Project

General

Profile

failing-config.xml

B. Derman, 03/11/2015 09:21 PM

 
1
<?xml version="1.0"?>
2
<pfsense>
3
        <version>11.6</version>
4
        <lastchange/>
5
        <theme>pfsense_ng_fs</theme>
6
        <sysctl>
7
                <item>
8
                        <descr><![CDATA[Disable the pf ftp proxy handler.]]></descr>
9
                        <tunable>debug.pfftpproxy</tunable>
10
                        <value>default</value>
11
                </item>
12
                <item>
13
                        <descr><![CDATA[Increase UFS read-ahead speeds to match current state of hard drives and NCQ. More information here: http://ivoras.sharanet.org/blog/tree/2010-11-19.ufs-read-ahead.html]]></descr>
14
                        <tunable>vfs.read_max</tunable>
15
                        <value>default</value>
16
                </item>
17
                <item>
18
                        <descr><![CDATA[Set the ephemeral port range to be lower.]]></descr>
19
                        <tunable>net.inet.ip.portrange.first</tunable>
20
                        <value>default</value>
21
                </item>
22
                <item>
23
                        <descr><![CDATA[Drop packets to closed TCP ports without returning a RST]]></descr>
24
                        <tunable>net.inet.tcp.blackhole</tunable>
25
                        <value>default</value>
26
                </item>
27
                <item>
28
                        <descr><![CDATA[Do not send ICMP port unreachable messages for closed UDP ports]]></descr>
29
                        <tunable>net.inet.udp.blackhole</tunable>
30
                        <value>default</value>
31
                </item>
32
                <item>
33
                        <descr><![CDATA[Randomize the ID field in IP packets (default is 0: sequential IP IDs)]]></descr>
34
                        <tunable>net.inet.ip.random_id</tunable>
35
                        <value>default</value>
36
                </item>
37
                <item>
38
                        <descr><![CDATA[Drop SYN-FIN packets (breaks RFC1379, but nobody uses it anyway)]]></descr>
39
                        <tunable>net.inet.tcp.drop_synfin</tunable>
40
                        <value>default</value>
41
                </item>
42
                <item>
43
                        <descr><![CDATA[Enable sending IPv4 redirects]]></descr>
44
                        <tunable>net.inet.ip.redirect</tunable>
45
                        <value>default</value>
46
                </item>
47
                <item>
48
                        <descr><![CDATA[Enable sending IPv6 redirects]]></descr>
49
                        <tunable>net.inet6.ip6.redirect</tunable>
50
                        <value>default</value>
51
                </item>
52
                <item>
53
                        <descr><![CDATA[Generate SYN cookies for outbound SYN-ACK packets]]></descr>
54
                        <tunable>net.inet.tcp.syncookies</tunable>
55
                        <value>default</value>
56
                </item>
57
                <item>
58
                        <descr><![CDATA[Maximum incoming/outgoing TCP datagram size (receive)]]></descr>
59
                        <tunable>net.inet.tcp.recvspace</tunable>
60
                        <value>default</value>
61
                </item>
62
                <item>
63
                        <descr><![CDATA[Maximum incoming/outgoing TCP datagram size (send)]]></descr>
64
                        <tunable>net.inet.tcp.sendspace</tunable>
65
                        <value>default</value>
66
                </item>
67
                <item>
68
                        <descr><![CDATA[IP Fastforwarding]]></descr>
69
                        <tunable>net.inet.ip.fastforwarding</tunable>
70
                        <value>default</value>
71
                </item>
72
                <item>
73
                        <descr><![CDATA[Do not delay ACK to try and piggyback it onto a data packet]]></descr>
74
                        <tunable>net.inet.tcp.delayed_ack</tunable>
75
                        <value>default</value>
76
                </item>
77
                <item>
78
                        <descr><![CDATA[Maximum outgoing UDP datagram size]]></descr>
79
                        <tunable>net.inet.udp.maxdgram</tunable>
80
                        <value>default</value>
81
                </item>
82
                <item>
83
                        <descr><![CDATA[Handling of non-IP packets which are not passed to pfil (see if_bridge(4))]]></descr>
84
                        <tunable>net.link.bridge.pfil_onlyip</tunable>
85
                        <value>default</value>
86
                </item>
87
                <item>
88
                        <descr><![CDATA[Set to 0 to disable filtering on the incoming and outgoing member interfaces.]]></descr>
89
                        <tunable>net.link.bridge.pfil_member</tunable>
90
                        <value>default</value>
91
                </item>
92
                <item>
93
                        <descr><![CDATA[Set to 1 to enable filtering on the bridge interface]]></descr>
94
                        <tunable>net.link.bridge.pfil_bridge</tunable>
95
                        <value>default</value>
96
                </item>
97
                <item>
98
                        <descr><![CDATA[Allow unprivileged access to tap(4) device nodes]]></descr>
99
                        <tunable>net.link.tap.user_open</tunable>
100
                        <value>default</value>
101
                </item>
102
                <item>
103
                        <descr><![CDATA[Randomize PID's (see src/sys/kern/kern_fork.c: sysctl_kern_randompid())]]></descr>
104
                        <tunable>kern.randompid</tunable>
105
                        <value>default</value>
106
                </item>
107
                <item>
108
                        <descr><![CDATA[Maximum size of the IP input queue]]></descr>
109
                        <tunable>net.inet.ip.intr_queue_maxlen</tunable>
110
                        <value>default</value>
111
                </item>
112
                <item>
113
                        <descr><![CDATA[Disable CTRL+ALT+Delete reboot from keyboard.]]></descr>
114
                        <tunable>hw.syscons.kbd_reboot</tunable>
115
                        <value>default</value>
116
                </item>
117
                <item>
118
                        <descr><![CDATA[Enable TCP Inflight mode]]></descr>
119
                        <tunable>net.inet.tcp.inflight.enable</tunable>
120
                        <value>default</value>
121
                </item>
122
                <item>
123
                        <descr><![CDATA[Enable TCP extended debugging]]></descr>
124
                        <tunable>net.inet.tcp.log_debug</tunable>
125
                        <value>default</value>
126
                </item>
127
                <item>
128
                        <descr><![CDATA[Set ICMP Limits]]></descr>
129
                        <tunable>net.inet.icmp.icmplim</tunable>
130
                        <value>default</value>
131
                </item>
132
                <item>
133
                        <descr><![CDATA[TCP Offload Engine]]></descr>
134
                        <tunable>net.inet.tcp.tso</tunable>
135
                        <value>default</value>
136
                </item>
137
                <item>
138
                        <descr><![CDATA[Maximum socket buffer size]]></descr>
139
                        <tunable>kern.ipc.maxsockbuf</tunable>
140
                        <value>default</value>
141
                </item>
142
        </sysctl>
143
        <system>
144
                <optimization>normal</optimization>
145
                <hostname>gateway2</hostname>
146
                <domain>siteA.com</domain>
147
                <group>
148
                        <name>admins</name>
149
                        <description><![CDATA[System Administrators]]></description>
150
                        <scope>system</scope>
151
                        <gid>1999</gid>
152
                        <member>0</member>
153
                        <priv>page-all</priv>
154
                        <priv>user-copy-files</priv>
155
                        <priv>user-shell-access</priv>
156
                        <priv>user-ssh-tunnel</priv>
157
                </group>
158
                <group>
159
                        <name>all</name>
160
                        <description><![CDATA[All Users]]></description>
161
                        <scope>system</scope>
162
                        <gid>1998</gid>
163
                </group>
164
                <group>
165
                        <name>Guests</name>
166
                        <description><![CDATA[Wireless Guests]]></description>
167
                        <member>2002</member>
168
                        <gid>2001</gid>
169
                        <priv>user-services-captiveportal-login</priv>
170
                </group>
171
                <group>
172
                        <name>MobileVPNusers</name>
173
                        <description><![CDATA[Mobile VPN users]]></description>
174
                        <member>2000</member>
175
                        <gid>2000</gid>
176
                        <priv>user-ipsec-xauth-dialin</priv>
177
                </group>
178
                <user>
179
                        <name>admin</name>
180
                        <descr><![CDATA[System Administrator]]></descr>
181
                        <scope>system</scope>
182
                        <groupname>admins</groupname>
183
                        <password>$1$W19XXHLB$h8Lrs8T6f2.uKz/Lj1MpI0</password>
184
                        <uid>0</uid>
185
                        <priv>user-shell-access</priv>
186
                        <md5-hash>3a4b4c4dde494d2cec3e0ea68e437e17</md5-hash>
187
                        <nt-hash>3338333834323034353935373932633863623430663264336164663532353636</nt-hash>
188
                </user>
189
                <user>
190
                        <scope>user</scope>
191
                        <password/>
192
                        <md5-hash>a9ddef8076a0e96323ed2b1d0629a6d0</md5-hash>
193
                        <nt-hash>3431393438343561626164393135393738666234666664363161663438323931</nt-hash>
194
                        <name>dei</name>
195
                        <descr><![CDATA[DEI]]></descr>
196
                        <expires/>
197
                        <authorizedkeys/>
198
                        <ipsecpsk/>
199
                        <uid>2000</uid>
200
                        <cert>52f5f81960248</cert>
201
                </user>
202
                <user>
203
                        <scope>user</scope>
204
                        <password/>
205
                        <md5-hash>a9ddef8076a1e96325cd2b1d0d29a6d0</md5-hash>
206
                        <nt-hash>3431393438343565626164393135593938666214666664363161663438323931</nt-hash>
207
                        <name>guest</name>
208
                        <descr><![CDATA[Wireless Guest User]]></descr>
209
                        <expires/>
210
                        <authorizedkeys/>
211
                        <ipsecpsk/>
212
                        <uid>2002</uid>
213
                        <priv>user-services-captiveportal-login</priv>
214
                </user>
215
                <nextuid>2004</nextuid>
216
                <nextgid>2003</nextgid>
217
                <timezone>America/Vancouver</timezone>
218
                <time-update-interval/>
219
                <timeservers>time.apple.com</timeservers>
220
                <webgui>
221
                        <protocol>http</protocol>
222
                        <ssl-certref>52d8ee4f992fc</ssl-certref>
223
                        <port/>
224
                        <max_procs>4</max_procs>
225
                        <quietlogin/>
226
                        <session_timeout>120</session_timeout>
227
                        <authmode>Local Database</authmode>
228
                        <backend/>
229
                        <nodnsrebindcheck/>
230
                        <loginautocomplete/>
231
                </webgui>
232
                <disablesegmentationoffloading/>
233
                <disablelargereceiveoffloading/>
234
                <dns1gwint>none</dns1gwint>
235
                <dns2gwint>none</dns2gwint>
236
                <dns3gwint>none</dns3gwint>
237
                <dns4gwint>none</dns4gwint>
238
                <enablesshd>enabled</enablesshd>
239
                <maximumstates>32000</maximumstates>
240
                <maximumtableentries>3500000</maximumtableentries>
241
                <reflectiontimeout>3600</reflectiontimeout>
242
                <maximumtables>300</maximumtables>
243
                <kill_states/>
244
                <aliasesresolveinterval/>
245
                <bogons>
246
                        <interval>daily</interval>
247
                </bogons>
248
                <powerd_ac_mode>hadp</powerd_ac_mode>
249
                <powerd_battery_mode>hadp</powerd_battery_mode>
250
                <skip_rules_gw_down/>
251
                <use_mfs_tmp_size/>
252
                <use_mfs_var_size/>
253
                <enablenatreflectionhelper>yes</enablenatreflectionhelper>
254
                <language>en_US</language>
255
                <dns1gw>none</dns1gw>
256
                <dns2gw>none</dns2gw>
257
                <dns3gw>none</dns3gw>
258
                <dns4gw>none</dns4gw>
259
                <serialspeed>9600</serialspeed>
260
                <gitsync>
261
                        <repositoryurl/>
262
                        <branch/>
263
                </gitsync>
264
                <ipv6allow/>
265
                <primaryconsole>serial</primaryconsole>
266
                <dnslocalhost/>
267
                <firmware>
268
                        <disablecheck/>
269
                </firmware>
270
                <prefer_ipv4/>
271
                <powerd_enable/>
272
                <powerd_normal_mode>hadp</powerd_normal_mode>
273
                <thermal_hardware>coretemp</thermal_hardware>
274
                <dnsserver>172.24.16.166</dnsserver>
275
        </system>
276
        <interfaces>
277
                <wan>
278
                        <enable/>
279
                        <if>igb1</if>
280
                        <blockpriv/>
281
                        <blockbogons/>
282
                        <descr><![CDATA[WAN_DEI]]></descr>
283
                        <spoofmac/>
284
                        <ipaddr>dhcp</ipaddr>
285
                        <dhcphostname/>
286
                        <alias-address/>
287
                        <alias-subnet>32</alias-subnet>
288
                        <dhcprejectfrom/>
289
                        <adv_dhcp_pt_timeout/>
290
                        <adv_dhcp_pt_retry/>
291
                        <adv_dhcp_pt_select_timeout/>
292
                        <adv_dhcp_pt_reboot/>
293
                        <adv_dhcp_pt_backoff_cutoff/>
294
                        <adv_dhcp_pt_initial_interval/>
295
                        <adv_dhcp_pt_values>SavedCfg</adv_dhcp_pt_values>
296
                        <adv_dhcp_send_options/>
297
                        <adv_dhcp_request_options/>
298
                        <adv_dhcp_required_options/>
299
                        <adv_dhcp_option_modifiers/>
300
                        <adv_dhcp_config_advanced/>
301
                        <adv_dhcp_config_file_override/>
302
                        <adv_dhcp_config_file_override_path/>
303
                </wan>
304
                <lan>
305
                        <enable/>
306
                        <if>igb0_vlan16</if>
307
                        <descr><![CDATA[LAN1]]></descr>
308
                        <spoofmac/>
309
                        <blockbogons/>
310
                        <ipaddr>172.24.16.2</ipaddr>
311
                        <subnet>24</subnet>
312
                </lan>
313
                <opt1>
314
                        <descr><![CDATA[LAN2]]></descr>
315
                        <if>igb0_vlan17</if>
316
                        <spoofmac/>
317
                        <blockbogons/>
318
                        <enable/>
319
                        <ipaddr>172.24.17.2</ipaddr>
320
                        <subnet>24</subnet>
321
                </opt1>
322
                <opt2>
323
                        <descr><![CDATA[LAN3]]></descr>
324
                        <if>igb0_vlan18</if>
325
                        <enable/>
326
                        <blockbogons/>
327
                        <spoofmac/>
328
                        <ipaddr>172.24.18.2</ipaddr>
329
                        <subnet>24</subnet>
330
                </opt2>
331
        </interfaces>
332
        <staticroutes/>
333
        <dhcpd>
334
                <lan>
335
                        <range>
336
                                <from>172.24.16.112</from>
337
                                <to>172.24.16.116</to>
338
                        </range>
339
                        <defaultleasetime>18000</defaultleasetime>
340
                        <maxleasetime>18060</maxleasetime>
341
                        <netmask/>
342
                        <failover_peerip/>
343
                        <gateway/>
344
                        <ddnsdomain/>
345
                        <filename/>
346
                        <staticmap/>
347
                        <denyunknown/>
348
                        <domain/>
349
                        <domainsearchlist/>
350
                        <tftp/>
351
                        <ldap/>
352
                        <rootpath/>
353
                        <numberoptions/>
354
                        <dhcpleaseinlocaltime>yes</dhcpleaseinlocaltime>
355
                        <mac_allow/>
356
                        <mac_deny/>
357
                        <nextserver/>
358
                        <dnsserver>172.24.16.1</dnsserver>
359
                        <ddnsdomainprimary/>
360
                        <ddnsdomainkeyname/>
361
                        <ddnsdomainkey/>
362
                        <filename32/>
363
                        <filename64/>
364
                </lan>
365
                <opt1>
366
                        <range>
367
                                <from>172.24.17.110</from>
368
                                <to>172.24.17.119</to>
369
                        </range>
370
                        <failover_peerip/>
371
                        <dhcpleaseinlocaltime>yes</dhcpleaseinlocaltime>
372
                        <defaultleasetime>18000</defaultleasetime>
373
                        <maxleasetime>18060</maxleasetime>
374
                        <netmask/>
375
                        <gateway>172.24.17.1</gateway>
376
                        <domain>siteA.com</domain>
377
                        <domainsearchlist>siteA.com</domainsearchlist>
378
                        <ddnsdomain/>
379
                        <mac_allow/>
380
                        <mac_deny/>
381
                        <tftp/>
382
                        <ldap/>
383
                        <nextserver/>
384
                        <filename/>
385
                        <rootpath/>
386
                        <numberoptions/>
387
                        <dnsserver>172.24.17.1</dnsserver>
388
                        <ddnsdomainprimary/>
389
                        <ddnsdomainkeyname/>
390
                        <ddnsdomainkey/>
391
                        <ntpserver>172.24.17.1</ntpserver>
392
                        <filename32/>
393
                        <filename64/>
394
                </opt1>
395
        </dhcpd>
396
        <pptpd>
397
                <redir/>
398
                <localip>172.24.16.252</localip>
399
                <remoteip>172.24.16.48</remoteip>
400
                <radius>
401
                        <server>
402
                                <ip/>
403
                                <port/>
404
                                <acctport/>
405
                                <secret/>
406
                        </server>
407
                        <secret/>
408
                        <server2>
409
                                <ip/>
410
                                <port/>
411
                                <acctport/>
412
                                <secret2/>
413
                        </server2>
414
                        <nasip/>
415
                        <acct_update/>
416
                </radius>
417
                <wins/>
418
                <req128/>
419
                <n_pptp_units>4</n_pptp_units>
420
                <dns1>172.24.16.1</dns1>
421
                <mode>off</mode>
422
        </pptpd>
423
        <dnsmasq>
424
                <custom_options>addn-hosts=/usr/local/etc/hosts
425
cache-size=96000</custom_options>
426
                <interface>lan,opt1,opt2,lo0</interface>
427
                <enable/>
428
                <domainoverrides>
429
                        <domain>siteA.com</domain>
430
                        <ip>172.24.16.166</ip>
431
                        <descr><![CDATA[Internal siteA.com DNS]]></descr>
432
                </domainoverrides>
433
                <domainoverrides>
434
                        <domain>siteB.com</domain>
435
                        <ip>172.24.16.166</ip>
436
                        <descr><![CDATA[Internal siteB.com DNS]]></descr>
437
                </domainoverrides>
438
                <domainoverrides>
439
                        <domain>siteC.com</domain>
440
                        <ip>172.24.16.166</ip>
441
                        <descr><![CDATA[Internal siteC.com DNS]]></descr>
442
                </domainoverrides>
443
                <strictbind/>
444
                <hosts>
445
                        <host>no-ads-dev</host>
446
                        <domain>siteA.com</domain>
447
                        <ip>172.24.16.99</ip>
448
                        <descr><![CDATA[The v4 IP for the development Ad-blocking server]]></descr>
449
                        <aliases/>
450
                </hosts>
451
                <hosts>
452
                        <host>no-ads-server</host>
453
                        <domain>siteA.com</domain>
454
                        <ip>172.24.18.99</ip>
455
                        <descr><![CDATA[The v4 IP for the production Ad-blocking server]]></descr>
456
                        <aliases/>
457
                </hosts>
458
                <hosts>
459
                        <host>no-ads-server-v6</host>
460
                        <domain>siteA.com</domain>
461
                        <ip>fe80:4::ca2a:14ff:fe51:c80</ip>
462
                        <descr><![CDATA[The v6 IP for the production Ad-blocking server]]></descr>
463
                        <aliases/>
464
                </hosts>
465
        </dnsmasq>
466
        <snmpd>
467
                <syslocation/>
468
                <syscontact/>
469
                <rocommunity>DEI</rocommunity>
470
                <modules>
471
                        <mibii/>
472
                        <netgraph/>
473
                        <pf/>
474
                        <hostres/>
475
                        <ucd/>
476
                        <regex/>
477
                </modules>
478
                <enable/>
479
                <pollport>161</pollport>
480
                <trapserver/>
481
                <trapserverport/>
482
                <trapstring/>
483
                <bindip>lan</bindip>
484
        </snmpd>
485
        <diag>
486
                <ipv6nat/>
487
        </diag>
488
        <bridge/>
489
        <syslog>
490
                <nentries>750</nentries>
491
                <reverse/>
492
                <filterdescriptions>1</filterdescriptions>
493
                <sourceip/>
494
                <ipproto>ipv4</ipproto>
495
                <nologdefaultblock/>
496
                <nologbogons/>
497
                <nologprivatenets/>
498
        </syslog>
499
        <nat>
500
                <rule>
501
                        <source>
502
                                <address>NUTclientsOnLAN1</address>
503
                        </source>
504
                        <destination>
505
                                <address>NUTserver</address>
506
                                <port>NUTport</port>
507
                        </destination>
508
                        <protocol>tcp</protocol>
509
                        <target>pfSenseInternal</target>
510
                        <local-port>NUTport</local-port>
511
                        <interface>lan</interface>
512
                        <descr><![CDATA[Allow certain NUT clients on LAN1]]></descr>
513
                        <associated-rule-id>nat_54ac784ef1d582.91727783</associated-rule-id>
514
                        <created>
515
                                <time>1420589134</time>
516
                                <username>admin@172.24.16.235</username>
517
                        </created>
518
                        <updated>
519
                                <time>1425641161</time>
520
                                <username>admin@172.24.16.235</username>
521
                        </updated>
522
                </rule>
523
                <rule>
524
                        <source>
525
                                <address>NUTclientsOnLAN2</address>
526
                        </source>
527
                        <destination>
528
                                <address>NUTserver</address>
529
                                <port>NUTport</port>
530
                        </destination>
531
                        <protocol>tcp</protocol>
532
                        <target>pfSenseInternal</target>
533
                        <local-port>NUTport</local-port>
534
                        <interface>opt1</interface>
535
                        <descr><![CDATA[Allow certain NUT clients on LAN2]]></descr>
536
                        <associated-rule-id>nat_52c28163251599.67326802</associated-rule-id>
537
