Home | History | Annotate | Line # | Download | only in defaults
rc.conf revision 1.115.2.1
      1  1.115.2.1      yamt #	$NetBSD: rc.conf,v 1.115.2.1 2012/04/17 00:02:57 yamt Exp $
      2        1.1     lukem #
      3        1.1     lukem # /etc/defaults/rc.conf --
      4        1.1     lukem #	default configuration of /etc/rc.conf
      5        1.1     lukem #
      6        1.1     lukem # see rc.conf(5) for more information.
      7        1.2     lukem #
      8        1.2     lukem # DO NOT EDIT THIS FILE DIRECTLY; IT MAY BE REPLACED DURING A SYSTEM UPGRADE.
      9        1.2     lukem # EDIT /etc/rc.conf INSTEAD.
     10        1.1     lukem #
     11        1.1     lukem 
     12        1.1     lukem #
     13        1.1     lukem # Use program=YES to enable program, NO to disable it. program_flags are
     14        1.1     lukem # passed to the program on the command line.
     15        1.1     lukem #
     16        1.1     lukem 
     17        1.1     lukem # Uncomment this if you want to use local paths in rc.
     18        1.1     lukem #
     19        1.1     lukem #export PATH=$PATH:/usr/pkg/sbin:/usr/pkg/bin:/usr/local/sbin:/usr/local/bin
     20        1.9     lukem 
     21       1.17     lukem # Uncomment the following to execute each /etc/rc.d script in
     22       1.17     lukem # the current shell rather than in a subshell.  This may be
     23       1.17     lukem # faster on very slow machines that have an expensive fork(2).
     24        1.9     lukem #	NOTE:	USE THIS AT YOUR OWN RISK; A ROGUE COMMAND
     25        1.9     lukem #		MAY INADVERTENTLY PREVENT BOOT TO MULTIUSER.
     26        1.9     lukem #
     27        1.9     lukem #rc_fast_and_loose=YES
     28        1.1     lukem 
     29      1.105       apb # If rc_silent is true then /etc/rc will suppress most output to
     30      1.105       apb # the console.  The default is taken from the AB_SILENT flag passed
     31      1.105       apb # from the boot loader to the kernel in the boothowto(9) variable.
     32      1.105       apb #
     33      1.105       apb # rc_silent_cmd is executed once for each suppressed line of output.
     34      1.105       apb # Useful values are ":" and "twiddle".
     35      1.105       apb #
     36      1.105       apb rc_silent=$( [ "$(( $(/sbin/sysctl -n kern.boothowto 2>/dev/null || echo 0) \
     37      1.105       apb 		    & 0x40000 ))" != 0 ] && echo true || echo false )
     38      1.105       apb rc_silent_cmd=twiddle
     39      1.105       apb 
     40       1.37     lukem # Additional flags to the rcorder(8) that's run by /etc/rc.
     41       1.37     lukem #
     42       1.37     lukem rc_rcorder_flags=""
     43       1.37     lukem 
     44      1.102     joerg # The directories searched for rc scripts.
     45      1.102     joerg # These directories must be part of the root filesystem.
     46      1.102     joerg rc_directories=/etc/rc.d 
     47      1.102     joerg 
     48        1.1     lukem # If this is set to NO, shutdown(8) will not run /etc/rc.shutdown.
     49        1.1     lukem #
     50        1.1     lukem do_rcshutdown=YES
     51       1.37     lukem 
     52       1.37     lukem # Additional flags to the rcorder(8) that's run by /etc/rc.shutdown.
     53       1.37     lukem #
     54       1.37     lukem rcshutdown_rcorder_flags=""
     55       1.17     lukem 
     56       1.17     lukem # If this is non-blank, use as the number of seconds to run a watchdog
     57       1.17     lukem # timer which will terminate /etc/rc.shutdown if the timeout expires.
