ViewVC Help
View File | Revision Log | Show Annotations | View Changeset | Root Listing
root/svn/ircd-hybrid/branches/8.2.x/doc/reference.conf
Revision: 4123
Committed: Tue Jul 1 17:26:06 2014 UTC (12 years ago) by michael
File size: 38663 byte(s)
Log Message:
- Update reference.conf

File Contents

# User Rev Content
1 michael 2962 /*
2     * This is an example configuration file for ircd-hybrid
3 db 897 *
4 michael 2962 * Copyright (c) 2000-2014 ircd-hybrid development team
5 db 897 *
6     * $Id$
7     */
8    
9 michael 1824 /*
10     * ########################################################################
11 michael 2322 * IMPORTANT NOTE:
12 db 897 *
13 michael 3883 * auth {} blocks MUST be specified in order of precedence. The first one
14     * that matches a user will be used. So place spoofs first, then specials,
15 db 897 * then general access.
16 michael 1824 * ########################################################################
17 db 897 *
18     * Shell style (#), C++ style (//) and C style comments are supported.
19     *
20     * Files may be included by either:
21     * .include "filename"
22     * .include <filename>
23     *
24     * Times/durations are written as:
25     * 12 hours 30 minutes 1 second
26 michael 2841 *
27 db 897 * Valid units of time:
28 michael 1783 * year, month, week, day, hour, minute, second
29 db 897 *
30     * Valid units of size:
31     * megabyte/mbyte/mb, kilobyte/kbyte/kb, byte
32     *
33 michael 2305 * Sizes and times may be singular or plural.
34     */
35 db 897
36 michael 1824
37 db 897 /*
38 michael 1336 * serverinfo {}: contains information about the server
39 db 897 */
40     serverinfo {
41     /*
42 michael 2345 * name: the name of this server. This cannot be changed at runtime.
43 db 897 */
44     name = "hades.arpa";
45    
46     /*
47 michael 2345 * sid: a server's unique ID. This is three characters long and must
48     * be in the form [0-9][A-Z0-9][A-Z0-9]. The first character must be
49 db 897 * a digit, followed by 2 alpha-numerical letters.
50 michael 2345 *
51 michael 1863 * NOTE: The letters must be capitalized. This cannot be changed at runtime.
52 db 897 */
53 michael 1817 sid = "0HY";
54 db 897
55     /*
56 michael 1533 * description: the description of the server.
57 db 897 */
58 michael 1534 description = "ircd-hybrid test server";
59 db 897
60     /*
61     * network info: the name and description of the network this server
62 michael 1863 * is on. Shown in the 005 reply and used with serverhiding.
63 db 897 */
64     network_name = "MyNet";
65     network_desc = "This is My Network";
66    
67     /*
68     * hub: allow this server to act as a hub and have multiple servers
69     * connected to it.
70     */
71     hub = no;
72    
73     /*
74     * vhost: the IP to bind to when we connect outward to ipv4 servers.
75 michael 959 * This should be an ipv4 IP only, or "*" for INADDR_ANY.
76 db 897 */
77 michael 2171 # vhost = "192.169.0.1";
78 db 897
79     /*
80 michael 2322 * vhost6: the address to bind to when we make outgoing connections
81     * to IPv6 servers. This should be an IPv6 address, or "*" for INADDR_ANY.
82 db 897 */
83 michael 2171 # vhost6 = "3ffe:80e8:546::2";
84 db 897
85 michael 1863 /* max_clients: the maximum number of clients allowed to connect. */
86 db 897 max_clients = 512;
87    
88     /*
89 michael 1751 * max_nick_length: only applies to local clients. Must be in the
90     * range of 9 to 30. Default is 9 if nothing else is specified.
91     */
92     max_nick_length = 9;
93    
94     /*
95     * max_topic_length: only applies to topics set by local clients.
96     * Must be in the range of 80 to 300. Default is 80 if nothing
97     * else is specified.
98     */
99     max_topic_length = 160;
100    
101     /*
102 michael 2322 * rsa_private_key_file: the path to the file containing the
103 michael 2844 * RSA key.
104 db 897 *
105 michael 2468 * Example commands to store a 2048 bit RSA key in rsa.key:
106 michael 2308 *
107 michael 1229 * openssl genrsa -out rsa.key 2048
108 michael 2464 * chown <ircd-user>.<ircd.group> rsa.key
109 db 897 * chmod 0600 rsa.key
110     */
111 michael 2171 # rsa_private_key_file = "/usr/local/ircd/etc/rsa.key";
112 db 897
113     /*
114 michael 951 * ssl_certificate_file: the path to the file containing our
115 michael 2322 * SSL certificate for encrypted client connection.
116 db 897 *
117     * This assumes your private RSA key is stored in rsa.key. You
118 michael 1863 * MUST have an RSA key in order to generate the certificate.
119 db 897 *
120 michael 1863 * Example command:
121     *
122 db 897 * openssl req -new -days 365 -x509 -key rsa.key -out cert.pem
123     *
124     * See http://www.openssl.org/docs/HOWTO/certificates.txt
125     *
126     * Please use the following values when generating the cert
127     *
128     * Organization Name: Network Name
129     * Organization Unit Name: changme.someirc.net
130     * Common Name: irc.someirc.net
131     * E-mail: you@domain.com
132     */
133 michael 2171 # ssl_certificate_file = "/usr/local/ircd/etc/cert.pem";
134 michael 967
135 michael 1351 /*
136     * ssl_dh_param_file:
137     *
138     * Path to the PEM encoded Diffie-Hellman parameter file.
139 michael 2322 * DH parameters are required when using ciphers with EDH
140     * (ephemeral Diffie-Hellman) key exchange.
141 michael 1351 *
142     * A DH parameter file can be created by running:
143     *
144 michael 3013 * openssl dhparam -out dhparam.pem 2048
145 michael 1351 *
146 michael 1523 * Prime size must be at least 1024 bits. Further information
147     * regarding specific OpenSSL dhparam command-line options
148     * can be found in the OpenSSL manual.
149 michael 1351 */
150 michael 2171 # ssl_dh_param_file = "/usr/local/ircd/etc/dhparam.pem";
151 michael 1306
152 michael 967 /*
153 michael 4071 * ssl_dh_elliptic_curve:
154     *
155     * Defines the curve to use for the Elliptic Curve Diffie-Hellman (ECDH) algorithm.
