cayenne79

Untitled

Jul 31st, 2020
59
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 11.52 KB | None | 0 0
  1. firewall.@rule[0]=rule
  2. firewall.@rule[0].name='Allow-DHCP-Renew'
  3. firewall.@rule[0].src='wan'
  4. firewall.@rule[0].proto='udp'
  5. firewall.@rule[0].dest_port='68'
  6. firewall.@rule[0].target='ACCEPT'
  7. firewall.@rule[0].family='ipv4'
  8. firewall.@rule[1]=rule
  9. firewall.@rule[1].name='Allow-Ping'
  10. firewall.@rule[1].src='wan'
  11. firewall.@rule[1].proto='icmp'
  12. firewall.@rule[1].icmp_type='echo-request'
  13. firewall.@rule[1].family='ipv4'
  14. firewall.@rule[1].target='ACCEPT'
  15. firewall.@rule[2]=rule
  16. firewall.@rule[2].name='Allow-IGMP'
  17. firewall.@rule[2].src='wan'
  18. firewall.@rule[2].proto='igmp'
  19. firewall.@rule[2].family='ipv4'
  20. firewall.@rule[2].target='ACCEPT'
  21. firewall.@rule[3]=rule
  22. firewall.@rule[3].name='Allow-DHCPv6'
  23. firewall.@rule[3].src='wan'
  24. firewall.@rule[3].proto='udp'
  25. firewall.@rule[3].src_ip='fc00::/6'
  26. firewall.@rule[3].dest_ip='fc00::/6'
  27. firewall.@rule[3].dest_port='546'
  28. firewall.@rule[3].family='ipv6'
  29. firewall.@rule[3].target='ACCEPT'
  30. firewall.@rule[4]=rule
  31. firewall.@rule[4].name='Allow-MLD'
  32. firewall.@rule[4].src='wan'
  33. firewall.@rule[4].proto='icmp'
  34. firewall.@rule[4].src_ip='fe80::/10'
  35. firewall.@rule[4].icmp_type='130/0' '131/0' '132/0' '143/0'
  36. firewall.@rule[4].family='ipv6'
  37. firewall.@rule[4].target='ACCEPT'
  38. firewall.@rule[5]=rule
  39. firewall.@rule[5].target='ACCEPT'
  40. firewall.@rule[5].name='Allow-All-Ping'
  41. firewall.@rule[5].proto='icmp'
  42. firewall.@rule[5].dest='*'
  43. firewall.@rule[5].src='*'
  44. firewall.@rule[5].icmp_type='echo-request'
  45. firewall.@rule[6]=rule
  46. firewall.@rule[6].target='ACCEPT'
  47. firewall.@rule[6].name='Allow-VPN-ICMP'
  48. firewall.@rule[6].proto='icmp'
  49. firewall.@rule[6].src='vpn'
  50. firewall.@rule[7]=rule
  51. firewall.@rule[7].target='ACCEPT'
  52. firewall.@rule[7].name='Allow-Lan-to-Wan'
  53. firewall.@rule[7].dest='wan'
  54. firewall.@rule[7].src='lan'
  55. firewall.@rule[8]=rule
  56. firewall.@rule[8].target='ACCEPT'
  57. firewall.@rule[8].name='ICMPv6-Lan-to-OMR'
  58. firewall.@rule[8].src='lan'
  59. firewall.@rule[8].family='ipv6'
  60. firewall.@rule[8].proto='icmp'
  61. firewall.@rule[8].limit='1000/sec'
  62. firewall.@rule[8].icmp_type='echo-reply destination-unreachable echo-request router-advertisement router-solicitation time-exceeded'
  63. firewall.@defaults[0]=defaults
  64. firewall.@defaults[0].syn_flood='1'
  65. firewall.@defaults[0].forward='REJECT'
  66. firewall.@defaults[0].disable_ipv6='1'
  67. firewall.@defaults[0].input='REJECT'
  68. firewall.@defaults[0].output='REJECT'
  69. firewall.@zone[0]=zone
  70. firewall.@zone[0].name='lan'
  71. firewall.@zone[0].input='ACCEPT'
  72. firewall.@zone[0].output='ACCEPT'
  73. firewall.@zone[0].forward='ACCEPT'
  74. firewall.@zone[0].mtu_fix='1'
  75. firewall.@zone[0].network='lan'
  76. firewall.@zone[1]=zone
  77. firewall.@zone[1].name='wan'
  78. firewall.@zone[1].input='REJECT'
  79. firewall.@zone[1].output='ACCEPT'
  80. firewall.@zone[1].forward='REJECT'
  81. firewall.@zone[1].masq='1'
  82. firewall.@zone[1].mtu_fix='1'
  83. firewall.@zone[1].network='wan wan6 WAN1 WAN1 wan1 WAN1 wan1 wan3 wan2 wan1 wan1'
