Quoting Matthew Grant (matthewgra...@gmail.com): > Christian, > > The wording in the template was changed as the racoon-tool script has had a > major refresh, and I will be expanding and maintaining it in the future. > The previous wording was saying that it was deprecated as the NetBSD > ipsec-tools people did not like it.... I don't have access to that email > conversation, but the message had a considerable bias that does not reflect > the current state of affairs. The "direct" mode is pointed out clearly for > the purpose it serves, and is mentioned first. However, racoon is rather > uninformative in its log messages when it fails due to mis-configuration, > and it does not manage the SPD like openswan/strongswan, hence racoon-tool > perl script. > > OK, The only thing changing here is the content of the message. Any > variables, script logic is not being touched for stability reasons for > Wheezy freeze. I have checked the new racoon-tool (I am its original > author) for functionality carefully, and it is a lot better than the older > version that was not even working. There are no translations yet of the > debconf messages for this package as far as I can remember, so another > patch to clean up typos and make it clearer as Justin Rye may be warranted > if only just for the sake of getting the English correct and up to policy > standard, as this is an improvement on the status quo, and does not affect > install logic.
OK. So, do we agree on the attached debconf templates, or is there something I'm missing (I'm working on several packages at the same time, so it's hard to keep track and remember each and every bit of discussion with each and every maintainer..:-))
Template: racoon/config_mode Type: select __Choices: direct, racoon-tool Default: direct _Description: Configuration mode for racoon IKE daemon: Racoon can be configured either directly, by editing /etc/racoon/racoon.conf, or using the racoon-tool administrative front end. . Use of the "direct" method is strongly recommended if you want to use all the racoon examples on the Net, and if you want to use the full racoon feature set. You will have to directly edit /etc/racoon/racoon.conf and possibly manually set up the Security Policy Database via setkey. . Racoon-tool has been updated for racoon 0.8.0, and is for use in basic configuration setups. It gives the benefit of managing the SPD along with the IKE that strongSwan offers. IPv6, transport/tunnel mode (ESP/AH), PSK/X509 auth, and basic "anonymous" VPN server are supported. . More information is available in /usr/share/doc/racoon/README.Debian.
signature.asc
Description: Digital signature