1 # This is a POSIX shell fragment -*- sh -*-
3 # To configure the secure channel, fill in the following properly and
4 # uncomment them. Afterward, the secure channel will come up
5 # automatically at boot time. It can be started immediately with
6 # /etc/init.d/openflow-switch start
7 # Alternatively, use the ofp-switch-setup program to do everything
10 # NETDEVS: Which network devices should the OpenFlow switch include?
12 # List the network devices that should become part of the OpenFlow
13 # switch, separated by spaces. At least two devices must be selected
14 # for this machine to be a useful switch. Unselecting all network
15 # devices will disable the OpenFlow switch entirely.
17 # The network devices that you select should not be configured with IP
18 # or IPv6 addresses, even if the switch contacts the controller over
19 # one of the selected network devices. This is because a running
20 # OpenFlow switch takes over network devices at a low level: they
21 # become part of the switch and cannot be used for other purposes.
24 # MODE: The OpenFlow switch has three modes that determine how it
25 # reaches the controller:
27 # * in-band with discovery: A single network is used for OpenFlow
28 # traffic and other data traffic; that is, the switch contacts the
29 # controller over one of the network devices selected as OpenFlow
30 # switch ports. The switch automatically determines the location of
31 # the controller using a DHCP request with an OpenFlow-specific
32 # vendor option. This is the most common case.
34 # * in-band: As above, but the location of the controller is manually
37 # * out-of-band: OpenFlow traffic uses a network separate from the
38 # data traffic that it controls. If this is the case, the control
39 # network must already be configured on a network device other than
40 # one of those selected as an OpenFlow switch port in the previous
43 # Set MODE to 'discovery', 'in-band', or 'out-of-band' for these
47 # SWITCH_IP: In 'in-band' mode, the switch's IP address may be
48 # configured statically or dynamically:
50 # * For static configuration, specify the switch's IP address as a
53 # * For dynamic configuration with DHCP (the most common case),
54 # specify "dhcp". Configuration with DHCP will only work reliably
55 # if the network topology allows the switch to contact the DHCP
56 # server before it connects to the OpenFlow controller.
58 # This setting has no effect unless MODE is set to 'in-band'.
61 # CONTROLLER: Location of controller.
62 # One of the following formats:
63 # tcp:HOST[:PORT] via TCP to PORT (default: 975) on HOST
64 # ssl:HOST[:PORT] via SSL to PORT (default: 976) on HOST
65 # The default below assumes that the controller is running locally.
66 # This setting has no effect when MODE is set to 'discovery'.
67 #CONTROLLER="tcp:127.0.0.1"
69 # PRIVKEY: Name of file containing switch's private key.
70 # Required if SSL enabled.
71 #PRIVKEY=/etc/openflow-switch/of0-privkey.pem
73 # CERT: Name of file containing certificate for private key.
74 # Required if SSL enabled.
75 #CERT=/etc/openflow-switch/of0-cert.pem
77 # CACERT: Name of file containing controller CA certificate.
78 # Required if SSL enabled.
79 #CACERT=/etc/openflow-switch/cacert.pem
81 # Additional options to pass to secchan, e.g. "--fail=open"