  84. firewall.@forwarding[0]=forwarding
  85. firewall.@forwarding[0].src='lan'
  86. firewall.@forwarding[0].dest='wan'
  87. firewall.@include[0]=include
  88. firewall.@include[0].path='/etc/firewall.user'
  89. firewall.ss_rules=include
  90. firewall.ss_rules.path='/etc/firewall.ss-rules'
  91. firewall.ss_rules.reload='1'
  92. firewall.@redirect[0]=redirect
  93. firewall.@redirect[0].target='DNAT'
  94. firewall.@redirect[0].src='vpn'
  95. firewall.@redirect[0].dest='lan'
  96. firewall.@redirect[0].proto='tcp'
  97. firewall.@redirect[0].src_dport='15501'
  98. firewall.@redirect[0].dest_ip='192.168.21.150'
  99. firewall.@redirect[0].dest_port='15501'
  100. firewall.@redirect[0].name='interface WEB DSM HTTPS 15501'
  101. firewall.@redirect[1]=redirect
  102. firewall.@redirect[1].target='DNAT'
  103. firewall.@redirect[1].src='vpn'
  104. firewall.@redirect[1].dest='lan'
  105. firewall.@redirect[1].proto='tcp'
  106. firewall.@redirect[1].src_dport='15500'
  107. firewall.@redirect[1].dest_ip='192.168.21.150'
  108. firewall.@redirect[1].dest_port='15500'
  109. firewall.@redirect[1].name='Interface WEB DSM HTTP 15500'
  110. firewall.@redirect[2]=redirect
  111. firewall.@redirect[2].target='DNAT'
  112. firewall.@redirect[2].proto='tcp'
  113. firewall.@redirect[2].src='vpn'
  114. firewall.@redirect[2].src_dport='443'
  115. firewall.@redirect[2].dest='lan'
  116. firewall.@redirect[2].dest_ip='192.168.21.150'
  117. firewall.@redirect[2].name='interface WEB DSM HTTPS 443'
  118. firewall.@redirect[2].dest_port='443'
  119. firewall.@redirect[3]=redirect
  120. firewall.@redirect[3].target='DNAT'
  121. firewall.@redirect[3].src='vpn'
  122. firewall.@redirect[3].dest='lan'
  123. firewall.@redirect[3].proto='tcp'
  124. firewall.@redirect[3].src_dport='443'
  125. firewall.@redirect[3].dest_ip='192.168.21.150'
  126. firewall.@redirect[3].dest_port='15501'
  127. firewall.@redirect[3].name='interface-DSM-contournement-firewall'
  128. firewall.@redirect[3].enabled='0'
  129. firewall.@redirect[4]=redirect
  130. firewall.@redirect[4].target='DNAT'
  131. firewall.@redirect[4].src='vpn'
  132. firewall.@redirect[4].dest='lan'
  133. firewall.@redirect[4].proto='tcp'
  134. firewall.@redirect[4].src_dport='80'
  135. firewall.@redirect[4].dest_ip='192.168.21.150'
  136. firewall.@redirect[4].dest_port='80'
  137. firewall.@redirect[4].name='activation certificat let'\''s encrypt'
  138. firewall.@redirect[5]=redirect
  139. firewall.@redirect[5].target='DNAT'
  140. firewall.@redirect[5].src='vpn'
  141. firewall.@redirect[5].dest='lan'
  142. firewall.@redirect[5].proto='tcp'
  143. firewall.@redirect[5].src_dport='5006'
  144. firewall.@redirect[5].dest_ip='192.168.21.150'
  145. firewall.@redirect[5].dest_port='5006'
  146. firewall.@redirect[5].name='WEBDAVS synology'
  147. firewall.@redirect[6]=redirect
  148. firewall.@redirect[6].target='DNAT'
  149. firewall.@redirect[6].name='WEBDAV synology'
  150. firewall.@redirect[6].proto='tcp udp'
  151. firewall.@redirect[6].src='vpn'
  152. firewall.@redirect[6].src_dport='5005'
  153. firewall.@redirect[6].dest='lan'
  154. firewall.@redirect[6].dest_ip='192.168.21.150'
  155. firewall.@redirect[6].dest_port='5005'
  156. firewall.@redirect[6].enabled='0'
  157. firewall.@redirect[7]=redirect
  158. firewall.@redirect[7].target='DNAT'
  159. firewall.@redirect[7].src='vpn'
  160. firewall.@redirect[7].dest='lan'
  161. firewall.@redirect[7].proto='tcp'