                        <created>
538
                                <time>1388478819</time>
539
                                <username>admin@172.24.17.234</username>
540
                        </created>
541
                        <updated>
542
                                <time>1423791584</time>
543
                                <username>admin@172.24.16.235</username>
544
                        </updated>
545
                        <tracker>1424949565</tracker>
546
                </rule>
547
                <rule>
548
                        <source>
549
                                <address>DevServersAndClients</address>
550
                        </source>
551
                        <destination>
552
                                <address>WAN1_DEI</address>
553
                                <port>PublicServerPorts</port>
554
                        </destination>
555
                        <protocol>tcp</protocol>
556
                        <target>DEIdevServer</target>
557
                        <local-port>PublicServerPorts</local-port>
558
                        <interface>wan</interface>
559
                        <descr><![CDATA[Pass siteA.com test server traffic]]></descr>
560
                        <associated-rule-id>nat_4f34ef8f23d3f2.59828398</associated-rule-id>
561
                        <updated>
562
                                <time>1425802933</time>
563
                                <username>admin@172.24.16.235</username>
564
                        </updated>
565
                </rule>
566
                <rule>
567
                        <source>
568
                                <address>DevServersAndClients</address>
569
                        </source>
570
                        <destination>
571
                                <address>WAN3_TAK</address>
572
                                <port>PublicServerPorts</port>
573
                        </destination>
574
                        <protocol>tcp</protocol>
575
                        <target>TAKdevServer</target>
576
                        <local-port>PublicServerPorts</local-port>
577
                        <interface>wan</interface>
578
                        <descr><![CDATA[Pass siteB.com test server traffic]]></descr>
579
                        <associated-rule-id>nat_4f34efdc5ee0d7.11748463</associated-rule-id>
580
                        <updated>
581
                                <time>1420452557</time>
582
                                <username>admin@172.24.16.235</username>
583
                        </updated>
584
                        <tracker>1424949567</tracker>
585
                </rule>
586
                <rule>
587
                        <source>
588
                                <address>DevServersAndClients</address>
589
                        </source>
590
                        <destination>
591
                                <address>WAN2_SE</address>
592
                                <port>PublicServerPorts</port>
593
                        </destination>
594
                        <protocol>tcp</protocol>
595
                        <target>SEdevServer</target>
596
                        <local-port>PublicServerPorts</local-port>
597
                        <interface>wan</interface>
598
                        <descr><![CDATA[Pass siteC.com test server traffic]]></descr>
599
                        <associated-rule-id>nat_4f34efbc3d3a27.03111339</associated-rule-id>
600
                        <updated>
601
                                <time>1420452543</time>
602
                                <username>admin@172.24.16.235</username>
603
                        </updated>
604
                        <tracker>1424949568</tracker>
605
                </rule>
606
                <rule>
607
                        <source>
608
                                <any/>
609
                        </source>
610
                        <destination>
611
                                <address>WAN1_DEI</address>
612
                                <port>PublicServerPorts</port>
613
                        </destination>
614
                        <protocol>tcp</protocol>
615
                        <target>DEIvServer</target>
616
                        <local-port>PublicServerPorts</local-port>
617
                        <interface>wan</interface>
618
                        <descr><![CDATA[Pass siteA.com public server traffic]]></descr>
619
                        <associated-rule-id>nat_549565338d1bb8.05530663</associated-rule-id>
620
                        <created>
621
                                <time>1419076915</time>
622
                                <username>admin@172.24.16.235</username>
623
                        </created>
624
                        <updated>
625
                                <time>1420445048</time>
626
                                <username>admin@172.24.16.235</username>
627
                        </updated>
628
                        <tracker>1424949569</tracker>
629
                </rule>
630
                <rule>
631
                        <source>
632
                                <any/>
633
                        </source>
634
                        <destination>
635
                                <address>WAN3_TAK</address>
636
                                <port>PublicServerPorts</port>
637
                        </destination>
638
                        <protocol>tcp</protocol>
639
                        <target>TAKvServer</target>
640
                        <local-port>PublicServerPorts</local-port>
641
                        <interface>wan</interface>
642
                        <descr><![CDATA[Pass siteB.com public server traffic]]></descr>
643
                        <associated-rule-id>nat_5496bf6b6806d0.74246506</associated-rule-id>
644
                        <created>
645
                                <time>1419165547</time>
646
                                <username>admin@172.24.16.235</username>
647
                        </created>
648
                        <updated>
649
                                <time>1420445040</time>
650
                                <username>admin@172.24.16.235</username>
651
                        </updated>
652
                        <tracker>1424949570</tracker>
653
                </rule>
654
                <rule>
655
                        <source>
656
                                <any/>
657
                        </source>
658
                        <destination>
659
                                <address>WAN2_SE</address>
660
                                <port>PublicServerPorts</port>
661
                        </destination>
662
                        <protocol>tcp</protocol>
663
                        <target>SEvServer</target>
664
                        <local-port>PublicServerPorts</local-port>
665
                        <interface>wan</interface>
666
                        <descr><![CDATA[Pass siteC.com public server traffic]]></descr>
667
                        <associated-rule-id>nat_5496bf4d23c6b1.56363454</associated-rule-id>
668
                        <created>
669
                                <time>1419165517</time>
670
                                <username>admin@172.24.16.235</username>
671
                        </created>
672
                        <updated>
673
                                <time>1420445029</time>
674
                                <username>admin@172.24.16.235</username>
675
                        </updated>
676
                        <tracker>1424949571</tracker>
677
                </rule>
678
                <rule>
679
                        <disabled/>
680
                        <source>
681
                                <any/>
682
                        </source>
683
                        <destination>
684
                                <address>WAN1_DEI</address>
685
                                <port>21</port>
686
                        </destination>
687
                        <protocol>tcp</protocol>
688
                        <target>DEIvServer</target>
689
                        <local-port>21</local-port>
690
                        <interface>wan</interface>
691
                        <descr><![CDATA[Pass siteA.com FTP traffic]]></descr>
692
                        <associated-rule-id>nat_4f34ec0b306bb1.09804029</associated-rule-id>
693
                        <updated>
694
                                <time>1420446747</time>
695
                                <username>admin@172.24.16.235</username>
696
                        </updated>
697
                        <tracker>1424949572</tracker>
698
                </rule>
699
                <rule>
700
                        <disabled/>
701
                        <source>
702
                                <any/>
703
                        </source>
704
                        <destination>
705
                                <address>WAN1_DEI</address>
706
                                <port>5400-5416</port>
707
                        </destination>
708
                        <protocol>tcp</protocol>
709
                        <target>DEIvServer</target>
710
                        <local-port>5400</local-port>
711
                        <interface>wan</interface>
712
                        <descr><![CDATA[Pass siteA.com FTP traffic]]></descr>
713
                        <associated-rule-id>nat_4f34ec66a20d96.02288737</associated-rule-id>
714
                        <updated>
715
                                <time>1420446732</time>
716
                                <username>admin@172.24.16.235</username>
717
                        </updated>
718
                        <tracker>1424949573</tracker>
719
                </rule>
720
                <rule>
721
                        <disabled/>
722
                        <source>
723
                                <any/>
724
                        </source>
725
                        <destination>
726
                                <address>WAN1_DEI</address>
727
                                <port>2427</port>
728
                        </destination>
729
                        <protocol>tcp/udp</protocol>
730
                        <target>VoIProuter</target>
731
                        <local-port>2427</local-port>
732
                        <interface>wan</interface>
733
                        <descr><![CDATA[Pass VoIP (MGCP port for gateways)]]></descr>
734
                        <associated-rule-id>nat_4f34f155ba0fc8.73668051</associated-rule-id>
735
                        <tracker>1424949574</tracker>
736
                </rule>
737
                <rule>
738
                        <disabled/>
739
                        <source>
740
                                <any/>
741
                        </source>
742
                        <destination>
743
                                <address>WAN1_DEI</address>
744
                                <port>2727</port>
745
                        </destination>
746
                        <protocol>tcp/udp</protocol>
747
                        <target>VoIProuter</target>
748
                        <local-port>2727</local-port>
749
                        <interface>wan</interface>
750
                        <descr><![CDATA[Pass VoIP (MGCP port for call agents)]]></descr>
751
                        <associated-rule-id>nat_4f34f195ec63a4.01374927</associated-rule-id>
752
                        <tracker>1424949575</tracker>
753
                </rule>
754
                <rule>
755
                        <disabled/>
756
                        <source>
757
                                <any/>
758
                        </source>
759
                        <destination>
760
                                <address>WAN1_DEI</address>
761
                                <port>5062</port>
762
                        </destination>
763
                        <protocol>tcp/udp</protocol>
764
                        <target>VoIProuter</target>
765
                        <local-port>5062</local-port>
766
                        <interface>wan</interface>
767
                        <descr><![CDATA[Pass VoIP (control)]]></descr>
768
                        <associated-rule-id>nat_4f34f1c6f2eeb5.63147915</associated-rule-id>
769
                        <tracker>1424949576</tracker>
770
                </rule>
771
                <rule>
772
                        <disabled/>
773
                        <source>
774
                                <any/>
775
                        </source>
776
                        <destination>
777
                                <address>WAN1_DEI</address>
778
                                <port>16384-32767</port>
779
                        </destination>
780
                        <protocol>udp</protocol>
781
                        <target>VoIProuter</target>
782
                        <local-port>16384</local-port>
783
                        <interface>wan</interface>
784
                        <descr><![CDATA[Pass VoIP (data)]]></descr>
785
                        <associated-rule-id>nat_4f34f1f9a6f7c6.60710030</associated-rule-id>
786
                        <tracker>1424949577</tracker>
787
                </rule>
788
                <rule>
789
                        <disabled/>
790
                        <source>
791
                                <any/>
792
                        </source>
793
                        <destination>
794
                                <address>WAN1_DEI</address>
795
                                <port>5900-5909</port>
796
                        </destination>
797
                        <protocol>tcp</protocol>
798
                        <target>BEDiMac</target>
799
                        <local-port>5900</local-port>
800
                        <interface>wan</interface>
801
                        <descr><![CDATA[Pass traffic to VNC server]]></descr>
802
                        <associated-rule-id>nat_4f34f259975314.00748715</associated-rule-id>
803
                        <updated>
804
                                <time>1420497774</time>
805
                                <username>admin@172.24.16.235</username>
806
                        </updated>
807
                        <tracker>1424949578</tracker>
808
                </rule>
809
                <rule>
810
                        <disabled/>
811
                        <source>
812
                                <any/>
813
                        </source>
814
                        <destination>
815
                                <network>wanip</network>
816
                                <port>BittorrentPort</port>
817
                        </destination>
818
                        <protocol>tcp/udp</protocol>
819
                        <target>BEDiMacOnLAN1</target>
820
                        <local-port>BittorrentPort</local-port>
821
                        <interface>wan</interface>
822
                        <descr><![CDATA[Pass Transmission's bittorrent P2P traffic]]></descr>
823
                        <associated-rule-id/>
824
                        <created>
825
                                <time>1415047261</time>
826
                                <username>admin@172.24.16.234</username>
827
                        </created>
828
                        <updated>
829
                                <time>1415047713</time>
830
                                <username>admin@172.24.16.234</username>
831
                        </updated>
832
                        <tracker>1424949579</tracker>
833
                </rule>
834
                <rule>
835
                        <disabled/>
836
                        <source>
837
                                <any/>
838
                        </source>
839
                        <destination>
840
                                <address>WAN4_Spare</address>
841
                                <port>BittorrentPort</port>
842
                        </destination>
843
                        <protocol>tcp/udp</protocol>
844
                        <target>BEDiMacOnLAN1</target>
845
                        <local-port>BittorrentPort</local-port>
846
                        <interface>wan</interface>
847
                        <descr><![CDATA[Pass Transmission's bittorrent P2P traffic]]></descr>
848
                        <associated-rule-id/>
849
                        <created>
850
                                <time>1387526105</time>
851
                                <username>admin@172.24.16.234</username>
852
                        </created>
853
                        <updated>
854
                                <time>1409472629</time>
855
                                <username>admin@172.24.16.234</username>
856
                        </updated>
857
                        <tracker>1424949580</tracker>
858
                </rule>
859
                <rule>
860
                        <disabled/>
861
                        <source>
862
                                <any/>
863
                        </source>
864
                        <destination>
865
                                <address>WAN5_Test</address>
866
                                <port>BittorrentPort</port>
867
                        </destination>
868
                        <protocol>tcp/udp</protocol>
869
                        <target>BEDiMacOnLAN1</target>
870
                        <local-port>BittorrentPort</local-port>
871
                        <interface>wan</interface>
872
                        <descr><![CDATA[Pass Transmission's bittorrent P2P traffic]]></descr>
873
                        <associated-rule-id>nat_50cd94bf3dee27.37073586</associated-rule-id>
874
                        <updated>
875
                                <time>1396422587</time>
876
                                <username>admin@172.24.16.234</username>
877
                        </updated>
878
                        <tracker>1424949581</tracker>
879
                </rule>
880
                <rule>
881
                        <disabled/>
882
                        <source>
883
                                <any/>
884
                        </source>
885
                        <destination>
886
                                <address>WAN4_Spare</address>
887
                                <port>GnutellaPort</port>
888
                        </destination>
889
                        <protocol>tcp/udp</protocol>
890
                        <target>BEDiMacOnLAN1</target>
891
                        <local-port>GnutellaPort</local-port>
892
                        <interface>wan</interface>
893
                        <descr><![CDATA[Pass Gtk-Guntella's P2P traffic]]></descr>
894
                        <associated-rule-id/>
895
                        <created>
896
                                <time>1387526089</time>
897
                                <username>admin@172.24.16.234</username>
898
                        </created>
899
                        <updated>
900
                                <time>1414863343</time>
901
                                <username>admin@172.24.16.234</username>
902
                        </updated>
903
                        <tracker>1424949582</tracker>
904
                </rule>
905
                <rule>
906
                        <disabled/>
907
                        <source>
908
                                <any/>
909
                        </source>
910
                        <destination>
911
                                <address>WAN5_Test</address>
912
                                <port>GnutellaPort</port>
913
                        </destination>
914
                        <protocol>tcp/udp</protocol>
915
                        <target>BEDiMacOnLAN1</target>
916
                        <local-port>GnutellaPort</local-port>
917
                        <interface>wan</interface>
918
                        <descr><![CDATA[Pass Gtk-Guntella's P2P traffic]]></descr>
919
                        <associated-rule-id>nat_5289db443d9f36.25480489</associated-rule-id>
920
                        <updated>
921
                                <time>1393244755</time>
922
                                <username>admin@172.24.16.234</username>
923
                        </updated>
924
                        <tracker>1424949583</tracker>
925
                </rule>
926
                <outbound>
927
                        <rule>
928
                                <source>
929
                                        <network>BEDiMacLAN1</network>
930
                                </source>
931
                                <sourceport/>
932
                                <descr><![CDATA[WAN for BED's iMac's I'net traffic]]></descr>
933
                                <target/>
934
                                <targetip/>
935
                                <targetip_subnet>0</targetip_subnet>
936
                                <interface>wan</interface>
937
                                <poolopts/>
938
                                <destination>
939
                                        <any/>
940
                                </destination>
941
                                <created>
942
                                        <time>1385877143</time>
943
                                        <username>admin@172.24.16.234</username>
944
                                </created>
945
                                <updated>
946
                                        <time>1418160381</time>
947
                                        <username>admin@172.24.16.235</username>
948
                                </updated>
949
                        </rule>
950
                        <rule>
951
                                <source>
952
                                        <network>DEIsLAN1</network>
953
                                </source>
954
                                <sourceport/>
955
                                <descr><![CDATA[LAN1 to WAN_DEI]]></descr>
956
                                <target/>
957
                                <targetip/>
958
                                <targetip_subnet>0</targetip_subnet>
959
                                <interface>wan</interface>
960
                                <poolopts/>
961
                                <destination>
962
                                        <any/>
963
                                </destination>
964
                                <created>
965
                                        <time>1389661167</time>
966
                                        <username>admin@172.24.16.234</username>
967
                                </created>
968
                                <updated>
969
                                        <time>1391676498</time>
970
                                        <username>admin@172.24.16.234</username>
971
                                </updated>
972
                        </rule>
973
                        <rule>
974
                                <source>
975
                                        <network>DEIsLAN2</network>
976
                                </source>
977
                                <sourceport/>
978
                                <descr><![CDATA[LAN2 to WAN_DEI]]></descr>
979
                                <target/>
980
                                <targetip/>
981
                                <targetip_subnet>0</targetip_subnet>
982
                                <interface>wan</interface>
983
                                <poolopts/>
984
                                <destination>
985
                                        <any/>
986
                                </destination>
987
                                <created>
988
                                        <time>1388456948</time>
989
                                        <username>admin@172.24.17.234</username>
990
                                </created>
991
                                <updated>
992
                                        <time>1391676718</time>
993
                                        <username>admin@172.24.16.234</username>
994
                                </updated>
995
                        </rule>
996
                        <rule>
997
                                <source>
998
                                        <network>DEIsLAN3</network>
999
                                </source>
1000
                                <sourceport/>
1001
                                <descr><![CDATA[LAN3 to WAN_DEI]]></descr>
1002
                                <target/>
1003
                                <targetip/>
1004
                                <targetip_subnet>0</targetip_subnet>
1005
                                <interface>wan</interface>
1006
                                <poolopts/>
1007
                                <destination>
1008
                                        <any/>
1009
                                </destination>
1010
                                <updated>
1011
                                        <time>1399184169</time>
1012
                                        <username>admin@172.24.16.234</username>
1013
                                </updated>
1014
                                <created>
1015
                                        <time>1399184169</time>
1016
                                        <username>admin@172.24.16.234</username>
1017
                                </created>
1018
                        </rule>
1019
                        <rule>
1020
                                <source>
1021
                                        <network>MobileVPNlans</network>
1022
                                </source>
1023
                                <sourceport/>
1024
                                <descr><![CDATA[Mobile virtual VPN LANs to WAN used for mobile VPNs]]></descr>
1025
                                <target>MobileVPNwan</target>
1026
                                <targetip/>
1027
