testing: Allow AH packets in default INPUT/OUTPUT chains

This commit is contained in:
Martin Willi 2013-10-09 15:05:46 +02:00
parent 4817595876
commit 71d468ec90
1 changed files with 4 additions and 0 deletions

View File

@ -9,6 +9,10 @@
-A INPUT -i eth0 -p 50 -j ACCEPT
-A OUTPUT -o eth0 -p 50 -j ACCEPT
# allow ah
-A INPUT -i eth0 -p 51 -j ACCEPT
-A OUTPUT -o eth0 -p 51 -j ACCEPT
# allow IKE
-A INPUT -i eth0 -p udp --sport 500 --dport 500 -j ACCEPT
-A OUTPUT -o eth0 -p udp --dport 500 --sport 500 -j ACCEPT