156     *
157     * A list of supported curves by OpenSSL can be obtained by running:
158     *
159     * openssl ecparam -list_curves
160     */
161     # ssl_dh_elliptic_curve = "secp521r1";
162    
163     /*
164 michael 1306 * ssl_cipher_list:
165     *
166 michael 2322 * List of ciphers to support on _this_ server. Can be used to
167 michael 1524 * enforce specific ciphers for incoming SSL/TLS connections.
168 michael 2322 * If a client (which also includes incoming server connections) is not
169     * capable of using any of the ciphers listed here, the connection will
170     * simply be rejected.
171 michael 1550 *
172 michael 2322 * A list of supported ciphers by OpenSSL can be obtained by running:
173 michael 1306 *
174     * openssl ciphers -ssl3 -tls1 -v
175     *
176 michael 1524 * Multiple ciphers are separated by colons. The order of preference is
177     * from left to right.
178 michael 1306 */
179 michael 3015 # ssl_cipher_list = "ECDHE-RSA-AES256-GCM-SHA384:DHE-RSA-AES256-GCM-SHA384:DHE-RSA-AES256-SHA:AES256-SHA";
180 michael 1306
181     /*
182 michael 4115 * ssl_message_digest_algorithm:
183     *
184     * Defines what cryptographic hash function to use for generating fingerprint
185     * hashes of X.509 certificates.
186 michael 4123 * Default is SHA-256 if nothing else is specified.
187 michael 4115 *
188 michael 4123 * A list of supported message digest algorithms by OpenSSL can be obtained by running:
189 michael 4115 *
190     * openssl list-message-digest-algorithms
191     */
192     # ssl_message_digest_algorithm = "sha256";
193    
194     /*
195 michael 1351 * ssl_server_method:
196     * ssl_client_method:
197     *
198 michael 1412 * SSL/TLS methods we provide for incoming (server method) and
199     * outgoing (client method) SSL/TLS connections.
200 michael 967 * This can be either sslv3 for SSLv3, and/or tlsv1 for TLSv1.
201     */
202 michael 2171 # ssl_server_method = tlsv1, sslv3;
203     # ssl_client_method = tlsv1;
204 db 897 };
205    
206     /*
207 michael 1229 * admin {}: contains admin information about the server
208 db 897 */
209     admin {
210     name = "Smurf target";
211     description = "Main Server Administrator";
212     email = "<syn@packets.r.us>";
213     };
214    
215     /*
216 michael 1229 * class {}: contains information about classes for users
217 db 897 */
218     class {
219 michael 1863 /* name: the name of the class. */
220 db 897 name = "users";
221    
222     /*
223     * ping_time: how often a client must reply to a PING from the
224     * server before they are dropped.
225     */
226     ping_time = 90 seconds;
227    
228     /*
229     * number_per_ip: how many local users are allowed to connect
230 michael 2322 * from a single IP address (optional)
231 db 897 */
232     number_per_ip = 2;
233    
234     /*
235     * max_local: how many local users are allowed to connect
236 michael 2322 * from a single ident@host (optional)
237 db 897 */
238     max_local = 2;
239    
240     /*
241     * max_global: network-wide limit of users per ident@host (optional)
242     */
243     max_global = 10;
244    
245     /*
246     * max_number: the maximum number of users allowed in this class (optional)
247     */
248     max_number = 100;
249    
250     /*
251     * the following lines are optional and allow you to define
252 michael 1863 * how many users can connect from one /NN subnet.
253 db 897 */
254     cidr_bitlen_ipv4 = 24;
255     cidr_bitlen_ipv6 = 120;
256     number_per_cidr = 16;
257    
258     /*
259 michael 2322 * sendq: the amount of data allowed in a client's send queue before
260 db 897 * they are dropped.
261     */
262     sendq = 100 kbytes;
263 michael 1516
264     /*
265 michael 2322 * recvq: the amount of data allowed in a client's receive queue before
266 michael 1541 * they are dropped for flooding. Defaults to 2560 if the chosen
267 michael 1516 * value isn't within the range of 512 to 8000.
268     */
269     recvq = 2560 bytes;
270 db 897 };
271    
272     class {
273     name = "opers";
274     ping_time = 90 seconds;
275     number_per_ip = 10;
276     max_number = 100;
277 michael 1428 sendq = 100 kbytes;
278 michael 1783
279 michael 3934
280 michael 1783 /*
281 michael 3934 * max_channels: maximum number of channels users in this class can join.
282     */
283     max_channels = 60;
284    
285     /*
286 michael 1863 * min_idle: minimum idle time that is shown in /whois.
287 michael 1783 */
288     min_idle = 3 hours;
289    
290     /*
291 michael 1863 * max_idle: maximum idle time that is shown in /whois.
292 michael 1783 */
293     max_idle = 8 hours;
294    
295     /*
296     * flags:
297     *
298 michael 2322 * random_idle - a fake idle time is set randomly between
299     * min_idle and max_idle
300     * hide_idle_from_opers - the fake idle time will also be shown to operators
301 michael 1783 */
302     flags = random_idle, hide_idle_from_opers;
303 db 897 };
304    
305     class {
306     name = "server";
307     ping_time = 90 seconds;
308    
309     /*
310 michael 1863 * connectfreq: only used in server classes. Specifies the delay
311 db 897 * between autoconnecting to servers.
312     */
313     connectfreq = 5 minutes;
314    
315 michael 2322 /* max number: the number of servers to autoconnect to. */
316 db 897 max_number = 1;
317    
318 michael 1863 /* sendq: servers need a higher sendq as they send more data. */
319 db 897 sendq = 2 megabytes;
320     };
321    
322     /*
323 michael 2322 * motd {}: Allows the display of a different MOTD to a client
324 michael 2210 * depending on its origin. Applies to local users only.
325 michael 2150 */
326     motd {
327     /*
328     * mask: multiple mask entries are permitted. Mask can either be
329 michael 2993 * a class name or a hostname. CIDR is supported.
330 michael 2150 */
331     mask = "*.at";
332     mask = "*.de";
333     mask = "*.ch";
334    
335     /*
336 michael 2152 * file: path to the actual motd file.
337 michael 2150 */
338     file = "/usr/local/ircd/etc/german.motd";
339     };
340    
341     /*
342 michael 1229 * listen {}: contains information about the ports ircd listens on
343 db 897 */
344     listen {
345     /*
346 michael 3448 * port: the port to listen on. If no host is specified earlier
347     * in the listen {} block, it will listen on all available IPs.
348 db 897 *
349 michael 2328 * Ports are separated by commas; a range may be specified using ".."
