16.3.4. Procedure – Forwarding IPSec traffic on the packet level
If IPSec traffic on Zorp is not required to be terminated, only to be forwarded, create packet filtering rules for the Encapsulating Security Payload (ESP) (protocol number 50) and AH (protocol number 51) protocols. Complete the following steps:
Select the ZMC component from the configuration tree, and click on the tab.
In the
column, open the table, and select the chain.Click
, enter50
into the field, and click . Optionally, also specify the source and destination interfaces.Select the
chain, click , enter51
into the field, and click .Click
.Commit and upload the configuration changes and reload the Packet filter component.
Published on May 30, 2024
© BalaSys IT Ltd.
Send your comments to support@balasys.hu