Hi,

This is just an offer to improve the existing config file for tunnels in
Shorewall.
Restricting a site to site tunnel remote IP's may require that you will put
multiple entries for the same tunnel (when using multiple ISP's and few
gateways for redundancy).
The restriction is that in a tunnel remote IP/Network entry you can't use
group of entries as you would use in rules or route rules(comma seperated),
if this can be enhanced to support it it will be great (for now using
regular rules until such option will be available).

Thanks,
Shalom Cohen
------------------------------------------------------------------------------
Better than sec? Nothing is better than sec when it comes to
monitoring Big Data applications. Try Boundary one-second 
resolution app monitoring today. Free.
http://p.sf.net/sfu/Boundary-dev2dev
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to