summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorChris Buechler <cmb@pfsense.org>2012-04-23 22:11:26 -0400
committerChris Buechler <cmb@pfsense.org>2012-04-23 22:14:24 -0400
commitcb062635a9cbfaab71c5b8608ec46f08b0ad61ea (patch)
tree40f500dd72ea886ff210791e8e280c482c5c9cb3
parent912d1887359d90d043cd31648df36272cf40a0ed (diff)
downloadpfsense-cb062635a9cbfaab71c5b8608ec46f08b0ad61ea.zip
pfsense-cb062635a9cbfaab71c5b8608ec46f08b0ad61ea.tar.gz
routes should not be skipped when IPsec is on WAN, as WAN may not be the default gateway.
-rw-r--r--etc/inc/vpn.inc5
1 files changed, 2 insertions, 3 deletions
diff --git a/etc/inc/vpn.inc b/etc/inc/vpn.inc
index b2f9e1e..20c2d8a 100644
--- a/etc/inc/vpn.inc
+++ b/etc/inc/vpn.inc
@@ -856,7 +856,7 @@ EOD;
else
$parentinterface = $ph1ent['interface'];
- if (($parentinterface <> "wan") && (is_ipaddr($rgip))) {
+ if (is_ipaddr($rgip)) {
/* add endpoint routes to correct gateway on interface */
if (interface_has_gateway($parentinterface)) {
$gatewayip = get_interface_gateway("$parentinterface");
@@ -873,8 +873,7 @@ EOD;
}
}
}
- } else if(is_ipaddr($rgip))
- mwexec("/sbin/route delete -host {$rgip}", true);
+ }
}
}
OpenPOWER on IntegriCloud