VMware, Inc. 93
Appendix
<xs:complexType name="Listener">
<xs:sequence>
<xs:element name="externalIpAddress" type="Ip" />
<xs:element maxOccurs="16" name="backEndServerConfig" type="LbIpInfo" />
<xs:element minOccurs="0" name="algorithm"> <!--default is round-robin -->
<xs:simpleType>
<xs:restriction base="xs:string">
<xs:pattern value="((round-robin)|(ip-hash))"/>
</xs:restriction>
</xs:simpleType>
</xs:element>
<xs:element minOccurs="0" name="enableLog" type="xs:boolean" /> <!-- Not when present,
default behavior is false -->
</xs:sequence>
</xs:complexType>
<xs:complexType name="LbIpInfo" >
<xs:sequence>
<xs:element name="ipAddress" type="Ip" />
<xs:element minOccurs="0" maxOccurs="1" name="port" type="Port" />
</xs:sequence>
</xs:complexType>
<xs:complexType name="IpsecSiteToSiteConfig">
<xs:sequence>
<xs:element minOccurs="0" name="globalConfig" type="IpsecVpnGlobalConfig"/>
<xs:element minOccurs="0" maxOccurs="64" name="siteConfig" type="IpsecVpnSiteConfig"/>
</xs:sequence>
</xs:complexType>
<xs:complexType name="IpsecVpnGlobalConfig">
<xs:sequence>
<xs:element name="id" type="xs:string" />
<xs:element minOccurs="0" name="certificateCn" type="Fqdn" /> <!--Optional, required
for certficate mode authentication-->
<xs:element minOccurs="0" name="ipAddress" type="Ip" />
<xs:element minOccurs="0" name="preSharedKeyForDynamicIpSites" type="VpnPreSharedKey"
/> <!--For all peers connecting from unknown IP (peerIPAddress == 'any') -->
<xs:element minOccurs="0" name="enableLog" type="xs:boolean" /> <!-- Not when
present, default behavior is false -->
</xs:sequence>
</xs:complexType>
<xs:simpleType name="VpnPreSharedKey">
<xs:restriction base="xs:string">
<xs:minLength value="1"/>
<xs:maxLength value="128"/>
</xs:restriction>
</xs:simpleType>
<xs:complexType name="IpsecVpnSiteConfig">
<xs:sequence>
<xs:element name="peerName">
<xs:simpleType>
<xs:restriction base="xs:string">
<xs:minLength value="1"/>
<xs:maxLength value="256"/>
</xs:restriction>
</xs:simpleType>
</xs:element>
<xs:element name="peerId" type="xs:string" />
<xs:element name="peerIpAddress" type="IpOrAny" />
<xs:element maxOccurs="64" name="localSubnet" type="Cidr" /> <!-- localSubnet *
peerSubnet * noOfSites should not be more than 64 -->
<xs:element maxOccurs="64" name="peerSubnet" type="Cidr" /> <!-- localSubnet *
peerSubnet * noOfSites should not be more than 64 -->
<xs:element minOccurs="0" name="authenticationMode" > <!-- Default is psk -->
Comentarios a estos manuales