mirror of
https://gitlab.com/shorewall/code.git
synced 2024-11-22 23:53:30 +01:00
a47c9b9871
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9025 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
18 lines
548 B
Plaintext
18 lines
548 B
Plaintext
#
|
|
# Shorewall6 version 4 - IPsecnat Macro
|
|
#
|
|
# /usr/share/shorewall6/macro.IPsecnat
|
|
#
|
|
# This macro (bidirectional) handles IPsec traffic and Nat-Traversal
|
|
#
|
|
###############################################################################
|
|
#ACTION SOURCE DEST PROTO DEST SOURCE RATE USER/
|
|
# PORT(S) PORT(S) LIMIT GROUP
|
|
PARAM - - udp 500 # IKE
|
|
PARAM - - udp 4500 # NAT-T
|
|
PARAM - - 50 # ESP
|
|
PARAM DEST SOURCE udp 500 # IKE
|
|
PARAM DEST SOURCE udp 4500 # NAT-T
|
|
PARAM DEST SOURCE 50 # ESP
|
|
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
|