013


hi,

 

default install on debian wheezy shows netstat bindings as follows:

udp     0.0.0.0:68              0.0.0.0:*       charon

udp     0.0.0.0:4500            0.0.0.0:*       charon

udp     127.0.0.1:500           0.0.0.0:*       pluto

udp     0.0.0.0:500             0.0.0.0:*       charon

udp6    :::4500                 :::*            charon

udp6    :::500                  :::*            charon

raw     0.0.0.0:17              0.0.0.0:*       charon

raw6    :::17                   :::*            charon

 

debian strongswan version is 4.5.2

 

i am wondering if there is an option to disable ipv4 or ipv6 support at
all?

 

second question:

 

is there an option to bind to just a single ip instead of 0.0.0.0:*?

 

the default behavior is no real problem at all, everything can be
adjusted with firewall rules, but disabling unneeded things would clean
it up a bit...

 

thanks!

 

regards

 

martin

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20130619/e59c922c/attachment.html>


More information about the Users mailing list