[strongSwan] VPN tunnel firewall rules

Modster, Anthony Anthony.Modster at Teledyne.com
Wed Jun 5 20:30:24 CEST 2019


? can strongswan set firewall policies

Looking for a way to set the firewall to block all traffic inside the VPN tunnel, except for what is expected.

I could use swanctlconf "connections.<conn>,children<child>.updown scripts and add iptables rules there.


