From 81c63b0eed39432878f78727f60a1e7499645199 Mon Sep 17 00:00:00 2001 From: Yves-Alexis Perez Date: Fri, 11 Jul 2014 07:23:31 +0200 Subject: Imported Upstream version 5.2.0 --- testing/tests/sql/shunt-policies/description.txt | 11 ----------- 1 file changed, 11 deletions(-) delete mode 100644 testing/tests/sql/shunt-policies/description.txt (limited to 'testing/tests/sql/shunt-policies/description.txt') diff --git a/testing/tests/sql/shunt-policies/description.txt b/testing/tests/sql/shunt-policies/description.txt deleted file mode 100644 index 269e7957c..000000000 --- a/testing/tests/sql/shunt-policies/description.txt +++ /dev/null @@ -1,11 +0,0 @@ -All traffic from the clients alice and venus is tunneled -by default gateway moon to VPN gateway sun. In order to -prevent local traffic within the 10.1.0.0/16 subnet to enter the -tunnel, a local-net shunt policy with type=pass is set up. -In order for the shunt to work, automatic route insertion must be disabled -by adding install_routes = no to the charon section of strongswan.conf. -

-In order to demonstrate the use of type=drop shunt policies, the -venus-icmp connection prevents ICMP traffic to and from venus -to use the IPsec tunnel by dropping such packets. Thanks to the local-net -pass shunt, venus and moon can still ping each other, though. -- cgit v1.2.3