I am building a openvpn gateway/firewall.
I have 2 zones: vsite and vmobile (for vpn site2site and vpn roadwarrior 
respectively). And in /etc/shorewall/interfaces, I define:
vsite tun+
vmobile tun9

In Openvpn, I have an instance running to serve roadwarrior on tun9. While the 
other tun interfaces (tun0 - tun8) are for sites, would rules/policy defined 
for vsite will be valid for vmobile?

If that's the case, is there a way so that vsite zone (a group of tunnels) and 
vmobile zone separate? I like the idea of being able to do:
vsite tun+,!tun9 (something like this), don't know if it is possible.

Shorewall version: shorewall-4.2.9-1

Regards,
Lito


      

------------------------------------------------------------------------------
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to