Some bug fixes

This commit is contained in:
7u83 2018-03-07 14:40:57 +01:00
parent c5bf01d089
commit 197fe3acad
4 changed files with 9 additions and 8 deletions

View File

@ -43,8 +43,8 @@ class ipsec::racoon (
concat { "$ipsec_conf":
ensure => present
ensure => present,
require => Package['racoon']
}
concat::fragment { "ipsec_conf_header":
@ -57,7 +57,8 @@ class ipsec::racoon (
owner => "$racoon_usr",
group => "$racoon_grp",
mode => '0600',
ensure => present
ensure => present,
require => Package['racoon']
}
concat::fragment { "pskfile_header":

View File

@ -4,7 +4,7 @@
#
spdadd <%= @local_ip %> <%= @remote_ip %> <%= @proto %> -P out ipsec
esp/transport//require;
esp/transport//unique;
spdadd <%= @remote_ip %> <%= @local_ip %> <%= @proto %> -P out ipsec
esp/transport//require;
esp/transport//unique;

View File

@ -6,8 +6,8 @@
<%- @netproto = net['proto'] ? net['proto'] : 'any' -%>
spdadd <%= net['local'] %> <%= net['remote'] %> <%= @netproto %> -P out ipsec
esp/tunnel/<%= @local_ip %>-<%= @remote_ip %>/require;
esp/tunnel/<%= @local_ip %>-<%= @remote_ip %>/unique;
spdadd <%= net['remote'] %> <%= net['local'] %> <%= @netproto %> -P in ipsec
esp/tunnel/<%= @remote_ip %>-<%= @local_ip %>/require;
esp/tunnel/<%= @remote_ip %>-<%= @local_ip %>/unique;
<%- end -%>

View File

@ -4,7 +4,7 @@
<%- @pfs_group = net['pfs_group'] ? net['pfs_group'] : @dh_group -%>
<%- @p2hash = net['hash'] ? net['hash'] : @hash -%>
conn "<%= @title %>"
conn "<%= @title %> <%= net['local'] %> <%= net['remote']%>"
left=<%= @local_ip %>
leftsubnet=<%= net['local'] %>
right=<%= @remote_ip %>