aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--manifests/rules/ipsec.pp18
1 files changed, 15 insertions, 3 deletions
diff --git a/manifests/rules/ipsec.pp b/manifests/rules/ipsec.pp
index c609d0a..3e9db55 100644
--- a/manifests/rules/ipsec.pp
+++ b/manifests/rules/ipsec.pp
@@ -1,18 +1,30 @@
class shorewall::rules::ipsec {
- shorewall::rule { 'net-me-ipsec-udp':
+ shorewall::rule {
+ 'net-me-ipsec-udp':
source => 'net',
destination => '$FW',
proto => 'udp',
destinationport => '500',
order => 240,
action => 'ACCEPT';
- }
- shorewall::rule { 'me-net-ipsec-udp':
+ 'me-net-ipsec-udp':
source => '$FW',
destination => 'net',
proto => 'udp',
destinationport => '500',
order => 240,
action => 'ACCEPT';
+ 'net-me-ipsec':
+ source => 'net',
+ destination => '$FW',
+ proto => 'esp',
+ order => 240,
+ action => 'ACCEPT';
+ 'me-net-ipsec':
+ source => '$FW',
+ destination => 'net',
+ proto => 'esp',
+ order => 240,
+ action => 'ACCEPT';
}
}