diff options
author | Yves-Alexis Perez <corsac@debian.org> | 2013-11-01 13:32:07 +0100 |
---|---|---|
committer | Yves-Alexis Perez <corsac@debian.org> | 2013-11-01 13:32:07 +0100 |
commit | 5313d2d78ca150515f7f5eb39801c100690b6b29 (patch) | |
tree | c78e420367283bb1b16f14210b12687cdfbd26eb /testing/hosts/default/etc/iptables.rules | |
parent | 6b99c8d9cff7b3e8ae8f3204b99e7ea40f791349 (diff) | |
download | vyos-strongswan-5313d2d78ca150515f7f5eb39801c100690b6b29.tar.gz vyos-strongswan-5313d2d78ca150515f7f5eb39801c100690b6b29.zip |
Imported Upstream version 5.1.1
Diffstat (limited to 'testing/hosts/default/etc/iptables.rules')
-rw-r--r-- | testing/hosts/default/etc/iptables.rules | 4 |
1 files changed, 4 insertions, 0 deletions
diff --git a/testing/hosts/default/etc/iptables.rules b/testing/hosts/default/etc/iptables.rules index c3f036cf9..b69e1429e 100644 --- a/testing/hosts/default/etc/iptables.rules +++ b/testing/hosts/default/etc/iptables.rules @@ -9,6 +9,10 @@ -A INPUT -i eth0 -p 50 -j ACCEPT -A OUTPUT -o eth0 -p 50 -j ACCEPT +# allow ah +-A INPUT -i eth0 -p 51 -j ACCEPT +-A OUTPUT -o eth0 -p 51 -j ACCEPT + # allow IKE -A INPUT -i eth0 -p udp --sport 500 --dport 500 -j ACCEPT -A OUTPUT -o eth0 -p udp --dport 500 --sport 500 -j ACCEPT |