Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
# Check if this a net-to-net connection
[ "${type}" = "net" ] || continue
# Check if this a net-to-net connection
[ "${type}" = "net" ] || continue
+ # Install permissions for GRE traffic
+ case "${interface_mode}" in
+ gre)
+ if [ -n "${remote}" ]; then
+ iptables -A IPSECINPUT -p gre \
+ -s "${remote}" -j ACCEPT
+
+ iptables -A IPSECOUTPUT -p gre \
+ -d "${remote}" -j ACCEPT
+ fi
+ ;;
+ esac
+
# Split multiple subnets
rightsubnets="${rightsubnets//\|/ }"
# Split multiple subnets
rightsubnets="${rightsubnets//\|/ }"