350 db 897 */
351 michael 2345
352 michael 2322 /* port: listen on all available IP addresses, ports 6665 to 6669 */
353 db 897 port = 6665 .. 6669;
354    
355     /*
356 michael 2322 * Listen on 192.168.0.1/6697 with SSL enabled and hidden from STATS P
357 db 897 * unless you are an administrator.
358     *
359 michael 2322 * NOTE: The "flags" directive always has to come before "port".
360 michael 951 *
361     * Currently available flags are:
362     *
363 michael 1679 * ssl - Port may only accept TLS/SSL connections
364 michael 951 * server - Only server connections are permitted
365 michael 1229 * hidden - Port is hidden from /stats P, unless you're an admin
366 db 897 */
367     flags = hidden, ssl;
368     host = "192.168.0.1";
369     port = 6697;
370    
371     /*
372 michael 2322 * host: set a specific IP address/host to listen on using the
373     * subsequent port definitions. This may be IPv4 or IPv6.
374 db 897 */
375     host = "1.2.3.4";
376     port = 7000, 7001;
377    
378     host = "3ffe:1234:a:b:c::d";
379     port = 7002;
380     };
381    
382     /*
383 michael 1229 * auth {}: allow users to connect to the ircd
384 db 897 */
385     auth {
386     /*
387 michael 1541 * user: the user@host allowed to connect. Multiple user
388 michael 2322 * lines are permitted within each auth block.
389 db 897 */
390     user = "*@172.16.0.0/12";
391     user = "*test@123D:B567:*";
392    
393     /* password: an optional password that is required to use this block */
394     password = "letmein";
395    
396     /*
397     * encrypted: controls whether the auth password above has been
398     * encrypted.
399     */
400     encrypted = yes;
401    
402     /*
403 michael 2322 * spoof: fake the user's host to this. This is free-form, just do
404 michael 1863 * everyone a favor and don't abuse it. ('=' prefix on /stats I)
405 db 897 */
406     spoof = "I.still.hate.packets";
407    
408     /* class: the class the user is placed in */
409     class = "opers";
410    
411     /*
412 michael 1229 * need_password - don't allow users who haven't supplied the correct
413     * password to connect using another auth{} block
414     * ('&' prefix on /stats I if disabled)
415     * need_ident - require the user to have identd to connect ('+' prefix on /stats I)
416     * spoof_notice - enable spoofing notification to admins
417     * exceed_limit - allow a user to exceed class limits ('>' prefix on /stats I)
418     * kline_exempt - exempt this user from k/glines ('^' prefix on /stats I)
419     * gline_exempt - exempt this user from glines ('_' prefix on /stats I)
420     * resv_exempt - exempt this user from resvs ('$' prefix on /stats I)
421     * no_tilde - remove ~ from a user with no ident ('-' prefix on /stats I)
422     * can_flood - allow this user to exceed flood limits ('|' prefix on /stats I)
423 michael 1850 * webirc - enables WEBIRC authentication for web-based clients such as Mibbit
424 michael 1715 * ('<' prefix on /stats I)
425 db 897 */
426     flags = need_password, spoof_notice, exceed_limit, kline_exempt,
427 michael 1176 gline_exempt, resv_exempt, no_tilde, can_flood;
428 db 897 };
429    
430     auth {
431     /*
432 michael 1863 * redirect: the server and port to redirect a user to. A user does not
433 michael 2322 * have to obey the redirection; the ircd just suggests an alternative
434 db 897 * server for them.
435     */
436     redirserv = "this.is.not.a.real.server";
437     redirport = 6667;
438 michael 2345
439 db 897 user = "*.server";
440    
441     /* class: a class is required even though it is not used */
442     class = "users";
443     };
444    
445     auth {
446     user = "*@*";
447     class = "users";
448     flags = need_ident;
449     };
450    
451     /*
452 michael 1229 * operator {}: defines ircd operators
453 db 897 */
454     operator {
455     /* name: the name of the oper */
456 michael 1537 name = "sheep";
457 db 897
458     /*
459 michael 3448 * user: the user@host required for this operator. Multiple user
460 michael 3858 * lines are permitted within each operator block.
461 db 897 */
462 michael 1537 user = "*sheep@192.168.0.0/16";
463 michael 1285 user = "*@127.0.0.0/8";
464 db 897
465     /*
466 michael 1863 * password: the password required to oper. By default this will
467 michael 1070 * need to be encrypted by using the provided mkpasswd tool.
468     * Several password hash algorithms are available depending
469     * on your system's crypt() implementation. For example, a modern
470 michael 2322 * glibc already has support for the SHA-256/512 and MD5 encryption
471 michael 1070 * algorithms.
472 db 897 */
473 michael 1070 password = "$5$x5zof8qe.Yc7/bPp$5zIg1Le2Lsgd4CvOjaD20pr5PmcfD7ha/9b2.TaUyG4";
474 db 897
475     /*
476     * encrypted: controls whether the oper password above has been
477 michael 1070 * encrypted.
478 db 897 */
479     encrypted = yes;
480    
481     /*
482     * rsa_public_key_file: the public key for this oper when using Challenge.
483 michael 2841 * A password should not be defined when this is used; see
484 db 897 * doc/challenge.txt for more information.
485     */
486     # rsa_public_key_file = "/usr/local/ircd/etc/oper.pub";
487    
488 michael 2228 /*
489 michael 2244 * ssl_certificate_fingerprint: enhances security by additionally checking
490     * the oper's client certificate fingerprint against the specified
491     * fingerprint below.
492 michael 2236 *
493     * Hint: your users can use the following command to obtain a SHA-256 hash
494     * of their ssl certificate:
495     *
496     * openssl x509 -sha256 -noout -fingerprint -in cert.pem | sed -e 's/^.*=//;s/://g'
497 michael 2228 */
498 michael 2244 # ssl_certificate_fingerprint = "4C62287BA6776A89CD4F8FF10A62FFB35E79319F51AF6C62C674984974FCCB1D";
499 michael 2228
500 michael 2248 /*
501     * ssl_connection_required: client must be connected over SSL/TLS
502     * in order to be able to use this oper{} block.
503 michael 2279 * Default is 'no' if nothing else is specified.
504 michael 2248 */
505     ssl_connection_required = no;
506    
507 db 897 /* class: the class the oper joins when they successfully /oper */
508     class = "opers";
509    
510     /*
511 michael 2322 * umodes: the default usermodes opers get when they /oper. If defined,
512 db 897 * it will override oper_umodes settings in general {}.
513     * Available usermodes:
514     *
515     * +b - bots - See bot and drone flooding notices
516     * +c - cconn - Client connection/quit notices
517     * +D - deaf - Don't receive channel messages
518     * +d - debug - See debugging notices
519 michael 1818 * +e - external - See remote server connection and split notices
520 michael 1976 * +F - farconnect - Remote client connection/quit notices
521 michael 1426 * +f - full - See auth{} block full notices
522 db 897 * +G - softcallerid - Server Side Ignore for users not on your channels
523     * +g - callerid - Server Side Ignore (for privmsgs etc)
524 michael 1294 * +H - hidden - Hides operator status to other users
525 michael 2267 * +i - invisible - Not shown in NAMES or WHO unless you share a channel
526 michael 1290 * +j - rej - See rejected client notices
527 db 897 * +k - skill - See server generated KILL messages
528     * +l - locops - See LOCOPS messages
529     * +n - nchange - See client nick changes
530 michael 3515 * +p - hidechans - Hides channel list in WHOIS
531 michael 3507 * +q - hideidle - Hides idle and signon time in WHOIS
532 michael 1855 * +R - nononreg - Only receive private messages from registered clients
533 db 897 * +s - servnotice - See general server notices
534     * +u - unauth - See unauthorized client notices
535     * +w - wallop - See server generated WALLOPS
536     * +y - spy - See LINKS, STATS, TRACE notices etc.
537     */
538 michael 3867 umodes = locops, servnotice, wallop;
539 db 897
540     /*
541 michael 2305 * privileges: controls the activities and commands an oper is
542 michael 1228 * allowed to do on the server. All options default to no.
543 db 897 * Available options:
544     *
545 michael 2012 * module - allows MODULE
546 michael 2018 * connect - allows local CONNECT | ('P' flag)
547     * connect:remote - allows remote CONNECT | ('Q' flag)
548     * squit - allows local SQUIT | ('R' flag)
549     * squit:remote - allows remote SQUIT | ('S' flag)
550     * kill - allows to KILL local clients | ('N' flag)
551     * kill:remote - allows remote users to be /KILL'd | ('O' flag)
552     * remoteban - allows remote KLINE/UNKLINE | ('B' flag)
553     * dline - allows DLINE |
554     * undline - allows UNDLINE |
555     * kline - allows KLINE | ('K' flag)
556     * unkline - allows UNKLINE | ('U' flag)
557     * gline - allows GLINE | ('G' flag)
558     * xline - allows XLINE | ('X' flag)
559 michael 2852 * unxline - allows UNXLINE |
560 michael 2038 * locops - allows LOCOPS |
561 michael 2018 * globops - allows GLOBOPS |
562 michael 2038 * wallops - allows WALLOPS |
563 michael 2018 * rehash - allows oper to REHASH config | ('H' flag)
564     * die - allows DIE | ('D' flag)
565     * restart - allows RESTART |
566     * set - allows SET |
567     * admin - gives administrator privileges | ('A' flag)
568 db 897 */
569 michael 2012 flags = kill, kill:remote, connect, connect:remote, kline, unkline,
570 michael 3867 xline, globops, restart, die, rehash, admin, module;
571 db 897 };
572    
573 michael 1552 /*
574 michael 2322 * service {}: specifies a server which may act as a network service
575 michael 1552 *
576 michael 2322 * NOTE: it is very important that every server on the network
577 michael 1552 * has the same service{} block.
578     */
579 michael 1157 service {
580     name = "service.someserver";
581 michael 1302 name = "stats.someserver";
582 michael 1157 };
583    
584 db 897 /*
585 michael 2322 * connect {}: define a server to connect to
586 db 897 */
587     connect {
588     /* name: the name of the server */
589     name = "irc.uplink.com";
590    
591     /*
592 michael 2322 * host: the host or IP address to connect to. If a hostname is used it
593     * must match the reverse DNS of the server.
594 db 897 */
595     host = "192.168.0.1";
596    
597     /*
598 michael 2322 * vhost: the IP address to bind to when making outgoing connections to
599     * servers.
600 db 897 * serverinfo::vhost and serverinfo::vhost6 will be overridden
601     * by this directive.
602     */
603     vhost = "192.168.0.2";
604    
605     /*
606 michael 2322 * passwords: the passwords to send (OLD C:) and accept (OLD N:).
607     * The remote server will have these passwords swapped.
608 db 897 */
609     send_password = "password";
610     accept_password = "anotherpassword";
611    
612     /*
613     * encrypted: controls whether the accept_password above has been
614 michael 1070 * encrypted.
615 db 897 */
616     encrypted = no;
617    
618     /* port: the port to connect to this server on */
619     port = 6666;
620    
621     /*
622 michael 1863 * hub_mask: the mask of servers that this server may hub. Multiple
623     * entries are permitted.
624 db 897 */
625     hub_mask = "*";
626    
627     /*
628 michael 1863 * leaf_mask: the mask of servers this server may not hub. Multiple
629     * entries are permitted. Useful for forbidding EU -> US -> EU routes.
630 db 897 */
631     # leaf_mask = "*.uk";
632    
633     /* class: the class this server is in */
634     class = "server";
635    
636 michael 1524 /*
637     * ssl_cipher_list:
638     *
639     * List of ciphers that the server we are connecting to must support.
640 michael 2322 * If the server is not capable of using any of the ciphers listed below,
641     * the connection will simply be rejected.
642 michael 1524 * Can be used to enforce stronger ciphers, even though this option
643     * is not necessarily required to establish a SSL/TLS connection.
644     *
645     * Multiple ciphers are separated by colons. The order of preference
646     * is from left to right.
647     */
648 michael 3059 # ssl_cipher_list = "ECDHE-RSA-AES256-GCM-SHA384:DHE-RSA-AES256-GCM-SHA384:DHE-RSA-AES256-SHA:AES256-SHA";
649 michael 1306
650 db 897 /*
651 michael 2244 * ssl_certificate_fingerprint: enhances security by additionally checking
652     * the server's client certificate fingerprint against the specified
653     * fingerprint below.
654 michael 2228 */
655 michael 2244 # ssl_certificate_fingerprint = "4C62287BA6776A89CD4F8FF10A62FFB35E79319F51AF6C62C674984974FCCB1D";
656 michael 2228
657     /*
658 michael 1229 * autoconn - controls whether we autoconnect to this server or not,
659     * dependent on class limits. By default, this is disabled.
660 michael 1303 * ssl - Initiates a TLS/SSL connection.
661 db 897 */
662 michael 1519 # flags = autoconn, ssl;
663 db 897 };
664    
665     connect {
666 michael 1285 name = "ipv6.some.server";
667 db 897 host = "3ffd:dead:beef::1";
668     send_password = "password";
669     accept_password = "password";
670     port = 6666;
671    
672     /*
673     * aftype: controls whether the connection uses "ipv4" or "ipv6".
674     * Default is ipv4.
675     */
676     aftype = ipv6;
677     class = "server";
678     };
679    
680     /*
681     * cluster {}: servers that share klines/unkline/xline/unxline/resv/unresv/locops
682 michael 1229 * automatically
683 db 897 */
684     cluster {
685     /*
686 michael 2322 * name: the server to share with; this can take wildcards
687 db 897 *
688 michael 2322 * NOTE: only local actions will be clustered, meaning that if
689 db 897 * the server receives a shared kline/unkline/etc, it
690     * will not be propagated to clustered servers.
691     *
692     * Remote servers are not necessarily required to accept
693     * clustered lines, they need a shared{} for *THIS* server
694     * in order to accept them.
695     */
696     name = "*.arpa";
697    
698     /*
699 michael 2322 * type: list of what to share; options are as follows:
700 michael 1301 * dline - share dlines
701     * undline - share undlines
702 michael 1336 * kline - share klines
703     * unkline - share unklines
704     * xline - share xlines
705     * unxline - share unxlines
706     * resv - share resvs
707     * unresv - share unresvs
708     * locops - share locops
709     * all - share all of the above (default)
710 db 897 */
711     type = kline, unkline, locops, xline, resv;
712     };
713    
714     /*
715 michael 1229 * shared {}: users that are allowed to remote kline
716 db 897 *
717 michael 2322 * NOTE: This can effectively be used for remote klines.
718 db 897 * Please note that there is no password authentication
719 michael 1863 * for users setting remote klines. You must also be
720 db 897 * /oper'd in order to issue a remote kline.
721     */
722     shared {
723     /*
724 michael 2322 * name: the server the user must be connected to in order to set klines.
725     * If this is not specified, the user will be allowed to kline from all
726     * servers.
727 db 897 */
728     name = "irc2.some.server";
729    
730     /*
731 michael 1863 * user: the user@host mask that is allowed to set klines. If this is
732 db 897 * not specified, all users on the server above will be allowed to set
733     * a remote kline.
734     */
735     user = "oper@my.host.is.spoofed";
736    
737     /*
738     * type: list of what to share, options are as follows:
739 michael 1301 * dline - allow oper/server to dline
740     * undline - allow oper/server to undline
741 michael 1336 * kline - allow oper/server to kline
742     * unkline - allow oper/server to unkline
743     * xline - allow oper/server to xline
744     * unxline - allow oper/server to unxline
745     * resv - allow oper/server to resv
746     * unresv - allow oper/server to unresv
747 db 897 * locops - allow oper/server to locops - only used for servers that cluster
748 michael 1336 * all - allow oper/server to do all of the above (default)
749 db 897 */
750     type = kline, unkline, resv;
751     };
752    
753     /*
754 michael 1229 * kill {}: users that are not allowed to connect
755 db 897 * Oper issued klines will be added to the specified kline config
756     */
757     kill {
758     user = "bad@*.hacked.edu";
759     reason = "Obviously hacked account";
760     };
761    
762     /*
763 michael 2322 * deny {}: IP addresses that are not allowed to connect
764     * (before DNS/ident lookup)
765 db 897 * Oper issued dlines will be added to the specified dline config
766     */
767     deny {
768     ip = "10.0.1.0/24";
769     reason = "Reconnecting vhosted bots";
770     };
771    
772     /*
773 michael 2322 * exempt {}: IP addresses that are exempt from deny {} and Dlines
774 db 897 */
775     exempt {
776     ip = "192.168.0.0/16";
777     };
778    
779     /*
780 michael 1229 * resv {}: nicks and channels users may not use/join
781 db 897 */
782 michael 1858 resv { mask = "clone*"; reason = "Clone bots"; };
783 michael 3658 resv { mask = "Global"; reason = "Reserved for services"; };
784 michael 1866 resv { mask = "ChanServ"; reason = "Reserved for services"; };
785 michael 1858 resv { mask = "NickServ"; reason = "Reserved for services"; };
786     resv { mask = "OperServ"; reason = "Reserved for services"; };
787     resv { mask = "MemoServ"; reason = "Reserved for services"; };
788     resv { mask = "BotServ"; reason = "Reserved for services"; };
789     resv { mask = "HelpServ"; reason = "Reserved for services"; };
790     resv { mask = "HostServ"; reason = "Reserved for services"; };
791     resv { mask = "StatServ"; reason = "Reserved for services"; };
792     resv { mask = "#*services*"; reason = "Reserved for services"; };
793 michael 1823
794 michael 1858 resv {
795     /*
796     * mask: masks starting with a '#' are automatically considered
797 michael 2322 * as channel name masks.
798 michael 1858 */
799     mask = "#helsinki";
800 michael 3551 reason = "Channel is reserved for Finnish inhabitants";
801 michael 1858
802     /*
803     * exempt: can be either a ISO 3166 alpha-2 two letter country
804     * code, or a nick!user@host mask. CIDR is supported. Exempt
805     * entries can be stacked.
806     */
807     exempt = "FI";
808     };
809    
810 db 897 /*
811 michael 1863 * gecos {}: Used for banning users based on their "realname".
812 db 897 */
813     gecos {
814     name = "*sex*";
815     reason = "Possible spambot";
816     };
817    
818     gecos {
819     name = "sub7server";
820     reason = "Trojan drone";
821     };
822    
823     /*
824     * channel {}: The channel block contains options pertaining to channels
825     */
826     channel {
827     /*
828     * disable_fake_channels: this option, if set to 'yes', will
829 michael 2322 * disallow clients from creating or joining channels that have one
830 db 897 * of the following ASCII characters in their name:
831     *
832     * 2 | bold
833     * 3 | mirc color
834 michael 951 * 15 | plain text
835 db 897 * 22 | reverse
836 michael 1424 * 29 | italic
837 db 897 * 31 | underline
838     * 160 | non-breaking space
839     */
840     disable_fake_channels = yes;
841    
842     /*
843 michael 3863 * invite_client_count, invite_client_time: how many INVITE commands
844     * are permitted per client per invite_client_time.
845 michael 3763 */
846 michael 3863 invite_client_count = 10;
847     invite_client_time = 5 minutes;
848 michael 3763
849     /*
850 michael 3863 * knock_client_count, knock_client_time: how many KNOCK commands
851     * are permitted per client per knock_client_time.
852 michael 3763 */
853 michael 3863 knock_client_count = 1;
854     knock_client_time = 5 minutes;
855 michael 3763
856     /*
857 michael 3934 * knock_delay_channel: how often a KNOCK to any specific channel
858 michael 3763 * is permitted, regardless of the user sending the KNOCK.
859 db 897 */
860     knock_delay_channel = 1 minute;
861    
862     /*
863 michael 3934 * max_channels: the maximum number of channels a user can join/be on.
864     * This is a default value which can be overriden with class{} blocks.
865 db 897 */
866 michael 3934 max_channels = 25;
867 db 897
868     /* max_bans: maximum number of +b/e/I modes in a channel */
869 michael 1522 max_bans = 100;
870 db 897
871     /*
872 michael 2322 * how many joins in how many seconds constitute a flood. Use 0 to
873 db 897 * disable. +b opers will be notified (changeable via /set)
874     */
875     join_flood_count = 16;
876     join_flood_time = 8 seconds;
877    
878     /*
879 michael 2322 * The ircd will now check splitmode (whether a server is split from
880     * the network) every few seconds; this functionality is known as
881     * splitcode and is influenced by the options below.
882 db 897 *
883     * Either split users or split servers can activate splitmode, but
884     * both conditions must be met for the ircd to deactivate splitmode.
885 michael 2345 *
886 db 897 * You may force splitmode to be permanent by /quote set splitmode on
887     */
888    
889     /*
890     * default_split_user_count: when the usercount is lower than this level,
891 michael 1863 * consider ourselves split. This must be set for automatic splitmode.
892 db 897 */
893     default_split_user_count = 0;
894    
895     /*
896     * default_split_server_count: when the servercount is lower than this,
897 michael 1863 * consider ourselves split. This must be set for automatic splitmode.
898 db 897 */
899     default_split_server_count = 0;
900    
901 michael 2322 /* no_create_on_split: do not allow users to create channels on split. */
902 db 897 no_create_on_split = yes;
903    
904 michael 2322 /* no_join_on_split: do not allow users to join channels on a split. */
905 db 897 no_join_on_split = no;
906     };
907    
908     /*
909     * serverhide {}: The serverhide block contains the options regarding
910 michael 2322 * to server hiding
911 db 897 */
912     serverhide {
913     /*
914 michael 2322 * disable_remote_commands: disable users issuing commands
915 michael 2196 * on remote servers.
916     */
917     disable_remote_commands = no;
918    
919     /*
920 db 897 * flatten_links: this option will show all servers in /links appear
921 michael 2322 * as though they are linked to this current server.
922 db 897 */
923     flatten_links = no;
924    
925     /*
926     * links_delay: how often to update the links file when it is
927     * flattened.
928     */
929     links_delay = 5 minutes;
930    
931     /*
932     * hidden: hide this server from a /links output on servers that
933 michael 1863 * support it. This allows hub servers to be hidden etc.
934 db 897 */
935     hidden = no;
936    
937     /*
938     * hide_servers: hide remote servernames everywhere and instead use
939     * hidden_name and network_desc.
940     */
941     hide_servers = no;
942    
943     /*
944 michael 1851 * hide_services: define this if you want to hide the location of
945 michael 1852 * services servers that are specified in the service{} block.
946 michael 1851 */
947     hide_services = no;
948    
949     /*
950 db 897 * Use this as the servername users see if hide_servers = yes.
951     */
952     hidden_name = "*.hidden.com";
953    
954     /*
955 michael 951 * hide_server_ips: If this is disabled, opers will be unable to see
956 michael 2322 * servers' IP addresses and will be shown a masked IP address; admins
957     * will be shown the real IP address.
958 db 897 *
959 michael 2322 * If this is enabled, nobody can see a server's IP address.
960     * *This is a kludge*: it has the side effect of hiding the IP addresses
961     * everywhere, including logfiles.
962 db 897 *
963     * We recommend you leave this disabled, and just take care with who you
964 michael 1729 * give administrator privileges to.
965 db 897 */
966     hide_server_ips = no;
967     };
968    
969     /*
970     * general {}: The general block contains many of the options that were once
971 michael 1783 * compiled in options in config.h
972 db 897 */
973     general {
974 michael 2286 /*
975     * cycle_on_host_change: sends a fake QUIT/JOIN combination
976     * when services change the hostname of a specific client.
977     */
978     cycle_on_host_change = yes;
979    
980 michael 1157 /* services_name: servername of nick/channel services */
981     services_name = "service.someserver";
982    
983 michael 951 /* max_watch: maximum WATCH entries a client can have. */
984 michael 3883 max_watch = 30;
985 db 897
986 michael 3883 /* max_accept: maximum allowed /accept's for +g usermode. */
987     max_accept = 30;
988    
989 michael 2322 /* gline_enable: enable glines (network-wide temporary klines). */
990 michael 1459 gline_enable = yes;
991    
992 db 897 /*
993 michael 1459 * gline_duration: the amount of time a gline will remain on your
994 michael 1863 * server before expiring.
995 michael 1459 */
996     gline_duration = 1 day;
997    
998     /*
999 michael 1863 * gline_request_duration: how long a pending G-line can be around.
1000     * 10 minutes should be plenty.
1001 michael 1459 */
1002     gline_request_duration = 10 minutes;
1003    
1004     /*
1005 db 897 * gline_min_cidr: the minimum required length of a CIDR bitmask
1006 michael 1863 * for IPv4 based glines.
1007 db 897 */
1008     gline_min_cidr = 16;
1009    
1010     /*
1011     * gline_min_cidr6: the minimum required length of a CIDR bitmask
1012 michael 1863 * for IPv6 based glines.
1013 db 897 */
1014     gline_min_cidr6 = 48;
1015    
1016     /*
1017 michael 3446 * invisible_on_connect: whether to automatically set mode +i on
1018     * connecting users.
1019 db 897 */
1020     invisible_on_connect = yes;
1021    
1022     /*
1023 michael 2322 * kill_chase_time_limit: KILL chasing is a feature whereby a KILL
1024     * issued for a user who has recently changed nickname will be applied
1025     * automatically to the new nick. kill_chase_time_limit is the maximum
1026     * time following a nickname change that this chasing will apply.