                                <targetip_subnet>0</targetip_subnet>
1028
                                <interface>wan</interface>
1029
                                <poolopts/>
1030
                                <destination>
1031
                                        <any/>
1032
                                </destination>
1033
                                <created>
1034
                                        <time>1390079920</time>
1035
                                        <username>admin@172.24.16.234</username>
1036
                                </created>
1037
                                <updated>
1038
                                        <time>1425803103</time>
1039
                                        <username>admin@172.24.16.235</username>
1040
                                </updated>
1041
                        </rule>
1042
                        <rule>
1043
                                <source>
1044
                                        <network>127.0.0.0/8</network>
1045
                                </source>
1046
                                <sourceport/>
1047
                                <descr><![CDATA[Auto-created: localhost to WAN_DEI]]></descr>
1048
                                <target/>
1049
                                <targetip/>
1050
                                <targetip_subnet>0</targetip_subnet>
1051
                                <interface>wan</interface>
1052
                                <poolopts/>
1053
                                <destination>
1054
                                        <any/>
1055
                                </destination>
1056
                                <natport>1024:65535</natport>
1057
                                <created>
1058
                                        <time>1385876023</time>
1059
                                        <username>Manual Outbound NAT Switch</username>
1060
                                </created>
1061
                                <updated>
1062
                                        <time>1391675182</time>
1063
                                        <username>admin@172.24.16.234</username>
1064
                                </updated>
1065
                        </rule>
1066
                        <mode>advanced</mode>
1067
                </outbound>
1068
        </nat>
1069
        <filter>
1070
                <rule>
1071
                        <id/>
1072
                        <type>match</type>
1073
                        <interface>wan,enc0,openvpn</interface>
1074
                        <ipprotocol>inet</ipprotocol>
1075
                        <tag/>
1076
                        <tagged/>
1077
                        <direction>any</direction>
1078
                        <floating>yes</floating>
1079
                        <max/>
1080
                        <max-src-nodes/>
1081
                        <max-src-conn/>
1082
                        <max-src-states/>
1083
                        <statetimeout/>
1084
                        <statetype>keep state</statetype>
1085
                        <os/>
1086
                        <protocol>udp</protocol>
1087
                        <source>
1088
                                <any/>
1089
                        </source>
1090
                        <destination>
1091
                                <any/>
1092
                        </destination>
1093
                        <disabled/>
1094
                        <descr><![CDATA[Reserved for WAN &amp; VPN VoiP UDP]]></descr>
1095
                        <created>
1096
                                <time>1392069648</time>
1097
                                <username>Traffic Shaper Wizard</username>
1098
                        </created>
1099
                        <updated>
1100
                                <time>1421574966</time>
1101
                                <username>admin@172.24.16.235</username>
1102
                        </updated>
1103
                        <tracker>1424949564</tracker>
1104
                </rule>
1105
                <rule>
1106
                        <id/>
1107
                        <type>match</type>
1108
                        <interface>lan</interface>
1109
                        <ipprotocol>inet</ipprotocol>
1110
                        <tag/>
1111
                        <tagged/>
1112
                        <direction>any</direction>
1113
                        <floating>yes</floating>
1114
                        <max/>
1115
                        <max-src-nodes/>
1116
                        <max-src-conn/>
1117
                        <max-src-states/>
1118
                        <statetimeout/>
1119
                        <statetype>keep state</statetype>
1120
                        <os/>
1121
                        <protocol>udp</protocol>
1122
                        <source>
1123
                                <any/>
1124
                        </source>
1125
                        <destination>
1126
                                <any/>
1127
                        </destination>
1128
                        <disabled/>
1129
                        <descr><![CDATA[Reserved for LAN1 VoiP UDP]]></descr>
1130
                        <updated>
1131
                                <time>1421568857</time>
1132
                                <username>admin@172.24.16.235</username>
1133
                        </updated>
1134
                        <created>
1135
                                <time>1421568857</time>
1136
                                <username>admin@172.24.16.235</username>
1137
                        </created>
1138
                        <tracker>1424949565</tracker>
1139
                </rule>
1140
                <rule>
1141
                        <id/>
1142
                        <type>match</type>
1143
                        <interface>opt1</interface>
1144
                        <ipprotocol>inet</ipprotocol>
1145
                        <tag/>
1146
                        <tagged/>
1147
                        <direction>any</direction>
1148
                        <floating>yes</floating>
1149
                        <max/>
1150
                        <max-src-nodes/>
1151
                        <max-src-conn/>
1152
                        <max-src-states/>
1153
                        <statetimeout/>
1154
                        <statetype>keep state</statetype>
1155
                        <os/>
1156
                        <protocol>udp</protocol>
1157
                        <source>
1158
                                <any/>
1159
                        </source>
1160
                        <destination>
1161
                                <any/>
1162
                        </destination>
1163
                        <disabled/>
1164
                        <descr><![CDATA[Reserved for LAN2 VoiP UDP]]></descr>
1165
                        <updated>
1166
                                <time>1421568886</time>
1167
                                <username>admin@172.24.16.235</username>
1168
                        </updated>
1169
                        <created>
1170
                                <time>1421568886</time>
1171
                                <username>admin@172.24.16.235</username>
1172
                        </created>
1173
                        <tracker>1424949566</tracker>
1174
                </rule>
1175
                <rule>
1176
                        <id/>
1177
                        <type>match</type>
1178
                        <interface>opt2</interface>
1179
                        <ipprotocol>inet</ipprotocol>
1180
                        <tag/>
1181
                        <tagged/>
1182
                        <direction>any</direction>
1183
                        <floating>yes</floating>
1184
                        <max/>
1185
                        <max-src-nodes/>
1186
                        <max-src-conn/>
1187
                        <max-src-states/>
1188
                        <statetimeout/>
1189
                        <statetype>keep state</statetype>
1190
                        <os/>
1191
                        <protocol>udp</protocol>
1192
                        <source>
1193
                                <any/>
1194
                        </source>
1195
                        <destination>
1196
                                <any/>
1197
                        </destination>
1198
                        <disabled/>
1199
                        <descr><![CDATA[Reserved for LAN3 VoiP UDP]]></descr>
1200
                        <created>
1201
                                <time>1421568895</time>
1202
                                <username>admin@172.24.16.235</username>
1203
                        </created>
1204
                        <updated>
1205
                                <time>1421654203</time>
1206
                                <username>admin@172.24.16.235</username>
1207
                        </updated>
1208
                        <tracker>1424949567</tracker>
1209
                </rule>
1210
                <rule>
1211
                        <id/>
1212
                        <type>match</type>
1213
                        <interface>wan,enc0,openvpn</interface>
1214
                        <ipprotocol>inet</ipprotocol>
1215
                        <tag/>
1216
                        <tagged/>
1217
                        <direction>any</direction>
1218
                        <floating>yes</floating>
1219
                        <max/>
1220
                        <max-src-nodes/>
1221
                        <max-src-conn/>
1222
                        <max-src-states/>
1223
                        <statetimeout/>
1224
                        <statetype>keep state</statetype>
1225
                        <os/>
1226
                        <protocol>tcp</protocol>
1227
                        <source>
1228
                                <address>aTVs</address>
1229
                                <not/>
1230
                        </source>
1231
                        <destination>
1232
                                <any/>
1233
                                <port>HiPriorityTCPports</port>
1234
                        </destination>
1235
                        <descr><![CDATA[WAN &amp; VPN high priority TCP]]></descr>
1236
                        <defaultqueue>WANqHigh</defaultqueue>
1237
                        <ackqueue>WANqACK</ackqueue>
1238
                        <created>
1239
                                <time>1392069648</time>
1240
                                <username>Traffic Shaper Wizard</username>
1241
                        </created>
1242
                        <updated>
1243
                                <time>1424309806</time>
1244
                                <username>admin@172.24.16.235</username>
1245
                        </updated>
1246
                        <tracker>1424949568</tracker>
1247
                </rule>
1248
                <rule>
1249
                        <id/>
1250
                        <type>match</type>
1251
                        <interface>lan</interface>
1252
                        <ipprotocol>inet</ipprotocol>
1253
                        <tag/>
1254
                        <tagged/>
1255
                        <direction>any</direction>
1256
                        <floating>yes</floating>
1257
                        <max/>
1258
                        <max-src-nodes/>
1259
                        <max-src-conn/>
1260
                        <max-src-states/>
1261
                        <statetimeout/>
1262
                        <statetype>keep state</statetype>
1263
                        <os/>
1264
                        <protocol>tcp</protocol>
1265
                        <source>
1266
                                <address>aTVs</address>
1267
                                <not/>
1268
                        </source>
1269
                        <destination>
1270
                                <any/>
1271
                                <port>HiPriorityTCPports</port>
1272
                        </destination>
1273
                        <descr><![CDATA[LAN1 high priority TCP]]></descr>
1274
                        <defaultqueue>LAN1qHigh</defaultqueue>
1275
                        <ackqueue>LAN1qACK</ackqueue>
1276
                        <created>
1277
                                <time>1421570649</time>
1278
                                <username>admin@172.24.16.235</username>
1279
                        </created>
1280
                        <updated>
1281
                                <time>1424309925</time>
1282
                                <username>admin@172.24.16.235</username>
1283
                        </updated>
1284
                        <tracker>1424949569</tracker>
1285
                </rule>
1286
                <rule>
1287
                        <id/>
1288
                        <type>match</type>
1289
                        <interface>opt1</interface>
1290
                        <ipprotocol>inet</ipprotocol>
1291
                        <tag/>
1292
                        <tagged/>
1293
                        <direction>any</direction>
1294
                        <floating>yes</floating>
1295
                        <max/>
1296
                        <max-src-nodes/>
1297
                        <max-src-conn/>
1298
                        <max-src-states/>
1299
                        <statetimeout/>
1300
                        <statetype>keep state</statetype>
1301
                        <os/>
1302
                        <protocol>tcp</protocol>
1303
                        <source>
1304
                                <address>aTVs</address>
1305
                                <not/>
1306
                        </source>
1307
                        <destination>
1308
                                <any/>
1309
                                <port>HiPriorityTCPports</port>
1310
                        </destination>
1311
                        <descr><![CDATA[LAN2 high priority TCP]]></descr>
1312
                        <defaultqueue>LAN2qHigh</defaultqueue>
1313
                        <ackqueue>LAN2qACK</ackqueue>
1314
                        <created>
1315
                                <time>1421573390</time>
1316
                                <username>admin@172.24.16.235</username>
1317
                        </created>
1318
                        <updated>
1319
                                <time>1424309963</time>
1320
                                <username>admin@172.24.16.235</username>
1321
                        </updated>
1322
                        <tracker>1424949570</tracker>
1323
                </rule>
1324
                <rule>
1325
                        <id/>
1326
                        <type>match</type>
1327
                        <interface>opt2</interface>
1328
                        <ipprotocol>inet</ipprotocol>
1329
                        <tag/>
1330
                        <tagged/>
1331
                        <direction>any</direction>
1332
                        <floating>yes</floating>
1333
                        <max/>
1334
                        <max-src-nodes/>
1335
                        <max-src-conn/>
1336
                        <max-src-states/>
1337
                        <statetimeout/>
1338
                        <statetype>keep state</statetype>
1339
                        <os/>
1340
                        <protocol>tcp</protocol>
1341
                        <source>
1342
                                <address>aTVs</address>
1343
                                <not/>
1344
                        </source>
1345
                        <destination>
1346
                                <any/>
1347
                                <port>HiPriorityTCPports</port>
1348
                        </destination>
1349
                        <descr><![CDATA[LAN3 high priority TCP]]></descr>
1350
                        <defaultqueue>LAN3qHigh</defaultqueue>
1351
                        <ackqueue>LAN3qACK</ackqueue>
1352
                        <created>
1353
                                <time>1421574842</time>
1354
                                <username>admin@172.24.16.235</username>
1355
                        </created>
1356
                        <updated>
1357
                                <time>1424309985</time>
1358
                                <username>admin@172.24.16.235</username>
1359
                        </updated>
1360
                        <tracker>1424949571</tracker>
1361
                </rule>
1362
                <rule>
1363
                        <id/>
1364
                        <type>match</type>
1365
                        <interface>wan,enc0,openvpn</interface>
1366
                        <ipprotocol>inet</ipprotocol>
1367
                        <tag/>
1368
                        <tagged/>
1369
                        <direction>any</direction>
1370
                        <floating>yes</floating>
1371
                        <max/>
1372
                        <max-src-nodes/>
1373
                        <max-src-conn/>
1374
                        <max-src-states/>
1375
                        <statetimeout/>
1376
                        <statetype>keep state</statetype>
1377
                        <os/>
1378
                        <protocol>udp</protocol>
1379
                        <source>
1380
                                <address>aTVs</address>
1381
                                <not/>
1382
                        </source>
1383
                        <destination>
1384
                                <any/>
1385
                                <port>HiPriorityUDPports</port>
1386
                        </destination>
1387
                        <descr><![CDATA[WAN &amp; VPN high priority UDP]]></descr>
1388
                        <defaultqueue>WANqHigh</defaultqueue>
1389
                        <created>
1390
                                <time>1392069648</time>
1391
                                <username>Traffic Shaper Wizard</username>
1392
                        </created>
1393
                        <updated>
1394
                                <time>1421575461</time>
1395
                                <username>admin@172.24.16.235</username>
1396
                        </updated>
1397
                        <tracker>1424949572</tracker>
1398
                </rule>
1399
                <rule>
1400
                        <id/>
1401
                        <type>match</type>
1402
                        <interface>lan</interface>
1403
                        <ipprotocol>inet</ipprotocol>
1404
                        <tag/>
1405
                        <tagged/>
1406
                        <direction>any</direction>
1407
                        <floating>yes</floating>
1408
                        <max/>
1409
                        <max-src-nodes/>
1410
                        <max-src-conn/>
1411
                        <max-src-states/>
1412
                        <statetimeout/>
1413
                        <statetype>keep state</statetype>
1414
                        <os/>
1415
                        <protocol>udp</protocol>
1416
                        <source>
1417
                                <address>aTVs</address>
1418
                                <not/>
1419
                        </source>
1420
                        <destination>
1421
                                <any/>
1422
                                <port>HiPriorityUDPports</port>
1423
                        </destination>
1424
                        <descr><![CDATA[LAN1 high priority UDP]]></descr>
1425
                        <defaultqueue>LAN1qHigh</defaultqueue>
1426
                        <created>
1427
                                <time>1421570709</time>
1428
                                <username>admin@172.24.16.235</username>
1429
                        </created>
1430
                        <updated>
1431
                                <time>1421573569</time>
1432
                                <username>admin@172.24.16.235</username>
1433
                        </updated>
1434
                        <tracker>1424949573</tracker>
1435
                </rule>
1436
                <rule>
1437
                        <id/>
1438
                        <type>match</type>
1439
                        <interface>opt1</interface>
1440
                        <ipprotocol>inet</ipprotocol>
1441
                        <tag/>
1442
                        <tagged/>
1443
                        <direction>any</direction>
1444
                        <floating>yes</floating>
1445
                        <max/>
1446
                        <max-src-nodes/>
1447
                        <max-src-conn/>
1448
                        <max-src-states/>
1449
                        <statetimeout/>
1450
                        <statetype>keep state</statetype>
1451
                        <os/>
1452
                        <protocol>udp</protocol>
1453
                        <source>
1454
                                <address>aTVs</address>
1455
                                <not/>
1456
                        </source>
1457
                        <destination>
1458
                                <any/>
1459
                                <port>HiPriorityUDPports</port>
1460
                        </destination>
1461
                        <descr><![CDATA[LAN2 high priority UDP]]></descr>
1462
                        <defaultqueue>LAN2qHigh</defaultqueue>
1463
                        <updated>
1464
                                <time>1421573356</time>
1465
                                <username>admin@172.24.16.235</username>
1466
                        </updated>
1467
                        <created>
1468
                                <time>1421573356</time>
1469
                                <username>admin@172.24.16.235</username>
1470
                        </created>
1471
                        <tracker>1424949574</tracker>
1472
                </rule>
1473
                <rule>
1474
                        <id/>
1475
                        <type>match</type>
1476
                        <interface>opt2</interface>
1477
                        <ipprotocol>inet</ipprotocol>
1478
                        <tag/>
1479
                        <tagged/>
1480
                        <direction>any</direction>
1481
                        <floating>yes</floating>
1482
                        <max/>
1483
                        <max-src-nodes/>
1484
                        <max-src-conn/>
1485
                        <max-src-states/>
1486
                        <statetimeout/>
1487
                        <statetype>keep state</statetype>
1488
                        <os/>
1489
                        <protocol>udp</protocol>
1490
                        <source>
1491
                                <address>aTVs</address>
1492
                                <not/>
1493
                        </source>
1494
                        <destination>
1495
                                <any/>
1496
                                <port>HiPriorityUDPports</port>
1497
                        </destination>
1498
                        <descr><![CDATA[LAN3 high priority UDP]]></descr>
1499
                        <defaultqueue>LAN3qHigh</defaultqueue>
1500
                        <updated>
1501
                                <time>1421574820</time>
1502
                                <username>admin@172.24.16.235</username>
1503
                        </updated>
1504
                        <created>
1505
                                <time>1421574820</time>
1506
                                <username>admin@172.24.16.235</username>
1507
                        </created>
1508
                        <tracker>1424949575</tracker>
1509
                </rule>
1510
                <rule>
1511
                        <id/>
1512
                        <type>match</type>
1513
                        <interface>wan,enc0,openvpn</interface>
1514
                        <ipprotocol>inet</ipprotocol>
1515
                        <tag/>
1516
                        <tagged/>
1517
                        <direction>any</direction>
1518
                        <floating>yes</floating>
1519
                        <max/>
1520
                        <max-src-nodes/>
1521
                        <max-src-conn/>
1522
                        <max-src-states/>
1523
                        <statetimeout/>
1524
                        <statetype>keep state</statetype>
1525
                        <os/>
1526
                        <protocol>ah</protocol>
1527
                        <source>
1528
                                <any/>
1529
                        </source>
1530
                        <destination>
1531
                                <any/>
1532
                        </destination>
1533
                        <descr><![CDATA[WAN &amp; VPN IPSEC AH (auth)]]></descr>
1534
                        <defaultqueue>WANqHigh</defaultqueue>
1535
                        <created>
1536
                                <time>1392069648</time>
1537
                                <username>Traffic Shaper Wizard</username>
1538
                        </created>
1539
                        <updated>
1540
                                <time>1421575421</time>
1541
                                <username>admin@172.24.16.235</username>
1542
                        </updated>
1543
                        <tracker>1424949576</tracker>
1544
                </rule>
1545
                <rule>
1546
                        <id/>
1547
                        <type>match</type>
1548
                        <interface>wan,enc0,openvpn</interface>
1549
                        <ipprotocol>inet</ipprotocol>
1550
                        <tag/>
1551
                        <tagged/>
1552
                        <direction>any</direction>
1553
                        <floating>yes</floating>
1554
                        <max/>
1555
