pap-secrets revision 7c478bd95313f5f23a4c958a745db2134aa03244
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync#ident "%Z%%M% %I% %E% SMI"
d34409ad02ea0d28e08a6c4b089a412fdb3b4c9cvboxsync# Copyright 2005 Sun Microsystems, Inc. All rights reserved.
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# Use is subject to license terms.
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# CDDL HEADER START
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# The contents of this file are subject to the terms of the
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# Common Development and Distribution License, Version 1.0 only
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# (the "License"). You may not use this file except in compliance
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# with the License.
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# See the License for the specific language governing permissions
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# and limitations under the License.
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# When distributing Covered Code, include this CDDL HEADER in each
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# file and include the License file at usr/src/OPENSOLARIS.LICENSE.
82391de567696f10b21a762fde6a06fe3c266d28vboxsync# If applicable, add the following below this CDDL HEADER, with the
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# fields enclosed by brackets "[]" replaced with your own identifying
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# information: Portions Copyright [yyyy] [name of copyright owner]
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# CDDL HEADER END
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# Passwords for authentication using PAP (Password Authentication Protocol)
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# are placed here. Each line is a separate entry and consists of a list of
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# space or tab separated tokens.
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# client server password [IP addresses ["--" options]]
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# When authenticating to a peer (so-called "client mode;" as when dialing
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# out to an ISP), the "client" will be matched using the local name and
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# "server" will use the remote peer's name. PAP does not specify an
82391de567696f10b21a762fde6a06fe3c266d28vboxsync# authenticator name, so the "remotename <name>" option should be used.
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# Typically, the "user <name>" option is also to specify the local name.
069b9101fbd3b049610c5511b1cc9534d01ea472vboxsync# When authenticating a peer (so-called "server mode;" as when allowing
069b9101fbd3b049610c5511b1cc9534d01ea472vboxsync# dial-up access to this system), the remote peer's name is the "client"
43b53acc5ac57109e98b2ed413760cb030b81558vboxsync# and the local system name is the "server." In this case, the privileged
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# "name <name>" option is sometimes used to set the local name. The "user
43b53acc5ac57109e98b2ed413760cb030b81558vboxsync# <name>" option cannot be used. The remote peer's name comes from the PAP
43b53acc5ac57109e98b2ed413760cb030b81558vboxsync# messages the peer sends.
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# After the password, which may be a crypt(3c) encoded password when acting
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# as a server, a list of valid IP addresses for the peer appears. This
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# must be present when acting as a server. Usually, this is specified as
43b53acc5ac57109e98b2ed413760cb030b81558vboxsync# "*" and actual IP addresses are given in the options. If a given dial-in
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# peer has an allocated IP address ("static IP addressing"), then this
43b53acc5ac57109e98b2ed413760cb030b81558vboxsync# address may be given here. If there's exactly one address, then this will
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# be sent to the peer as a hint.
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# The entry may also have extra options after a -- token. These are
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# interpreted as privileged pppd options, and may be used to enable
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# proxyarp or other optional features.
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# This is provided for the "myisp" example; see peers/myisp.tmpl.
a3011b448b38c39a7222f2f1eb40c8349023f650vboxsync# myname myisp mypassword