summaryrefslogtreecommitdiff
path: root/data/templates/ipsec
diff options
context:
space:
mode:
authorChristian Poessinger <christian@poessinger.com>2021-07-04 21:02:54 +0200
committerChristian Poessinger <christian@poessinger.com>2021-07-04 21:02:54 +0200
commit1c727bd25ef28fb729f66072f026be560978853d (patch)
tree74dcac64f2fe59eade6399c61eca45a4f1471b43 /data/templates/ipsec
parentc8bf1deec9ce169f74049423ba21f6ef1360a3df (diff)
downloadvyos-1x-1c727bd25ef28fb729f66072f026be560978853d.tar.gz
vyos-1x-1c727bd25ef28fb729f66072f026be560978853d.zip
ipsec: T1210: T1251: add "local" traffic-selector include definition
Used by both site2site and remote-access/road-warrior VPN connections.
Diffstat (limited to 'data/templates/ipsec')
-rw-r--r--data/templates/ipsec/swanctl/remote_access.tmpl4
1 files changed, 2 insertions, 2 deletions
diff --git a/data/templates/ipsec/swanctl/remote_access.tmpl b/data/templates/ipsec/swanctl/remote_access.tmpl
index 004aace2e..a3a1cf0b2 100644
--- a/data/templates/ipsec/swanctl/remote_access.tmpl
+++ b/data/templates/ipsec/swanctl/remote_access.tmpl
@@ -30,8 +30,8 @@
rekey_time = {{ esp.lifetime }}s
rand_time = 540s
dpd_action = clear
-{% set local_prefix = rw_conf.local_network.prefix if rw_conf.local_network is defined and rw_conf.local_network.prefix is defined else ['0.0.0.0/0', '::/0'] %}
-{% set local_port = rw_conf.local_network.port if rw_conf.local_network is defined and rw_conf.local_network.port is defined else '' %}
+{% set local_prefix = rw_conf.local.prefix if rw_conf.local is defined and rw_conf.local.prefix is defined else ['0.0.0.0/0', '::/0'] %}
+{% set local_port = rw_conf.local.port if rw_conf.local is defined and rw_conf.local.port is defined else '' %}
{% set local_suffix = '[%any/{1}]'.format(local_port) if local_port else '' %}
local_ts = {{ local_prefix | join(local_suffix + ",") }}{{ local_suffix }}
}