mirror of
https://github.com/Ysurac/openmptcprouter-feeds.git
synced 2025-02-13 02:51:50 +00:00
Add needed SNAT for glorytun
This commit is contained in:
parent
8c42565f54
commit
7d9087d285
1 changed files with 13 additions and 6 deletions
|
@ -23,18 +23,25 @@ EOF
|
||||||
uci -q batch <<-EOF >/dev/null
|
uci -q batch <<-EOF >/dev/null
|
||||||
add firewall zone
|
add firewall zone
|
||||||
set firewall.@zone[-1].name=vpn
|
set firewall.@zone[-1].name=vpn
|
||||||
set firewall.@zone[-1].network='glorytun'
|
set firewall.@zone[-1].network=glorytun
|
||||||
set firewall.@zone[-1].masq='1'
|
set firewall.@zone[-1].masq=1
|
||||||
set firewall.@zone[-1].input='REJECT'
|
set firewall.@zone[-1].input=REJECT
|
||||||
set firewall.@zone[-1].forward='REJECT'
|
set firewall.@zone[-1].forward=REJECT
|
||||||
set firewall.@zone[-1].output='ACCEPT'
|
set firewall.@zone[-1].output=ACCEPT
|
||||||
set firewall.allow_dhcp_request_vpn=rule
|
set firewall.allow_dhcp_request_vpn=rule
|
||||||
set firewall.allow_dhcp_request_vpn.name="Allow-DHCP-Request-VPN"
|
set firewall.allow_dhcp_request_vpn.name=Allow-DHCP-Request-VPN
|
||||||
set firewall.allow_dhcp_request_vpn.src=glorytun
|
set firewall.allow_dhcp_request_vpn.src=glorytun
|
||||||
set firewall.allow_dhcp_request_vpn.proto=udp
|
set firewall.allow_dhcp_request_vpn.proto=udp
|
||||||
set firewall.allow_dhcp_request_vpn.dest_port=67
|
set firewall.allow_dhcp_request_vpn.dest_port=67
|
||||||
set firewall.allow_dhcp_request_vpn.target=ACCEPT
|
set firewall.allow_dhcp_request_vpn.target=ACCEPT
|
||||||
set firewall.allow_dhcp_request_vpn.family=ipv4
|
set firewall.allow_dhcp_request_vpn.family=ipv4
|
||||||
|
set firewall.redirect_vpn_to_lan=redirect
|
||||||
|
set firewall.redirect_vpn_to_lan.name=Redirect-VPN-to-LAN
|
||||||
|
set firewall.redirect_vpn_to_lan.src=vpn
|
||||||
|
set firewall.redirect_vpn_to_lan.dest=lan
|
||||||
|
set firewall.redirect_vpn_to_lan.proto=all
|
||||||
|
set firewall.redirect_vpn_to_lan.enabled=1
|
||||||
|
set firewall.redirect_vpn_to_lan.src_dip=192.168.100.1
|
||||||
commit firewall
|
commit firewall
|
||||||
EOF
|
EOF
|
||||||
|
|
||||||
|
|
Loading…
Reference in a new issue