diff --git a/docs/VPNBasics.xml b/docs/VPNBasics.xml index 0e273f5b8..4a8e6f665 100644 --- a/docs/VPNBasics.xml +++ b/docs/VPNBasics.xml @@ -115,7 +115,7 @@ Incoming traffic is similar. - +
@@ -203,8 +203,8 @@ loc ipv4 /etc/shorewall/interfaces: - #ZONE INTERFACE BROADCAST OPTION -net eth0 - tcpflags,routefilter + #ZONE INTERFACE OPTION +net eth0 tcpflags,routefilter loc eth1 - rem ppp0 -
@@ -216,7 +216,7 @@ loc eth1 - client(s) and the local zone. You can do that with a couple of policies: - #SOURCE DESTINATION POLICY LEVEL BURST/LIMIT + #SOURCE DESTINATION POLICY LOGLEVEL BURST rem loc ACCEPT loc rem ACCEPT @@ -259,8 +259,8 @@ rem2 ipv4 #Remote LAN 2 /etc/shorewall/interfaces: - #ZONE INTERFACE BROADCAST OPTION -net eth0 - tcpflags,routefilter + #ZONE INTERFACE OPTION +net eth0 tcpflags,routefilter loc eth1 - - tun+ - @@ -291,15 +291,14 @@ rem2 tun+:10.0.1.0/24 /etc/shorewall/tunnels:
- #TYPE ZONE GATEWAY GATEWAY ZONE + #TYPE ZONE GATEWAY GATEWAY_ZONE ipsec Z1 1.2.3.4 Z2
/etc/shorewall/rules:
- #ACTION SOURCE DEST PROTO DEST SOURCE -# PORT PORT(S) + #ACTION SOURCE DEST PROTO DPORT SPORT ACCEPT $FW Z1:1.2.3.4 udp 500 ACCEPT Z1:1.2.3.4 $FW udp 500 ACCEPT $FW Z1:1.2.3.4 50 @@ -322,15 +321,14 @@ ACCEPT Z2:1.2.3.4 $FW udp 500 /etc/shorewall/tunnels:
- #TYPE ZONE GATEWAY GATEWAY ZONE + #TYPE ZONE GATEWAY GATEWAY_ZONE pptpserver Z1 1.2.3.4
/etc/shorewall/rules:
- #ACTION SOURCE DEST PROTO DEST SOURCE -# PORT PORT(S) + #ACTION SOURCE DEST PROTO DPORT SPORT ACCEPT Z1:1.2.3.4 $FW tcp 1723 ACCEPT $FW Z1:1.2.3.4 47 @@ -347,15 +345,14 @@ ACCEPT Z1:1.2.3.4 $FW 47 /etc/shorewall/tunnels:
- #TYPE ZONE GATEWAY GATEWAY ZONE + #TYPE ZONE GATEWAY GATEWAY_ZONE openvpn:port Z1 1.2.3.4
/etc/shorewall/rules:
- #ACTION SOURCE DEST PROTO DEST SOURCE -# PORT PORT(S) + #ACTION SOURCE DEST PROTO DPORT SPORT ACCEPT Z1:1.2.3.4 $FW udp port ACCEPT $FW Z1:1.2.3.4 udp port @@ -364,15 +361,14 @@ ACCEPT $FW Z1:1.2.3.4 udp port/etc/shorewall/tunnels:
- #TYPE ZONE GATEWAY GATEWAY ZONE + #TYPE ZONE GATEWAY GATEWAY_ZONE openvpnclient:port Z1 1.2.3.4
/etc/shorewall/rules:
- #ACTION SOURCE DEST PROTO DEST SOURCE -# PORT PORT(S) + #ACTION SOURCE DEST PROTO DPORT SPORT ACCEPT Z1:1.2.3.4 $FW udp - port ACCEPT $FW Z1:1.2.3.4 udp port @@ -381,15 +377,14 @@ ACCEPT $FW Z1:1.2.3.4 udp port/etc/shorewall/tunnels:
- #TYPE ZONE GATEWAY GATEWAY ZONE + #TYPE ZONE GATEWAY GATEWAY_ZONE openvpnserver:port Z1 1.2.3.4
/etc/shorewall/rules:
- #ACTION SOURCE DEST PROTO DEST SOURCE -# PORT PORT(S) + #ACTION SOURCE DEST PROTO DPORT SPORT ACCEPT Z1:1.2.3.4 $FW udp port ACCEPT $FW Z1:1.2.3.4 udp - port