On 6/17/2015 12:01 PM, Иван Иванов wrote:
> 2015-06-17 18:55 GMT+03:00 Tom Eastep <[email protected]
> <mailto:[email protected]>>:
>
>
>
> Shorewall documentation says:
> " ZONE - zone
>      The zone of the physical interface through which tunnel traffic
> passes.
>      This is normally your internet zone."
> I think this means "net" zone.
Yes -- my bad.

You must remove the 'physical=+' option from the net zone. And since the
default route is out of eth0, you can also delete the 'routefilter' option.

-Tom

-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to