2007-07-09 22:43:12 +02:00
|
|
|
#
|
|
|
|
# Shorewall version 4 - IPsec Macro
|
|
|
|
#
|
|
|
|
# /usr/share/shorewall/macro.IPsec
|
|
|
|
#
|
2007-07-10 16:12:55 +02:00
|
|
|
# This macro (bidirectional) handles IPsec traffic
|
2007-07-09 22:43:12 +02:00
|
|
|
#
|
|
|
|
###############################################################################
|
2007-11-16 00:24:54 +01:00
|
|
|
#ACTION SOURCE PROTO DEST SOURCE RATE USER/
|
2007-11-29 18:46:13 +01:00
|
|
|
# PORT(S) PORT(S) LIMIT GROUP
|
2007-12-07 00:49:21 +01:00
|
|
|
|
|
|
|
COMMENT IPsec
|
|
|
|
|
2007-07-09 22:43:12 +02:00
|
|
|
PARAM - - udp 500 500 # IKE
|
|
|
|
PARAM - - 50 # ESP
|
|
|
|
PARAM DEST SOURCE udp 500 500 # IKE
|
|
|
|
PARAM DEST SOURCE 50 # ESP
|
|
|
|
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
|