config defaults option input 'ACCEPT' option output 'ACCEPT' option forward 'REJECT' option synflood_protect '1' config zone option name 'lan' option input 'ACCEPT' option output 'ACCEPT' option forward 'ACCEPT' option network 'lan' config zone option name 'wan' option input 'REJECT' option output 'ACCEPT' option forward 'REJECT' option masq '1' option mtu_fix '1' option network 'wan wan6' config forwarding option src 'lan' option dest 'wan' config rule option name 'Allow-ICMPv6-Forward' option src 'wan' option dest '*' option proto 'icmp' list icmp_type 'echo-request' list icmp_type 'echo-reply' list icmp_type 'destination-unreachable' list icmp_type 'packet-too-big' list icmp_type 'time-exceeded' list icmp_type 'bad-header' list icmp_type 'unknown-header-type' option limit '1000/sec' option family 'ipv6' option target 'ACCEPT' config rule option name 'Allow-IPSec-ESP' option src 'wan' option dest 'lan' option proto 'esp' option target 'ACCEPT' config rule option name 'Allow-ISAKMP' option src 'wan' option dest 'lan' option dest_port '500' option proto 'udp' option target 'ACCEPT' config include option path '/etc/firewall.user' config zone option name 'lan6v' option input 'ACCEPT' option network 'LAN6' option output 'ACCEPT' option forward 'ACCEPT' config forwarding option dest 'lan' option src 'lan6v' config zone option name 'lanv6wan' option input 'ACCEPT' option forward 'ACCEPT' option network 'LAN6' option output 'ACCEPT' config forwarding option dest 'wan' option src 'lanv6wan' config zone option name 'lanlan6v' option input 'ACCEPT' option forward 'ACCEPT' option network 'lan' option output 'ACCEPT' config forwarding option dest 'lan6v' option src 'lanlan6v' config zone option name 'VLAN7' option input 'ACCEPT' option forward 'ACCEPT' option network 'VLAN7' option output 'ACCEPT'