Linux and UNIX Man Pages

Linux & Unix Commands - Search Man Pages

racoon-tool(8) [debian man page]

RACOON-TOOL(8)						      System Manager's Manual						    RACOON-TOOL(8)

NAME
racoon-tool - program to manage the racoon(8) IPSEC IKE daemon. SYNOPSIS
racoon-tool [-h] reload|restart|force-reload|start|stop racoon-tool [-h] sadflush|spdflush|saddump|spddump racoon-tool [-h] vpndown|vdown|vpnup|vup connection-name|all racoon-tool [-h] vpnreload|vreload connection-name|all racoon-tool [-h] vpnlist|vlist [connection-name|all] racoon-tool [-h] vpnmenu|vmenu [connection-name-regexp] racoon-tool [-h] racoonstart|racoonstop|rstart|rstop DESCRIPTION
This manual page documents briefly the racoon-tool command. racoon-tool(8) is a perl script that can be used to control the racoon(8) IKE daemon and the SPD database within the kernel via the setkey(8) command. Various operations that it can do are described below. You can also optionally choose not to use it via reconfiguring the racoon package using dpkg-reconfigure(8). OPTIONS
A summary of options are included below. -h Show summary of options. COMMANDS
start Start racoon(8), loading any needed modules, configuring the SPD, and generating a configuration from /etc/racoon/racoon-tool.conf (head) and following up with *.conf files from /etc/racoon/racoon-tool.conf.d/. stop Stop racoon(8) unloading any crypto/IPSEC modules, flushing the SAD and SPD. reload Regenerate configuration from /etc/racoon/racoon.conf, and /etc/racoon/racoon.conf.d/, HUP racoon(8) and reinitialise the SPD and SAD. restart|force-reload Perform a stop followed by a start sadflush Flush the SAD via setkey(8). spdflush Flush the SPD via setkey(8). saddump|dump Dump the SAD to screen via setkey(8), paginating via your pager. spddump Dump the SPD to screen via setkey(8), paginating via your pager. vpnup|vup connection-name|all Bring up the VPN connection(s). vpndown|vdown connection-name|all Take down the VPN connection(s). vpnreload|vreload connection-name|all Reload the VPN connection(s). vpnlist|vlist [connection-name|all] List the known VPN connections in /etc/racoon/racoon-tool.conf, etc. Can be used by a script or administrator to see if a VPN con- nection exists. vpnmenu|vmenu [connection-name-regexp] Start the VPN menu management mode. This displays the SPD, and you can shutdown VPNs from here. Latter on support will be added for checking status and reloading the chosen connection. racoonstart|rstart Start only the racoon(8) daemon. racoonstop|rstop Stop only the racoon(8) daemon. FILES
/etc/racoon/racoon-tool.conf - configuration file (head). /etc/racoon/racoon-tool.conf.d - configuration file segment directory read after the above. /var/lib/racoon/racoon.conf - generated racoon.conf SEE ALSO
racoon(8), racoon.conf(5), setkey(8), racoon-tool.conf(5). AUTHOR
This manual page was written by Matthew Grant <matthewgrant5@gmail.com>, for the Debian GNU/Linux system (but may be used by others). RACOON-TOOL(8)

Check Out this Related Man Page

RACOON(8)						    BSD System Manager's Manual 						 RACOON(8)

NAME
racoon -- IKE (ISAKMP/Oakley) key management daemon SYNOPSIS
racoon [-BdFv46] [-f configfile] [-l logfile] [-p isakmp-port] DESCRIPTION
racoon speaks IKE (ISAKMP/Oakley) key management protocol, to establish security association with other hosts. SPD (Security Policy Database) in the kernel usually triggers to start racoon. racoon usually sends all of informational messages, warnings and error messages to syslogd(8) with the facility LOG_DAEMON, the priority LOG_INFO. Debugging messages are sent with the priority LOG_DEBUG. You should config- ure syslog.conf(5) appropriately to see these messages. -B Install SA(s) from the file which is specified in racoon.conf(5). -d Increase the debug level. Multiple -d will increase the debug level even more. -F Run racoon in the foreground. -f configfile Use configfile as the configuration file instead of the default. -l logfile Use logfile as the logging file instead of syslogd(8). -p isakmp-port Listen to ISAKMP key exchange on port isakmp-port instead of the default port number, 500. -v The flag causes the packet dump be more verbose, with higher debugging level. -4 -6 Specifies the default address family for the sockets. racoon assumes the presence of kernel random number device rnd(4) at /dev/urandom. Informational messages are labeled info, and debugging messages are labeled debug. You have to configure syslog.conf(5) if you want to see them in a logging file. RETURN VALUES
The command exits with 0 on success, and non-zero on errors. FILES
/usr/local/v6/etc/racoon.conf default configuration file. SEE ALSO
ipsec(4), racoon.conf(5), syslog.conf(5), setkey(8), syslogd(8) HISTORY
The racoon command first appeared in ``YIPS'' Yokogawa IPsec implementation. KAME
November 20, 2000 KAME
Man Page