  162. firewall.@redirect[7].src_dport='6690'
  163. firewall.@redirect[7].dest_ip='192.168.21.150'
  164. firewall.@redirect[7].dest_port='6690'
  165. firewall.@redirect[7].name='drive'
  166. firewall.@redirect[8]=redirect
  167. firewall.@redirect[8].target='DNAT'
  168. firewall.@redirect[8].src='vpn'
  169. firewall.@redirect[8].dest='lan'
  170. firewall.@redirect[8].proto='tcp'
  171. firewall.@redirect[8].dest_ip='192.168.21.150'
  172. firewall.@redirect[8].dest_port='6690'
  173. firewall.@redirect[8].name='drive_contournement'
  174. firewall.@redirect[8].src_dport='53'
  175. firewall.@rule[9]=rule
  176. firewall.@rule[9].target='ACCEPT'
  177. firewall.@rule[9].name='Allow-All-Ping'
  178. firewall.@rule[9].proto='icmp'
  179. firewall.@rule[9].dest='*'
  180. firewall.@rule[9].src='*'
  181. firewall.@rule[9].icmp_type='echo-request'
  182. firewall.@rule[10]=rule
  183. firewall.@rule[10].target='ACCEPT'
  184. firewall.@rule[10].name='Allow-All-Ping'
  185. firewall.@rule[10].proto='icmp'
  186. firewall.@rule[10].dest='*'
  187. firewall.@rule[10].src='*'
  188. firewall.@rule[10].icmp_type='echo-request'
  189. firewall.@rule[11]=rule
  190. firewall.@rule[11].target='ACCEPT'
  191. firewall.@rule[11].name='Allow-All-Ping'
  192. firewall.@rule[11].proto='icmp'
  193. firewall.@rule[11].dest='*'
  194. firewall.@rule[11].src='*'
  195. firewall.@rule[11].icmp_type='echo-request'
  196. firewall.@rule[12]=rule
  197. firewall.@rule[12].target='ACCEPT'
  198. firewall.@rule[12].name='Allow-All-Ping'
  199. firewall.@rule[12].proto='icmp'
  200. firewall.@rule[12].dest='*'
  201. firewall.@rule[12].src='*'
  202. firewall.@rule[12].icmp_type='echo-request'
  203. firewall.@rule[13]=rule
  204. firewall.@rule[13].target='ACCEPT'
  205. firewall.@rule[13].name='Allow-All-Ping'
  206. firewall.@rule[13].proto='icmp'
  207. firewall.@rule[13].dest='*'
  208. firewall.@rule[13].src='*'
  209. firewall.@rule[13].icmp_type='echo-request'
  210. firewall.@rule[14]=rule
  211. firewall.@rule[14].target='ACCEPT'
  212. firewall.@rule[14].name='Allow-All-Ping'
  213. firewall.@rule[14].proto='icmp'
  214. firewall.@rule[14].dest='*'
  215. firewall.@rule[14].src='*'
  216. firewall.@rule[14].icmp_type='echo-request'
  217. firewall.@rule[15]=rule
  218. firewall.@rule[15].target='ACCEPT'
  219. firewall.@rule[15].name='Allow-All-Ping'
  220. firewall.@rule[15].proto='icmp'
  221. firewall.@rule[15].dest='*'
  222. firewall.@rule[15].src='*'
  223. firewall.@rule[15].icmp_type='echo-request'
  224. firewall.omr_server=include
  225. firewall.omr_server.path='/etc/firewall.omr-server'
  226. firewall.omr_server.reload='1'
  227. firewall.@rule[16]=rule
  228. firewall.@rule[16].target='ACCEPT'
  229. firewall.@rule[16].name='Allow-All-Ping'
  230. firewall.@rule[16].proto='icmp'
  231. firewall.@rule[16].dest='*'
  232. firewall.@rule[16].src='*'
  233. firewall.@rule[16].icmp_type='echo-request'
  234. firewall.@rule[17]=rule
  235. firewall.@rule[17].target='ACCEPT'
  236. firewall.@rule[17].name='Allow-All-Ping'
  237. firewall.@rule[17].proto='icmp'
  238. firewall.@rule[17].dest='*'
  239. firewall.@rule[17].src='*'
  240. firewall.@rule[17].icmp_type='echo-request'
  241. firewall.@rule[18]=rule
  242. firewall.@rule[18].target='ACCEPT'
  243. firewall.@rule[18].name='Allow-All-Ping'
  244. firewall.@rule[18].proto='icmp'
  245. firewall.@rule[18].dest='*'