1027 db 897 */
1028 michael 3341 kill_chase_time_limit = 30 seconds;
1029 db 897
1030     /*
1031 michael 1863 * hide_spoof_ips: if disabled, opers will be allowed to see the real
1032 michael 2322 * IP address of spoofed users in /trace etc. If this is defined they
1033     * will be shown a masked IP.
1034 db 897 */
1035     hide_spoof_ips = yes;
1036    
1037     /*
1038 michael 1863 * Ignore bogus timestamps from other servers. Yes, this will desync the
1039     * network, but it will allow chanops to resync with a valid non TS 0
1040 db 897 *
1041     * This should be enabled network wide, or not at all.
1042     */
1043     ignore_bogus_ts = no;
1044    
1045     /*
1046     * disable_auth: completely disable ident lookups; if you enable this,
1047     * be careful of what you set need_ident to in your auth {} blocks
1048     */
1049     disable_auth = no;
1050    
1051     /*
1052     * tkline_expire_notices: enables or disables temporary kline/xline
1053     * expire notices.
1054     */
1055     tkline_expire_notices = no;
1056    
1057     /*
1058     * default_floodcount: the default value of floodcount that is configurable
1059 michael 2322 * via /quote set floodcount. This is the number of lines a user
1060 db 897 * may send to any other user/channel in one second.
1061     */
1062     default_floodcount = 10;
1063    
1064     /*
1065 michael 2305 * failed_oper_notice: send a notice to all opers on the server when
1066 db 897 * someone tries to OPER and uses the wrong password, host or ident.
1067     */
1068     failed_oper_notice = yes;
1069    
1070     /*
1071 michael 2322 * dots_in_ident: the number of '.' characters permitted in an ident
1072 db 897 * reply before the user is rejected.
1073     */
1074     dots_in_ident = 2;
1075    
1076     /*
1077 michael 2322 * min_nonwildcard: the minimum number of non-wildcard characters in
1078     * k/d/g lines placed via the server. K-lines hand-placed are exempt from
1079     * this limit.
1080 michael 2026 * Wildcard chars: '.', ':', '*', '?', '@', '!'
1081 db 897 */
1082     min_nonwildcard = 4;
1083    
1084     /*
1085 michael 2322 * min_nonwildcard_simple: the minimum number of non-wildcard characters
1086     * in gecos bans. Wildcard chars: '*', '?'
1087 db 897 */
1088     min_nonwildcard_simple = 3;
1089    
1090 michael 1863 /* anti_nick_flood: enable the nickflood control code. */
1091 db 897 anti_nick_flood = yes;
1092    
1093 michael 2322 /* nick flood: the number of nick changes allowed in the specified period */
1094 db 897 max_nick_time = 20 seconds;
1095     max_nick_changes = 5;
1096    
1097     /*
1098     * anti_spam_exit_message_time: the minimum time a user must be connected
1099     * before custom quit messages are allowed.
1100     */
1101     anti_spam_exit_message_time = 5 minutes;
1102    
1103     /*
1104 michael 3883 * ts_warn_delta, ts_max_delta: the time delta allowed between server
1105     * clocks before a warning is given, or before the link is dropped.
1106     * All servers should run ntpdate/rdate to keep clocks in sync
1107 db 897 */
1108 michael 3341 ts_warn_delta = 10 seconds;
1109     ts_max_delta = 2 minutes;
1110 db 897
1111     /*
1112 michael 3474 * warn_no_connect_block: warn opers about servers that try to connect
1113     * but for which we don't have a connect {} block. Twits with
1114     * misconfigured servers can become really annoying with this enabled.
1115 db 897 */
1116 michael 3474 warn_no_connect_block = yes;
1117 db 897
1118     /*
1119     * stats_e_disabled: set this to 'yes' to disable "STATS e" for both
1120 michael 1863 * operators and administrators. Doing so is a good idea in case
1121 db 897 * there are any exempted (exempt{}) server IPs you don't want to
1122     * see leaked.
1123     */
1124     stats_e_disabled = no;
1125    
1126 michael 3883 /* stats_o_oper_only: make stats o (opers) oper only */
1127 db 897 stats_o_oper_only = yes;
1128    
1129     /* stats_P_oper_only: make stats P (ports) oper only */
1130     stats_P_oper_only = yes;
1131    
1132 michael 2269 /* stats_u_oper_only: make stats u (uptime) oper only */
1133     stats_u_oper_only = no;
1134    
1135 db 897 /*
1136 michael 3521 * stats_i_oper_only: make stats i (auth {}) oper only. Set to:
1137 michael 1863 * yes - show users no auth blocks, made oper only.
1138 michael 2322 * masked - show users the first matching auth block
1139 michael 1863 * no - show users all auth blocks.
1140 db 897 */
1141     stats_i_oper_only = yes;
1142    
1143     /*
1144 michael 1863 * stats_k_oper_only: make stats k/K (klines) oper only. Set to:
1145     * yes - show users no auth blocks, made oper only
1146 michael 2322 * masked - show users the first matching auth block
1147 michael 1863 * no - show users all auth blocks.
1148 db 897 */
1149     stats_k_oper_only = yes;
1150    
1151     /*
1152     * caller_id_wait: time between notifying a +g user that somebody
1153     * is messaging them.
1154     */
1155     caller_id_wait = 1 minute;
1156    
1157     /*
1158     * opers_bypass_callerid: allows operators to bypass +g and message
1159     * anyone who has it set (useful if you use services).
1160     */
1161     opers_bypass_callerid = no;
1162    
1163     /*
1164 michael 2322 * pace_wait_simple: minimum time required between use of less
1165     * intensive commands
1166 michael 3521 * (ADMIN, HELP, LUSERS, VERSION, remote WHOIS)
1167 db 897 */
1168     pace_wait_simple = 1 second;
1169    
1170     /*
1171 michael 2322 * pace_wait: minimum time required between use of more intensive commands
1172 michael 3531 * (AWAY, INFO, LINKS, MAP, MOTD, STATS, WHO, WHOWAS)
1173 db 897 */
1174     pace_wait = 10 seconds;
1175    
1176     /*
1177 michael 2322 * short_motd: send clients a notice telling them to read the MOTD
1178     * instead of forcing an MOTD to clients who may simply ignore it.
1179 db 897 */
1180     short_motd = no;
1181    
1182     /*
1183     * ping_cookie: require clients to respond exactly to a ping command,
1184     * can help block certain types of drones and FTP PASV mode spoofing.
