mirror of
https://gitlab.com/shorewall/code.git
synced 2024-11-24 16:43:21 +01:00
8c9c96c8d7
Signed-off-by: Tuomo Soini <tis@foobar.fi>
15 lines
430 B
Plaintext
15 lines
430 B
Plaintext
#
|
|
# Shorewall -- /usr/share/shorewall/macro.IPsecnat
|
|
#
|
|
# This macro (bidirectional) handles IPsec traffic and Nat-Traversal
|
|
#
|
|
###############################################################################
|
|
#ACTION SOURCE DEST PROTO DPORT SPORT ORIGDEST RATE USER
|
|
|
|
PARAM - - udp 500 # IKE
|
|
PARAM - - udp 4500 # NAT-T
|
|
PARAM - - 50 # ESP
|
|
PARAM DEST SOURCE udp 500 # IKE
|
|
PARAM DEST SOURCE udp 4500 # NAT-T
|
|
PARAM DEST SOURCE 50 # ESP
|