Project

General

Profile

Bug #2901 ยป shaperrules.xml

Shaper Rules in effect when error occured - David Gessel, 03/23/2013 07:22 AM

 
1
	<shaper/>
2
	<ipsec>
3
		<preferoldsa/>
4
	</ipsec>
5
	<aliases>
6
		<alias>
7
			<name>Friendly_IP</name>
8
			<address>173.228.36.128/27 66.93.181.128/27 208.83.223.0/24 38.100.16.128/27 74.96.105.53/32 109.224.57.144/29 192.168.1.0/24</address>
9
			<descr><![CDATA[Friendly IPs around the world]]></descr>
10
			<type>network</type>
11
			<detail><![CDATA[Oakland Sonic||Oakland T1||Sparksland||DC Office||Jared's Apartment||Basra||Basra Internal Network]]></detail>
12
		</alias>
13
		<alias>
14
			<name>slow</name>
15
			<address>192.168.1.128/25</address>
16
			<descr><![CDATA[machines that have lower priority]]></descr>
17
			<type>network</type>
18
			<detail><![CDATA[lowr priority computers]]></detail>
19
		</alias>
20
	</aliases>
21
	<proxyarp/>
22
	<cron>
23
		<item>
24
			<minute>0</minute>
25
			<hour>*</hour>
26
			<mday>*</mday>
27
			<month>*</month>
28
			<wday>*</wday>
29
			<who>root</who>
30
			<command>/usr/bin/nice -n20 newsyslog</command>
31
		</item>
32
		<item>
33
			<minute>1,31</minute>
34
			<hour>0-5</hour>
35
			<mday>*</mday>
36
			<month>*</month>
37
			<wday>*</wday>
38
			<who>root</who>
39
			<command>/usr/bin/nice -n20 adjkerntz -a</command>
40
		</item>
41
		<item>
42
			<minute>1</minute>
43
			<hour>3</hour>
44
			<mday>*</mday>
45
			<month>*</month>
46
			<wday>0</wday>
47
			<who>root</who>
48
			<command>/usr/bin/nice -n20 /etc/rc.update_bogons.sh</command>
49
		</item>
50
		<item>
51
			<minute>*/60</minute>
52
			<hour>*</hour>
53
			<mday>*</mday>
54
			<month>*</month>
55
			<wday>*</wday>
56
			<who>root</who>
57
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 sshlockout</command>
58
		</item>
59
		<item>
60
			<minute>1</minute>
61
			<hour>1</hour>
62
			<mday>*</mday>
63
			<month>*</month>
64
			<wday>*</wday>
65
			<who>root</who>
66
			<command>/usr/bin/nice -n20 /etc/rc.dyndns.update</command>
67
		</item>
68
		<item>
69
			<minute>*/60</minute>
70
			<hour>*</hour>
71
			<mday>*</mday>
72
			<month>*</month>
73
			<wday>*</wday>
74
			<who>root</who>
75
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 virusprot</command>
76
		</item>
77
		<item>
78
			<minute>30</minute>
79
			<hour>12</hour>
80
			<mday>*</mday>
81
			<month>*</month>
82
			<wday>*</wday>
83
			<who>root</who>
84
			<command>/usr/bin/nice -n20 /etc/rc.update_urltables</command>
85
		</item>
86
		<item>
87
			<minute>3</minute>
88
			<hour>0</hour>
89
			<mday>*/1</mday>
90
			<month>*</month>
91
			<wday>*</wday>
92
			<who>root</who>
93
			<command>/usr/bin/nice -n20 /usr/local/bin/php -f /usr/local/pkg/snort/snort_check_for_rule_updates.php &gt;&gt; /tmp/snort_update.log</command>
94
		</item>
95
		<item>
96
			<task_name>squid_rotate_logs</task_name>
97
			<minute>0</minute>
98
			<hour>0</hour>
99
			<mday>*</mday>
100
			<month>*</month>
101
			<wday>*</wday>
102
			<who>root</who>
103
			<command>/bin/rm /var/squid/cache/swap.state; /usr/pbi/squid-i386/sbin/squid -k rotate -f /usr/pbi/squid-i386/etc/squid/squid.conf</command>
104
		</item>
105
		<item>
106
			<task_name>squid_check_swapstate</task_name>
107
			<minute>*/15</minute>
108
			<hour>*</hour>
109
			<mday>*</mday>
110
			<month>*</month>
111
			<wday>*</wday>
112
			<who>root</who>
113
			<command>/usr/local/pkg/swapstate_check.php</command>
114
		</item>
115
		<item>
116
			<task_name>lightsquid_parser_today</task_name>
117
			<minute>0</minute>
118
			<hour>*/6</hour>
119
			<mday>*</mday>
120
			<month>*</month>
121
			<wday>*</wday>
122
			<who>root</who>
123
			<command>/usr/bin/perl /usr/pbi/lightsquid-i386/www/lightsquid/lightparser.pl today</command>
124
		</item>
125
		<item>
126
			<task_name>lightsquid_parser_yesterday</task_name>
127
			<minute>15</minute>
128
			<hour>0</hour>
129
			<mday>*</mday>
130
			<month>*</month>
131
			<wday>*</wday>
132
			<who>root</who>
133
			<command>/usr/bin/perl /usr/pbi/lightsquid-i386/www/lightsquid/lightparser.pl yesterday</command>
134
		</item>
135
		<item>
136
			<minute>0</minute>
137
			<hour>*/1</hour>
138
			<mday>*</mday>
139
			<month>*</month>
140
			<wday>*</wday>
141
			<who>root</who>
142
			<command>/usr/local/bin/php /usr/local/www/sarg.php 0</command>
143
		</item>
144
		<item>
145
			<minute>*/5</minute>
146
			<hour>*</hour>
147
			<mday>*</mday>
148
			<month>*</month>
