[strongSwan] what's the expression of a range of address?
hakke_007 at gmx.de
Thu Feb 25 13:28:59 CET 2016
On 02/25/2016 05:03 AM, Tony.He 賀雙鳳 wrote:
> Here is the topology.
> local subnet 192.168.1.0/24 -GW A ---Internet----GW B – local subnet 192.168.2.0/24.
> I want to only allow hosts whose IP addresses in a range to be part of the tunnel. For example, 192.168.1.2-192.168.1.8 are allowed
> in site A and 192.168.2.3-192.168.2.11 are allowed in site B. Can anyone tell me how to configure? Thanks in advance.
> Best regards
Try playing around with prips , this could help you dividing your
ranges into subnets/hosts. They can be configured as list of subnets
in. As for site A you would use
likewise for site B:
That's definitely no very convinient way. The alternative, using
firewall rules might come in more handy.
More information about the Users