Guest User

Untitled

a guest
Dec 10th, 2017
81
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.68 KB | None | 0 0
  1. configure
  2. edit firewall group address-group OK_FOR_SSH
  3. set description "hosts that I trust for ssh"
  4. set address 1.1.1.1
  5. set address 2.2.2.2
  6. set address 3.3.3.3
  7. top
  8. commit
  9.  
  10.  
  11. edit firewall name LOCAL_OK
  12. set default-action drop
  13. set enable-default-log
  14. set rule 1 state established enable
  15. set rule 1 state related enable
  16. set rule 1 action accept
  17. set rule 2 state invalid enable
  18. set rule 2 action drop
  19. set rule 3 protocol icmp
  20. set rule 3 action accept
  21. set rule 10 protocol tcp
  22. set rule 10 destination port 22
  23. set rule 10 source group address-group OK_FOR_SSH
  24. set rule 10 action accept
  25. top
  26. commit
  27.  
  28.  
  29.  
  30. set interfaces ethernet eth0 firewall local name LOCAL_OK
  31. commit
Add Comment
Please, Sign In to add comment