     58       1.17     lukem #
     59       1.17     lukem rcshutdown_timeout=""
     60       1.17     lukem 
     61        1.1     lukem 
     62        1.1     lukem # Basic network configuration
     63        1.1     lukem #
     64        1.1     lukem 
     65        1.1     lukem # Fully Qualified Internet Domain Name (a.k.a. hostname, e.g. foo.baz.edu).
     66        1.1     lukem # If blank, use /etc/myname.
     67        1.1     lukem #
     68        1.1     lukem hostname=""
     69        1.1     lukem 
     70       1.74      ghen # If there's only one way out of your IPv4 network, set this to the hostname
     71       1.74      ghen # or the IPv4 address of the router that will get your packets off the LAN.
     72        1.1     lukem # If blank, use /etc/mygate.
     73        1.1     lukem #
     74        1.1     lukem defaultroute=""
     75        1.1     lukem 
     76       1.74      ghen # Same thing for IPv6.  If blank, use /etc/mygate6.
     77       1.74      ghen #
     78       1.74      ghen defaultroute6=""
     79       1.74      ghen 
     80        1.1     lukem # The NIS domain name (formerly known as Yellow Pages); not in any way
     81        1.1     lukem # related to Internet domain names.
     82        1.1     lukem # If blank, use /etc/defaultdomain.
     83        1.1     lukem #
     84        1.1     lukem domainname=""
     85        1.1     lukem 
     86        1.1     lukem # Filesystems to mount early in boot-up.
     87       1.34     lukem # Note that `/var' is needed in $critical_filesystems_local (or
     88        1.1     lukem # implied as part of `/') as certain services that need /var (such as
     89        1.1     lukem # dhclient) may be needed to get the network operational enough to mount
     90      1.106       apb # the $critical_filesystems_remote.  Prepending "OPTIONAL:"  means it
     91      1.106       apb # will not be an error if that file system is not present in fstab(5).
     92        1.1     lukem #
     93      1.106       apb critical_filesystems_local="OPTIONAL:/var"
     94      1.106       apb critical_filesystems_remote="OPTIONAL:/usr"
     95        1.1     lukem 
     96       1.33     lukem # Swap device controls.
     97        1.1     lukem #
     98       1.33     lukem no_swap=NO		# Set to YES if you have purposefully setup no swap
     99       1.33     lukem 			# partitions and don't want to be warned about it.
    100       1.64  christos swapoff=YES		# Remove block-type swap partitions upon shutdown
    101       1.64  christos 			# This defaults to yes, so that raids shutdown cleanly
    102       1.46       wiz 
    103       1.46       wiz # Concatenated disk driver.
    104       1.46       wiz #
    105       1.46       wiz ccd=YES
    106       1.50       wiz 
    107       1.50       wiz # RAIDframe driver (manually configured devices).
    108       1.50       wiz #
    109       1.50       wiz raidframe=YES
    110       1.45       wiz 
    111       1.45       wiz # Crypto file system.
    112       1.45       wiz #
    113       1.45       wiz cgd=YES
    114        1.1     lukem 
    115      1.100      haad # Logical Volume Manager
    116      1.100      haad #
    117      1.100      haad lvm=NO
    118      1.100      haad 
    119        1.1     lukem # One-time actions and programs on boot-up.
