Vault7: CIA Hacking Tools Revealed
Navigation: » Directory » Cocoon » Cocoon
Owner: User #71475
Pupa Configurations
tinc.conf configurations
Configuration | Configurable In Pupa | Custom in Pupa | Value | Notes |
---|---|---|---|---|
AddressFamily | ? | |||
AutoConnect | N | No | We will always autoconnect... | |
BindToAddress | N | No | - revisit | |
BindToInterface | N | No | - revisit | |
Broadcast | N | MST | How packets get between tincds | |
ConnectTo | Y | - | Variable number of ConnecTo's | |
DecrementTTL | N | No | Experimental | |
Device | N | PupaDevice | The device to use | |
DeviceType | N | - | - | |
DirectOnly | N | No | Turns off routing within the mesh | |
ECDSAPrivateKeyFile | N | Will have to take care of this separately | The private key will be patched in the binary | |
ExperimentalProtocol | N | Default (Yes) | ||
Forwarding | N | Internal | Forwarding is internal to tincd | |
Hostnames | N | No | ||
IFF_ONE_Queue | N | No | Linux Only | |
Interface | N | No | Not important to Pupa | |
KeyExpire | Y | Default is 3600 | Number of seconds keys last before they expire | |
ListenAddress | Y | - | Config is "address port", multiple are allowed | |
LocalDiscovery | N | False | ||
LocalDiscoveryAddress | N | - | ||
MACExpire | N | - | Only has affect when is switch | |
MaxConnectionBurst | N | 100 | ||
MaxTimeout | Y | 900 | ||
??? | Y | Need more timeout options | ||
Mode | N | router | ||
Name | Y | Will be autogenerated by cocoon | ||
PingInterval | Y | 60 | Defaults to 60 sec | |
PingTimeout | Y | 5 | Defaults to 5 sec | |
PriorityInheritence | N | No | (experimental) | |
PrivateKey | N | - | Obsolete | |
PrivateKeyFile | N | - | Obsolete | |
Proxy | N | removed | - | Not needed in Pupa |
ReplayWindow | N | 16 | Default is 16 | |
StrictSubnets | N | No | ||
TunnelServer | N | No | ||
UDPRecvBuf | N | Default from OS |
host file configurations
Configuration | Configurable In Pupa | Custom in Pupa | Value | Notes |
---|---|---|---|---|
Address | Auto | IP Address of host for ConnectTO | ||
Cipher | N | Blowfish | ||
ClampMSS | N | Yes | ||
CompressionLevel | Y | Through cocoon | ||
Digest | N | SHA256 | (default is SHA1) | |
IndirectData | N | Yes | Default is No | |
MACLength | N | Default (4) | NA | |
PMTU | Y | ?? - Through cocoon | Defaults to 1514 | |
PMTUDiscovery | Y | ?? - Through cocoon | Defaults to yes | |
Port | Y - Required for ConnectTo configurations | Defaults to 655 (meta connection) | ||
PublicKey | N | Obsolete | ||
PublicKeyFile | N | Obsolete | ||
Subnet | Y | Through cocoon | Can be multiple (includes weight) | |
TCPOnly | Y | Through cocoon (use a different configuration name) | Note - disable auto-detect for UDP | |
Weight | N | - | NA |
Previous versions:
| 1 |