]> git.ipfire.org Git - people/pmueller/ipfire-2.x.git/commit
strongswan: Manually install all routes for non-routed VPNs
authorMichael Tremer <michael.tremer@ipfire.org>
Mon, 8 Apr 2019 15:41:24 +0000 (16:41 +0100)
committerArne Fitzenreiter <arne_f@ipfire.org>
Tue, 9 Apr 2019 05:22:26 +0000 (07:22 +0200)
commitd66433fca6323940ac217d7a0834a0b178d509eb
tree0271d59fa3f4013bb8122dd2d7ee2db86b31b70a
parent49ce16f9bea9f1812be5cb41ef7b390556fc2364
strongswan: Manually install all routes for non-routed VPNs

This is a regression from disabling charon.install_routes.

VPNs are routing fine as long as traffic is passing through
the firewall. Traps are not propertly used as long as these
routes are not present and therefore we won't trigger any
tunnels when traffic originates from the firewall.

Fixes: #12045
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
lfs/strongswan
src/patches/strongswan-ipfire-revert.patch [new file with mode: 0644]
src/scripts/ipsec-interfaces