    120        1.1     lukem #
    121        1.1     lukem savecore=YES		savecore_flags="-z"
    122       1.61    atatat 			savecore_dir="/var/crash"
    123       1.83      elad per_user_tmp=NO					# per-user /tmp directories
    124       1.83      elad per_user_tmp_dir="/private/tmp"			# real storage for /tmp
    125        1.1     lukem clear_tmp=YES					# clear /tmp after reboot
    126        1.1     lukem update_motd=YES					# updates /etc/motd
    127        1.1     lukem dmesg=YES		dmesg_flags=""		# write /var/run/dmesg.boot
    128       1.14  jdolecek accounting=NO					# uses /var/account/acct
    129        1.1     lukem newsyslog=NO		newsyslog_flags=""	# trim log files
    130       1.59       abs quota=YES					# check and enable quotas
    131       1.59       abs ldconfig=YES					# rebuild a.out ldconfig cache
    132       1.89    dyoung sysdb=YES					# build system databases
    133       1.99       apb rndctl=NO		rndctl_flags=""		# configure rndctl(8)
    134      1.104   mbalmer gpio=NO						# configure GPIO devices
    135        1.1     lukem 
    136       1.52    martin # cope with other OSes using the real time clock at localtime on this
    137       1.52    martin # machine (by adjusting kern.rtc_offset at boot)
    138       1.52    martin rtclocaltime=NO
    139       1.52    martin 
    140        1.1     lukem # NOTE: default coredump name now set in /etc/sysctl.conf
    141       1.51  christos 
    142       1.51  christos #
    143       1.51  christos # File system check flags; default to preen mode, checking filesystems
    144       1.51  christos # that are listed in /etc/fstab in parallel as the fsck pass number
    145       1.51  christos # permits. Fix minor faults automatically, and exit with non 0 only
    146       1.51  christos # when major errors occur.
    147       1.51  christos #
    148       1.51  christos fsck_flags=-p
    149        1.1     lukem 
    150        1.1     lukem # Security setting.  If $securelevel is non-empty, the system securelevel
    151        1.1     lukem # is set to this value early in the boot sequence.  Otherwise the default
    152        1.1     lukem # action is taken (see init(8)).
    153        1.1     lukem #
    154        1.1     lukem securelevel=""					# securelevel to set to
    155        1.1     lukem 
    156        1.1     lukem # To set the IP address of an interface either use
    157        1.1     lukem #  ifconfig_xxN="IP-NO"
    158        1.1     lukem # where xxN is the interface.  If this variable is not set then
    159        1.1     lukem # contents of the file /etc/ifconfig.xxN is used.
    160        1.1     lukem 
    161        1.1     lukem # Networking startup.
    162        1.1     lukem #
    163      1.109    tsarna mdnsd=NO
    164      1.111     rmind npf=NO
    165      1.101   hannken ipfilter=NO		ipfilter_flags=""	# uses /etc/ipf.conf
    166        1.1     lukem ipnat=NO					# uses /etc/ipnat.conf
    167       1.28    martti ipfs=NO			ipfs_flags=""		# save/load ipnat and ipf states
    168        1.1     lukem ipsec=NO					# uses /etc/ipsec.conf
    169       1.57       mrg ipmon=NO		ipmon_flags="-Dns"	# syslog ipfilter messages
    170  1.115.2.1      yamt pf=NO			pf_rules="/etc/pf.conf" pf_flags=""
    171       1.60    martin pflogd=NO
    172       1.94      yamt ftp_proxy=NO
    173        1.8   thorpej racoon=NO					# IKE daemon
    174        1.1     lukem auto_ifconfig=YES				# config all avail. interfaces
    175        1.1     lukem net_interfaces=""				# used only if above is NO
    176        1.1     lukem flushroutes=YES					# flush routes in netstart
    177      1.103       roy dhcpcd=NO
    178       1.95     joerg dhcpcd_flags="-q"				# For ifconfig_XXX=dhcp.
    179        1.1     lukem dhclient=NO					# behave as a DHCP client
    180       1.27     lukem 			dhclient_flags=""	# blank: config all interfaces
    181        1.1     lukem ntpdate=NO  		ntpdate_flags="-b -s"	# May need '-u' thru firewall
    182        1.1     lukem ppp_peers=""					# /etc/ppp/peers to call
    183        1.1     lukem ip6mode=host					# host, autohost or router
    184       1.71    rpaulo ip6uniquelocal=NO				# IPv6 unique-local forwarding
    185       1.22   hubertf rtsol=NO		rtsol_flags="-a"	# for ip6mode=autohost only
    186       1.20    martin 
    187       1.20    martin # Special treatment for interfaces that need to be downed on
    188       1.63   dsainty # shutdown (because they might cause unnecessary costs or block resources
    189       1.20    martin # on the peer). All pppoe* interfaces are automatically included in this
    190       1.20    martin # list, add others here manually.
