forked from extern/shorewall_code
17 lines
564 B
Plaintext
17 lines
564 B
Plaintext
|
#
|
||
|
# Shorewall version 4 - IPsecah Macro
|
||
|
#
|
||
|
# /usr/share/shorewall/macro.IPsecah
|
||
|
#
|
||
|
# This macro handles IPsec authentication (AH) traffic.
|
||
|
# This is insecure. You should use ESP with encryption for security.
|
||
|
#
|
||
|
###############################################################################
|
||
|
#ACTION SOURCE DEST PROTO DEST SOURCE ORIGINAL RATE USER/
|
||
|
# PORT PORT(S) DEST LIMIT GROUP
|
||
|
PARAM - - udp 500 500 # IKE
|
||
|
PARAM - - 51 # AH
|
||
|
PARAM DEST SOURCE udp 500 500 # IKE
|
||
|
PARAM DEST SOURCE 51 # AH
|
||
|
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
|