]>
Commit | Line | Data |
---|---|---|
e71593d9 RM |
1 | moon::iptables-restore < /etc/iptables.rules |
2 | sun::iptables-restore < /etc/iptables.rules | |
3 | moon::ip tunnel add vti-moon local PH_IP_MOON remote PH_IP_SUN mode vti key 42 | |
4 | moon::sysctl -w net.ipv4.conf.vti-moon.disable_policy=1 | |
5 | moon::ip link set vti-moon up | |
6 | moon::ip route add 10.2.0.0/16 dev vti-moon | |
7 | moon::iptables -A FORWARD -i vti-moon -j ACCEPT | |
8 | moon::iptables -A FORWARD -o vti-moon -j ACCEPT | |
9 | sun::ip tunnel add vti-sun local PH_IP_SUN remote PH_IP_MOON mode vti key 1337 | |
10 | sun::sysctl -w net.ipv4.conf.vti-sun.disable_policy=1 | |
11 | sun::ip link set vti-sun up | |
12 | sun::ip route add 10.1.0.0/16 dev vti-sun | |
13 | sun::iptables -A FORWARD -i vti-sun -j ACCEPT | |
14 | sun::iptables -A FORWARD -o vti-sun -j ACCEPT | |
35392aa8 TB |
15 | moon::systemctl start strongswan |
16 | sun::systemctl start strongswan | |
e71593d9 RM |
17 | moon::expect-connection gw-gw |
18 | sun::expect-connection gw-gw | |
19 | moon::swanctl --initiate --child net-net |