pass eroutes now need explicit routes

This commit is contained in:
Andreas Steffen 2007-06-08 07:06:10 +00:00
parent b7af55ac87
commit 0b455e2e7b
2 changed files with 2 additions and 0 deletions

View File

@ -1,4 +1,5 @@
moon::ipsec stop
carol::ipsec stop
carol::ip route del 10.1.0.0/16 via PH_IP_MOON
moon::/etc/init.d/iptables stop 2> /dev/null
carol::/etc/init.d/iptables stop 2> /dev/null

View File

@ -4,6 +4,7 @@ moon::iptables -I FORWARD -o eth0 -p tcp -s 10.1.0.0/16 --sport ssh -jACCEPT
carol::/etc/init.d/iptables start 2> /dev/null
carol::iptables -I INPUT -i eth0 -p tcp -s 10.1.0.0/16 --sport ssh -d PH_IP_CAROL -jACCEPT
carol::iptables -I OUTPUT -o eth0 -p tcp -d 10.1.0.0/16 --dport ssh -s PH_IP_CAROL -jACCEPT
carol::ip route add 10.1.0.0/16 via PH_IP_MOON
moon::ipsec start
carol::ipsec start
carol::sleep 2