16.3.4. Procedure – Forwarding IPSec traffic on the packet level
If IPSec traffic on Zorp is not required to be terminated, only to be forwarded, create packet filtering rules for the Encapsulating Security Payload (ESP) (protocol number 50) and AH (protocol number 51) protocols. Complete the following steps:
Select the ZMC component from the configuration tree, and click on the tab.
In the column, open the table, and select the chain.
Click , enter
50into the field, and click . Optionally, also specify the source and destination interfaces.Select the chain, click , enter
51into the field, and click .Click .
Commit and upload the configuration changes and reload the Packet filter component.
Published on May 30, 2024
© BalaSys IT Ltd.
Send your comments to support@balasys.hu


