Pre-Firewall: added OVPNNAT to POSTROUTING Chain

This commit is contained in:
Alexander Marx
2013-06-03 15:22:50 +02:00
parent a19ff965bb
commit b2e333d4cf

View File

@@ -178,12 +178,14 @@ case "$1" in
/sbin/iptables -N IPSECFORWARD /sbin/iptables -N IPSECFORWARD
/sbin/iptables -N IPSECOUTPUT /sbin/iptables -N IPSECOUTPUT
/sbin/iptables -N OPENSSLVIRTUAL /sbin/iptables -N OPENSSLVIRTUAL
/sbin/iptables -N OVPNNAT
/sbin/iptables -A INPUT -j IPSECINPUT /sbin/iptables -A INPUT -j IPSECINPUT
/sbin/iptables -A INPUT -j OPENSSLVIRTUAL -m comment --comment "OPENSSLVIRTUAL INPUT" /sbin/iptables -A INPUT -j OPENSSLVIRTUAL -m comment --comment "OPENSSLVIRTUAL INPUT"
/sbin/iptables -A FORWARD -j IPSECFORWARD /sbin/iptables -A FORWARD -j IPSECFORWARD
/sbin/iptables -A FORWARD -j OPENSSLVIRTUAL -m comment --comment "OPENSSLVIRTUAL FORWARD" /sbin/iptables -A FORWARD -j OPENSSLVIRTUAL -m comment --comment "OPENSSLVIRTUAL FORWARD"
/sbin/iptables -A OUTPUT -j IPSECOUTPUT /sbin/iptables -A OUTPUT -j IPSECOUTPUT
/sbin/iptables -t nat -N IPSECNAT /sbin/iptables -t nat -N IPSECNAT
/sbin/iptables -t nat -A POSTROUTING -j OVPNNAT
/sbin/iptables -t nat -A POSTROUTING -j IPSECNAT /sbin/iptables -t nat -A POSTROUTING -j IPSECNAT
# Outgoing Firewall # Outgoing Firewall