From bef76b45f480aa41209efdec09fc6bb0bfde7cbe Mon Sep 17 00:00:00 2001
From: Laurent Bercot
Date: Sat, 30 Sep 2023 05:40:04 +0000
Subject: Great Tcpserver Unification. Prepare for 2.6.0.0.
Signed-off-by: Laurent Bercot
---
doc/s6-tcpserver-access.html | 28 +++++++++-------------------
1 file changed, 9 insertions(+), 19 deletions(-)
(limited to 'doc/s6-tcpserver-access.html')
diff --git a/doc/s6-tcpserver-access.html b/doc/s6-tcpserver-access.html
index 15f4246..4ef3302 100644
--- a/doc/s6-tcpserver-access.html
+++ b/doc/s6-tcpserver-access.html
@@ -35,12 +35,8 @@ just like tcpwrappers' tcpd program.
- s6-tcpserver-access checks it is run under a UCSPI server tool
-such as s6-tcpserver,
- s6-tcpserver4 or
- s6-tcpserver6, or their
- stripped-down versions
- s6-tcpserver4d or
- s6-tcpserver6d.
+such as s6-tcpserver or its stripped-down version
+ s6-tcpserverd.
- It checks that the remote end of the connection fits the
accepted criteria defined by the database contained in rulesdir
or rulesfile. If the database tells it to reject the connection,
@@ -59,9 +55,11 @@ its parent:
- - PROTO: normally TCP, but could be anything else, like SSL.
+ - PROTO: normally TCP, but could be anything else.
+ - ${PROTO}LOCALIP: the local address of the socket.
+ - ${PROTO}LOCALPORT: the local port of the socket.
- ${PROTO}REMOTEIP: the remote address of the socket, i.e. the client's
-IP address. This can be IPv4 or (if the underlying skalibs supports it) IPv6.
+IP address.
- ${PROTO}REMOTEPORT: the remote port of the socket.
@@ -71,16 +69,14 @@ IP address. This can be IPv4 or (if the underlying skalibs supports it) IPv6.
- - ${PROTO}LOCALIP: set to the local address of the socket.
- - ${PROTO}LOCALPORT: set to the local port of the socket.
- - ${PROTO}REMOTEINFO: normally unset, but set to the information
-retrieved from ${PROTO}REMOTEIP via the IDENT protocol if the -r
-option has been given.
- ${PROTO}REMOTEHOST: set to the remote host name obtained from
a DNS lookup. Unset if the -H option has been given.
- ${PROTO}LOCALHOST: set to the local host name obtained from a
DNS lookup. If the -l option has been given, set to
localname instead.
+ - ${PROTO}REMOTEINFO: normally unset, but set to the information
+retrieved from ${PROTO}REMOTEIP via the IDENT protocol if the -r
+option has been given.
@@ -227,12 +223,6 @@ environment modifications, if any, s6-tcpserver-access execs into
Notes
- - s6-tcpserver-access works with
-s6-tcpserver4d, handling IPv4 addresses,
-as well as
-s6-tcpserver6d, handling IPv6 addresses.
-It will automatically detect the remote address type and match it against the
-correct subdatabase.
- s6-tcpserver-access may perform several DNS queries. For efficiency
purposes, it does as many of them as possible in parallel. However, if asked
to do an IDENT query, it does not parallelize it with DNS queries. Take
--
cgit v1.3.1