Re: [Shorewall-users] Shorewall with OpenVPN Hub and Spoke

2024-12-11 Thread simonseys via Shorewall-users
Hi Tuomo, > You can change this behaviour by changing vpn-vpn policy in policy > file. Default policy in shorewall is ACCEPT for inter-zone traffic. I assume you are referring to the policy file. If so, mine contains: $FW net ACCEPT net all DROP#$

[Shorewall-users] Shorewall with OpenVPN Hub and Spoke

2024-11-27 Thread simonseys via Shorewall-users
Hi. I am using Shorewall 5.2.8 on Debian Bookworm. I'm building a system to act as a VPN server in a hub and spoke topology where the clients connect to the sever and Shorewall is used to selectively allow traffic between clients. Therefore I am using routeback for my vpn tun interface. At firs