From 913b18e4d18c7deab0ffb7455d1c423d369cf39c Mon Sep 17 00:00:00 2001 From: Scott Ullrich Date: Sun, 14 Aug 2005 21:22:35 +0000 Subject: Only run padlock functions if bit is set --- etc/inc/vpn.inc | 20 +++++++++++--------- 1 file changed, 11 insertions(+), 9 deletions(-) (limited to 'etc/inc/vpn.inc') diff --git a/etc/inc/vpn.inc b/etc/inc/vpn.inc index 59b614e..764b779 100644 --- a/etc/inc/vpn.inc +++ b/etc/inc/vpn.inc @@ -87,15 +87,17 @@ function find_last_gif_device() { function vpn_ipsec_configure($ipchg = false) { global $config, $g; - if($g['booting'] == true) { - /* determine if we should load the via padlock module */ - $dmesg_boot = `cat /var/log/dmesg.boot | grep Features`; - if(stristr($dmesg_boot, "ACE") == true) { - echo "Enabling [VIA Padlock] ..."; - mwexec("/sbin/kldload padlock"); - mwexec("/sbin/sysctl net.inet.ipsec.crypto_support=1"); - mwexec("/usr/sbin/setkey -F;/usr/sbin/setkey -FP"); - echo " done."; + if(isset($config['system']['developer'])) { + if($g['booting'] == true) { + /* determine if we should load the via padlock module */ + $dmesg_boot = `cat /var/log/dmesg.boot | grep Features`; + if(stristr($dmesg_boot, "ACE") == true) { + echo "Enabling [VIA Padlock] ..."; + mwexec("/sbin/kldload padlock"); + mwexec("/sbin/sysctl net.inet.ipsec.crypto_support=1"); + mwexec("/usr/sbin/setkey -F;/usr/sbin/setkey -FP"); + echo " done."; + } } } -- cgit v1.1