[strongSwan] UCI configuration

Noel Kuntze noel at familie-kuntze.de
Sun Jan 22 22:28:04 CET 2017


On 22.01.2017 22:22, Nicola Feltrin wrote:
> and
> because it seems like it would allow to assign VPN traffic to a
> specific firewall zone.

It doesn't.

> As a bonus, it would be interesting to know if there is a way to
> specify a firewall zone with the standard configuration files.

No, generally not, because there's no special interface for IPsec traffic,
except if you have a relatively recent kernel with VTI support and create a VTI.

-- 

Mit freundlichen Grüßen/Kind Regards,
Noel Kuntze

GPG Key ID: 0x63EC6658
Fingerprint: 23CA BB60 2146 05E7 7278 6592 3839 298F 63EC 6658


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 866 bytes
Desc: OpenPGP digital signature
URL: <http://lists.strongswan.org/pipermail/users/attachments/20170122/6f2aa7ba/attachment.sig>


More information about the Users mailing list