                        <max-src-nodes/>
1556
                        <max-src-conn/>
1557
                        <max-src-states/>
1558
                        <statetimeout/>
1559
                        <statetype>keep state</statetype>
1560
                        <os/>
1561
                        <protocol>esp</protocol>
1562
                        <source>
1563
                                <any/>
1564
                        </source>
1565
                        <destination>
1566
                                <any/>
1567
                        </destination>
1568
                        <descr><![CDATA[WAN &amp; VPN IPSEC ESP (enc)]]></descr>
1569
                        <defaultqueue>WANqHigh</defaultqueue>
1570
                        <created>
1571
                                <time>1392069648</time>
1572
                                <username>Traffic Shaper Wizard</username>
1573
                        </created>
1574
                        <updated>
1575
                                <time>1421575394</time>
1576
                                <username>admin@172.24.16.235</username>
1577
                        </updated>
1578
                        <tracker>1424949577</tracker>
1579
                </rule>
1580
                <rule>
1581
                        <id/>
1582
                        <type>match</type>
1583
                        <interface>wan</interface>
1584
                        <ipprotocol>inet</ipprotocol>
1585
                        <tag/>
1586
                        <tagged/>
1587
                        <direction>any</direction>
1588
                        <floating>yes</floating>
1589
                        <max/>
1590
                        <max-src-nodes/>
1591
                        <max-src-conn/>
1592
                        <max-src-states/>
1593
                        <statetimeout/>
1594
                        <statetype>keep state</statetype>
1595
                        <os/>
1596
                        <protocol>icmp</protocol>
1597
                        <source>
1598
                                <any/>
1599
                        </source>
1600
                        <destination>
1601
                                <any/>
1602
                        </destination>
1603
                        <descr><![CDATA[WAN ICMP]]></descr>
1604
                        <defaultqueue>WANqHigh</defaultqueue>
1605
                        <created>
1606
                                <time>1392069648</time>
1607
                                <username>Traffic Shaper Wizard</username>
1608
                        </created>
1609
                        <updated>
1610
                                <time>1421653303</time>
1611
                                <username>admin@172.24.16.235</username>
1612
                        </updated>
1613
                        <tracker>1424949578</tracker>
1614
                </rule>
1615
                <rule>
1616
                        <id/>
1617
                        <type>match</type>
1618
                        <interface>wan,enc0,openvpn</interface>
1619
                        <ipprotocol>inet</ipprotocol>
1620
                        <tag/>
1621
                        <tagged/>
1622
                        <direction>any</direction>
1623
                        <floating>yes</floating>
1624
                        <max/>
1625
                        <max-src-nodes/>
1626
                        <max-src-conn/>
1627
                        <max-src-states/>
1628
                        <statetimeout/>
1629
                        <statetype>keep state</statetype>
1630
                        <os/>
1631
                        <protocol>tcp</protocol>
1632
                        <source>
1633
                                <address>aTVs</address>
1634
                        </source>
1635
                        <destination>
1636
                                <any/>
1637
                        </destination>
1638
                        <descr><![CDATA[WAN &amp; VPN medium priority TCP]]></descr>
1639
                        <defaultqueue>WANqMedium</defaultqueue>
1640
                        <ackqueue>WANqACK</ackqueue>
1641
                        <created>
1642
                                <time>1392284188</time>
1643
                                <username>admin@172.24.16.234</username>
1644
                        </created>
1645
                        <updated>
1646
                                <time>1421575354</time>
1647
                                <username>admin@172.24.16.235</username>
1648
                        </updated>
1649
                        <tracker>1424949579</tracker>
1650
                </rule>
1651
                <rule>
1652
                        <id/>
1653
                        <type>match</type>
1654
                        <interface>lan</interface>
1655
                        <ipprotocol>inet</ipprotocol>
1656
                        <tag/>
1657
                        <tagged/>
1658
                        <direction>any</direction>
1659
                        <floating>yes</floating>
1660
                        <max/>
1661
                        <max-src-nodes/>
1662
                        <max-src-conn/>
1663
                        <max-src-states/>
1664
                        <statetimeout/>
1665
                        <statetype>keep state</statetype>
1666
                        <os/>
1667
                        <protocol>tcp</protocol>
1668
                        <source>
1669
                                <address>aTVs</address>
1670
                        </source>
1671
                        <destination>
1672
                                <any/>
1673
                        </destination>
1674
                        <descr><![CDATA[LAN1 medium priority TCP]]></descr>
1675
                        <defaultqueue>LAN1qMedium</defaultqueue>
1676
                        <ackqueue>LAN1qACK</ackqueue>
1677
                        <created>
1678
                                <time>1421570880</time>
1679
                                <username>admin@172.24.16.235</username>
1680
                        </created>
1681
                        <updated>
1682
                                <time>1421572833</time>
1683
                                <username>admin@172.24.16.235</username>
1684
                        </updated>
1685
                        <tracker>1424949580</tracker>
1686
                </rule>
1687
                <rule>
1688
                        <id/>
1689
                        <type>match</type>
1690
                        <interface>opt1</interface>
1691
                        <ipprotocol>inet</ipprotocol>
1692
                        <tag/>
1693
                        <tagged/>
1694
                        <direction>any</direction>
1695
                        <floating>yes</floating>
1696
                        <max/>
1697
                        <max-src-nodes/>
1698
                        <max-src-conn/>
1699
                        <max-src-states/>
1700
                        <statetimeout/>
1701
                        <statetype>keep state</statetype>
1702
                        <os/>
1703
                        <protocol>tcp</protocol>
1704
                        <source>
1705
                                <address>aTVs</address>
1706
                        </source>
1707
                        <destination>
1708
                                <any/>
1709
                        </destination>
1710
                        <descr><![CDATA[LAN2 medium priority TCP]]></descr>
1711
                        <defaultqueue>LAN2qMedium</defaultqueue>
1712
                        <ackqueue>LAN2qACK</ackqueue>
1713
                        <updated>
1714
                                <time>1421573329</time>
1715
                                <username>admin@172.24.16.235</username>
1716
                        </updated>
1717
                        <created>
1718
                                <time>1421573329</time>
1719
                                <username>admin@172.24.16.235</username>
1720
                        </created>
1721
                        <tracker>1424949581</tracker>
1722
                </rule>
1723
                <rule>
1724
                        <id/>
1725
                        <type>match</type>
1726
                        <interface>opt2</interface>
1727
                        <ipprotocol>inet</ipprotocol>
1728
                        <tag/>
1729
                        <tagged/>
1730
                        <direction>any</direction>
1731
                        <floating>yes</floating>
1732
                        <max/>
1733
                        <max-src-nodes/>
1734
                        <max-src-conn/>
1735
                        <max-src-states/>
1736
                        <statetimeout/>
1737
                        <statetype>keep state</statetype>
1738
                        <os/>
1739
                        <protocol>tcp</protocol>
1740
                        <source>
1741
                                <address>aTVs</address>
1742
                        </source>
1743
                        <destination>
1744
                                <any/>
1745
                        </destination>
1746
                        <descr><![CDATA[LAN3 medium priority TCP]]></descr>
1747
                        <defaultqueue>LAN3qMedium</defaultqueue>
1748
                        <ackqueue>LAN3qACK</ackqueue>
1749
                        <updated>
1750
                                <time>1421574787</time>
1751
                                <username>admin@172.24.16.235</username>
1752
                        </updated>
1753
                        <created>
1754
                                <time>1421574787</time>
1755
                                <username>admin@172.24.16.235</username>
1756
                        </created>
1757
                        <tracker>1424949582</tracker>
1758
                </rule>
1759
                <rule>
1760
                        <id/>
1761
                        <type>match</type>
1762
                        <interface>wan,enc0,openvpn</interface>
1763
                        <ipprotocol>inet</ipprotocol>
1764
                        <tag/>
1765
                        <tagged/>
1766
                        <direction>any</direction>
1767
                        <floating>yes</floating>
1768
                        <max/>
1769
                        <max-src-nodes/>
1770
                        <max-src-conn/>
1771
                        <max-src-states/>
1772
                        <statetimeout/>
1773
                        <statetype>keep state</statetype>
1774
                        <os/>
1775
                        <protocol>udp</protocol>
1776
                        <source>
1777
                                <address>aTVs</address>
1778
                        </source>
1779
                        <destination>
1780
                                <any/>
1781
                        </destination>
1782
                        <descr><![CDATA[WAN &amp; VPN medium priority UDP]]></descr>
1783
                        <defaultqueue>WANqMedium</defaultqueue>
1784
                        <created>
1785
                                <time>1392284616</time>
1786
                                <username>admin@172.24.16.234</username>
1787
                        </created>
1788
                        <updated>
1789
                                <time>1421575330</time>
1790
                                <username>admin@172.24.16.235</username>
1791
                        </updated>
1792
                        <tracker>1424949583</tracker>
1793
                </rule>
1794
                <rule>
1795
                        <id/>
1796
                        <type>match</type>
1797
                        <interface>lan</interface>
1798
                        <ipprotocol>inet</ipprotocol>
1799
                        <tag/>
1800
                        <tagged/>
1801
                        <direction>any</direction>
1802
                        <floating>yes</floating>
1803
                        <max/>
1804
                        <max-src-nodes/>
1805
                        <max-src-conn/>
1806
                        <max-src-states/>
1807
                        <statetimeout/>
1808
                        <statetype>keep state</statetype>
1809
                        <os/>
1810
                        <protocol>udp</protocol>
1811
                        <source>
1812
                                <address>aTVs</address>
1813
                        </source>
1814
                        <destination>
1815
                                <any/>
1816
                        </destination>
1817
                        <descr><![CDATA[LAN1 medium priority UDP]]></descr>
1818
                        <defaultqueue>LAN1qMedium</defaultqueue>
1819
                        <created>
1820
                                <time>1421570904</time>
1821
                                <username>admin@172.24.16.235</username>
1822
                        </created>
1823
                        <updated>
1824
                                <time>1421573542</time>
1825
                                <username>admin@172.24.16.235</username>
1826
                        </updated>
1827
                        <tracker>1424949584</tracker>
1828
                </rule>
1829
                <rule>
1830
                        <id/>
1831
                        <type>match</type>
1832
                        <interface>opt1</interface>
1833
                        <ipprotocol>inet</ipprotocol>
1834
                        <tag/>
1835
                        <tagged/>
1836
                        <direction>any</direction>
1837
                        <floating>yes</floating>
1838
                        <max/>
1839
                        <max-src-nodes/>
1840
                        <max-src-conn/>
1841
                        <max-src-states/>
1842
                        <statetimeout/>
1843
                        <statetype>keep state</statetype>
1844
                        <os/>
1845
                        <protocol>udp</protocol>
1846
                        <source>
1847
                                <address>aTVs</address>
1848
                        </source>
1849
                        <destination>
1850
                                <any/>
1851
                        </destination>
1852
                        <descr><![CDATA[LAN2 medium priority UDP]]></descr>
1853
                        <defaultqueue>LAN2qMedium</defaultqueue>
1854
                        <updated>
1855
                                <time>1421573301</time>
1856
                                <username>admin@172.24.16.235</username>
1857
                        </updated>
1858
                        <created>
1859
                                <time>1421573301</time>
1860
                                <username>admin@172.24.16.235</username>
1861
                        </created>
1862
                        <tracker>1424949585</tracker>
1863
                </rule>
1864
                <rule>
1865
                        <id/>
1866
                        <type>match</type>
1867
                        <interface>opt2</interface>
1868
                        <ipprotocol>inet</ipprotocol>
1869
                        <tag/>
1870
                        <tagged/>
1871
                        <direction>any</direction>
1872
                        <floating>yes</floating>
1873
                        <max/>
1874
                        <max-src-nodes/>
1875
                        <max-src-conn/>
1876
                        <max-src-states/>
1877
                        <statetimeout/>
1878
                        <statetype>keep state</statetype>
1879
                        <os/>
1880
                        <protocol>udp</protocol>
1881
                        <source>
1882
                                <address>aTVs</address>
1883
                        </source>
1884
                        <destination>
1885
                                <any/>
1886
                        </destination>
1887
                        <descr><![CDATA[LAN3 medium priority UDP]]></descr>
1888
                        <defaultqueue>LAN3qMedium</defaultqueue>
1889
                        <updated>
1890
                                <time>1421574764</time>
1891
                                <username>admin@172.24.16.235</username>
1892
                        </updated>
1893
                        <created>
1894
                                <time>1421574764</time>
1895
                                <username>admin@172.24.16.235</username>
1896
                        </created>
1897
                        <tracker>1424949586</tracker>
1898
                </rule>
1899
                <rule>
1900
                        <id/>
1901
                        <type>match</type>
1902
                        <interface>wan,enc0,openvpn</interface>
1903
                        <ipprotocol>inet</ipprotocol>
1904
                        <tag/>
1905
                        <tagged/>
1906
                        <direction>any</direction>
1907
                        <floating>yes</floating>
1908
                        <max/>
1909
                        <max-src-nodes/>
1910
                        <max-src-conn/>
1911
                        <max-src-states/>
1912
                        <statetimeout/>
1913
                        <statetype>keep state</statetype>
1914
                        <os/>
1915
                        <protocol>tcp</protocol>
1916
                        <source>
1917
                                <any/>
1918
                        </source>
1919
                        <destination>
1920
                                <any/>
1921
                                <port>MedPriorityTCPports</port>
1922
                        </destination>
1923
                        <descr><![CDATA[WAN &amp; VPN medium priority TCP]]></descr>
1924
                        <defaultqueue>WANqMedium</defaultqueue>
1925
                        <ackqueue>WANqACK</ackqueue>
1926
                        <created>
1927
                                <time>1392117958</time>
1928
                                <username>admin@172.24.16.234</username>
1929
                        </created>
1930
                        <updated>
1931
                                <time>1421575280</time>
1932
                                <username>admin@172.24.16.235</username>
1933
                        </updated>
1934
                        <tracker>1424949587</tracker>
1935
                </rule>
1936
                <rule>
1937
                        <id/>
1938
                        <type>match</type>
1939
                        <interface>lan</interface>
1940
                        <ipprotocol>inet</ipprotocol>
1941
                        <tag/>
1942
                        <tagged/>
1943
                        <direction>any</direction>
1944
                        <floating>yes</floating>
1945
                        <max/>
1946
                        <max-src-nodes/>
1947
                        <max-src-conn/>
1948
                        <max-src-states/>
1949
                        <statetimeout/>
1950
                        <statetype>keep state</statetype>
1951
                        <os/>
1952
                        <protocol>tcp</protocol>
1953
                        <source>
1954
                                <any/>
1955
                        </source>
1956
                        <destination>
1957
                                <any/>
1958
                                <port>MedPriorityTCPports</port>
1959
                        </destination>
1960
                        <descr><![CDATA[LAN1 medium priority TCP]]></descr>
1961
                        <defaultqueue>LAN1qMedium</defaultqueue>
1962
                        <ackqueue>LAN1qACK</ackqueue>
1963
                        <created>
1964
                                <time>1421571183</time>
1965
                                <username>admin@172.24.16.235</username>
1966
                        </created>
1967
                        <updated>
1968
                                <time>1421572819</time>
1969
                                <username>admin@172.24.16.235</username>
1970
                        </updated>
1971
                        <tracker>1424949588</tracker>
1972
                </rule>
1973
                <rule>
1974
                        <id/>
1975
                        <type>match</type>
1976
                        <interface>opt1</interface>
1977
                        <ipprotocol>inet</ipprotocol>
1978
                        <tag/>
1979
                        <tagged/>
1980
                        <direction>any</direction>
1981
                        <floating>yes</floating>
1982
                        <max/>
1983
                        <max-src-nodes/>
1984
                        <max-src-conn/>
1985
                        <max-src-states/>
1986
                        <statetimeout/>
1987
                        <statetype>keep state</statetype>
1988
                        <os/>
1989
                        <protocol>tcp</protocol>
1990
                        <source>
1991
                                <any/>
1992
                        </source>
1993
                        <destination>
1994
                                <any/>
1995
                                <port>MedPriorityTCPports</port>
1996
                        </destination>
1997
                        <descr><![CDATA[LAN2 medium priority TCP]]></descr>
1998
                        <defaultqueue>LAN2qMedium</defaultqueue>
1999
                        <ackqueue>LAN2qACK</ackqueue>
2000
                        <updated>
2001
                                <time>1421573260</time>
2002
                                <username>admin@172.24.16.235</username>
2003
                        </updated>
2004
                        <created>
2005
                                <time>1421573260</time>
2006
                                <username>admin@172.24.16.235</username>
2007
                        </created>
2008
                        <tracker>1424949589</tracker>
2009
                </rule>
2010
                <rule>
2011
                        <id/>
2012
                        <type>match</type>
2013
                        <interface>opt2</interface>
2014
                        <ipprotocol>inet</ipprotocol>
2015
                        <tag/>
2016
                        <tagged/>
2017
                        <direction>any</direction>
2018
                        <floating>yes</floating>
2019
                        <max/>
2020
                        <max-src-nodes/>
2021
                        <max-src-conn/>
2022
                        <max-src-states/>
2023
                        <statetimeout/>
2024
                        <statetype>keep state</statetype>
2025
                        <os/>
2026
                        <protocol>tcp</protocol>
2027
                        <source>
2028
                                <any/>
2029
                        </source>
2030
                        <destination>
2031
                                <any/>
2032
                                <port>MedPriorityTCPports</port>
2033
                        </destination>
2034
                        <descr><![CDATA[LAN3 medium priority TCP]]></descr>
2035
                        <defaultqueue>LAN3qMedium</defaultqueue>
2036
                        <ackqueue>LAN3qACK</ackqueue>
2037
                        <updated>
2038
                                <time>1421574728</time>
2039
                                <username>admin@172.24.16.235</username>
2040
                        </updated>
2041
                        <created>
2042
                                <time>1421574728</time>
2043
                                <username>admin@172.24.16.235</username>
2044
                        </created>
2045
                        <tracker>1424949590</tracker>
2046
                </rule>
2047
                <rule>
2048
                        <id/>
2049
                        <type>match</type>
2050
                        <interface>wan,enc0,openvpn</interface>
2051
                        <ipprotocol>inet</ipprotocol>
2052
                        <tag/>
2053
                        <tagged/>
2054
                        <direction>any</direction>
2055
                        <floating>yes</floating>
2056
                        <max/>
2057
                        <max-src-nodes/>
2058
                        <max-src-conn/>
2059
                        <max-src-states/>
2060
                        <statetimeout/>
2061
                        <statetype>keep state</statetype>
2062
                        <os/>
2063
                        <protocol>udp</protocol>
2064
                        <source>
2065
                                <any/>
2066
                        </source>
2067
                        <destination>
2068
                                <any/>
2069
                                <port>MedPriorityUDPports</port>
2070
                        </destination>
2071
                        <descr><![CDATA[WAN &amp; VPN medium priority UDP]]></descr>
2072
                        <defaultqueue>WANqMedium</defaultqueue>
2073
                        <created>
2074
                                <time>1392187875</time>
2075
                                <username>admin@172.24.16.234</username>
2076
                        </created>
2077
                        <updated>
2078
                                <time>1421575257</time>
2079
                                <username>admin@172.24.16.235</username>
2080
                        </updated>
2081
                        <tracker>1424949591</tracker>
2082
                </rule>
2083
                <rule>
2084
                        <id/>
2085
                        <type>match</type>
2086
