options.pptpd 4.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128
  1. ###############################################################################
  2. # $Id: options.pptpd,v 1.11 2005/12/29 01:21:09 quozl Exp $
  3. #
  4. # Sample Poptop PPP options file /etc/ppp/options.pptpd
  5. # Options used by PPP when a connection arrives from a client.
  6. # This file is pointed to by /etc/pptpd.conf option keyword.
  7. # Changes are effective on the next connection. See "man pppd".
  8. #
  9. # You are expected to change this file to suit your system. As
  10. # packaged, it requires PPP 2.4.2 and the kernel MPPE module.
  11. ###############################################################################
  12. # Authentication
  13. # Name of the local system for authentication purposes
  14. # (must match the second field in /etc/ppp/chap-secrets entries)
  15. name pptpd
  16. # Strip the domain prefix from the username before authentication.
  17. # (applies if you use pppd with chapms-strip-domain patch)
  18. #chapms-strip-domain
  19. # Encryption
  20. # (There have been multiple versions of PPP with encryption support,
  21. # choose with of the following sections you will use.)
  22. # BSD licensed ppp-2.4.2 upstream with MPPE only, kernel module ppp_mppe.o
  23. # {{{
  24. refuse-pap
  25. refuse-chap
  26. refuse-mschap
  27. # Require the peer to authenticate itself using MS-CHAPv2 [Microsoft
  28. # Challenge Handshake Authentication Protocol, Version 2] authentication.
  29. require-mschap-v2
  30. # Require MPPE 128-bit encryption
  31. # (note that MPPE requires the use of MSCHAP-V2 during authentication)
  32. require-mppe-128
  33. # }}}
  34. # OpenSSL licensed ppp-2.4.1 fork with MPPE only, kernel module mppe.o
  35. # {{{
  36. #-chap
  37. #-chapms
  38. # Require the peer to authenticate itself using MS-CHAPv2 [Microsoft
  39. # Challenge Handshake Authentication Protocol, Version 2] authentication.
  40. #+chapms-v2
  41. # Require MPPE encryption
  42. # (note that MPPE requires the use of MSCHAP-V2 during authentication)
  43. #mppe-40 # enable either 40-bit or 128-bit, not both
  44. #mppe-128
  45. #mppe-stateless
  46. # }}}
  47. # Network and Routing
  48. # If pppd is acting as a server for Microsoft Windows clients, this
  49. # option allows pppd to supply one or two DNS (Domain Name Server)
  50. # addresses to the clients. The first instance of this option
  51. # specifies the primary DNS address; the second instance (if given)
  52. # specifies the secondary DNS address.
  53. #ms-dns 10.0.0.1
  54. #ms-dns 10.0.0.2
  55. # If pppd is acting as a server for Microsoft Windows or "Samba"
  56. # clients, this option allows pppd to supply one or two WINS (Windows
  57. # Internet Name Services) server addresses to the clients. The first
  58. # instance of this option specifies the primary WINS address; the
  59. # second instance (if given) specifies the secondary WINS address.
  60. #ms-wins 10.0.0.3
  61. #ms-wins 10.0.0.4
  62. # Add an entry to this system's ARP [Address Resolution Protocol]
  63. # table with the IP address of the peer and the Ethernet address of this
  64. # system. This will have the effect of making the peer appear to other
  65. # systems to be on the local ethernet.
  66. # (you do not need this if your PPTP server is responsible for routing
  67. # packets to the clients -- James Cameron)
  68. proxyarp
  69. # Normally pptpd passes the IP address to pppd, but if pptpd has been
  70. # given the delegate option in pptpd.conf or the --delegate command line
  71. # option, then pppd will use chap-secrets or radius to allocate the
  72. # client IP address. The default local IP address used at the server
  73. # end is often the same as the address of the server. To override this,
  74. # specify the local IP address here.
  75. # (you must not use this unless you have used the delegate option)
  76. #10.8.0.100
  77. # Logging
  78. # Enable connection debugging facilities.
  79. # (see your syslog configuration for where pppd sends to)
  80. #debug
  81. # Print out all the option values which have been set.
  82. # (often requested by mailing list to verify options)
  83. #dump
  84. # Miscellaneous
  85. # Create a UUCP-style lock file for the pseudo-tty to ensure exclusive
  86. # access.
  87. lock
  88. # Disable BSD-Compress compression
  89. nobsdcomp
  90. # Disable Van Jacobson compression
  91. # (needed on some networks with Windows 9x/ME/XP clients, see posting to
  92. # poptop-server on 14th April 2005 by Pawel Pokrywka and followups,
  93. # http://marc.theaimsgroup.com/?t=111343175400006&r=1&w=2 )
  94. novj
  95. novjccomp
  96. # turn off logging to stderr, since this may be redirected to pptpd,
  97. # which may trigger a loopback
  98. nologfd
  99. # put plugins here
  100. # (putting them higher up may cause them to sent messages to the pty)