[Shorewall-users] vpnc versus Shorewall problem SOLVED

Tobias Weisserth tobias.weisserth at gmx.net
Mon Jun 13 05:47:19 PDT 2005


Hi everybody,

I guess I found a solution.

I'm using the single interface setup and added this:

In /etc/shorewall/zones I added

ZONE DISPLAY COMMENTS
vpn VPN Remote Subnet

In /etc/shorewall/interfaces I added
ZONE INTERFACE BROADCAST OPTIONS
vpn tun0 detect

In /etc/shorewall/policy I added
SOURCE DEST POLICY LOG LEVEL
fw vpn ACCEPT

Now the hard part. In /etc/shorewall/tunnels I added
TYPE ZONE GATEWAY GATEWAY ZONE
generic:tcp:500 net 172.17.0.1

Any comments? Did I miss something?

regards,
Tobias

*****************************************

"Email messages are supposed to be text, thank you. Text. Only text. If 
God had intended for email to be written in HTML, then the traditional 
signoff of prayers would be </amen>. "  Tom Liston

http://isc.sans.org/diary.php?date=2005-05-11



More information about the Shorewall-users mailing list