                        <interface>lan</interface>
2087
                        <ipprotocol>inet</ipprotocol>
2088
                        <tag/>
2089
                        <tagged/>
2090
                        <direction>any</direction>
2091
                        <floating>yes</floating>
2092
                        <max/>
2093
                        <max-src-nodes/>
2094
                        <max-src-conn/>
2095
                        <max-src-states/>
2096
                        <statetimeout/>
2097
                        <statetype>keep state</statetype>
2098
                        <os/>
2099
                        <protocol>udp</protocol>
2100
                        <source>
2101
                                <any/>
2102
                        </source>
2103
                        <destination>
2104
                                <any/>
2105
                                <port>MedPriorityUDPports</port>
2106
                        </destination>
2107
                        <descr><![CDATA[LAN1 medium priority UDP]]></descr>
2108
                        <defaultqueue>LAN1qMedium</defaultqueue>
2109
                        <created>
2110
                                <time>1421571155</time>
2111
                                <username>admin@172.24.16.235</username>
2112
                        </created>
2113
                        <updated>
2114
                                <time>1421573516</time>
2115
                                <username>admin@172.24.16.235</username>
2116
                        </updated>
2117
                        <tracker>1424949592</tracker>
2118
                </rule>
2119
                <rule>
2120
                        <id/>
2121
                        <type>match</type>
2122
                        <interface>opt1</interface>
2123
                        <ipprotocol>inet</ipprotocol>
2124
                        <tag/>
2125
                        <tagged/>
2126
                        <direction>any</direction>
2127
                        <floating>yes</floating>
2128
                        <max/>
2129
                        <max-src-nodes/>
2130
                        <max-src-conn/>
2131
                        <max-src-states/>
2132
                        <statetimeout/>
2133
                        <statetype>keep state</statetype>
2134
                        <os/>
2135
                        <protocol>udp</protocol>
2136
                        <source>
2137
                                <any/>
2138
                        </source>
2139
                        <destination>
2140
                                <any/>
2141
                                <port>MedPriorityUDPports</port>
2142
                        </destination>
2143
                        <descr><![CDATA[LAN2 medium priority UDP]]></descr>
2144
                        <defaultqueue>LAN2qMedium</defaultqueue>
2145
                        <updated>
2146
                                <time>1421573231</time>
2147
                                <username>admin@172.24.16.235</username>
2148
                        </updated>
2149
                        <created>
2150
                                <time>1421573231</time>
2151
                                <username>admin@172.24.16.235</username>
2152
                        </created>
2153
                        <tracker>1424949593</tracker>
2154
                </rule>
2155
                <rule>
2156
                        <id/>
2157
                        <type>match</type>
2158
                        <interface>opt2</interface>
2159
                        <ipprotocol>inet</ipprotocol>
2160
                        <tag/>
2161
                        <tagged/>
2162
                        <direction>any</direction>
2163
                        <floating>yes</floating>
2164
                        <max/>
2165
                        <max-src-nodes/>
2166
                        <max-src-conn/>
2167
                        <max-src-states/>
2168
                        <statetimeout/>
2169
                        <statetype>keep state</statetype>
2170
                        <os/>
2171
                        <protocol>udp</protocol>
2172
                        <source>
2173
                                <any/>
2174
                        </source>
2175
                        <destination>
2176
                                <any/>
2177
                                <port>MedPriorityUDPports</port>
2178
                        </destination>
2179
                        <descr><![CDATA[LAN3 medium priority UDP]]></descr>
2180
                        <defaultqueue>LAN3qMedium</defaultqueue>
2181
                        <updated>
2182
                                <time>1421574701</time>
2183
                                <username>admin@172.24.16.235</username>
2184
                        </updated>
2185
                        <created>
2186
                                <time>1421574701</time>
2187
                                <username>admin@172.24.16.235</username>
2188
                        </created>
2189
                        <tracker>1424949594</tracker>
2190
                </rule>
2191
                <rule>
2192
                        <id/>
2193
                        <type>match</type>
2194
                        <interface>wan,enc0,openvpn</interface>
2195
                        <ipprotocol>inet</ipprotocol>
2196
                        <tag/>
2197
                        <tagged/>
2198
                        <direction>any</direction>
2199
                        <floating>yes</floating>
2200
                        <max/>
2201
                        <max-src-nodes/>
2202
                        <max-src-conn/>
2203
                        <max-src-states/>
2204
                        <statetimeout/>
2205
                        <statetype>keep state</statetype>
2206
                        <os/>
2207
                        <protocol>tcp</protocol>
2208
                        <source>
2209
                                <any/>
2210
                        </source>
2211
                        <destination>
2212
                                <any/>
2213
                                <port>LoPriorityTCPports</port>
2214
                        </destination>
2215
                        <descr><![CDATA[WAN &amp; VPN low priority TCP]]></descr>
2216
                        <defaultqueue>WANqLow</defaultqueue>
2217
                        <ackqueue>WANqACK</ackqueue>
2218
                        <created>
2219
                                <time>1392069648</time>
2220
                                <username>Traffic Shaper Wizard</username>
2221
                        </created>
2222
                        <updated>
2223
                                <time>1421575207</time>
2224
                                <username>admin@172.24.16.235</username>
2225
                        </updated>
2226
                        <tracker>1424949595</tracker>
2227
                </rule>
2228
                <rule>
2229
                        <id/>
2230
                        <type>match</type>
2231
                        <interface>lan</interface>
2232
                        <ipprotocol>inet</ipprotocol>
2233
                        <tag/>
2234
                        <tagged/>
2235
                        <direction>any</direction>
2236
                        <floating>yes</floating>
2237
                        <max/>
2238
                        <max-src-nodes/>
2239
                        <max-src-conn/>
2240
                        <max-src-states/>
2241
                        <statetimeout/>
2242
                        <statetype>keep state</statetype>
2243
                        <os/>
2244
                        <protocol>tcp</protocol>
2245
                        <source>
2246
                                <any/>
2247
                        </source>
2248
                        <destination>
2249
                                <any/>
2250
                                <port>LoPriorityTCPports</port>
2251
                        </destination>
2252
                        <descr><![CDATA[LAN1 low priority TCP]]></descr>
2253
                        <defaultqueue>LAN1qLow</defaultqueue>
2254
                        <ackqueue>LAN1qACK</ackqueue>
2255
                        <created>
2256
                                <time>1421571096</time>
2257
                                <username>admin@172.24.16.235</username>
2258
                        </created>
2259
                        <updated>
2260
                                <time>1421572806</time>
2261
                                <username>admin@172.24.16.235</username>
2262
                        </updated>
2263
                        <tracker>1424949596</tracker>
2264
                </rule>
2265
                <rule>
2266
                        <id/>
2267
                        <type>match</type>
2268
                        <interface>opt1</interface>
2269
                        <ipprotocol>inet</ipprotocol>
2270
                        <tag/>
2271
                        <tagged/>
2272
                        <direction>any</direction>
2273
                        <floating>yes</floating>
2274
                        <max/>
2275
                        <max-src-nodes/>
2276
                        <max-src-conn/>
2277
                        <max-src-states/>
2278
                        <statetimeout/>
2279
                        <statetype>keep state</statetype>
2280
                        <os/>
2281
                        <protocol>tcp</protocol>
2282
                        <source>
2283
                                <any/>
2284
                        </source>
2285
                        <destination>
2286
                                <any/>
2287
                                <port>LoPriorityTCPports</port>
2288
                        </destination>
2289
                        <descr><![CDATA[LAN2 low priority TCP]]></descr>
2290
                        <defaultqueue>LAN2qLow</defaultqueue>
2291
                        <ackqueue>LAN2qACK</ackqueue>
2292
                        <updated>
2293
                                <time>1421573197</time>
2294
                                <username>admin@172.24.16.235</username>
2295
                        </updated>
2296
                        <created>
2297
                                <time>1421573197</time>
2298
                                <username>admin@172.24.16.235</username>
2299
                        </created>
2300
                        <tracker>1424949597</tracker>
2301
                </rule>
2302
                <rule>
2303
                        <id/>
2304
                        <type>match</type>
2305
                        <interface>opt2</interface>
2306
                        <ipprotocol>inet</ipprotocol>
2307
                        <tag/>
2308
                        <tagged/>
2309
                        <direction>any</direction>
2310
                        <floating>yes</floating>
2311
                        <max/>
2312
                        <max-src-nodes/>
2313
                        <max-src-conn/>
2314
                        <max-src-states/>
2315
                        <statetimeout/>
2316
                        <statetype>keep state</statetype>
2317
                        <os/>
2318
                        <protocol>tcp</protocol>
2319
                        <source>
2320
                                <any/>
2321
                        </source>
2322
                        <destination>
2323
                                <any/>
2324
                                <port>LoPriorityTCPports</port>
2325
                        </destination>
2326
                        <descr><![CDATA[LAN3 low priority TCP]]></descr>
2327
                        <defaultqueue>LAN3qLow</defaultqueue>
2328
                        <ackqueue>LAN3qACK</ackqueue>
2329
                        <updated>
2330
                                <time>1421574683</time>
2331
                                <username>admin@172.24.16.235</username>
2332
                        </updated>
2333
                        <created>
2334
                                <time>1421574683</time>
2335
                                <username>admin@172.24.16.235</username>
2336
                        </created>
2337
                        <tracker>1424949598</tracker>
2338
                </rule>
2339
                <rule>
2340
                        <id/>
2341
                        <type>match</type>
2342
                        <interface>wan,enc0,openvpn</interface>
2343
                        <ipprotocol>inet</ipprotocol>
2344
                        <tag/>
2345
                        <tagged/>
2346
                        <direction>any</direction>
2347
                        <floating>yes</floating>
2348
                        <max/>
2349
                        <max-src-nodes/>
2350
                        <max-src-conn/>
2351
                        <max-src-states/>
2352
                        <statetimeout/>
2353
                        <statetype>keep state</statetype>
2354
                        <os/>
2355
                        <protocol>udp</protocol>
2356
                        <source>
2357
                                <any/>
2358
                        </source>
2359
                        <destination>
2360
                                <any/>
2361
                                <port>LoPriorityUDPports</port>
2362
                        </destination>
2363
                        <descr><![CDATA[WAN &amp; VPN low priority UDP]]></descr>
2364
                        <defaultqueue>WANqLow</defaultqueue>
2365
                        <created>
2366
                                <time>1392069648</time>
2367
                                <username>Traffic Shaper Wizard</username>
2368
                        </created>
2369
                        <updated>
2370
                                <time>1421575181</time>
2371
                                <username>admin@172.24.16.235</username>
2372
                        </updated>
2373
                        <tracker>1424949599</tracker>
2374
                </rule>
2375
                <rule>
2376
                        <id/>
2377
                        <type>match</type>
2378
                        <interface>lan</interface>
2379
                        <ipprotocol>inet</ipprotocol>
2380
                        <tag/>
2381
                        <tagged/>
2382
                        <direction>any</direction>
2383
                        <floating>yes</floating>
2384
                        <max/>
2385
                        <max-src-nodes/>
2386
                        <max-src-conn/>
2387
                        <max-src-states/>
2388
                        <statetimeout/>
2389
                        <statetype>keep state</statetype>
2390
                        <os/>
2391
                        <protocol>udp</protocol>
2392
                        <source>
2393
                                <any/>
2394
                        </source>
2395
                        <destination>
2396
                                <any/>
2397
                                <port>LoPriorityUDPports</port>
2398
                        </destination>
2399
                        <descr><![CDATA[LAN1 low priority UDP]]></descr>
2400
                        <defaultqueue>LAN1qLow</defaultqueue>
2401
                        <created>
2402
                                <time>1421571065</time>
2403
                                <username>admin@172.24.16.235</username>
2404
                        </created>
2405
                        <updated>
2406
                                <time>1421573495</time>
2407
                                <username>admin@172.24.16.235</username>
2408
                        </updated>
2409
                        <tracker>1424949600</tracker>
2410
                </rule>
2411
                <rule>
2412
                        <id/>
2413
                        <type>match</type>
2414
                        <interface>opt1</interface>
2415
                        <ipprotocol>inet</ipprotocol>
2416
                        <tag/>
2417
                        <tagged/>
2418
                        <direction>any</direction>
2419
                        <floating>yes</floating>
2420
                        <max/>
2421
                        <max-src-nodes/>
2422
                        <max-src-conn/>
2423
                        <max-src-states/>
2424
                        <statetimeout/>
2425
                        <statetype>keep state</statetype>
2426
                        <os/>
2427
                        <protocol>udp</protocol>
2428
                        <source>
2429
                                <any/>
2430
                        </source>
2431
                        <destination>
2432
                                <any/>
2433
                                <port>LoPriorityUDPports</port>
2434
                        </destination>
2435
                        <descr><![CDATA[LAN2 low priority UDP]]></descr>
2436
                        <defaultqueue>LAN2qLow</defaultqueue>
2437
                        <updated>
2438
                                <time>1421573166</time>
2439
                                <username>admin@172.24.16.235</username>
2440
                        </updated>
2441
                        <created>
2442
                                <time>1421573166</time>
2443
                                <username>admin@172.24.16.235</username>
2444
                        </created>
2445
                        <tracker>1424949601</tracker>
2446
                </rule>
2447
                <rule>
2448
                        <id/>
2449
                        <type>match</type>
2450
                        <interface>opt2</interface>
2451
                        <ipprotocol>inet</ipprotocol>
2452
                        <tag/>
2453
                        <tagged/>
2454
                        <direction>any</direction>
2455
                        <floating>yes</floating>
2456
                        <max/>
2457
                        <max-src-nodes/>
2458
                        <max-src-conn/>
2459
                        <max-src-states/>
2460
                        <statetimeout/>
2461
                        <statetype>keep state</statetype>
2462
                        <os/>
2463
                        <protocol>udp</protocol>
2464
                        <source>
2465
                                <any/>
2466
                        </source>
2467
                        <destination>
2468
                                <any/>
2469
                                <port>LoPriorityUDPports</port>
2470
                        </destination>
2471
                        <descr><![CDATA[LAN3 low priority UDP]]></descr>
2472
                        <defaultqueue>LAN3qLow</defaultqueue>
2473
                        <updated>
2474
                                <time>1421574663</time>
2475
                                <username>admin@172.24.16.235</username>
2476
                        </updated>
2477
                        <created>
2478
                                <time>1421574663</time>
2479
                                <username>admin@172.24.16.235</username>
2480
                        </created>
2481
                        <tracker>1424949602</tracker>
2482
                </rule>
2483
                <rule>
2484
                        <id/>
2485
                        <type>match</type>
2486
                        <interface>wan,enc0,openvpn</interface>
2487
                        <ipprotocol>inet</ipprotocol>
2488
                        <tag/>
2489
                        <tagged/>
2490
                        <direction>any</direction>
2491
                        <floating>yes</floating>
2492
                        <max/>
2493
                        <max-src-nodes/>
2494
                        <max-src-conn/>
2495
                        <max-src-states/>
2496
                        <statetimeout/>
2497
                        <statetype>keep state</statetype>
2498
                        <os/>
2499
                        <protocol>tcp</protocol>
2500
                        <source>
2501
                                <any/>
2502
                        </source>
2503
                        <destination>
2504
                                <any/>
2505
                                <port>P2Pports</port>
2506
                        </destination>
2507
                        <descr><![CDATA[WAN &amp; VPN P2P TCP]]></descr>
2508
                        <defaultqueue>WANqP2P</defaultqueue>
2509
                        <ackqueue>WANqACK</ackqueue>
2510
                        <created>
2511
                                <time>1392069648</time>
2512
                                <username>Traffic Shaper Wizard</username>
2513
                        </created>
2514
                        <updated>
2515
                                <time>1421575128</time>
2516
                                <username>admin@172.24.16.235</username>
2517
                        </updated>
2518
                        <tracker>1424949603</tracker>
2519
                </rule>
2520
                <rule>
2521
                        <id/>
2522
                        <type>match</type>
2523
                        <interface>lan</interface>
2524
                        <ipprotocol>inet</ipprotocol>
2525
                        <tag/>
2526
                        <tagged/>
2527
                        <direction>any</direction>
2528
                        <floating>yes</floating>
2529
                        <max/>
2530
                        <max-src-nodes/>
2531
                        <max-src-conn/>
2532
                        <max-src-states/>
2533
                        <statetimeout/>
2534
                        <statetype>keep state</statetype>
2535
                        <os/>
2536
                        <protocol>tcp</protocol>
2537
                        <source>
2538
                                <any/>
2539
                        </source>
2540
                        <destination>
2541
                                <any/>
2542
                                <port>P2Pports</port>
2543
                        </destination>
2544
                        <descr><![CDATA[LAN1 P2P TCP]]></descr>
2545
                        <defaultqueue>LAN1qP2P</defaultqueue>
2546
                        <ackqueue>LAN1qACK</ackqueue>
2547
                        <updated>
2548
                                <time>1421571048</time>
2549
                                <username>admin@172.24.16.235</username>
2550
                        </updated>
2551
                        <created>
2552
                                <time>1421571048</time>
2553
                                <username>admin@172.24.16.235</username>
2554
                        </created>
2555
                        <tracker>1424949604</tracker>
2556
                </rule>
2557
                <rule>
2558
                        <id/>
2559
                        <type>match</type>
2560
                        <interface>opt1</interface>
2561
                        <ipprotocol>inet</ipprotocol>
2562
                        <tag/>
2563
                        <tagged/>
2564
                        <direction>any</direction>
2565
                        <floating>yes</floating>
2566
                        <max/>
2567
                        <max-src-nodes/>
2568
                        <max-src-conn/>
2569
                        <max-src-states/>
2570
                        <statetimeout/>
2571
                        <statetype>keep state</statetype>
2572
                        <os/>
2573
                        <protocol>tcp</protocol>
2574
                        <source>
2575
                                <any/>
2576
                        </source>
2577
                        <destination>
2578
                                <any/>
2579
                                <port>P2Pports</port>
2580
                        </destination>
2581
                        <descr><![CDATA[LAN2 P2P TCP]]></descr>
2582
                        <defaultqueue>LAN2qP2P</defaultqueue>
2583
                        <ackqueue>LAN2qACK</ackqueue>
2584
                        <updated>
2585
                                <time>1421573131</time>
2586
                                <username>admin@172.24.16.235</username>
2587
                        </updated>
2588
                        <created>
2589
                                <time>1421573131</time>
2590
                                <username>admin@172.24.16.235</username>
2591
                        </created>
2592
                        <tracker>1424949605</tracker>
2593
                </rule>
2594
                <rule>
2595
                        <id/>
2596
                        <type>match</type>
2597
                        <interface>opt2</interface>
2598
                        <ipprotocol>inet</ipprotocol>
2599
                        <tag/>
2600
                        <tagged/>
2601
                        <direction>any</direction>
2602
                        <floating>yes</floating>
2603
                        <max/>
2604
                        <max-src-nodes/>
2605
                        <max-src-conn/>
2606
                        <max-src-states/>
2607
                        <statetimeout/>
2608
                        <statetype>keep state</statetype>
2609
                        <os/>
2610
                        <protocol>tcp</protocol>
2611
                        <source>
2612
                                <any/>
2613
                        </source>
2614
                        <destination>
2615
                                <any/>
2616
                                <port>P2Pports</port>
2617
                        </destination>
2618
                        <descr><![CDATA[LAN3 P2P TCP]]></descr>
2619
                        <defaultqueue>LAN3qP2P</defaultqueue>
