]> git.ipfire.org Git - people/pmueller/ipfire-2.x.git/blobdiff - config/rootfiles/core/38/update.sh
IPSec: add lefthostaccess=yes to enable access to the gw itself.
[people/pmueller/ipfire-2.x.git] / config / rootfiles / core / 38 / update.sh
index 68c892d78935b6b49dd1ad1f4727e33a03dfdb04..9a95149ad6ab4e3a0ae60817b37cb7d8b3de2bfe 100644 (file)
@@ -181,12 +181,13 @@ cat /var/ipfire/vpn/ipsec.conf.org | \
 grep -v "disablearrivalcheck=" | \
 grep -v "klipsdebug=" | \
 grep -v "leftfirewall=" | \
+grep -v "lefthostaccess=" | \
 grep -v "charonstart=" | \
 grep -v "aggrmode=" > /var/ipfire/vpn/ipsec.conf
 sed -i "s|ipsec[0-9]=||g" /var/ipfire/vpn/ipsec.conf
 sed -i "s|nat_t ||g" /var/ipfire/vpn/ipsec.conf
 sed -i "s|klips ||g" /var/ipfire/vpn/ipsec.conf
-sed -i "s|^conn [A-Za-z].*$|&\n\tleftfirewall=yes|g" /var/ipfire/vpn/ipsec.conf
+sed -i "s|^conn [A-Za-z].*$|&\n\tleftfirewall=yes\n\tlefthostaccess=yes|g" /var/ipfire/vpn/ipsec.conf
 sed -i "s|^config setup$|&\n\tcharonstart=no|g" /var/ipfire/vpn/ipsec.conf
 chown nobody:nobody /var/ipfire/vpn/ipsec.conf
 chmod 644 /var/ipfire/vpn/ipsec.conf