On 12/20/2012 08:22 AM, Radoslaw Kamil Ejsmont wrote:
> Tried that - eth0 is a bridge port. If I do, then policies between
> lan/net and vpn don't work - shorewall complains about vpn and lan/net
> not being on the same bridge device.

zones:

fw              firewall
world           ipv4
net:world       bport
lan:net         bport
vpn:world       bport

interfaces:

FORMAT 2
world           br0             bridge
net             br0:eth0
vpn             br0:tap0

hosts:

lan     eth0:192.168.0.0/24


-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

------------------------------------------------------------------------------
LogMeIn Rescue: Anywhere, Anytime Remote support for IT. Free Trial
Remotely access PCs and mobile devices and provide instant support
Improve your efficiency, and focus on delivering more value-add services
Discover what IT Professionals Know. Rescue delivers
http://p.sf.net/sfu/logmein_12329d2d
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to