Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- config defaults
- option input 'ACCEPT'
- option output 'ACCEPT'
- option forward 'REJECT'
- option drop_invalid '1'
- option synflood_protect '0'
- option tcp_syncookies '0'
- option tcp_ecn '1'
- option disable_ipv6 '1'
- option flow_offloading '1'
- option flow_offloading_hw '0'
- config zone
- option name 'lan'
- option input 'ACCEPT'
- option output 'ACCEPT'
- option forward 'ACCEPT'
- option network 'wlan lan'
- config zone
- option name 'wan'
- option input 'REJECT'
- option output 'ACCEPT'
- option forward 'REJECT'
- option masq '1'
- option mtu_fix '1'
- option network 'wan'
- config forwarding
- option src 'lan'
- option dest 'wan'
- config rule
- option name 'Allow-DHCP-Renew'
- option src 'wan'
- option proto 'udp'
- option dest_port '68'
- option target 'ACCEPT'
- option family 'ipv4'
- config rule
- option name 'Allow-Ping'
- option src 'wan'
- option proto 'icmp'
- option icmp_type 'echo-request'
- option family 'ipv4'
- option target 'ACCEPT'
- config rule
- option name 'Allow-IGMP'
- option src 'wan'
- option proto 'igmp'
- option family 'ipv4'
- option target 'ACCEPT'
- config rule
- option name 'Allow-IPSec-ESP'
- option src 'wan'
- option dest 'lan'
- option proto 'esp'
- option target 'ACCEPT'
- config rule
- option name 'Allow-ISAKMP'
- option src 'wan'
- option dest 'lan'
- option dest_port '500'
- option proto 'udp'
- option target 'ACCEPT'
- config rule
- option target 'ACCEPT'
- option src 'wan'
- option proto 'tcp'
- option dest_port '5269 5280 5290 5222 5223 9000-9100'
- option name 'Dauntless TCP'
- option family 'ipv4'
- config rule
- option target 'ACCEPT'
- option src 'wan'
- option proto 'udp'
- option dest_port '9000-9100'
- option name 'Dauntless UDP'
- option family 'ipv4'
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement