summaryrefslogtreecommitdiff
path: root/share/ipsec/rc.vpn
diff options
context:
space:
mode:
Diffstat (limited to 'share/ipsec/rc.vpn')
-rw-r--r--share/ipsec/rc.vpn7
1 files changed, 4 insertions, 3 deletions
diff --git a/share/ipsec/rc.vpn b/share/ipsec/rc.vpn
index 65f832e8a9c..dc1546241d1 100644
--- a/share/ipsec/rc.vpn
+++ b/share/ipsec/rc.vpn
@@ -1,7 +1,7 @@
#!/bin/sh
#
-# $OpenBSD: rc.vpn,v 1.12 2000/09/27 04:11:21 angelos Exp $
+# $OpenBSD: rc.vpn,v 1.13 2000/09/27 04:36:55 angelos Exp $
#
# Richard Reiner, Ph.D., FSC Internet Corp.
# rreiner@fscinternet.com
@@ -140,11 +140,12 @@ do
if [ "${remote_net}" != "0x0" ]; then
$DEBUG $ipsecadm flow \
-proto esp -dst $GW_PEER -spi $SPI_OUT -out -require \
+ -src $GW_LOCAL \
-addr $GW_LOCAL 255.255.255.255 $remote_net $remote_mask \
$DEBUG $ipsecadm flow \
-proto esp -dst $GW_PEER -spi $SPI_IN -in -require \
- -src $GW_LOCAL
+ -src $GW_LOCAL \
-addr $remote_net $remote_mask $GW_LOCAL 255.255.255.255
peercount=$(($peercount + 1))
else
@@ -168,7 +169,7 @@ do
$DEBUG $ipsecadm flow \
-proto esp -dst $GW_PEER -spi $SPI_IN -in -require \
- -src $GW_LOCAL
+ -src $GW_LOCAL \
-addr $GW_PEER 255.255.255.255 $local_net $local_mask
mycount=$(($mycount + 1))
else