149
			<wday>*</wday>
150
			<who>root</who>
151
			<command>/usr/bin/nice -n20 /usr/local/bin/php -f /usr/local/pkg/snort/snort_check_cron_misc.inc</command>
152
		</item>
153
		<item>
154
			<minute>*/15</minute>
155
			<hour>*</hour>
156
			<mday>*</mday>
157
			<month>*</month>
158
			<wday>*</wday>
159
			<who>root</who>
160
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -t 10800 snort2c</command>
161
		</item>
162
		<item>
163
			<minute>0</minute>
164
			<hour>*/12</hour>
165
			<mday>*</mday>
166
			<month>*</month>
167
			<wday>*</wday>
168
			<who>root</who>
169
			<command>/usr/bin/nice -n20 /usr/local/etc/rc.d/havp_avupdate</command>
170
		</item>
171
	</cron>
172
	<wol>
173
		<wolentry>
174
			<interface>lan</interface>
175
			<mac>8c:70:5a:64:68:5c</mac>
176
			<descr><![CDATA[bsr-server]]></descr>
177
		</wolentry>
178
	</wol>
179
	<rrd>
180
		<enable/>
181
	</rrd>
182
	<load_balancer>
183
		<monitor_type>
184
			<name>ICMP</name>
185
			<type>icmp</type>
186
			<descr><![CDATA[ICMP]]></descr>
187
			<options/>
188
		</monitor_type>
189
		<monitor_type>
190
			<name>TCP</name>
191
			<type>tcp</type>
192
			<descr><![CDATA[Generic TCP]]></descr>
193
			<options/>
194
		</monitor_type>
195
		<monitor_type>
196
			<name>HTTP</name>
197
			<type>http</type>
198
			<descr><![CDATA[Generic HTTP]]></descr>
199
			<options>
200
				<path>/</path>
201
				<host/>
202
				<code>200</code>
203
			</options>
204
		</monitor_type>
205
		<monitor_type>
206
			<name>HTTPS</name>
207
			<type>https</type>
208
			<descr><![CDATA[Generic HTTPS]]></descr>
209
			<options>
210
				<path>/</path>
211
				<host/>
212
				<code>200</code>
213
			</options>
214
		</monitor_type>
215
		<monitor_type>
216
			<name>SMTP</name>
217
			<type>send</type>
218
			<descr><![CDATA[Generic SMTP]]></descr>
219
			<options>
220
				<send/>
221
				<expect>220 *</expect>
222
			</options>
223
		</monitor_type>
224
	</load_balancer>
225
	<widgets>
226
		<sequence>system_information-container:col1:show,captive_portal_status-container:col1:close,carp_status-container:col1:close,cpu_graphs-container:col1:close,gateways-container:col1:close,gmirror_status-container:col1:close,installed_packages-container:col1:close,services_status-container:col1:show,interfaces-container:col2:show,interface_statistics-container:col2:show,ipsec-container:col2:close,load_balancer_status-container:col2:close,log-container:col2:close,picture-container:col2:close,rss-container:col2:close,traffic_graphs-container:col2:show,dyn_dns_status-container:col2:none,openvpn-container:col2:none,smart_status-container:col2:none,wake_on_lan-container:col2:none</sequence>
227
	</widgets>
228
	<revision>
229
		<time>1364039048</time>
230
		<description><![CDATA[admin@192.168.1.67: /firewall_shaper.php made unknown change]]></description>
231
		<username>admin@192.168.1.67</username>
232
	</revision>
233
	<openvpn/>
234
	<l7shaper>
235
		<container/>
236
		<container>
237
			<name>VoIP</name>
238
			<enabled>on</enabled>
239
			<description><![CDATA[Traffic that is VoIP or equivalent]]></description>
240
			<divert_port>47582</divert_port>
241
			<l7rules>
242
				<protocol>gtalk</protocol>
243
				<structure>queue</structure>
244
				<behaviour>qVoIP</behaviour>
245
			</l7rules>
246
			<l7rules>
247
				<protocol>skypeout</protocol>
248
				<structure>queue</structure>
249
				<behaviour>qVoIP</behaviour>
250
			</l7rules>
251
			<l7rules>
252
				<protocol>ssh</protocol>
253
				<structure>queue</structure>
254
				<behaviour>qOthersHigh</behaviour>
255
			</l7rules>
256
			<l7rules>
257
				<protocol>skypetoskype</protocol>
258
				<structure>queue</structure>
259
				<behaviour>qVoIP</behaviour>
260
			</l7rules>
261
		</container>
262
		<container>
263
			<name>slow</name>
264
			<enabled>on</enabled>
265
			<description><![CDATA[services that get lower priorities]]></description>
266
			<divert_port>51706</divert_port>
267
			<l7rules>
268
				<protocol>http-itunes</protocol>
269
				<structure>queue</structure>
270
				<behaviour>qP2P</behaviour>
271
			</l7rules>
272
			<l7rules>
273
				<protocol>httpvideo</protocol>
274
				<structure>queue</structure>
275
				<behaviour>qP2P</behaviour>
276
			</l7rules>
277
			<l7rules>
278
				<protocol>quicktime</protocol>
279
				<structure>queue</structure>
280
				<behaviour>qP2P</behaviour>
281
			</l7rules>
282
		</container>
283
	</l7shaper>
284
	<dnshaper/>
    (1-1/1)