    191       1.44     lukem #force_down_interfaces=""
    192       1.25    martin 
    193       1.25    martin ifwatchd=NO	# execute up/down scripts for in-kernel PPPoE interfaces
    194       1.25    martin 	ifwatchd_flags="-u /etc/ppp/ip-up -d /etc/ppp/ip-down pppoe0"
    195       1.11   thorpej 
    196       1.11   thorpej # ALTQ configuration/monitoring daemon
    197       1.11   thorpej altqd=NO		altqd_flags=""
    198        1.1     lukem 
    199        1.1     lukem # Daemons required by servers.  These are not needed for strictly client use.
    200        1.1     lukem #
    201        1.1     lukem 
    202        1.1     lukem # inetd is used to start the IP-based services enabled in /etc/inetd.conf
    203        1.1     lukem #
    204        1.1     lukem inetd=YES		inetd_flags="-l"	# -l logs libwrap
    205        1.1     lukem 
    206       1.55  christos # identd
    207       1.55  christos #
    208       1.55  christos identd=NO		identd_flags="-b -l -u nobody"
    209       1.55  christos 
    210        1.1     lukem # rpcbind (formerly known as 'portmap') is used to look up RPC-based services.
    211        1.1     lukem #
    212        1.1     lukem rpcbind=NO		rpcbind_flags="-l"	# -l logs libwrap
    213        1.1     lukem 
    214        1.1     lukem # Commonly used daemons.
    215        1.1     lukem #
    216        1.1     lukem syslogd=YES		syslogd_flags="-s"	# -s "secure" unix domain only
    217        1.1     lukem cron=YES
    218       1.10     lukem named=NO		named_flags=""		# see below for named_chrootdir
    219        1.1     lukem timed=NO		timed_flags=""
    220       1.26     lukem ntpd=NO			ntpd_flags=""		# see below for ntpd_chrootdir
    221       1.90     pavel # The default setting for postfix here is YES, but gets re-examined by
    222       1.90     pavel # the rc.d/postfix startup script when it runs.  The script sets
    223       1.90     pavel # _rc_d_postfix to "check", and then causes all rc.conf settings to
    224       1.90     pavel # be re-evaluated.  If the value of $postfix after this is "check",
    225       1.90     pavel # the script then checks to see if /etc/mailer.conf selects the system
    226       1.90     pavel # postfix. If not, it does print a warning and does not start postfix 
    227       1.90     pavel # to avoid conflict with a different MTA.
    228       1.90     pavel postfix=${_rc_d_postfix:-YES}
    229        1.1     lukem lpd=NO			lpd_flags="-s"		# -s "secure" unix domain only
    230        1.1     lukem sshd=NO			sshd_flags=""
    231       1.56      jonb ssh_keygen_flags="-b 1024"	# generate 1024 bit keys if host keys missing
    232       1.68     peter ftpd=NO			ftpd_flags="-ll"
    233       1.97    mishka httpd=NO		httpd_flags=""
    234       1.97    mishka 			httpd_wwwdir="/var/www"
    235       1.97    mishka 			httpd_wwwuser="_httpd"
    236       1.47    atatat 
    237       1.10     lukem # To run the named(8) DNS server as an unprivileged user under a
    238       1.10     lukem # chroot(2) cage, uncomment the following after migrating the contents
    239       1.23     lukem # of /etc/namedb to /var/chroot/named/etc/namedb
    240       1.10     lukem #
    241       1.23     lukem #named_chrootdir="/var/chroot/named"
    242       1.26     lukem 
    243       1.26     lukem # To run the ntpd(8) NTP server as an unprivileged user under a
    244       1.39     lukem # chroot(2) cage, uncomment the following, after ensuring that:
    245       1.39     lukem #	- The kernel has "pseudo-device clockctl" compiled in
    246       1.39     lukem #	- /dev/clockctl is present
    247       1.26     lukem #
    248       1.26     lukem #ntpd_chrootdir="/var/chroot/ntpd"
    249        1.1     lukem 
    250        1.1     lukem # Routing daemons.