2620
                        <ackqueue>LAN3qACK</ackqueue>
2621
                        <updated>
2622
                                <time>1421574641</time>
2623
                                <username>admin@172.24.16.235</username>
2624
                        </updated>
2625
                        <created>
2626
                                <time>1421574641</time>
2627
                                <username>admin@172.24.16.235</username>
2628
                        </created>
2629
                        <tracker>1424949606</tracker>
2630
                </rule>
2631
                <rule>
2632
                        <id/>
2633
                        <type>match</type>
2634
                        <interface>wan,enc0,openvpn</interface>
2635
                        <ipprotocol>inet</ipprotocol>
2636
                        <tag/>
2637
                        <tagged/>
2638
                        <direction>any</direction>
2639
                        <floating>yes</floating>
2640
                        <max/>
2641
                        <max-src-nodes/>
2642
                        <max-src-conn/>
2643
                        <max-src-states/>
2644
                        <statetimeout/>
2645
                        <statetype>keep state</statetype>
2646
                        <os/>
2647
                        <protocol>udp</protocol>
2648
                        <source>
2649
                                <any/>
2650
                        </source>
2651
                        <destination>
2652
                                <any/>
2653
                                <port>P2Pports</port>
2654
                        </destination>
2655
                        <descr><![CDATA[WAN &amp; VPN P2P UDP]]></descr>
2656
                        <defaultqueue>WANqP2P</defaultqueue>
2657
                        <created>
2658
                                <time>1392069648</time>
2659
                                <username>Traffic Shaper Wizard</username>
2660
                        </created>
2661
                        <updated>
2662
                                <time>1421575100</time>
2663
                                <username>admin@172.24.16.235</username>
2664
                        </updated>
2665
                        <tracker>1424949607</tracker>
2666
                </rule>
2667
                <rule>
2668
                        <id/>
2669
                        <type>match</type>
2670
                        <interface>lan</interface>
2671
                        <ipprotocol>inet</ipprotocol>
2672
                        <tag/>
2673
                        <tagged/>
2674
                        <direction>any</direction>
2675
                        <floating>yes</floating>
2676
                        <max/>
2677
                        <max-src-nodes/>
2678
                        <max-src-conn/>
2679
                        <max-src-states/>
2680
                        <statetimeout/>
2681
                        <statetype>keep state</statetype>
2682
                        <os/>
2683
                        <protocol>udp</protocol>
2684
                        <source>
2685
                                <any/>
2686
                        </source>
2687
                        <destination>
2688
                                <any/>
2689
                                <port>P2Pports</port>
2690
                        </destination>
2691
                        <descr><![CDATA[LAN1 P2P UDP]]></descr>
2692
                        <defaultqueue>LAN1qP2P</defaultqueue>
2693
                        <updated>
2694
                                <time>1421571021</time>
2695
                                <username>admin@172.24.16.235</username>
2696
                        </updated>
2697
                        <created>
2698
                                <time>1421571021</time>
2699
                                <username>admin@172.24.16.235</username>
2700
                        </created>
2701
                        <tracker>1424949608</tracker>
2702
                </rule>
2703
                <rule>
2704
                        <id/>
2705
                        <type>match</type>
2706
                        <interface>opt1</interface>
2707
                        <ipprotocol>inet</ipprotocol>
2708
                        <tag/>
2709
                        <tagged/>
2710
                        <direction>any</direction>
2711
                        <floating>yes</floating>
2712
                        <max/>
2713
                        <max-src-nodes/>
2714
                        <max-src-conn/>
2715
                        <max-src-states/>
2716
                        <statetimeout/>
2717
                        <statetype>keep state</statetype>
2718
                        <os/>
2719
                        <protocol>udp</protocol>
2720
                        <source>
2721
                                <any/>
2722
                        </source>
2723
                        <destination>
2724
                                <any/>
2725
                                <port>P2Pports</port>
2726
                        </destination>
2727
                        <descr><![CDATA[LAN2 P2P UDP]]></descr>
2728
                        <defaultqueue>LAN2qP2P</defaultqueue>
2729
                        <updated>
2730
                                <time>1421573106</time>
2731
                                <username>admin@172.24.16.235</username>
2732
                        </updated>
2733
                        <created>
2734
                                <time>1421573106</time>
2735
                                <username>admin@172.24.16.235</username>
2736
                        </created>
2737
                        <tracker>1424949609</tracker>
2738
                </rule>
2739
                <rule>
2740
                        <id/>
2741
                        <type>match</type>
2742
                        <interface>opt2</interface>
2743
                        <ipprotocol>inet</ipprotocol>
2744
                        <tag/>
2745
                        <tagged/>
2746
                        <direction>any</direction>
2747
                        <floating>yes</floating>
2748
                        <max/>
2749
                        <max-src-nodes/>
2750
                        <max-src-conn/>
2751
                        <max-src-states/>
2752
                        <statetimeout/>
2753
                        <statetype>keep state</statetype>
2754
                        <os/>
2755
                        <protocol>udp</protocol>
2756
                        <source>
2757
                                <any/>
2758
                        </source>
2759
                        <destination>
2760
                                <any/>
2761
                                <port>P2Pports</port>
2762
                        </destination>
2763
                        <descr><![CDATA[LAN3 P2P UDP]]></descr>
2764
                        <defaultqueue>LAN3qP2P</defaultqueue>
2765
                        <updated>
2766
                                <time>1421574615</time>
2767
                                <username>admin@172.24.16.235</username>
2768
                        </updated>
2769
                        <created>
2770
                                <time>1421574615</time>
2771
                                <username>admin@172.24.16.235</username>
2772
                        </created>
2773
                        <tracker>1424949610</tracker>
2774
                </rule>
2775
                <rule>
2776
                        <id/>
2777
                        <tracker>1425947261</tracker>
2778
                        <type>block</type>
2779
                        <interface>wan</interface>
2780
                        <ipprotocol>inet</ipprotocol>
2781
                        <tag/>
2782
                        <tagged/>
2783
                        <max/>
2784
                        <max-src-nodes/>
2785
                        <max-src-conn/>
2786
                        <max-src-states/>
2787
                        <statetimeout/>
2788
                        <statetype>keep state</statetype>
2789
                        <os/>
2790
                        <protocol>tcp/udp</protocol>
2791
                        <source>
2792
                                <any/>
2793
                        </source>
2794
                        <destination>
2795
                                <any/>
2796
                                <port>NetBIOSports</port>
2797
                        </destination>
2798
                        <descr><![CDATA[Block NetBIOS traffic]]></descr>
2799
                        <created>
2800
                                <time>1425947261</time>
2801
                                <username>admin@172.24.16.235</username>
2802
                        </created>
2803
                        <updated>
2804
                                <time>1425947283</time>
2805
                                <username>admin@172.24.16.235</username>
2806
                        </updated>
2807
                </rule>
2808
                <rule>
2809
                        <id/>
2810
                        <tracker>1424949611</tracker>
2811
                        <type>block</type>
2812
                        <interface>wan</interface>
2813
                        <ipprotocol>inet</ipprotocol>
2814
                        <tag/>
2815
                        <tagged/>
2816
                        <max/>
2817
                        <max-src-nodes/>
2818
                        <max-src-conn/>
2819
                        <max-src-states/>
2820
                        <statetimeout/>
2821
                        <statetype>keep state</statetype>
2822
                        <os/>
2823
                        <protocol>icmp</protocol>
2824
                        <icmptype>redir</icmptype>
2825
                        <source>
2826
                                <any/>
2827
                        </source>
2828
                        <destination>
2829
                                <any/>
2830
                        </destination>
2831
                        <descr><![CDATA[Block ICMP Redirects (DoubleDirect mitm attack)]]></descr>
2832
                        <created>
2833
                                <time>1419296001</time>
2834
                                <username>admin@172.24.16.235</username>
2835
                        </created>
2836
                        <updated>
2837
                                <time>1425640927</time>
2838
                                <username>admin@172.24.16.235</username>
2839
                        </updated>
2840
                </rule>
2841
                <rule>
2842
                        <id/>
2843
                        <tracker>1424949612</tracker>
2844
                        <type>block</type>
2845
                        <interface>wan</interface>
2846
                        <ipprotocol>inet6</ipprotocol>
2847
                        <tag/>
2848
                        <tagged/>
2849
                        <max/>
2850
                        <max-src-nodes/>
2851
                        <max-src-conn/>
2852
                        <max-src-states/>
2853
                        <statetimeout/>
2854
                        <statetype>keep state</statetype>
2855
                        <os/>
2856
                        <protocol>icmp</protocol>
2857
                        <icmptype>redir</icmptype>
2858
                        <source>
2859
                                <any/>
2860
                        </source>
2861
                        <destination>
2862
                                <any/>
2863
                        </destination>
2864
                        <descr><![CDATA[Block ICMP Redirects (DoubleDirect mitm attack)]]></descr>
2865
                        <created>
2866
                                <time>1419296040</time>
2867
                                <username>admin@172.24.16.235</username>
2868
                        </created>
2869
                        <updated>
2870
                                <time>1425087043</time>
2871
                                <username>admin@172.24.16.235</username>
2872
                        </updated>
2873
                </rule>
2874
                <rule>
2875
                        <id/>
2876
                        <type>block</type>
2877
                        <interface>wan</interface>
2878
                        <tag/>
2879
                        <tagged/>
2880
                        <max/>
2881
                        <max-src-nodes/>
2882
                        <max-src-conn/>
2883
                        <max-src-states/>
2884
                        <statetimeout/>
2885
                        <statetype>keep state</statetype>
2886
                        <os/>
2887
                        <source>
2888
                                <address>OpenDNScrappers</address>
2889
                        </source>
2890
                        <destination>
2891
                                <any/>
2892
                        </destination>
2893
                        <descr><![CDATA[Block unwanted OpenDNS traffic]]></descr>
2894
                        <tracker>1424949613</tracker>
2895
                </rule>
2896
                <rule>
2897
                        <id/>
2898
                        <tracker>1424949614</tracker>
2899
                        <type>block</type>
2900
                        <interface>wan</interface>
2901
                        <ipprotocol>inet</ipprotocol>
2902
                        <tag/>
2903
                        <tagged/>
2904
                        <max/>
2905
                        <max-src-nodes/>
2906
                        <max-src-conn/>
2907
                        <max-src-states/>
2908
                        <statetimeout/>
2909
                        <statetype>keep state</statetype>
2910
                        <os/>
2911
                        <source>
2912
                                <address>pfB_Africa_v4</address>
2913
                        </source>
2914
                        <destination>
2915
                                <address>NonLicServerProductionAndDev</address>
2916
                        </destination>
2917
                        <descr><![CDATA[Block various African countries from nonDEI servers]]></descr>
2918
                        <updated>
2919
                                <time>1425260397</time>
2920
                                <username>admin@172.24.16.235</username>
2921
                        </updated>
2922
                </rule>
2923
                <rule>
2924
                        <id/>
2925
                        <tracker>1424949615</tracker>
2926
                        <type>block</type>
2927
                        <interface>wan</interface>
2928
                        <ipprotocol>inet</ipprotocol>
2929
                        <tag/>
2930
                        <tagged/>
2931
                        <max/>
2932
                        <max-src-nodes/>
2933
                        <max-src-conn/>
2934
                        <max-src-states/>
2935
                        <statetimeout/>
2936
                        <statetype>keep state</statetype>
2937
                        <os/>
2938
                        <source>
2939
                                <address>pfB_Asia_v4</address>
2940
                        </source>
2941
                        <destination>
2942
                                <address>NonLicServerProductionAndDev</address>
2943
                        </destination>
2944
                        <descr><![CDATA[Block various Asian countries from nonDEI servers]]></descr>
2945
                        <updated>
2946
                                <time>1425260419</time>
2947
                                <username>admin@172.24.16.235</username>
2948
                        </updated>
2949
                </rule>
2950
                <rule>
2951
                        <id/>
2952
                        <tracker>1424949616</tracker>
2953
                        <type>block</type>
2954
                        <interface>wan</interface>
2955
                        <ipprotocol>inet</ipprotocol>
2956
                        <tag/>
2957
                        <tagged/>
2958
                        <max/>
2959
                        <max-src-nodes/>
2960
                        <max-src-conn/>
2961
                        <max-src-states/>
2962
                        <statetimeout/>
2963
                        <statetype>keep state</statetype>
2964
                        <os/>
2965
                        <source>
2966
                                <address>pfB_Europe_v4</address>
2967
                        </source>
2968
                        <destination>
2969
                                <address>NonLicServerProductionAndDev</address>
2970
                        </destination>
2971
                        <descr><![CDATA[Block various European countries from nonDEI servers]]></descr>
2972
                        <updated>
2973
                                <time>1425260436</time>
2974
                                <username>admin@172.24.16.235</username>
2975
                        </updated>
2976
                </rule>
2977
                <rule>
2978
                        <id/>
2979
                        <tracker>1424949617</tracker>
2980
                        <type>block</type>
2981
                        <interface>wan</interface>
2982
                        <ipprotocol>inet</ipprotocol>
2983
                        <tag/>
2984
                        <tagged/>
2985
                        <max/>
2986
                        <max-src-nodes/>
2987
                        <max-src-conn/>
2988
                        <max-src-states/>
2989
                        <statetimeout/>
2990
                        <statetype>keep state</statetype>
2991
                        <os/>
2992
                        <source>
2993
                                <address>pfB_SAmerica_v4</address>
2994
                        </source>
2995
                        <destination>
2996
                                <address>NonLicServerProductionAndDev</address>
2997
                        </destination>
2998
                        <descr><![CDATA[Block various S.Amer'n countries from nonDEI servers]]></descr>
2999
                        <updated>
3000
                                <time>1425260460</time>
3001
                                <username>admin@172.24.16.235</username>
3002
                        </updated>
3003
                </rule>
3004
                <rule>
3005
                        <id/>
3006
                        <tracker>1424949618</tracker>
3007
                        <type>block</type>
3008
                        <interface>wan</interface>
3009
                        <ipprotocol>inet</ipprotocol>
3010
                        <tag/>
3011
                        <tagged/>
3012
                        <max/>
3013
                        <max-src-nodes/>
3014
                        <max-src-conn/>
3015
                        <max-src-states/>
3016
                        <statetimeout/>
3017
                        <statetype>keep state</statetype>
3018
                        <os/>
3019
                        <source>
3020
                                <address>pfB_NAmerica_v4</address>
3021
                        </source>
3022
                        <destination>
3023
                                <address>NonLicServerProductionAndDev</address>
3024
                        </destination>
3025
                        <descr><![CDATA[Block various N.Amer'n countries from nonDEI servers]]></descr>
3026
                        <updated>
3027
                                <time>1425260483</time>
3028
                                <username>admin@172.24.16.235</username>
3029
                        </updated>
3030
                </rule>
3031
                <rule>
3032
                        <id/>
3033
                        <tracker>1425714706</tracker>
3034
                        <type>block</type>
3035
                        <interface>wan</interface>
3036
                        <ipprotocol>inet</ipprotocol>
3037
                        <tag/>
3038
                        <tagged/>
3039
                        <max/>
3040
                        <max-src-nodes/>
3041
                        <max-src-conn/>
3042
                        <max-src-states/>
3043
                        <statetimeout/>
3044
                        <statetype>keep state</statetype>
3045
                        <os/>
3046
                        <source>
3047
                                <address>pfB_PS_v4</address>
3048
                        </source>
3049
                        <destination>
3050
                                <address>NonLicServerProductionAndDev</address>
3051
                        </destination>
3052
                        <descr><![CDATA[Block proxy &amp; satellite IPs from nonDEI servers]]></descr>
3053
                        <updated>
3054
                                <time>1425714706</time>
3055
                                <username>admin@172.24.16.235</username>
3056
                        </updated>
3057
                        <created>
3058
                                <time>1425714706</time>
3059
                                <username>admin@172.24.16.235</username>
3060
                        </created>
3061
                </rule>
3062
                <rule>
3063
                        <id/>
3064
                        <type>block</type>
3065
                        <interface>wan</interface>
3066
                        <ipprotocol>inet</ipprotocol>
3067
                        <tag/>
3068
                        <tagged/>
3069
                        <max/>
3070
                        <max-src-nodes/>
3071
                        <max-src-conn/>
3072
                        <max-src-states/>
3073
                        <statetimeout/>
3074
                        <statetype>keep state</statetype>
3075
                        <os/>
3076
                        <source>
3077
                                <address>BadCountries</address>
3078
                        </source>
3079
                        <destination>
3080
                                <address>NonLicServerProductionAndDev</address>
3081
                        </destination>
3082
                        <descr><![CDATA[Block various other country nets from nonDEI servers]]></descr>
3083
                        <updated>
3084
                                <time>1386372886</time>
3085
                                <username>admin@172.24.16.234</username>
3086
                        </updated>
3087
                        <tracker>1424949619</tracker>
3088
                </rule>
3089
                <rule>
3090
                        <id/>
3091
                        <type>block</type>
3092
                        <interface>wan</interface>
3093
                        <ipprotocol>inet</ipprotocol>
3094
                        <tag/>
3095
                        <tagged/>
3096
                        <max/>
3097
                        <max-src-nodes/>
3098
                        <max-src-conn/>
3099
                        <max-src-states/>
3100
                        <statetimeout/>
3101
                        <statetype>keep state</statetype>
3102
                        <os/>
3103
                        <source>
3104
                                <address>BadGuyBTadsList</address>
3105
                        </source>
3106
                        <destination>
3107
                                <address>LicServerProductionAndDev</address>
3108
                                <not/>
3109
                        </destination>
3110
                        <descr><![CDATA[Block Ad/tracker systems from all except DEI server]]></descr>
3111
                        <updated>
3112
                                <time>1420508844</time>
3113
                                <username>admin@172.24.16.235</username>
3114
                        </updated>
3115
                        <tracker>1424949620</tracker>
3116
                </rule>
3117
                <rule>
3118
                        <id/>
3119
                        <type>block</type>
3120
                        <interface>wan</interface>
3121
                        <ipprotocol>inet</ipprotocol>
3122
                        <tag/>
3123
                        <tagged/>
3124
                        <max/>
3125
                        <max-src-nodes/>
3126
                        <max-src-conn/>
3127
                        <max-src-states/>
3128
                        <statetimeout/>
3129
                        <statetype>keep state</statetype>
3130
                        <os/>
3131
                        <source>
3132
                                <address>BadGuyBTfSpammerList</address>
3133
                        </source>
3134
                        <destination>
3135
                                <any/>
3136
                        </destination>
3137
                        <descr><![CDATA[Block spammer systems from all sites]]></descr>
3138
                        <updated>
3139
                                <time>1386373194</time>
3140
                                <username>admin@172.24.16.234</username>
3141
                        </updated>
3142
                        <tracker>1424949621</tracker>
3143
                </rule>
3144
                <rule>
3145
                        <id/>
3146
                        <type>block</type>
3147
                        <interface>wan</interface>
3148
                        <ipprotocol>inet</ipprotocol>
3149
                        <tag/>
3150
                        <tagged/>
3151
                        <max/>
3152
                        <max-src-nodes/>
3153
                        <max-src-conn/>
3154
                        <max-src-states/>
3155
