summaryrefslogtreecommitdiffstats
path: root/conf.default
diff options
context:
space:
mode:
authorjim-p <jimp@pfsense.org>2010-10-19 12:00:09 -0400
committerjim-p <jimp@pfsense.org>2010-10-19 12:00:09 -0400
commit15864861753ef1cc35f73af738ddb776571b74e5 (patch)
tree3bfa388a51a879b11e4020e44d9a00d963b82175 /conf.default
parent8a98ce811ca6cea8d0c70082323b9a188e75b7b7 (diff)
downloadpfsense-15864861753ef1cc35f73af738ddb776571b74e5.zip
pfsense-15864861753ef1cc35f73af738ddb776571b74e5.tar.gz
Change the description field on sysctl tunables to be 'descr' and not 'desc' so they will gain CDATA protection. Ticket #320
Diffstat (limited to 'conf.default')
-rw-r--r--conf.default/config.xml52
1 files changed, 26 insertions, 26 deletions
diff --git a/conf.default/config.xml b/conf.default/config.xml
index 5c61aa7..00e7992 100644
--- a/conf.default/config.xml
+++ b/conf.default/config.xml
@@ -6,132 +6,132 @@
<theme>pfsense_ng</theme>
<sysctl>
<item>
- <desc>Set the ephemeral port range to be lower.</desc>
+ <descr>Set the ephemeral port range to be lower.</descr>
<tunable>net.inet.ip.portrange.first</tunable>
<value>default</value>
</item>
<item>
- <desc>Drop packets to closed TCP ports without returning a RST</desc>
+ <descr>Drop packets to closed TCP ports without returning a RST</descr>
<tunable>net.inet.tcp.blackhole</tunable>
<value>default</value>
</item>
<item>
- <desc>Do not send ICMP port unreachable messages for closed UDP ports</desc>
+ <descr>Do not send ICMP port unreachable messages for closed UDP ports</descr>
<tunable>net.inet.udp.blackhole</tunable>
<value>default</value>
</item>
<item>
- <desc>Randomize the ID field in IP packets (default is 0: sequential IP IDs)</desc>
+ <descr>Randomize the ID field in IP packets (default is 0: sequential IP IDs)</descr>
<tunable>net.inet.ip.random_id</tunable>
<value>default</value>
</item>
<item>
- <desc>Drop SYN-FIN packets (breaks RFC1379, but nobody uses it anyway)</desc>
+ <descr>Drop SYN-FIN packets (breaks RFC1379, but nobody uses it anyway)</descr>
<tunable>net.inet.tcp.drop_synfin</tunable>
<value>default</value>
</item>
<item>
- <desc>Enable sending IPv4 redirects</desc>
+ <descr>Enable sending IPv4 redirects</descr>
<tunable>net.inet.ip.redirect</tunable>
<value>default</value>
</item>
<item>
- <desc>Enable sending IPv6 redirects</desc>
+ <descr>Enable sending IPv6 redirects</descr>
<tunable>net.inet6.ip6.redirect</tunable>
<value>default</value>
</item>
<item>
- <desc>Generate SYN cookies for outbound SYN-ACK packets</desc>
+ <descr>Generate SYN cookies for outbound SYN-ACK packets</descr>
<tunable>net.inet.tcp.syncookies</tunable>
<value>default</value>
</item>
<item>
- <desc>Maximum incoming/outgoing TCP datagram size (receive)</desc>
+ <descr>Maximum incoming/outgoing TCP datagram size (receive)</descr>
<tunable>net.inet.tcp.recvspace</tunable>
<value>default</value>
</item>
<item>
- <desc>Maximum incoming/outgoing TCP datagram size (send)</desc>
+ <descr>Maximum incoming/outgoing TCP datagram size (send)</descr>
<tunable>net.inet.tcp.sendspace</tunable>
<value>default</value>
</item>
<item>
- <desc>IP Fastforwarding</desc>
+ <descr>IP Fastforwarding</descr>
