summaryrefslogtreecommitdiffstats
path: root/usr
diff options
context:
space:
mode:
authorjim-p <jimp@pfsense.org>2012-09-12 12:18:00 -0400
committerjim-p <jimp@pfsense.org>2012-09-12 12:18:00 -0400
commit0888bdfa7b719985be1b0fdf06b0e2e4d0cb3a2f (patch)
tree2cb21d0865812cb36f937a92cadf493e023d9e6d /usr
parentd587bbf911df9f060bc52cf667f5e1427b2f63ad (diff)
downloadpfsense-0888bdfa7b719985be1b0fdf06b0e2e4d0cb3a2f.zip
pfsense-0888bdfa7b719985be1b0fdf06b0e2e4d0cb3a2f.tar.gz
Print a nice large warning on the PPTP page about it no longer being considered secure.
Diffstat (limited to 'usr')
-rwxr-xr-xusr/local/www/vpn_pptp.php1
1 files changed, 1 insertions, 0 deletions
diff --git a/usr/local/www/vpn_pptp.php b/usr/local/www/vpn_pptp.php
index 48d0354..9910d62 100755
--- a/usr/local/www/vpn_pptp.php
+++ b/usr/local/www/vpn_pptp.php
@@ -293,6 +293,7 @@ function enable_change(enable_over) {
<form action="vpn_pptp.php" method="post" name="iform" id="iform">
<?php if ($input_errors) print_input_errors($input_errors); ?>
<?php if ($savemsg) print_info_box($savemsg); ?>
+<?php print_info_box(gettext("PPTP is no longer considered a secure VPN technology because it relies upon MS-CHAPv2 which has been compromised. If you continue to use PPTP be aware that intercepted traffic can be decrypted by a third party, so it should be considered unencrypted. We advise migrating to another VPN type such as OpenVPN or IPsec.<br/><br/><a href=\"https://www.cloudcracker.com/blog/2012/07/29/cracking-ms-chap-v2/\">Read More</a>")); ?>
<table width="100%" border="0" cellpadding="0" cellspacing="0">
<tr><td class="tabnavtbl">
<?php
OpenPOWER on IntegriCloud