                        <statetimeout/>
3156
                        <statetype>keep state</statetype>
3157
                        <os/>
3158
                        <source>
3159
                                <address>BadGuyBThijackedList</address>
3160
                        </source>
3161
                        <destination>
3162
                                <any/>
3163
                        </destination>
3164
                        <descr><![CDATA[Block hijacked systems from all sites]]></descr>
3165
                        <updated>
3166
                                <time>1386373243</time>
3167
                                <username>admin@172.24.16.234</username>
3168
                        </updated>
3169
                        <tracker>1424949622</tracker>
3170
                </rule>
3171
                <rule>
3172
                        <id/>
3173
                        <type>block</type>
3174
                        <interface>wan</interface>
3175
                        <ipprotocol>inet</ipprotocol>
3176
                        <tag/>
3177
                        <tagged/>
3178
                        <max/>
3179
                        <max-src-nodes/>
3180
                        <max-src-conn/>
3181
                        <max-src-states/>
3182
                        <statetimeout/>
3183
                        <statetype>keep state</statetype>
3184
                        <os/>
3185
                        <source>
3186
                                <address>BadGuyBTshieldList</address>
3187
                        </source>
3188
                        <destination>
3189
                                <any/>
3190
                        </destination>
3191
                        <descr><![CDATA[Block hacker systems from all sites]]></descr>
3192
                        <updated>
3193
                                <time>1386373311</time>
3194
                                <username>admin@172.24.16.234</username>
3195
                        </updated>
3196
                        <tracker>1424949623</tracker>
3197
                </rule>
3198
                <rule>
3199
                        <id/>
3200
                        <type>block</type>
3201
                        <interface>wan</interface>
3202
                        <ipprotocol>inet</ipprotocol>
3203
                        <tag/>
3204
                        <tagged/>
3205
                        <max/>
3206
                        <max-src-nodes/>
3207
                        <max-src-conn/>
3208
                        <max-src-states/>
3209
                        <statetimeout/>
3210
                        <statetype>keep state</statetype>
3211
                        <os/>
3212
                        <source>
3213
                                <address>BadGuyBTspiderList</address>
3214
                        </source>
3215
                        <destination>
3216
                                <any/>
3217
                        </destination>
3218
                        <descr><![CDATA[Block undesirable spiders/crawlers from all sites]]></descr>
3219
                        <updated>
3220
                                <time>1394839782</time>
3221
                                <username>admin@172.24.16.234</username>
3222
                        </updated>
3223
                        <created>
3224
                                <time>1394839782</time>
3225
                                <username>admin@172.24.16.234</username>
3226
                        </created>
3227
                        <tracker>1424949624</tracker>
3228
                </rule>
3229
                <rule>
3230
                        <id/>
3231
                        <type>block</type>
3232
                        <interface>wan</interface>
3233
                        <ipprotocol>inet</ipprotocol>
3234
                        <tag/>
3235
                        <tagged/>
3236
                        <max/>
3237
                        <max-src-nodes/>
3238
                        <max-src-conn/>
3239
                        <max-src-states/>
3240
                        <statetimeout/>
3241
                        <statetype>keep state</statetype>
3242
                        <os/>
3243
                        <source>
3244
                                <address>BadGuyBTspywareList</address>
3245
                        </source>
3246
                        <destination>
3247
                                <any/>
3248
                        </destination>
3249
                        <descr><![CDATA[Block spyware systems from all sites]]></descr>
3250
                        <updated>
3251
                                <time>1386373160</time>
3252
                                <username>admin@172.24.16.234</username>
3253
                        </updated>
3254
                        <tracker>1424949625</tracker>
3255
                </rule>
3256
                <rule>
3257
                        <id/>
3258
                        <type>block</type>
3259
                        <interface>wan</interface>
3260
                        <ipprotocol>inet</ipprotocol>
3261
                        <tag/>
3262
                        <tagged/>
3263
                        <max/>
3264
                        <max-src-nodes/>
3265
                        <max-src-conn/>
3266
                        <max-src-states/>
3267
                        <statetimeout/>
3268
                        <statetype>keep state</statetype>
3269
                        <os/>
3270
                        <source>
3271
                                <address>BadGuyBTwebexploitList</address>
3272
                        </source>
3273
                        <destination>
3274
                                <any/>
3275
                        </destination>
3276
                        <descr><![CDATA[Block web exploit systems from all sites]]></descr>
3277
                        <updated>
3278
                                <time>1394843140</time>
3279
                                <username>admin@172.24.16.234</username>
3280
                        </updated>
3281
                        <created>
3282
                                <time>1394843140</time>
3283
                                <username>admin@172.24.16.234</username>
3284
                        </created>
3285
                        <tracker>1424949626</tracker>
3286
                </rule>
3287
                <rule>
3288
                        <id/>
3289
                        <type>block</type>
3290
                        <interface>wan</interface>
3291
                        <ipprotocol>inet</ipprotocol>
3292
                        <tag/>
3293
                        <tagged/>
3294
                        <max/>
3295
                        <max-src-nodes/>
3296
                        <max-src-conn/>
3297
                        <max-src-states/>
3298
                        <statetimeout/>
3299
                        <statetype>keep state</statetype>
3300
                        <os/>
3301
                        <source>
3302
                                <address>BadGuyDROPlist</address>
3303
                        </source>
3304
                        <destination>
3305
                                <any/>
3306
                        </destination>
3307
                        <descr><![CDATA[Block criminal-controlled systems from all sites]]></descr>
3308
                        <updated>
3309
                                <time>1386373366</time>
3310
                                <username>admin@172.24.16.234</username>
3311
                        </updated>
3312
                        <tracker>1424949627</tracker>
3313
                </rule>
3314
                <rule>
3315
                        <id/>
3316
                        <type>block</type>
3317
                        <interface>wan</interface>
3318
                        <ipprotocol>inet</ipprotocol>
3319
                        <tag/>
3320
                        <tagged/>
3321
                        <max/>
3322
                        <max-src-nodes/>
3323
                        <max-src-conn/>
3324
                        <max-src-states/>
3325
                        <statetimeout/>
3326
                        <statetype>keep state</statetype>
3327
                        <os/>
3328
                        <source>
3329
                                <address>BadGuyEDROPlist</address>
3330
                        </source>
3331
                        <destination>
3332
                                <any/>
3333
                        </destination>
3334
                        <descr><![CDATA[Block criminal-controlled systems from all sites]]></descr>
3335
                        <updated>
3336
                                <time>1386373391</time>
3337
                                <username>admin@172.24.16.234</username>
3338
                        </updated>
3339
                        <tracker>1424949628</tracker>
3340
                </rule>
3341
                <rule>
3342
                        <id/>
3343
                        <type>block</type>
3344
                        <interface>wan</interface>
3345
                        <tag/>
3346
                        <tagged/>
3347
                        <max/>
3348
                        <max-src-nodes/>
3349
                        <max-src-conn/>
3350
                        <max-src-states/>
3351
                        <statetimeout/>
3352
                        <statetype>keep state</statetype>
3353
                        <os/>
3354
                        <source>
3355
                                <address>BadNets</address>
3356
                        </source>
3357
                        <destination>
3358
                                <any/>
3359
                        </destination>
3360
                        <descr><![CDATA[Block undesired networks from all sites]]></descr>
3361
                        <tracker>1424949629</tracker>
3362
                </rule>
3363
                <rule>
3364
                        <id/>
3365
                        <type>block</type>
3366
                        <interface>wan</interface>
3367
                        <ipprotocol>inet</ipprotocol>
3368
                        <tag/>
3369
                        <tagged/>
3370
                        <max/>
3371
                        <max-src-nodes/>
3372
                        <max-src-conn/>
3373
                        <max-src-states/>
3374
                        <statetimeout/>
3375
                        <statetype>keep state</statetype>
3376
                        <os/>
3377
                        <source>
3378
                                <address>BadGuys</address>
3379
                        </source>
3380
                        <destination>
3381
                                <any/>
3382
                        </destination>
3383
                        <descr><![CDATA[Block undesired IPs from all sites]]></descr>
3384
                        <updated>
3385
                                <time>1396082084</time>
3386
                                <username>admin@172.24.16.234</username>
3387
                        </updated>
3388
                        <tracker>1424949630</tracker>
3389
                </rule>
3390
                <rule>
3391
                        <id/>
3392
                        <type>block</type>
3393
                        <interface>wan</interface>
3394
                        <ipprotocol>inet</ipprotocol>
3395
                        <tag/>
3396
                        <tagged/>
3397
                        <max/>
3398
                        <max-src-nodes/>
3399
                        <max-src-conn/>
3400
                        <max-src-states/>
3401
                        <statetimeout/>
3402
                        <statetype>keep state</statetype>
3403
                        <os/>
3404
                        <source>
3405
                                <address>EmergingThreats</address>
3406
                        </source>
3407
                        <destination>
3408
                                <any/>
3409
                        </destination>
3410
                        <descr><![CDATA[Block various threat IPs and networks]]></descr>
3411
                        <updated>
3412
                                <time>1391395721</time>
3413
                                <username>admin@172.24.16.234</username>
3414
                        </updated>
3415
                        <created>
3416
                                <time>1391395721</time>
3417
                                <username>admin@172.24.16.234</username>
3418
                        </created>
3419
                        <tracker>1424949631</tracker>
3420
                </rule>
3421
                <rule>
3422
                        <id/>
3423
                        <type>block</type>
3424
                        <interface>wan</interface>
3425
                        <ipprotocol>inet</ipprotocol>
3426
                        <tag/>
3427
                        <tagged/>
3428
                        <max/>
3429
                        <max-src-nodes/>
3430
                        <max-src-conn/>
3431
                        <max-src-states/>
3432
                        <statetimeout/>
3433
                        <statetype>keep state</statetype>
3434
                        <os/>
3435
                        <source>
3436
                                <address>ForumSpammerNets</address>
3437
                        </source>
3438
                        <destination>
3439
                                <any/>
3440
                        </destination>
3441
                        <descr><![CDATA[Block forum spammer networks]]></descr>
3442
                        <updated>
3443
                                <time>1390783803</time>
3444
                                <username>admin@172.24.16.234</username>
3445
                        </updated>
3446
                        <created>
3447
                                <time>1390783803</time>
3448
                                <username>admin@172.24.16.234</username>
3449
                        </created>
3450
                        <tracker>1424949632</tracker>
3451
                </rule>
3452
                <rule>
3453
                        <id/>
3454
                        <type>block</type>
3455
                        <interface>wan</interface>
3456
                        <ipprotocol>inet</ipprotocol>
3457
                        <tag/>
3458
                        <tagged/>
3459
                        <max/>
3460
                        <max-src-nodes/>
3461
                        <max-src-conn/>
3462
                        <max-src-states/>
3463
                        <statetimeout/>
3464
                        <statetype>keep state</statetype>
3465
                        <os/>
3466
                        <source>
3467
                                <address>ForumSpammers1</address>
3468
                        </source>
3469
                        <destination>
3470
                                <any/>
3471
                        </destination>
3472
                        <descr><![CDATA[Block forum spammers]]></descr>
3473
                        <updated>
3474
                                <time>1390782796</time>
3475
                                <username>admin@172.24.16.234</username>
3476
                        </updated>
3477
                        <created>
3478
                                <time>1390782796</time>
3479
                                <username>admin@172.24.16.234</username>
3480
                        </created>
3481
                        <tracker>1424949633</tracker>
3482
                </rule>
3483
                <rule>
3484
                        <id/>
3485
                        <type>block</type>
3486
                        <interface>wan</interface>
3487
                        <ipprotocol>inet</ipprotocol>
3488
                        <tag/>
3489
                        <tagged/>
3490
                        <max/>
3491
                        <max-src-nodes/>
3492
                        <max-src-conn/>
3493
                        <max-src-states/>
3494
                        <statetimeout/>
3495
                        <statetype>keep state</statetype>
3496
                        <os/>
3497
                        <source>
3498
                                <address>ForumSpammers2</address>
3499
                        </source>
3500
                        <destination>
3501
                                <any/>
3502
                        </destination>
3503
                        <descr><![CDATA[Block forum spammers]]></descr>
3504
                        <updated>
3505
                                <time>1390783241</time>
3506
                                <username>admin@172.24.16.234</username>
3507
                        </updated>
3508
                        <created>
3509
                                <time>1390783241</time>
3510
                                <username>admin@172.24.16.234</username>
3511
                        </created>
3512
                        <tracker>1424949634</tracker>
3513
                </rule>
3514
                <rule>
3515
                        <id/>
3516
                        <type>block</type>
3517
                        <interface>wan</interface>
3518
                        <ipprotocol>inet</ipprotocol>
3519
                        <tag/>
3520
                        <tagged/>
3521
                        <max/>
3522
                        <max-src-nodes/>
3523
                        <max-src-conn/>
3524
                        <max-src-states/>
3525
                        <statetimeout/>
3526
                        <statetype>keep state</statetype>
3527
                        <os/>
3528
                        <source>
3529
                                <address>ForumSpammers3</address>
3530
                        </source>
3531
                        <destination>
3532
                                <any/>
3533
                        </destination>
3534
                        <descr><![CDATA[Block forum spammers]]></descr>
3535
                        <updated>
3536
                                <time>1390783337</time>
3537
                                <username>admin@172.24.16.234</username>
3538
                        </updated>
3539
                        <created>
3540
                                <time>1390783337</time>
3541
                                <username>admin@172.24.16.234</username>
3542
                        </created>
3543
                        <tracker>1424949635</tracker>
3544
                </rule>
3545
                <rule>
3546
                        <id/>
3547
                        <type>block</type>
3548
                        <interface>wan</interface>
3549
                        <ipprotocol>inet</ipprotocol>
3550
                        <tag/>
3551
                        <tagged/>
3552
                        <max/>
3553
                        <max-src-nodes/>
3554
                        <max-src-conn/>
3555
                        <max-src-states/>
3556
                        <statetimeout/>
3557
                        <statetype>keep state</statetype>
3558
                        <os/>
3559
                        <source>
3560
                                <address>ForumSpammers4</address>
3561
                        </source>
3562
                        <destination>
3563
                                <any/>
3564
                        </destination>
3565
                        <descr><![CDATA[Block forum spammers]]></descr>
3566
                        <updated>
3567
                                <time>1390783383</time>
3568
                                <username>admin@172.24.16.234</username>
3569
                        </updated>
3570
                        <created>
3571
                                <time>1390783383</time>
3572
                                <username>admin@172.24.16.234</username>
3573
                        </created>
3574
                        <tracker>1424949636</tracker>
3575
                </rule>
3576
                <rule>
3577
                        <id/>
3578
                        <type>block</type>
3579
                        <interface>wan</interface>
3580
                        <ipprotocol>inet</ipprotocol>
3581
                        <tag/>
3582
                        <tagged/>
3583
                        <max/>
3584
                        <max-src-nodes/>
3585
                        <max-src-conn/>
3586
                        <max-src-states/>
3587
                        <statetimeout/>
3588
                        <statetype>keep state</statetype>
3589
                        <os/>
3590
                        <source>
3591
                                <address>ForumSpammers5</address>
3592
                        </source>
3593
                        <destination>
3594
                                <any/>
3595
                        </destination>
3596
                        <descr><![CDATA[Block forum spammers]]></descr>
3597
                        <updated>
3598
                                <time>1390783498</time>
3599
                                <username>admin@172.24.16.234</username>
3600
                        </updated>
3601
                        <created>
3602
                                <time>1390783498</time>
3603
                                <username>admin@172.24.16.234</username>
3604
                        </created>
3605
                        <tracker>1424949637</tracker>
3606
                </rule>
3607
                <rule>
3608
                        <id/>
3609
                        <tracker>1424949638</tracker>
3610
                        <type>block</type>
3611
                        <interface>wan</interface>
3612
                        <ipprotocol>inet</ipprotocol>
3613
                        <tag/>
3614
                        <tagged/>
3615
                        <max/>
3616
                        <max-src-nodes/>
3617
                        <max-src-conn/>
3618
                        <max-src-states/>
3619
                        <statetimeout/>
3620
                        <statetype>keep state</statetype>
3621
                        <os/>
3622
                        <source>
3623
                                <address>MalwareSites</address>
3624
                        </source>
3625
                        <destination>
3626
                                <any/>
3627
                        </destination>
3628
                        <descr><![CDATA[Block malware systems]]></descr>
3629
                        <created>
3630
                                <time>1422573344</time>
3631
                                <username>admin@172.24.16.235</username>
3632
                        </created>
3633
                        <updated>
3634
                                <time>1425880856</time>
3635
                                <username>admin@172.24.16.235</username>
3636
                        </updated>
3637
                </rule>
3638
                <rule>
3639
                        <id/>
3640
                        <tracker>1424949639</tracker>
3641
                        <type>block</type>
3642
                        <interface>wan</interface>
3643
                        <ipprotocol>inet</ipprotocol>
3644
                        <tag/>
3645
                        <tagged/>
3646
                        <max/>
3647
                        <max-src-nodes/>
3648
                        <max-src-conn/>
3649
                        <max-src-states/>
3650
                        <statetimeout/>
3651
                        <statetype>keep state</statetype>
3652
                        <os/>
3653
                        <source>
3654
                                <address>TorServerExitIPs</address>
3655
                        </source>
3656
                        <destination>
3657
                                <any/>
3658
                        </destination>
3659
                        <descr><![CDATA[Block Tor-server exit IPs]]></descr>
3660
                        <created>
3661
                                <time>1417922467</time>
3662
                                <username>admin@172.24.16.235</username>
3663
                        </created>
3664
                        <updated>
3665
                                <time>1425880824</time>
3666
                                <username>admin@172.24.16.235</username>
3667
                        </updated>
3668
                </rule>
3669
                <rule>
3670
                        <source>
3671
                                <address>DevServersAndClients</address>
3672
                        </source>
3673
                        <interface>wan</interface>
3674
                        <protocol>tcp</protocol>
3675
                        <destination>
3676
                                <address>DEIdevServer</address>
3677
                                <port>PublicServerPorts</port>
3678
                        </destination>
3679
                        <descr><![CDATA[NAT Pass siteA.com test server traffic]]></descr>
3680
                        <associated-rule-id>nat_4f34ef8f23d3f2.59828398</associated-rule-id>
3681
                        <tracker>1424949641</tracker>
3682
                </rule>
3683
                <rule>
3684
                        <source>
3685
                                <address>DevServersAndClients</address>
3686
                        </source>
3687
                        <interface>wan</interface>
3688
                        <protocol>tcp</protocol>
3689
                        <destination>
3690
                                <address>TAKdevServer</address>
3691
                                <port>PublicServerPorts</port>
3692
                        </destination>
3693
                        <descr><![CDATA[NAT Pass siteB.com test server traffic]]></descr>
3694
