| 123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101 |
- config defaults
- option input 'ACCEPT'
- option output 'ACCEPT'
- option forward 'REJECT'
- option synflood_protect '1'
- config zone
- option name 'lan'
- option input 'ACCEPT'
- option output 'ACCEPT'
- option forward 'ACCEPT'
- option network 'lan'
- config zone
- option name 'wan'
- option input 'REJECT'
- option output 'ACCEPT'
- option forward 'REJECT'
- option masq '1'
- option mtu_fix '1'
- option network 'wan wan6'
- config forwarding
- option src 'lan'
- option dest 'wan'
- config rule
- option name 'Allow-ICMPv6-Forward'
- option src 'wan'
- option dest '*'
- option proto 'icmp'
- list icmp_type 'echo-request'
- list icmp_type 'echo-reply'
- list icmp_type 'destination-unreachable'
- list icmp_type 'packet-too-big'
- list icmp_type 'time-exceeded'
- list icmp_type 'bad-header'
- list icmp_type 'unknown-header-type'
- option limit '1000/sec'
- option family 'ipv6'
- option target 'ACCEPT'
- config rule
- option name 'Allow-IPSec-ESP'
- option src 'wan'
- option dest 'lan'
- option proto 'esp'
- option target 'ACCEPT'
- config rule
- option name 'Allow-ISAKMP'
- option src 'wan'
- option dest 'lan'
- option dest_port '500'
- option proto 'udp'
- option target 'ACCEPT'
- config include
- option path '/etc/firewall.user'
- config zone
- option name 'lan6v'
- option input 'ACCEPT'
- option network 'LAN6'
- option output 'ACCEPT'
- option forward 'ACCEPT'
- config forwarding
- option dest 'lan'
- option src 'lan6v'
- config zone
- option name 'lanv6wan'
- option input 'ACCEPT'
- option forward 'ACCEPT'
- option network 'LAN6'
- option output 'ACCEPT'
- config forwarding
- option dest 'wan'
- option src 'lanv6wan'
- config zone
- option name 'lanlan6v'
- option input 'ACCEPT'
- option forward 'ACCEPT'
- option network 'lan'
- option output 'ACCEPT'
- config forwarding
- option dest 'lan6v'
- option src 'lanlan6v'
- config zone
- option name 'VLAN7'
- option input 'ACCEPT'
- option forward 'ACCEPT'
- option network 'VLAN7'
- option output 'ACCEPT'
|