<tunable>net.inet.ip.fastforwarding</tunable>
<value>default</value>
</item>
<item>
- <desc>Do not delay ACK to try and piggyback it onto a data packet</desc>
+ <descr>Do not delay ACK to try and piggyback it onto a data packet</descr>
<tunable>net.inet.tcp.delayed_ack</tunable>
<value>default</value>
</item>
<item>
- <desc>Maximum outgoing UDP datagram size</desc>
+ <descr>Maximum outgoing UDP datagram size</descr>
<tunable>net.inet.udp.maxdgram</tunable>
<value>default</value>
</item>
<item>
- <desc>Handling of non-IP packets which are not passed to pfil (see if_bridge(4))</desc>
+ <descr>Handling of non-IP packets which are not passed to pfil (see if_bridge(4))</descr>
<tunable>net.link.bridge.pfil_onlyip</tunable>
<value>default</value>
</item>
<item>
- <desc>Set to 0 to disable filtering on the incoming and outgoing member interfaces.</desc>
+ <descr>Set to 0 to disable filtering on the incoming and outgoing member interfaces.</descr>
<tunable>net.link.bridge.pfil_member</tunable>
<value>default</value>
</item>
<item>
- <desc>Set to 1 to enable filtering on the bridge interface</desc>
+ <descr>Set to 1 to enable filtering on the bridge interface</descr>
<tunable>net.link.bridge.pfil_bridge</tunable>
<value>default</value>
</item>
<item>
- <desc>Allow unprivileged access to tap(4) device nodes</desc>
+ <descr>Allow unprivileged access to tap(4) device nodes</descr>
<tunable>net.link.tap.user_open</tunable>
<value>default</value>
</item>
<item>
- <desc>Verbosity of the rndtest driver (0: do not display results on console)</desc>
+ <descr>Verbosity of the rndtest driver (0: do not display results on console)</descr>
<tunable>kern.rndtest.verbose</tunable>
<value>default</value>
</item>
<item>
- <desc>Randomize PID's (see src/sys/kern/kern_fork.c: sysctl_kern_randompid())</desc>
+ <descr>Randomize PID's (see src/sys/kern/kern_fork.c: sysctl_kern_randompid())</descr>
<tunable>kern.randompid</tunable>
<value>default</value>
</item>
<item>
- <desc>Maximum size of the IP input queue</desc>
+ <descr>Maximum size of the IP input queue</descr>
<tunable>net.inet.ip.intr_queue_maxlen</tunable>
<value>default</value>
</item>
<item>
- <desc>Disable CTRL+ALT+Delete reboot from keyboard.</desc>
+ <descr>Disable CTRL+ALT+Delete reboot from keyboard.</descr>
<tunable>hw.syscons.kbd_reboot</tunable>
<value>default</value>
</item>
<item>
- <desc>Enable TCP Inflight mode</desc>
+ <descr>Enable TCP Inflight mode</descr>
<tunable>net.inet.tcp.inflight.enable</tunable>
<value>default</value>
</item>
<item>
- <desc>Enable TCP extended debugging</desc>
+ <descr>Enable TCP extended debugging</descr>
<tunable>net.inet.tcp.log_debug</tunable>
<value>default</value>
</item>
<item>
- <desc>Set ICMP Limits</desc>
+ <descr>Set ICMP Limits</descr>
<tunable>net.inet.icmp.icmplim</tunable>
<value>default</value>
</item>
<item>
- <desc>TCP Offload Engine</desc>
+ <descr>TCP Offload Engine</descr>
<tunable>net.inet.tcp.tso</tunable>
<value>default</value>
</item>
<item>
- <desc>TCP Offload Engine - BCE</desc>
+ <descr>TCP Offload Engine - BCE</descr>
<tunable>hw.bce.tso_enable</tunable>
<value>default</value>
</item>
OpenPOWER on IntegriCloud