                        <associated-rule-id>nat_4f34efdc5ee0d7.11748463</associated-rule-id>
3695
                        <tracker>1424949642</tracker>
3696
                </rule>
3697
                <rule>
3698
                        <source>
3699
                                <address>DevServersAndClients</address>
3700
                        </source>
3701
                        <interface>wan</interface>
3702
                        <protocol>tcp</protocol>
3703
                        <destination>
3704
                                <address>SEdevServer</address>
3705
                                <port>PublicServerPorts</port>
3706
                        </destination>
3707
                        <descr><![CDATA[NAT Pass siteC.com test server traffic]]></descr>
3708
                        <associated-rule-id>nat_4f34efbc3d3a27.03111339</associated-rule-id>
3709
                        <tracker>1424949643</tracker>
3710
                </rule>
3711
                <rule>
3712
                        <id/>
3713
                        <tracker>1424949644</tracker>
3714
                        <type>pass</type>
3715
                        <interface>wan</interface>
3716
                        <ipprotocol>inet</ipprotocol>
3717
                        <tag/>
3718
                        <tagged/>
3719
                        <max/>
3720
                        <max-src-nodes/>
3721
                        <max-src-conn/>
3722
                        <max-src-states/>
3723
                        <statetimeout/>
3724
                        <statetype>keep state</statetype>
3725
                        <os/>
3726
                        <protocol>tcp</protocol>
3727
                        <source>
3728
                                <any/>
3729
                        </source>
3730
                        <destination>
3731
                                <address>DEIvServer</address>
3732
                                <port>PublicServerPorts</port>
3733
                        </destination>
3734
                        <descr><![CDATA[NAT Pass siteA.com public server traffic]]></descr>
3735
                        <associated-rule-id>nat_549565338d1bb8.05530663</associated-rule-id>
3736
                        <created>
3737
                                <time>1419076915</time>
3738
                                <username>NAT Port Forward</username>
3739
                        </created>
3740
                        <updated>
3741
                                <time>1425087230</time>
3742
                                <username>admin@172.24.16.235</username>
3743
                        </updated>
3744
                </rule>
3745
                <rule>
3746
                        <source>
3747
                                <any/>
3748
                        </source>
3749
                        <interface>wan</interface>
3750
                        <protocol>tcp</protocol>
3751
                        <destination>
3752
                                <address>TAKvServer</address>
3753
                                <port>PublicServerPorts</port>
3754
                        </destination>
3755
                        <descr><![CDATA[NAT Pass siteB.com public server traffic]]></descr>
3756
                        <associated-rule-id>nat_5496bf6b6806d0.74246506</associated-rule-id>
3757
                        <created>
3758
                                <time>1419165547</time>
3759
                                <username>NAT Port Forward</username>
3760
                        </created>
3761
                        <tracker>1424949645</tracker>
3762
                </rule>
3763
                <rule>
3764
                        <source>
3765
                                <any/>
3766
                        </source>
3767
                        <interface>wan</interface>
3768
                        <protocol>tcp</protocol>
3769
                        <destination>
3770
                                <address>SEvServer</address>
3771
                                <port>PublicServerPorts</port>
3772
                        </destination>
3773
                        <descr><![CDATA[NAT Pass siteC.com public server traffic]]></descr>
3774
                        <associated-rule-id>nat_5496bf4d23c6b1.56363454</associated-rule-id>
3775
                        <created>
3776
                                <time>1419165517</time>
3777
                                <username>NAT Port Forward</username>
3778
                        </created>
3779
                        <tracker>1424949646</tracker>
3780
                </rule>
3781
                <rule>
3782
                        <source>
3783
                                <any/>
3784
                        </source>
3785
                        <interface>wan</interface>
3786
                        <protocol>tcp</protocol>
3787
                        <destination>
3788
                                <address>DEIvServer</address>
3789
                                <port>21</port>
3790
                        </destination>
3791
                        <descr><![CDATA[NAT Pass siteA.com FTP traffic]]></descr>
3792
                        <associated-rule-id>nat_4f34ec0b306bb1.09804029</associated-rule-id>
3793
                        <disabled/>
3794
                        <tracker>1424949647</tracker>
3795
                </rule>
3796
                <rule>
3797
                        <source>
3798
                                <any/>
3799
                        </source>
3800
                        <interface>wan</interface>
3801
                        <protocol>tcp</protocol>
3802
                        <destination>
3803
                                <address>DEIvServer</address>
3804
                                <port>5400-5416</port>
3805
                        </destination>
3806
                        <descr><![CDATA[NAT Pass siteA.com FTP traffic]]></descr>
3807
                        <associated-rule-id>nat_4f34ec66a20d96.02288737</associated-rule-id>
3808
                        <disabled/>
3809
                        <tracker>1424949648</tracker>
3810
                </rule>
3811
                <rule>
3812
                        <source>
3813
                                <any/>
3814
                        </source>
3815
                        <interface>wan</interface>
3816
                        <protocol>tcp/udp</protocol>
3817
                        <destination>
3818
                                <address>VoIProuter</address>
3819
                                <port>2427</port>
3820
                        </destination>
3821
                        <descr><![CDATA[NAT Pass VoIP (MGCP port for gateways)]]></descr>
3822
                        <associated-rule-id>nat_4f34f155ba0fc8.73668051</associated-rule-id>
3823
                        <disabled/>
3824
                        <tracker>1424949649</tracker>
3825
                </rule>
3826
                <rule>
3827
                        <source>
3828
                                <any/>
3829
                        </source>
3830
                        <interface>wan</interface>
3831
                        <protocol>tcp/udp</protocol>
3832
                        <destination>
3833
                                <address>VoIProuter</address>
3834
                                <port>2727</port>
3835
                        </destination>
3836
                        <descr><![CDATA[NAT Pass VoIP (MGCP port for call agents)]]></descr>
3837
                        <associated-rule-id>nat_4f34f195ec63a4.01374927</associated-rule-id>
3838
                        <disabled/>
3839
                        <tracker>1424949650</tracker>
3840
                </rule>
3841
                <rule>
3842
                        <source>
3843
                                <any/>
3844
                        </source>
3845
                        <interface>wan</interface>
3846
                        <protocol>tcp/udp</protocol>
3847
                        <destination>
3848
                                <address>VoIProuter</address>
3849
                                <port>5062</port>
3850
                        </destination>
3851
                        <descr><![CDATA[NAT Pass VoIP (control)]]></descr>
3852
                        <associated-rule-id>nat_4f34f1c6f2eeb5.63147915</associated-rule-id>
3853
                        <disabled/>
3854
                        <tracker>1424949651</tracker>
3855
                </rule>
3856
                <rule>
3857
                        <source>
3858
                                <any/>
3859
                        </source>
3860
                        <interface>wan</interface>
3861
                        <protocol>udp</protocol>
3862
                        <destination>
3863
                                <address>VoIProuter</address>
3864
                                <port>16384-32767</port>
3865
                        </destination>
3866
                        <descr><![CDATA[NAT Pass VoIP (data)]]></descr>
3867
                        <associated-rule-id>nat_4f34f1f9a6f7c6.60710030</associated-rule-id>
3868
                        <disabled/>
3869
                        <tracker>1424949652</tracker>
3870
                </rule>
3871
                <rule>
3872
                        <source>
3873
                                <any/>
3874
                        </source>
3875
                        <interface>wan</interface>
3876
                        <protocol>tcp</protocol>
3877
                        <destination>
3878
                                <address>BEDiMac</address>
3879
                                <port>5900-5909</port>
3880
                        </destination>
3881
                        <descr><![CDATA[NAT Pass traffic to VNC server]]></descr>
3882
                        <associated-rule-id>nat_4f34f259975314.00748715</associated-rule-id>
3883
                        <disabled/>
3884
                        <tracker>1424949653</tracker>
3885
                </rule>
3886
                <rule>
3887
                        <id/>
3888
                        <type>pass</type>
3889
                        <interface>wan</interface>
3890
                        <ipprotocol>inet</ipprotocol>
3891
                        <tag/>
3892
                        <tagged/>
3893
                        <max/>
3894
                        <max-src-nodes/>
3895
                        <max-src-conn/>
3896
                        <max-src-states/>
3897
                        <statetimeout/>
3898
                        <statetype>keep state</statetype>
3899
                        <os/>
3900
                        <protocol>udp</protocol>
3901
                        <source>
3902
                                <address>SPDsWAN</address>
3903
                        </source>
3904
                        <destination>
3905
                                <address>WAN1_DEI</address>
3906
                                <port>500</port>
3907
                        </destination>
3908
                        <descr><![CDATA[Allow office-to-office IPSec VPN access]]></descr>
3909
                        <updated>
3910
                                <time>1424339928</time>
3911
                                <username>admin@172.24.16.235</username>
3912
                        </updated>
3913
                        <tracker>1424949654</tracker>
3914
                </rule>
3915
                <rule>
3916
                        <id/>
3917
                        <type>pass</type>
3918
                        <interface>wan</interface>
3919
                        <ipprotocol>inet</ipprotocol>
3920
                        <tag/>
3921
                        <tagged/>
3922
                        <max/>
3923
                        <max-src-nodes/>
3924
                        <max-src-conn/>
3925
                        <max-src-states/>
3926
                        <statetimeout/>
3927
                        <statetype>keep state</statetype>
3928
                        <os/>
3929
                        <protocol>udp</protocol>
3930
                        <source>
3931
                                <any/>
3932
                        </source>
3933
                        <destination>
3934
                                <address>MobileVPNwan</address>
3935
                                <port>500</port>
3936
                        </destination>
3937
                        <descr><![CDATA[Allow mobile IPSec VPN access]]></descr>
3938
                        <created>
3939
                                <time>1391769679</time>
3940
                                <username>admin@172.24.16.234</username>
3941
                        </created>
3942
                        <updated>
3943
                                <time>1419242887</time>
3944
                                <username>admin@172.24.16.235</username>
3945
                        </updated>
3946
                        <tracker>1424949655</tracker>
3947
                </rule>
3948
                <rule>
3949
                        <id/>
3950
                        <type>pass</type>
3951
                        <interface>wan</interface>
3952
                        <ipprotocol>inet</ipprotocol>
3953
                        <tag/>
3954
                        <tagged/>
3955
                        <max/>
3956
                        <max-src-nodes/>
3957
                        <max-src-conn/>
3958
                        <max-src-states/>
3959
                        <statetimeout/>
3960
                        <statetype>keep state</statetype>
3961
                        <os/>
3962
                        <protocol>udp</protocol>
3963
                        <source>
3964
                                <any/>
3965
                        </source>
3966
                        <destination>
3967
                                <address>MobileVPNwan</address>
3968
                                <port>4500</port>
3969
                        </destination>
3970
                        <descr><![CDATA[Allow mobile IPSec VPN access]]></descr>
3971
                        <updated>
3972
                                <time>1419242907</time>
3973
                                <username>admin@172.24.16.235</username>
3974
                        </updated>
3975
                        <tracker>1424949656</tracker>
3976
                </rule>
3977
                <rule>
3978
                        <id/>
3979
                        <type>pass</type>
3980
                        <interface>wan</interface>
3981
                        <ipprotocol>inet</ipprotocol>
3982
                        <tag/>
3983
                        <tagged/>
3984
                        <max/>
3985
                        <max-src-nodes/>
3986
                        <max-src-conn/>
3987
                        <max-src-states/>
3988
                        <statetimeout/>
3989
                        <statetype>keep state</statetype>
3990
                        <os/>
3991
                        <protocol>udp</protocol>
3992
                        <source>
3993
                                <any/>
3994
                        </source>
3995
                        <destination>
3996
                                <address>MobileVPNwan</address>
3997
                                <port>OpenVPNudpPorts</port>
3998
                        </destination>
3999
                        <descr><![CDATA[Allow OpenVPN access via various UDP ports]]></descr>
4000
                        <created>
4001
                                <time>1389685227</time>
4002
                                <username>OpenVPN Wizard</username>
4003
                        </created>
4004
                        <updated>
4005
                                <time>1419248849</time>
4006
                                <username>admin@172.24.16.235</username>
4007
                        </updated>
4008
                        <tracker>1424949657</tracker>
4009
                </rule>
4010
                <rule>
4011
                        <id/>
4012
                        <type>pass</type>
4013
                        <interface>wan</interface>
4014
                        <ipprotocol>inet</ipprotocol>
4015
                        <tag/>
4016
                        <tagged/>
4017
                        <max/>
4018
                        <max-src-nodes/>
4019
                        <max-src-conn/>
4020
                        <max-src-states/>
4021
                        <statetimeout/>
4022
                        <statetype>keep state</statetype>
4023
                        <os/>
4024
                        <protocol>tcp</protocol>
4025
                        <source>
4026
                                <any/>
4027
                        </source>
4028
                        <destination>
4029
                                <address>MobileVPNwan</address>
4030
                                <port>OpenVPNtcpPort</port>
4031
                        </destination>
4032
                        <descr><![CDATA[Allow OpenVPN access via TCP port]]></descr>
4033
                        <created>
4034
                                <time>1391499097</time>
4035
                                <username>admin@172.24.16.234</username>
4036
                        </created>
4037
                        <updated>
4038
                                <time>1419242940</time>
4039
                                <username>admin@172.24.16.235</username>
4040
                        </updated>
4041
                        <tracker>1424949658</tracker>
4042
                </rule>
4043
                <rule>
4044
                        <id/>
4045
                        <type>block</type>
4046
                        <interface>wan</interface>
4047
                        <ipprotocol>inet</ipprotocol>
4048
                        <tag/>
4049
                        <tagged/>
4050
                        <max/>
4051
                        <max-src-nodes/>
4052
                        <max-src-conn/>
4053
                        <max-src-states/>
4054
                        <statetimeout/>
4055
                        <statetype>keep state</statetype>
4056
                        <os/>
4057
                        <protocol>tcp/udp</protocol>
4058
                        <source>
4059
                                <address>P2Phostiles1</address>
4060
                        </source>
4061
                        <destination>
4062
                                <address>BEDiMac</address>
4063
                                <port>P2Pports</port>
4064
                        </destination>
4065
                        <descr><![CDATA[Block IPs hostile towards peer-to-peer]]></descr>
4066
                        <created>
4067
                                <time>1385284106</time>
4068
                                <username>admin@172.24.16.234</username>
4069
                        </created>
4070
                        <updated>
4071
                                <time>1390783072</time>
4072
                                <username>admin@172.24.16.234</username>
4073
                        </updated>
4074
                        <tracker>1424949659</tracker>
4075
                </rule>
4076
                <rule>
4077
                        <id/>
4078
                        <type>block</type>
4079
                        <interface>wan</interface>
4080
                        <ipprotocol>inet</ipprotocol>
4081
                        <tag/>
4082
                        <tagged/>
4083
                        <max/>
4084
                        <max-src-nodes/>
4085
                        <max-src-conn/>
4086
                        <max-src-states/>
4087
                        <statetimeout/>
4088
                        <statetype>keep state</statetype>
4089
                        <os/>
4090
                        <protocol>tcp/udp</protocol>
4091
                        <source>
4092
                                <address>P2Phostiles2</address>
4093
                        </source>
4094
                        <destination>
4095
                                <address>BEDiMac</address>
4096
                                <port>P2Pports</port>
4097
                        </destination>
4098
                        <descr><![CDATA[Block IPs hostile towards peer-to-peer]]></descr>
4099
                        <created>
4100
                                <time>1385285327</time>
4101
                                <username>admin@172.24.16.234</username>
4102
                        </created>
4103
                        <updated>
4104
                                <time>1388989281</time>
4105
                                <username>admin@172.24.16.234</username>
4106
                        </updated>
4107
                        <tracker>1424949660</tracker>
4108
                </rule>
4109
                <rule>
4110
                        <id/>
4111
                        <type>block</type>
4112
                        <interface>wan</interface>
4113
                        <ipprotocol>inet</ipprotocol>
4114
                        <tag/>
4115
                        <tagged/>
4116
                        <max/>
4117
                        <max-src-nodes/>
4118
                        <max-src-conn/>
4119
                        <max-src-states/>
4120
                        <statetimeout/>
4121
                        <statetype>keep state</statetype>
4122
                        <os/>
4123
                        <protocol>tcp/udp</protocol>
4124
                        <source>
4125
                                <address>P2Phostiles3</address>
4126
                        </source>
4127
                        <destination>
4128
                                <address>BEDiMac</address>
4129
                                <port>P2Pports</port>
4130
                        </destination>
4131
                        <descr><![CDATA[Block IPs hostile towards peer-to-peer]]></descr>
4132
                        <created>
4133
                                <time>1385285342</time>
4134
                                <username>admin@172.24.16.234</username>
4135
                        </created>
4136
                        <updated>
4137
                                <time>1388989275</time>
4138
                                <username>admin@172.24.16.234</username>
4139
                        </updated>
4140
                        <tracker>1424949661</tracker>
4141
                </rule>
4142
                <rule>
4143
                        <id/>
4144
                        <type>block</type>
4145
                        <interface>wan</interface>
4146
                        <ipprotocol>inet</ipprotocol>
4147
                        <tag/>
4148
                        <tagged/>
4149
                        <max/>
4150
                        <max-src-nodes/>
4151
                        <max-src-conn/>
4152
                        <max-src-states/>
4153
                        <statetimeout/>
4154
                        <statetype>keep state</statetype>
4155
                        <os/>
4156
                        <protocol>tcp/udp</protocol>
4157
                        <source>
4158
                                <address>P2Phostiles4</address>
4159
                        </source>
4160
                        <destination>
4161
                                <address>BEDiMac</address>
4162
                                <port>P2Pports</port>
4163
                        </destination>
4164
                        <descr><![CDATA[Block IPs hostile towards peer-to-peer]]></descr>
4165
                        <created>
4166
                                <time>1385285359</time>
4167
                                <username>admin@172.24.16.234</username>
4168
                        </created>
4169
                        <updated>
4170
                                <time>1388989267</time>
4171
                                <username>admin@172.24.16.234</username>
4172
                        </updated>
4173
                        <tracker>1424949662</tracker>
4174
                </rule>
4175
                <rule>
4176
                        <id/>
4177
                        <type>block</type>
4178
                        <interface>wan</interface>
4179
                        <ipprotocol>inet</ipprotocol>
4180
                        <tag/>
4181
                        <tagged/>
4182
                        <max/>
4183
                        <max-src-nodes/>
4184
                        <max-src-conn/>
4185
                        <max-src-states/>
4186
                        <statetimeout/>
4187
                        <statetype>keep state</statetype>
4188
                        <os/>
4189
                        <protocol>tcp/udp</protocol>
4190
                        <source>
4191
                                <address>P2Phostiles5</address>
4192
                        </source>
4193
                        <destination>
4194
                                <address>BEDiMac</address>
4195
                                <port>P2Pports</port>
4196
                        </destination>
4197
                        <descr><![CDATA[Block IPs hostile towards peer-to-peer]]></descr>
4198
                        <created>
4199
                                <time>1387158770</time>
4200
                                <username>admin@172.24.16.234</username>
4201
                        </created>
4202
                        <updated>
4203
                                <time>1388989258</time>
4204
                                <username>admin@172.24.16.234</username>
4205
                        </updated>
4206
                        <tracker>1424949663</tracker>
4207
                </rule>
4208
                <rule>
4209
                        <id/>
4210
                        <type>block</type>
4211
                        <interface>wan</interface>
4212
                        <ipprotocol>inet</ipprotocol>