    251        1.1     lukem #
    252        1.1     lukem routed=NO		routed_flags="-q"
    253       1.13        pk gated=NO
    254        1.1     lukem mrouted=NO		mrouted_flags=""
    255        1.1     lukem route6d=NO		route6d_flags=""
    256      1.107  dholland rtsold=NO		rtsold_flags="-a"	# for ip6mode=autohost only
    257      1.110    kefren ldpd=NO
    258        1.1     lukem 
    259        1.1     lukem # Daemons used to boot other hosts over a network.
    260        1.1     lukem #
    261        1.1     lukem rarpd=NO		rarpd_flags="-a"
    262        1.1     lukem bootparamd=NO		bootparamd_flags=""
    263        1.1     lukem dhcpd=NO		dhcpd_flags="-q"
    264        1.1     lukem dhcrelay=NO		dhcrelay_flags=""
    265        1.1     lukem rbootd=NO		rbootd_flags=""
    266        1.1     lukem mopd=NO			mopd_flags="-a"
    267       1.16  fredette ndbootd=NO		ndbootd_flags="-s /tftpboot /tftpboot/bootyy"
    268        1.1     lukem rtadvd=NO		rtadvd_flags=""
    269  1.115.2.1      yamt isibootd=NO		isibootd_flags=""
    270        1.1     lukem 
    271        1.1     lukem # X11 daemons.
    272        1.1     lukem #
    273        1.1     lukem xfs=NO			xfs_flags=""		# X11 font server
    274        1.1     lukem xdm=NO			xdm_flags=""		# X11 display manager; needs
    275        1.1     lukem 						# wscons=YES for local displays.
    276        1.1     lukem 
    277      1.112  jmcneill # Update fontconfig cache at boot
    278      1.112  jmcneill fccache=YES
    279      1.112  jmcneill 
    280        1.1     lukem # YP (NIS) daemons.
    281        1.1     lukem #
    282        1.1     lukem ypbind=NO		ypbind_flags=""
    283        1.1     lukem ypserv=NO		ypserv_flags="-d"
    284        1.1     lukem yppasswdd=NO		yppasswdd_flags=""
    285        1.1     lukem 
    286        1.1     lukem # NFS daemons and parameters.
    287        1.1     lukem #
    288       1.18     lukem mountd=NO		mountd_flags=""		# NFS mount requests daemon
    289        1.1     lukem nfs_client=NO					# enable client daemons
    290        1.1     lukem nfs_server=NO					# enable server daemons
    291        1.1     lukem 			nfsd_flags="-6tun 4"
    292        1.1     lukem lockd=NO		lockd_flags=""
    293        1.1     lukem statd=NO		statd_flags=""
    294        1.1     lukem amd=NO			amd_flags="-l syslog -x error,noinfo,nostats"
    295        1.1     lukem 			amd_dir=/amd			# mount dir
    296        1.1     lukem 
    297        1.1     lukem # Heimdal Kerberos 5 KDC (with Kerberos IV compatibility)
    298       1.91   mlelstv kdc=NO			kdc_flags="--detach"
    299        1.5    martin 
    300       1.73       agc # iSCSI target
    301       1.73       agc iscsi_target=NO		iscsi_target_flags=""
    302       1.73       agc 
    303       1.75    rpaulo # WPA daemons.
