]> git.ipfire.org Git - people/pmueller/ipfire-2.x.git/commitdiff
ipsec-policy: Don't install any block rules for connections with an interface
authorMichael Tremer <michael.tremer@ipfire.org>
Thu, 29 Nov 2018 16:00:52 +0000 (16:00 +0000)
committerMichael Tremer <michael.tremer@ipfire.org>
Mon, 4 Feb 2019 18:20:36 +0000 (18:20 +0000)
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
config/firewall/ipsec-policy

index 32d171f353e48f23add9c659eb530bb01b6a19c6..e2048844a837220cfeb282c2ec3a5bbfa403ca5f 100644 (file)
@@ -95,6 +95,9 @@ install_policy() {
                                ;;
                esac
 
+               # Install firewall rules only for interfaces without interface
+               [ -n "${interface_mode}" ] && continue
+
                # Split multiple subnets
                rightsubnets="${rightsubnets//\|/ }"