On 6/5/20 8:08 PM, PGNet Dev wrote: > On 6/5/20 4:11 PM, PGNet Dev wrote: >>> That rule will be wiped out the next time you 'shorewall6 reload' or > > verified that to be the case > > moved all the wireguard-config ip(6)tables @remote rules to shorewall > kept only the iproute rules in wireguard config @remote > > added a system override to wg0 systemd unit instances @remote & @local > > [Unit] > Wants=shorewall-lite shorewall6-lite > Before=shorewall-lite.target shorewall6-lite.target > > added an IPv6 snat rule for wg0 <-> external traffic @remote > > > now, all IPv6 access from @remote, @local & @lan-behind-local is working as > intended. > > thx 4 the ptrs! o/ >
Glad to hear that you got it working.. -Tom -- Tom Eastep \ Q: What do you get when you cross a mobster Shoreline, \ with an international standard? Washington, USA \ A: Someone who makes you an offer you http://shorewall.org \ can't understand \________________________________________
signature.asc
Description: OpenPGP digital signature
_______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users