On 12/20/2012 08:22 AM, Radoslaw Kamil Ejsmont wrote: > Tried that - eth0 is a bridge port. If I do, then policies between > lan/net and vpn don't work - shorewall complains about vpn and lan/net > not being on the same bridge device.
zones: fw firewall world ipv4 net:world bport lan:net bport vpn:world bport interfaces: FORMAT 2 world br0 bridge net br0:eth0 vpn br0:tap0 hosts: lan eth0:192.168.0.0/24 -Tom -- Tom Eastep \ When I die, I want to go like my Grandfather who Shoreline, \ died peacefully in his sleep. Not screaming like Washington, USA \ all of the passengers in his car http://shorewall.net \________________________________________________ ------------------------------------------------------------------------------ LogMeIn Rescue: Anywhere, Anytime Remote support for IT. Free Trial Remotely access PCs and mobile devices and provide instant support Improve your efficiency, and focus on delivering more value-add services Discover what IT Professionals Know. Rescue delivers http://p.sf.net/sfu/logmein_12329d2d _______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