1185     */
1186     ping_cookie = no;
1187    
1188     /* no_oper_flood: increase flood limits for opers. */
1189     no_oper_flood = yes;
1190    
1191     /*
1192     * true_no_oper_flood: completely eliminate flood limits for opers
1193 michael 1863 * and for clients with can_flood = yes in their auth {} blocks.
1194 db 897 */
1195     true_no_oper_flood = yes;
1196    
1197 michael 1863 /* oper_pass_resv: allow opers to over-ride RESVs on nicks/channels. */
1198 db 897 oper_pass_resv = yes;
1199    
1200 michael 2345 /* REMOVE ME. The following line checks that you have been reading. */
1201 db 897 havent_read_conf = 1;
1202    
1203     /*
1204 michael 2322 * max_targets: the maximum number of targets in a single
1205 michael 1863 * PRIVMSG/NOTICE. Set to 999 NOT 0 for unlimited.
1206 db 897 */
1207     max_targets = 4;
1208    
1209     /*
1210     * usermodes configurable: a list of usermodes for the options below
1211     *
1212     * +b - bots - See bot and drone flooding notices
1213     * +c - cconn - Client connection/quit notices
1214     * +D - deaf - Don't receive channel messages
1215     * +d - debug - See debugging notices
1216 michael 1818 * +e - external - See remote server connection and split notices
1217 michael 1976 * +F - farconnect - Remote client connection/quit notices
1218 michael 1426 * +f - full - See auth{} block full notices
1219 db 897 * +G - softcallerid - Server Side Ignore for users not on your channels
1220     * +g - callerid - Server Side Ignore (for privmsgs etc)
1221 michael 1294 * +H - hidden - Hides operator status to other users
1222 michael 2345 * +i - invisible - Not shown in NAMES or WHO unless you share a channel
1223 michael 1290 * +j - rej - See rejected client notices
1224 db 897 * +k - skill - See server generated KILL messages
1225     * +l - locops - See LOCOPS messages
1226     * +n - nchange - See client nick changes
1227 michael 3515 * +p - hidechans - Hides channel list in WHOIS
1228 michael 3507 * +q - hideidle - Hides idle and signon time in WHOIS
1229 michael 1855 * +R - nononreg - Only receive private messages from registered clients
1230 db 897 * +s - servnotice - See general server notices
1231     * +u - unauth - See unauthorized client notices
1232     * +w - wallop - See server generated WALLOPS
1233     * +y - spy - See LINKS, STATS, TRACE notices etc.
1234     */
1235    
1236     /* oper_only_umodes: usermodes only opers may set */
1237 michael 2185 oper_only_umodes = bots, cconn, debug, full, hidden, skill,
1238 michael 3867 nchange, rej, spy, external,
1239 michael 2841 locops, unauth, farconnect;
1240 db 897
1241     /* oper_umodes: default usermodes opers get when they /oper */
1242 michael 3867 oper_umodes = bots, locops, servnotice, wallop;
1243 db 897
1244     /*
1245     * use_egd: if your system does not have *random devices yet you
1246 michael 1863 * want to use OpenSSL and encrypted links, enable this. Beware -
1247     * EGD is *very* CPU intensive when gathering data for its pool.
1248 db 897 */
1249     # use_egd = yes;
1250    
1251     /*
1252     * egdpool_path: path to EGD pool. Not necessary for OpenSSL >= 0.9.7
1253     * which automatically finds the path.
1254     */
1255     # egdpool_path = "/var/run/egd-pool";
1256    
1257 michael 3876
1258 db 897 /*
1259 michael 3876 * throttle_count: the maximum number of connections from the same
1260     * IP address allowed in throttle_time duration.
1261     */
1262     throttle_count = 1;
1263    
1264     /*
1265 michael 2322 * throttle_time: the minimum amount of time required between
1266 michael 3876 * connections from the same IP address. exempt {} blocks are
1267     * excluded from this throttling.
1268 michael 1863 * Offers protection against flooders who reconnect quickly.
1269 db 897 * Set to 0 to disable.
1270     */
1271 michael 3876 throttle_time = 2 seconds;
1272 db 897 };
1273    
1274     modules {
1275     /*
1276 michael 951 * path: other paths to search for modules specified below
1277 michael 1441 * and in "/module load".
1278 db 897 */
1279 michael 1070 path = "/usr/local/ircd/lib/ircd-hybrid/modules";
1280     path = "/usr/local/ircd/lib/ircd-hybrid/modules/autoload";
1281 db 897
1282 michael 1863 /* module: the name of a module to load on startup/rehash. */
1283 michael 2171 # module = "some_module.la";
1284 db 897 };
1285 michael 1247
1286     /*
1287     * log {}: contains information about logfiles.
1288     */
1289     log {
1290     /* Do you want to enable logging to ircd.log? */
1291     use_logging = yes;
1292    
1293     file {
1294     type = oper;
1295 michael 2171 name = "/usr/local/ircd/var/log/oper.log";
1296 michael 1250 size = unlimited;
1297 michael 1247 };
1298    
1299     file {
1300     type = user;
1301 michael 2171 name = "/usr/local/ircd/var/log/user.log";
1302 michael 1247 size = 50 megabytes;
1303     };
1304    
1305     file {
1306     type = kill;
1307 michael 2171 name = "/usr/local/ircd/var/log/kill.log";
1308 michael 1247 size = 50 megabytes;
1309     };
1310    
1311     file {
1312     type = kline;
1313 michael 2171 name = "/usr/local/ircd/var/log/kline.log";
1314 michael 1247 size = 50 megabytes;
1315     };
1316    
1317     file {
1318     type = dline;
1319 michael 2171 name = "/usr/local/ircd/var/log/dline.log";
1320 michael 1247 size = 50 megabytes;
1321     };
1322    
1323     file {
1324     type = gline;
1325 michael 2171 name = "/usr/local/ircd/var/log/gline.log";
1326 michael 1247 size = 50 megabytes;
1327     };
1328    
1329     file {
1330 michael 2336 type = xline;
1331     name = "/usr/local/ircd/var/log/xline.log";
1332     size = 50 megabytes;
1333     };
1334    
1335     file {
1336     type = resv;
1337     name = "/usr/local/ircd/var/log/resv.log";
1338     size = 50 megabytes;
1339     };
1340    
1341     file {
1342 michael 1247 type = debug;
1343 michael 2171 name = "/usr/local/ircd/var/log/debug.log";
1344 michael 1247 size = 50 megabytes;
1345 michael 1824 };
1346 michael 1247 };

Properties

Name Value
svn:eol-style native
svn:keywords Id Revision