]> git.ipfire.org Git - ipfire-2.x.git/blobdiff - lfs/stage2
ipsec: Add block rules to avoid conntrack entries
[ipfire-2.x.git] / lfs / stage2
index 3203983e287a386515a787e278d41f2bde2a4677..ec5d1170d972eb587045e954ae27bcaff3d1fbe9 100644 (file)
@@ -63,7 +63,12 @@ $(TARGET) :
 
        # Symlink /var/run -> /run.
        ln -svf ../run /var/run
-       
+
+ifeq "$(MACHINE)" "x86_64"
+       ln -svf lib /lib64
+       ln -svf lib /usr/lib64
+endif
+
        # Symlinks
        # for this reason, stage2 rebuild will broke the iso:perl, grubbatch
        -ln -sv /tools/bin/{bash,cat,echo,pwd,stty} /bin
@@ -109,6 +114,8 @@ $(TARGET) :
                /usr/lib/firewall/rules.pl
        install -m 644 $(DIR_SRC)/config/firewall/firewall-lib.pl \
                /usr/lib/firewall/firewall-lib.pl
+       install -m 755 $(DIR_SRC)/config/firewall/ipsec-block \
+               /usr/lib/firewall/ipsec-block
 
        # Nobody user
        -mkdir -p /home/nobody