Advertisement
Guest User

Untitled

a guest
May 20th, 2018
142
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.59 KB | None | 0 0
  1. sudo iptables -t mangle -A FORWARD --match policy --pol ipsec --dir in -s 10.10.10.10/24 -o eth0 -p tcp -m tcp --tcp-flags SYN,RST SYN -m tcpmss --mss 1361:1536 -j TCPMSS --set-mss 1360
  2.  
  3. table mangle {
  4. chain FORWARD {
  5. # adjust MSS
  6. mod policy pol ipsec dir in saddr $PEER outerface eth0 proto tcp tcp-flags (SYN RST) SYN mod tcpmss mss 1361:1536 TCPMSS set-mss 1360;
  7. }
  8. }
  9.  
  10. Error in /etc/ferm/ferm.conf line 46:
  11. table mangle
  12. {
  13. chain FORWARD
  14. {
  15. mod policy pol ipsec dir in saddr $ PEER outerface eth0 proto tcp tcp-flags <--
  16. Unrecognized keyword: tcp-flags
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement