summaryrefslogtreecommitdiffstats
path: root/usr/local
diff options
context:
space:
mode:
authorjim-p <jimp@pfsense.org>2012-08-02 12:29:16 -0400
committerjim-p <jimp@pfsense.org>2012-08-02 12:38:29 -0400
commit665340db1142980ca40d49b9dddf1b07e07da3b8 (patch)
tree506f7bbbb6100e692a1ced4481f4be4c1a9346c6 /usr/local
parent919d450395b1cc5f7267c40f7ccc4c64fc27a749 (diff)
downloadpfsense-665340db1142980ca40d49b9dddf1b07e07da3b8.zip
pfsense-665340db1142980ca40d49b9dddf1b07e07da3b8.tar.gz
Activate more Hash, DH, and PFS options that are available in racoon now. Note that SHA256-512 are RFC4868 compliant in FreeBSD, may break with other incompatible stacks.
Diffstat (limited to 'usr/local')
-rw-r--r--usr/local/www/vpn_ipsec_phase1.php6
-rw-r--r--usr/local/www/vpn_ipsec_phase2.php6
2 files changed, 2 insertions, 10 deletions
diff --git a/usr/local/www/vpn_ipsec_phase1.php b/usr/local/www/vpn_ipsec_phase1.php
index ae62a47..9411b7d 100644
--- a/usr/local/www/vpn_ipsec_phase1.php
+++ b/usr/local/www/vpn_ipsec_phase1.php
@@ -753,16 +753,14 @@ function dpdchkbox_change() {
<td width="22%" valign="top" class="vncellreq"><?=gettext("DH key group"); ?></td>
<td width="78%" class="vtable">
<select name="dhgroup" class="formselect">
- <?php $keygroups = explode(" ", "1 2 5"); foreach ($keygroups as $keygroup): ?>
+ <?php foreach ($p1_dhgroups as $keygroup => $keygroupname): ?>
<option value="<?=$keygroup;?>" <?php if ($keygroup == $pconfig['dhgroup']) echo "selected"; ?>>
- <?=htmlspecialchars($keygroup);?>
+ <?=htmlspecialchars($keygroupname);?>
</option>
<?php endforeach; ?>
</select>
<br>
<span class="vexpl">
- <em><?=gettext("1 = 768 bit, 2 = 1024 bit, 5 = 1536 bit"); ?></em>
- <br>
<?=gettext("Must match the setting chosen on the remote side"); ?>.
</span>
</td>
diff --git a/usr/local/www/vpn_ipsec_phase2.php b/usr/local/www/vpn_ipsec_phase2.php
index 2bfd905..74d1359 100644
--- a/usr/local/www/vpn_ipsec_phase2.php
+++ b/usr/local/www/vpn_ipsec_phase2.php
@@ -624,12 +624,6 @@ function change_protocol() {
<?php endforeach; ?>
</select>
<br>
- <span class="vexpl">
- <em>
- <?=gettext("1 = 768 bit, 2 = 1024 bit, 5 = 1536 bit"); ?>
- </em>
- </span>
-
<?php else: ?>
<select class="formselect" disabled>
OpenPOWER on IntegriCloud