    304       1.75    rpaulo hostapd=NO		hostapd_flags="-B /etc/hostapd.conf"
    305       1.81    rpaulo wpa_supplicant=NO	wpa_supplicant_flags="-B" # -i<if> -c<file>
    306       1.75    rpaulo 
    307        1.5    martin # ISDN daemon
    308        1.5    martin isdnd=NO		isdnd_flags=""
    309        1.1     lukem 
    310      1.113    plunky # Bluetooth configuration
    311      1.113    plunky bluetooth=NO
    312      1.113    plunky # and the following are used when bluetooth=YES
    313      1.113    plunky btconfig_devices=""                             # all
    314      1.113    plunky bthcid=YES              bthcid_flags=""
    315      1.113    plunky sdpd=YES                sdpd_flags=""
    316       1.78   gdamore 
    317        1.1     lukem # Other daemons.
    318        1.1     lukem #
    319       1.69    tsarna rwhod=NO		rwhod_flags="-u _rwhod"
    320      1.115       riz devpubd=NO		devpubd_flags=""	# autocreate nodes for new devs
    321       1.87   xtraeme envsys=NO					# Set /etc/envsys.conf preferences
    322        1.1     lukem 
    323        1.1     lukem # Hardware daemons.
    324        1.1     lukem #
    325        1.1     lukem apmd=NO			apmd_flags=""		# APM power management daemon.
    326       1.49   thorpej powerd=NO		powerd_flags=""		# power management daemon
    327        1.1     lukem screenblank=NO		screenblank_flags=""	# wscons and FBIO screenblanker
    328       1.24  augustss 
    329       1.24  augustss moused=NO					# serial mouse handler
    330       1.24  augustss 			moused_flags="-p /dev/tty00"
    331       1.41   thorpej 
    332       1.41   thorpej wdogctl=NO					# watchdog timer control
    333       1.41   thorpej #			wdogctl_flags="-k devicename"
    334       1.76    rpaulo irdaattach=NO					# attach serial lines to IrDA 
    335       1.76    rpaulo 			irdaattach_flags="tty00"
    336        1.1     lukem 
    337        1.1     lukem # Configuration of "wscons" console driver virtual screens.
    338        1.1     lukem #
    339        1.1     lukem wscons=NO		wscons_flags=""		# setup wscons from wscons.conf
    340       1.40  christos 
    341       1.40  christos # Configuration of "wsmoused" console driver cut-n-paste support
    342       1.40  christos #
    343       1.40  christos wsmoused=NO		wsmoused_flags=""
    344       1.42  takemura 
    345       1.42  takemura # Configuration of "tpctl" touch panel calibration utility
    346       1.42  takemura #
    347       1.42  takemura tpctl=NO		tpctl_flags=""
    348       1.43      kent 
    349       1.43      kent # Mixer setting
    350       1.43      kent #
    351       1.43      kent mixerctl=NO		mixerctl_mixers=""	# "mixer0 mixer1" means saving
    352       1.43      kent 						# and restoring their settings
    353       1.53  uebayasi 
    354       1.53  uebayasi # Vi recovery notification.  Vi(1)'s -r option can recover files which were
    355       1.63   dsainty # accidentally closed.  See vi(1) for more details.
    356       1.53  uebayasi # 
    357       1.53  uebayasi virecover=YES
    358       1.54     blymn 
    359       1.82      elad # Veriexec signature loading.
    360       1.54     blymn #
    361       1.54     blymn veriexec=NO
    362       1.70      elad veriexec_strict=0
    363       1.70      elad veriexec_verbose=0
    364       1.86      elad veriexec_flags="-k"
    365      1.114       jym 
    366  1.115.2.1      yamt # Entropy load/save to/from /dev/random at startup/shutdown
    367  1.115.2.1      yamt #
    368  1.115.2.1      yamt random_seed=YES
    369  1.115.2.1      yamt 
    370  1.115.2.1      yamt # Creating / updating of man page index on boot
    371  1.115.2.1      yamt makemandb=YES
    372