Advertisement
Guest User

Untitled

a guest
Dec 2nd, 2010
224
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.36 KB | None | 0 0
  1. BusyBox v1.13.4 (2010-08-12 03:24:38 CEST) built-in shell (ash)
  2. Enter 'help' for a list of built-in commands.
  3.  
  4. root@WRT54G-TM:~# nvram show 2>/dev/null | grep 'br[0123]'
  5. br1_netmask=255.255.255.0
  6. chilli_interface=br0
  7. mdhcpd=br1>On>100>50>1440 br2>On>100>50>1440 br3>On>100>50>3600
  8. wl0_br1_netmask=255.255.255.0
  9. bridgesif=br1>vlan2>63 br2>wl0.1>63 br3>vlan3>63
  10. br2_bridged=0
  11. br3_multicast=0
  12. br2_nat=1
  13. br2_netmask=255.255.255.0
  14. br3_mtu=1492
  15. wl0_br1_nat=0
  16. wl0_br1_enable=0
  17. br1_mtu=1492
  18. br3_bridged=0
  19. br1_multicast=0
  20. br3_netmask=255.255.255.0
  21. br1_ipaddr=192.168.2.1
  22. wl1_br1_nat=0
  23. lan_ifname=br0
  24. br2_ipaddr=192.168.3.1
  25. wl1_br1_enable=0
  26. iptables -I FORWARD -i br1 -o br0 -m state --state NEW -j DROP
  27. iptables -I FORWARD -i br0 -o br1 -m state --state NEW -j DROP
  28. iptables -I INPUT -i br1 -m state --state NEW -j DROP
  29. iptables -I INPUT -i br1 -p udp --dport 67 -j ACCEPT
  30. iptables -I INPUT -i br1 -p udp --dport 53 -j ACCEPT
  31. iptables -I INPUT -i br1 -p tcp --dport 53 -j ACCEPT
  32. iptables -I FORWARD -i br2 -o br0 -m state --state NEW -j DROP
  33. iptables -I FORWARD -i br0 -o br2 -m state --state NEW -j DROP
  34. iptables -I INPUT -i br2 -m state --state NEW -j DROP
  35. iptables -I INPUT -i br2 -p udp --dport 67 -j ACCEPT
  36. iptables -I INPUT -i br2 -p udp --dport 53 -j ACCEPT
  37. iptables -I INPUT -i br2 -p tcp --dport 53 -j ACCEPT
  38. iptables -I FORWARD -i br3 -o br0 -m state --state NEW -j DROP
  39. iptables -I FORWARD -i br0 -o br3 -m state --state NEW -j DROP
  40. iptables -I INPUT -i br3 -m state --state NEW -j DROP
  41. iptables -I INPUT -i br3 -p udp --dport 67 -j ACCEPT
  42. iptables -I INPUT -i br3 -p udp --dport 53 -j ACCEPT
  43. iptables -I INPUT -i br3 -p tcp --dport 53 -j ACCEPT
  44. wl0_br1_ipaddr=0.0.0.0
  45. br3_nat=1
  46. ftefhrN0JuAz40PDsOnw5mEeNbr3B3up4qw4h9JhjN1CfdZEsxL1fBA/aLMCAwEA
  47. br1_nat=1
  48. br2_mtu=1492
  49. bridges=br1>On>32768>1492 br2>On>32768>1492 br3>On>32768>1492
  50. br3_ipaddr=192.168.4.1
  51. br2_multicast=0
  52. br0_mtu=1500
  53. br1_bridged=0
  54. rflow_if=br0
  55. root@WRT54G-TM:~# nvram show 2>/dev/null | grep '192\.168\.[1234]\.' | grep -vE
  56. '(forward|static|lease)'
  57. syslogd_rem_ip=192.168.1.103
  58. http_client_ip=192.168.1.105
  59. br1_ipaddr=192.168.2.1
  60. lan_ipaddr=192.168.1.1
  61. sip_domain=192.168.1.1
  62. br2_ipaddr=192.168.3.1
  63. br3_ipaddr=192.168.4.1
  64. root@WRT54G-TM:~# nvram get rc_firewall
  65. #Save Firewall
  66.  
  67. iptables -I FORWARD -i br1 -o br0 -m state --state NEW -j DROP
  68. iptables -I FORWARD -i br0 -o br1 -m state --state NEW -j DROP
  69. iptables -I INPUT -i br1 -m state --state NEW -j DROP
  70. iptables -I INPUT -i br1 -p udp --dport 67 -j ACCEPT
  71. iptables -I INPUT -i br1 -p udp --dport 53 -j ACCEPT
  72. iptables -I INPUT -i br1 -p tcp --dport 53 -j ACCEPT
  73.  
  74. iptables -I FORWARD -i br2 -o br0 -m state --state NEW -j DROP
  75. iptables -I FORWARD -i br0 -o br2 -m state --state NEW -j DROP
  76. iptables -I INPUT -i br2 -m state --state NEW -j DROP
  77. iptables -I INPUT -i br2 -p udp --dport 67 -j ACCEPT
  78. iptables -I INPUT -i br2 -p udp --dport 53 -j ACCEPT
  79. iptables -I INPUT -i br2 -p tcp --dport 53 -j ACCEPT
  80.  
  81. iptables -I FORWARD -i br3 -o br0 -m state --state NEW -j DROP
  82. iptables -I FORWARD -i br0 -o br3 -m state --state NEW -j DROP
  83. iptables -I INPUT -i br3 -m state --state NEW -j DROP
  84. iptables -I INPUT -i br3 -p udp --dport 67 -j ACCEPT
  85. iptables -I INPUT -i br3 -p udp --dport 53 -j ACCEPT
  86. iptables -I INPUT -i br3 -p tcp --dport 53 -j ACCEPT
  87.  
  88. iptables -t nat -I POSTROUTING -o `nvram get wan_ifname` -j MASQUERADE
  89. root@WRT54G-TM:~#
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement