[Shorewall-users] special l2tp tunnel rules

drwho drwho at f34r.com
Wed Dec 17 21:12:56 PST 2003

As discussed on


 To allow for lt2p / freeswan / and the MS Vpn client it is necessary
to setup l2tp and it is prefered to run it on an internal interface.

 I have done this in start and stop files of shorewall but i was
not sure if maybe this could be accomplised better elsewhere (tunnels,other?)

qt /sbin/iptables -t nat --append PREROUTING -i ipsec0 -p udp --sport 1701 --dport 1701 -j DNAT -

