mirror of
https://github.com/vincentmli/bpfire.git
synced 2026-04-23 09:22:59 +02:00
Move ipsec postrouting rules to a own chain.
This commit is contained in:
@@ -167,7 +167,9 @@ case "$1" in
|
||||
/sbin/iptables -A INPUT -j OPENSSLVIRTUAL -m comment --comment "OPENSSLVIRTUAL INPUT"
|
||||
/sbin/iptables -A FORWARD -j IPSECVIRTUAL -m comment --comment "IPSECVIRTUAL FORWARD"
|
||||
/sbin/iptables -A FORWARD -j OPENSSLVIRTUAL -m comment --comment "OPENSSLVIRTUAL FORWARD"
|
||||
|
||||
/sbin/iptables -t nat -N IPSECPOSTROUTING
|
||||
/sbin/iptables -t nat -A POSTROUTING -j IPSECPOSTROUTING
|
||||
|
||||
# Outgoing Firewall
|
||||
/sbin/iptables -A FORWARD -j OUTGOINGFW
|
||||
|
||||
|
||||
Reference in New Issue
Block a user