On Wed, 03 Jun 2009 07:35:13 -0700, [email protected] said:

> Precede that DNAT rule with:
> 
> NONAT    $FW    net:$SystemB_ExtIP     udp       1194

Thanks Tom, very much appreciated.

Chris: I think I understand what you are saying, but the whole point of my
question was to enable traffic addressed to the remote end *public*
address to be routed via the VPN.

Keith

Attachment: signature.asc
Description: PGP signature

------------------------------------------------------------------------------
OpenSolaris 2009.06 is a cutting edge operating system for enterprises 
looking to deploy the next generation of Solaris that includes the latest 
innovations from Sun and the OpenSource community. Download a copy and 
enjoy capabilities such as Networking, Storage and Virtualization. 
Go to: http://p.sf.net/sfu/opensolaris-get
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to