On 6/5/20 8:08 PM, PGNet Dev wrote:
> On 6/5/20 4:11 PM, PGNet Dev wrote:
>>> That rule will be wiped out the next time you 'shorewall6 reload' or
> 
> verified that to be the case
> 
> moved all the wireguard-config ip(6)tables @remote rules to shorewall
> kept only the iproute rules in wireguard config @remote
> 
> added a system override to wg0 systemd unit instances @remote & @local
> 
>  [Unit]
>  Wants=shorewall-lite shorewall6-lite
>  Before=shorewall-lite.target shorewall6-lite.target
> 
> added an IPv6 snat rule for wg0 <-> external traffic @remote
> 
> 
> now, all IPv6 access from @remote, @local & @lan-behind-local is working as 
> intended.
> 
> thx 4 the ptrs! o/
> 

Glad to hear that you got it working..

-Tom
-- 
Tom Eastep        \ Q: What do you get when you cross a mobster
Shoreline,         \    with an international standard?
Washington, USA     \ A: Someone who makes you an offer you
http://shorewall.org \    can't understand
                      \________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to