allow protocol configuration
This commit is contained in:
parent
e319adc501
commit
6812a83a6e
@ -8,8 +8,8 @@ PreUp = sysctl -w net.ipv4.ip_forward=1
|
|||||||
PreUp = sysctl -w net.ipv6.conf.all.forwarding=1
|
PreUp = sysctl -w net.ipv6.conf.all.forwarding=1
|
||||||
|
|
||||||
{% for config in wireguard_gateway_forward %}
|
{% for config in wireguard_gateway_forward %}
|
||||||
PreUp = iptables -t nat -A PREROUTING -i {{ wireguard_gateway_interface }} -p tcp --dport {{ config.server_port }} -j DNAT --to-destination {{ wireguard_gateway_net_prefix }}.{{ config.client_index }}:{{ config.client_port }}
|
PreUp = iptables -t nat -A PREROUTING -i {{ wireguard_gateway_interface }} -p {{ config.protocol | default('tcp') }} --dport {{ config.server_port }} -j DNAT --to-destination {{ wireguard_gateway_net_prefix }}.{{ config.client_index }}:{{ config.client_port }}
|
||||||
PostDown = iptables -t nat -D PREROUTING -i {{ wireguard_gateway_interface }} -p tcp --dport {{ config.server_port }} -j DNAT --to-destination {{ wireguard_gateway_net_prefix }}.{{ config.client_index }}:{{ config.client_port }}
|
PostDown = iptables -t nat -D PREROUTING -i {{ wireguard_gateway_interface }} -p {{ config.protocol | default('tcp') }} --dport {{ config.server_port }} -j DNAT --to-destination {{ wireguard_gateway_net_prefix }}.{{ config.client_index }}:{{ config.client_port }}
|
||||||
|
|
||||||
{% endfor %}
|
{% endfor %}
|
||||||
PreUp = iptables -t nat -A POSTROUTING -o {{ cloud_name }} -j MASQUERADE
|
PreUp = iptables -t nat -A POSTROUTING -o {{ cloud_name }} -j MASQUERADE
|
||||||
|
|||||||
Loading…
Reference in New Issue
Block a user