  246. firewall.@rule[18].src='*'
  247. firewall.@rule[18].icmp_type='echo-request'
  248. firewall.@rule[19]=rule
  249. firewall.@rule[19].target='ACCEPT'
  250. firewall.@rule[19].name='Allow-All-Ping'
  251. firewall.@rule[19].proto='icmp'
  252. firewall.@rule[19].dest='*'
  253. firewall.@rule[19].src='*'
  254. firewall.@rule[19].icmp_type='echo-request'
  255. firewall.@rule[20]=rule
  256. firewall.@rule[20].target='ACCEPT'
  257. firewall.@rule[20].name='Allow-All-Ping'
  258. firewall.@rule[20].proto='icmp'
  259. firewall.@rule[20].dest='*'
  260. firewall.@rule[20].src='*'
  261. firewall.@rule[20].icmp_type='echo-request'
  262. firewall.@rule[21]=rule
  263. firewall.@rule[21].target='ACCEPT'
  264. firewall.@rule[21].name='Allow-All-Ping'
  265. firewall.@rule[21].proto='icmp'
  266. firewall.@rule[21].dest='*'
  267. firewall.@rule[21].src='*'
  268. firewall.@rule[21].icmp_type='echo-request'
  269. firewall.@rule[22]=rule
  270. firewall.@rule[22].target='ACCEPT'
  271. firewall.@rule[22].name='Allow-All-Ping'
  272. firewall.@rule[22].proto='icmp'
  273. firewall.@rule[22].dest='*'
  274. firewall.@rule[22].src='*'
  275. firewall.@rule[22].icmp_type='echo-request'
  276. firewall.@rule[23]=rule
  277. firewall.@rule[23].target='ACCEPT'
  278. firewall.@rule[23].name='Allow-All-Ping'
  279. firewall.@rule[23].proto='icmp'
  280. firewall.@rule[23].dest='*'
  281. firewall.@rule[23].src='*'
  282. firewall.@rule[23].icmp_type='echo-request'
  283. firewall.@redirect[9]=redirect
  284. firewall.@redirect[9].dest_port='500'
  285. firewall.@redirect[9].src='vpn'
  286. firewall.@redirect[9].name='ipsec'
  287. firewall.@redirect[9].src_dport='500'
  288. firewall.@redirect[9].target='DNAT'
  289. firewall.@redirect[9].dest='lan'
  290. firewall.@redirect[9].proto='udp'
  291. firewall.@redirect[9].dest_ip='192.168.21.253'
  292. firewall.@redirect[9].enabled='0'
  293. firewall.@redirect[10]=redirect
  294. firewall.@redirect[10].dest_port='4500'
  295. firewall.@redirect[10].name='ipsec'
  296. firewall.@redirect[10].src_dport='4500'
  297. firewall.@redirect[10].target='DNAT'
  298. firewall.@redirect[10].dest_ip='192.168.21.253'
  299. firewall.@redirect[10].dest='lan'
  300. firewall.@redirect[10].proto='udp'
  301. firewall.@redirect[10].src='vpn'
  302. firewall.@redirect[10].enabled='0'
  303. firewall.zone_vpn=zone
  304. firewall.zone_vpn.name='vpn'
  305. firewall.zone_vpn.masq='1'
  306. firewall.zone_vpn.input='REJECT'
  307. firewall.zone_vpn.forward='ACCEPT'
  308. firewall.zone_vpn.output='ACCEPT'
  309. firewall.zone_vpn.mtu_fix='1'
  310. firewall.zone_vpn.network='glorytun' 'omrvpn' 'omr6in4'
  311. firewall.gre_tunnel=include
  312. firewall.gre_tunnel.path='/etc/firewall.gre-tunnel'
  313. firewall.gre_tunnel.reload='1'
  314. firewall.allow_dhcp_request_vpn=rule
  315. firewall.allow_dhcp_request_vpn.name='Allow-DHCP-Request-VPN'
  316. firewall.allow_dhcp_request_vpn.src='vpn'
  317. firewall.allow_dhcp_request_vpn.proto='udp'
  318. firewall.allow_dhcp_request_vpn.dest_port='67'
  319. firewall.allow_dhcp_request_vpn.target='ACCEPT'
  320. firewall.allow_dhcp_request_vpn.family='ipv4'
  321. firewall.miniupnpd=include
  322. firewall.miniupnpd.type='script'
  323. firewall.miniupnpd.path='/usr/share/miniupnpd/firewall.include'
  324. firewall.miniupnpd.family='any'
  325. firewall.miniupnpd.reload='1'
  326.  
Add Comment
Please, Sign In to add comment