mirror of
https://gitlab.com/shorewall/code.git
synced 2025-01-03 12:09:14 +01:00
Add macros
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@6831 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
This commit is contained in:
parent
b1bb62bcc5
commit
4aed98d848
13
Shorewall-common/macro.GRE
Normal file
13
Shorewall-common/macro.GRE
Normal file
@ -0,0 +1,13 @@
|
|||||||
|
#
|
||||||
|
# Shorewall version 4 - GRE Macro
|
||||||
|
#
|
||||||
|
# /usr/share/shorewall/macro.GRE
|
||||||
|
#
|
||||||
|
# This macro handles Generic Routing Encapsulation traffic (RFC 1701)
|
||||||
|
#
|
||||||
|
###############################################################################
|
||||||
|
#ACTION SOURCE DEST PROTO DEST SOURCE ORIGINAL RATE USER/
|
||||||
|
# PORT PORT(S) DEST LIMIT GROUP
|
||||||
|
PARAM - - 47 # GRE
|
||||||
|
PARAM DEST SOURCE 47 # GRE
|
||||||
|
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
|
13
Shorewall-common/macro.IPIP
Normal file
13
Shorewall-common/macro.IPIP
Normal file
@ -0,0 +1,13 @@
|
|||||||
|
#
|
||||||
|
# Shorewall version 4 - IPIP Macro
|
||||||
|
#
|
||||||
|
# /usr/share/shorewall/macro.IPIP
|
||||||
|
#
|
||||||
|
# This macro handles IPIP capsulation traffic
|
||||||
|
#
|
||||||
|
###############################################################################
|
||||||
|
#ACTION SOURCE DEST PROTO DEST SOURCE ORIGINAL RATE USER/
|
||||||
|
# PORT PORT(S) DEST LIMIT GROUP
|
||||||
|
PARAM - - 94 # IPIP
|
||||||
|
PARAM DEST SOURCE 94 # IPIP
|
||||||
|
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
|
15
Shorewall-common/macro.IPsec
Normal file
15
Shorewall-common/macro.IPsec
Normal file
@ -0,0 +1,15 @@
|
|||||||
|
#
|
||||||
|
# Shorewall version 4 - IPsec Macro
|
||||||
|
#
|
||||||
|
# /usr/share/shorewall/macro.IPsec
|
||||||
|
#
|
||||||
|
# This macro handles IPsec traffic
|
||||||
|
#
|
||||||
|
###############################################################################
|
||||||
|
#ACTION SOURCE DEST PROTO DEST SOURCE ORIGINAL RATE USER/
|
||||||
|
# PORT PORT(S) DEST LIMIT GROUP
|
||||||
|
PARAM - - udp 500 500 # IKE
|
||||||
|
PARAM - - 50 # ESP
|
||||||
|
PARAM DEST SOURCE udp 500 500 # IKE
|
||||||
|
PARAM DEST SOURCE 50 # ESP
|
||||||
|
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
|
16
Shorewall-common/macro.IPsecah
Normal file
16
Shorewall-common/macro.IPsecah
Normal file
@ -0,0 +1,16 @@
|
|||||||
|
#
|
||||||
|
# Shorewall version 4 - IPsecah Macro
|
||||||
|
#
|
||||||
|
# /usr/share/shorewall/macro.IPsecah
|
||||||
|
#
|
||||||
|
# This macro handles IPsec authentication (AH) traffic.
|
||||||
|
# This is insecure. You should use ESP with encryption for security.
|
||||||
|
#
|
||||||
|
###############################################################################
|
||||||
|
#ACTION SOURCE DEST PROTO DEST SOURCE ORIGINAL RATE USER/
|
||||||
|
# PORT PORT(S) DEST LIMIT GROUP
|
||||||
|
PARAM - - udp 500 500 # IKE
|
||||||
|
PARAM - - 51 # AH
|
||||||
|
PARAM DEST SOURCE udp 500 500 # IKE
|
||||||
|
PARAM DEST SOURCE 51 # AH
|
||||||
|
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
|
17
Shorewall-common/macro.IPsecnat
Normal file
17
Shorewall-common/macro.IPsecnat
Normal file
@ -0,0 +1,17 @@
|
|||||||
|
#
|
||||||
|
# Shorewall version 4 - IPsecnat Macro
|
||||||
|
#
|
||||||
|
# /usr/share/shorewall/macro.IPsecnat
|
||||||
|
#
|
||||||
|
# This macro handles IPsec traffic and Nat-Traversal
|
||||||
|
#
|
||||||
|
###############################################################################
|
||||||
|
#ACTION SOURCE DEST PROTO DEST SOURCE ORIGINAL RATE USER/
|
||||||
|
# PORT PORT(S) DEST LIMIT GROUP
|
||||||
|
PARAM - - udp 500 # IKE
|
||||||
|
PARAM - - udp 4500 # NAT-T
|
||||||
|
PARAM - - 50 # ESP
|
||||||
|
PARAM DEST SOURCE udp 500 # IKE
|
||||||
|
PARAM DEST SOURCE udp 4500 # NAT-T
|
||||||
|
PARAM DEST SOURCE 50 # ESP
|
||||||
|
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
|
13
Shorewall-common/macro.L2TP
Normal file
13
Shorewall-common/macro.L2TP
Normal file
@ -0,0 +1,13 @@
|
|||||||
|
#
|
||||||
|
# Shorewall version 4 - L2TP Macro
|
||||||
|
#
|
||||||
|
# /usr/share/shorewall/macro.L2TP
|
||||||
|
#
|
||||||
|
# This macro handles Layer 2 Tunneling Protocol traffic (RFC 2661)
|
||||||
|
#
|
||||||
|
###############################################################################
|
||||||
|
#ACTION SOURCE DEST PROTO DEST SOURCE ORIGINAL RATE USER/
|
||||||
|
# PORT PORT(S) DEST LIMIT GROUP
|
||||||
|
PARAM - - udp 1701 # L2TP
|
||||||
|
PARAM DEST SOURCE udp 1701 # L2TP
|
||||||
|
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
|
Loading…
Reference in New Issue
Block a user