shorewall_code/Shorewall-common/macro.IPsecnat
teastep 4aed98d848 Add macros
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@6831 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2007-07-09 20:43:12 +00:00

18 lines
542 B
Plaintext

#
# Shorewall version 4 - IPsecnat Macro
#
# /usr/share/shorewall/macro.IPsecnat
#
# This macro handles IPsec traffic and Nat-Traversal
#
###############################################################################
#ACTION SOURCE DEST PROTO DEST SOURCE ORIGINAL RATE USER/
# PORT PORT(S) DEST LIMIT GROUP
PARAM - - udp 500 # IKE
PARAM - - udp 4500 # NAT-T
PARAM - - 50 # ESP
PARAM DEST SOURCE udp 500 # IKE
PARAM DEST SOURCE udp 4500 # NAT-T
PARAM DEST SOURCE 50 # ESP
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE