Interface not created until first L2TP session established.
Posted: 10 Jan 2022, 17:19
I would like to setup various rules to disable connection tracking for the l2tp interface.
Normally I would do this by the interface name.
However, in ACCEL-PPP the interface is not created until the first session comes in.
I’ve set ifname=l2tp0%d to l2tp0 to make all interfaces l2tp0.
I then want to set:-
iptables -t raw -I PREROUTING -i l2tp0 -j CT --notrack
iptables -t raw -I OUTPUT -o l2tp0 -j CT –notrack
However, if I type:- ip route
I can see:- ‘default dev l2tp0 scope link metric 1’ does not exist before the first session comes in.
I know I can disable connection tracking via IP ranges, but this will create extra work.
Any ideas?
Normally I would do this by the interface name.
However, in ACCEL-PPP the interface is not created until the first session comes in.
I’ve set ifname=l2tp0%d to l2tp0 to make all interfaces l2tp0.
I then want to set:-
iptables -t raw -I PREROUTING -i l2tp0 -j CT --notrack
iptables -t raw -I OUTPUT -o l2tp0 -j CT –notrack
However, if I type:- ip route
I can see:- ‘default dev l2tp0 scope link metric 1’ does not exist before the first session comes in.
I know I can disable connection tracking via IP ranges, but this will create extra work.
Any ideas?