Project

General

Profile

Bug #4607 ยป config-pfs22-bridgetest1.dev.pfmechanics.com-20150515145530.xml

Chris Buechler, 05/15/2015 02:56 PM

 
1
<?xml version="1.0"?>
2
<pfsense>
3
	<version>11.7</version>
4
	<lastchange/>
5
	<theme>pfsense_ng</theme>
6
	<sysctl>
7
		<item>
8
			<descr><![CDATA[Disable the pf ftp proxy handler.]]></descr>
9
			<tunable>debug.pfftpproxy</tunable>
10
			<value>default</value>
11
		</item>
12
		<item>
13
			<descr><![CDATA[Increase UFS read-ahead speeds to match current state of hard drives and NCQ. More information here: http://ivoras.sharanet.org/blog/tree/2010-11-19.ufs-read-ahead.html]]></descr>
14
			<tunable>vfs.read_max</tunable>
15
			<value>default</value>
16
		</item>
17
		<item>
18
			<descr><![CDATA[Set the ephemeral port range to be lower.]]></descr>
19
			<tunable>net.inet.ip.portrange.first</tunable>
20
			<value>default</value>
21
		</item>
22
		<item>
23
			<descr><![CDATA[Drop packets to closed TCP ports without returning a RST]]></descr>
24
			<tunable>net.inet.tcp.blackhole</tunable>
25
			<value>default</value>
26
		</item>
27
		<item>
28
			<descr><![CDATA[Do not send ICMP port unreachable messages for closed UDP ports]]></descr>
29
			<tunable>net.inet.udp.blackhole</tunable>
30
			<value>default</value>
31
		</item>
32
		<item>
33
			<descr><![CDATA[Randomize the ID field in IP packets (default is 0: sequential IP IDs)]]></descr>
34
			<tunable>net.inet.ip.random_id</tunable>
35
			<value>default</value>
36
		</item>
37
		<item>
38
			<descr><![CDATA[Drop SYN-FIN packets (breaks RFC1379, but nobody uses it anyway)]]></descr>
39
			<tunable>net.inet.tcp.drop_synfin</tunable>
40
			<value>default</value>
41
		</item>
42
		<item>
43
			<descr><![CDATA[Enable sending IPv4 redirects]]></descr>
44
			<tunable>net.inet.ip.redirect</tunable>
45
			<value>default</value>
46
		</item>
47
		<item>
48
			<descr><![CDATA[Enable sending IPv6 redirects]]></descr>
49
			<tunable>net.inet6.ip6.redirect</tunable>
50
			<value>default</value>
51
		</item>
52
		<item>
53
			<descr><![CDATA[Enable privacy settings for IPv6 (RFC 4941)]]></descr>
54
			<tunable>net.inet6.ip6.use_tempaddr</tunable>
55
			<value>default</value>
56
		</item>
57
		<item>
58
			<descr><![CDATA[Prefer privacy addresses and use them over the normal addresses]]></descr>
59
			<tunable>net.inet6.ip6.prefer_tempaddr</tunable>
60
			<value>default</value>
61
		</item>
62
		<item>
63
			<descr><![CDATA[Generate SYN cookies for outbound SYN-ACK packets]]></descr>
64
			<tunable>net.inet.tcp.syncookies</tunable>
65
			<value>default</value>
66
		</item>
67
		<item>
68
			<descr><![CDATA[Maximum incoming/outgoing TCP datagram size (receive)]]></descr>
69
			<tunable>net.inet.tcp.recvspace</tunable>
70
			<value>default</value>
71
		</item>
72
		<item>
73
			<descr><![CDATA[Maximum incoming/outgoing TCP datagram size (send)]]></descr>
74
			<tunable>net.inet.tcp.sendspace</tunable>
75
			<value>default</value>
76
		</item>
77
		<item>
78
			<descr><![CDATA[IP Fastforwarding]]></descr>
79
			<tunable>net.inet.ip.fastforwarding</tunable>
80
			<value>default</value>
81
		</item>
82
		<item>
83
			<descr><![CDATA[Do not delay ACK to try and piggyback it onto a data packet]]></descr>
84
			<tunable>net.inet.tcp.delayed_ack</tunable>
85
			<value>default</value>
86
		</item>
87
		<item>
88
			<descr><![CDATA[Maximum outgoing UDP datagram size]]></descr>
89
			<tunable>net.inet.udp.maxdgram</tunable>
90
			<value>default</value>
91
		</item>
92
		<item>
93
			<descr><![CDATA[Handling of non-IP packets which are not passed to pfil (see if_bridge(4))]]></descr>
94
			<tunable>net.link.bridge.pfil_onlyip</tunable>
95
			<value>default</value>
96
		</item>
97
		<item>
98
			<descr><![CDATA[Set to 0 to disable filtering on the incoming and outgoing member interfaces.]]></descr>
99
			<tunable>net.link.bridge.pfil_member</tunable>
100
			<value>default</value>
101
		</item>
102
		<item>
103
			<descr><![CDATA[Set to 1 to enable filtering on the bridge interface]]></descr>
104
			<tunable>net.link.bridge.pfil_bridge</tunable>
105
			<value>default</value>
106
		</item>
107
		<item>
108
			<descr><![CDATA[Allow unprivileged access to tap(4) device nodes]]></descr>
109
			<tunable>net.link.tap.user_open</tunable>
110
			<value>default</value>
111
		</item>
112
		<item>
113
			<descr><![CDATA[Randomize PID's (see src/sys/kern/kern_fork.c: sysctl_kern_randompid())]]></descr>
114
			<tunable>kern.randompid</tunable>
115
			<value>default</value>
116
		</item>
117
		<item>
118
			<descr><![CDATA[Maximum size of the IP input queue]]></descr>
119
			<tunable>net.inet.ip.intr_queue_maxlen</tunable>
120
			<value>default</value>
121
		</item>
122
		<item>
123
			<descr><![CDATA[Disable CTRL+ALT+Delete reboot from keyboard.]]></descr>
124
			<tunable>hw.syscons.kbd_reboot</tunable>
125
			<value>default</value>
126
		</item>
127
		<item>
128
			<descr><![CDATA[Enable TCP extended debugging]]></descr>
129
			<tunable>net.inet.tcp.log_debug</tunable>
130
			<value>default</value>
131
		</item>
132
		<item>
133
			<descr><![CDATA[Set ICMP Limits]]></descr>
134
			<tunable>net.inet.icmp.icmplim</tunable>
135
			<value>default</value>
136
		</item>
137
		<item>
138
			<descr><![CDATA[TCP Offload Engine]]></descr>
139
			<tunable>net.inet.tcp.tso</tunable>
140
			<value>default</value>
141
		</item>
142
		<item>
143
			<descr><![CDATA[UDP Checksums]]></descr>
144
			<tunable>net.inet.udp.checksum</tunable>
145
			<value>default</value>
146
		</item>
147
		<item>
148
			<descr><![CDATA[Maximum socket buffer size]]></descr>
149
			<tunable>kern.ipc.maxsockbuf</tunable>
150
			<value>default</value>
151
		</item>
152
	</sysctl>
153
	<system>
154
		<optimization>normal</optimization>
155
		<hostname>pfs22-bridgetest1</hostname>
156
		<domain>dev.pfmechanics.com</domain>
157
		<group>
158
			<name>all</name>
159
			<description><![CDATA[All Users]]></description>
160
			<scope>system</scope>
161
			<gid>1998</gid>
162
			<member>0</member>
163
		</group>
164
		<group>
165
			<name>admins</name>
166
			<description><![CDATA[System Administrators]]></description>
167
			<scope>system</scope>
168
			<gid>1999</gid>
169
			<member>0</member>
170
			<priv>page-all</priv>
171
		</group>
172
		<user>
173
			<name>admin</name>
174
			<descr><![CDATA[System Administrator]]></descr>
175
			<scope>system</scope>
176
			<groupname>admins</groupname>
177
			<password>$1$dSJImFph$GvZ7.1UbuWu.Yb8etC0re.</password>
178
			<uid>0</uid>
179
			<priv>user-shell-access</priv>
180
		</user>
181
		<nextuid>2000</nextuid>
182
		<nextgid>2000</nextgid>
183
		<timezone>CST6CDT</timezone>
184
		<time-update-interval/>
185
		<timeservers>0.pfsense.pool.ntp.org</timeservers>
186
		<webgui>
187
			<protocol>https</protocol>
188
			<loginautocomplete/>
189
			<ssl-certref>545c7a3a2504e</ssl-certref>
190
		</webgui>
191
		<disablenatreflection>yes</disablenatreflection>
192
		<disablesegmentationoffloading/>
193
		<disablelargereceiveoffloading/>
194
		<ipv6allow/>
195
		<powerd_ac_mode>hadp</powerd_ac_mode>
196
		<powerd_battery_mode>hadp</powerd_battery_mode>
197
		<powerd_normal_mode>hadp</powerd_normal_mode>
198
		<bogons>
199
			<interval>monthly</interval>
200
		</bogons>
201
		<kill_states/>
202
		<enablesshd/>
203
		<firmware>
204
			<allowinvalidsig/>
205
		</firmware>
206
		<gitsync>
207
			<repositoryurl/>
208
			<branch/>
209
		</gitsync>
210
		<language>en_US</language>
211
		<dns1gw>none</dns1gw>
212
		<dns2gw>none</dns2gw>
213
		<dns3gw>none</dns3gw>
214
		<dns4gw>none</dns4gw>
215
		<dnsserver>172.27.44.1</dnsserver>
216
		<dnsserver>172.27.32.5</dnsserver>
217
		<dnsallowoverride/>
218
	</system>
219
	<interfaces>
220
		<wan>
221
			<enable/>
222
			<if>vmx0</if>
223
			<blockbogons/>
224
			<descr><![CDATA[WAN]]></descr>
225
			<ipaddr>172.27.44.55</ipaddr>
226
			<subnet>24</subnet>
227
			<gateway>WANGW</gateway>
228
			<spoofmac/>
229
		</wan>
230
		<lan>
231
			<enable/>
232
			<if>vmx1</if>
233
			<descr><![CDATA[LAN]]></descr>
234
			<spoofmac/>
235
		</lan>
236
		<opt1>
237
			<if>vmx2</if>
238
			<descr><![CDATA[LAN2]]></descr>
239
			<enable/>
240
			<spoofmac/>
241
		</opt1>
242
		<opt2>
243
			<if>vmx3</if>
244
			<descr><![CDATA[LAN3]]></descr>
245
			<enable/>
246
			<spoofmac/>
247
		</opt2>
248
		<opt3>
249
			<descr><![CDATA[bridge0]]></descr>
250
			<if>bridge0</if>
251
			<enable/>
252
			<ipaddr>192.168.165.1</ipaddr>
253
			<subnet>24</subnet>
254
			<spoofmac/>
255
		</opt3>
256
	</interfaces>
257
	<staticroutes/>
258
	<dhcpd>
259
		<opt3>
260
			<range>
261
				<from>192.168.165.100</from>
262
				<to>192.168.165.199</to>
263
			</range>
264
			<enable/>
265
			<failover_peerip/>
266
			<defaultleasetime/>
267
			<maxleasetime/>
268
			<netmask></netmask>
269
			<gateway>192.168.165.254</gateway>
270
			<domain/>
271
			<domainsearchlist/>
272
			<ddnsdomain/>
273
			<ddnsdomainprimary/>
274
			<ddnsdomainkeyname/>
275
			<ddnsdomainkey/>
276
			<mac_allow/>
277
			<mac_deny/>
278
			<tftp/>
279
			<ldap/>
280
			<nextserver/>
281
			<filename/>
282
			<filename32/>
283
			<filename64/>
284
			<rootpath/>
285
			<numberoptions/>
286
			<dhcpleaseinlocaltime></dhcpleaseinlocaltime>
287
			<dnsserver>192.168.165.254</dnsserver>
288
		</opt3>
289
	</dhcpd>
290
	<pptpd>
291
		<mode/>
292
		<redir/>
293
		<localip/>
294
		<remoteip/>
295
	</pptpd>
296
	<dnsmasq>
297
		<enable/>
298
	</dnsmasq>
299
	<snmpd>
300
		<syslocation/>
301
		<syscontact/>
302
		<rocommunity>public</rocommunity>
303
	</snmpd>
304
	<diag>
305
		<ipv6nat>
306
			<ipaddr/>
307
		</ipv6nat>
308
	</diag>
309
	<bridge/>
310
	<syslog/>
311
	<nat>
312
		<outbound>
313
			<mode>automatic</mode>
314
		</outbound>
315
	</nat>
316
	<filter>
317
		<rule>
318
			<type>pass</type>
319
			<interface>wan</interface>
320
			<source>
321
				<any/>
322
			</source>
323
			<destination>
324
				<any/>
325
			</destination>
326
			<statetype>keep state</statetype>
327
			<os/>
328
			<descr><![CDATA[Allow all ipv4 via pfSsh.php]]></descr>
329
		</rule>
330
		<rule>
331
			<type>pass</type>
332
			<ipprotocol>inet6</ipprotocol>
333
			<interface>wan</interface>
334
			<source>
335
				<any/>
336
			</source>
337
			<destination>
338
				<any/>
339
			</destination>
340
			<statetype>keep state</statetype>
341
			<os/>
342
			<descr><![CDATA[Allow all ipv6 via pfSsh.php]]></descr>
343
		</rule>
344
		<rule>
345
			<id/>
346
			<tracker>0100000102</tracker>
347
			<type>pass</type>
348
			<interface>LANs</interface>
349
			<ipprotocol>inet6</ipprotocol>
350
			<tag/>
351
			<tagged/>
352
			<max/>
353
			<max-src-nodes/>
354
			<max-src-conn/>
355
			<max-src-states/>
356
			<statetimeout/>
357
			<statetype>keep state</statetype>
358
			<os/>
359
			<source>
360
				<network>lan</network>
361
			</source>
362
			<destination>
363
				<any/>
364
			</destination>
365
			<descr><![CDATA[Default allow LAN IPv6 to any rule]]></descr>
366
			<updated>
367
				<time>1416807153</time>
368
				<username>admin@10.0.64.20</username>
369
			</updated>
370
		</rule>
371
		<rule>
372
			<id/>
373
			<tracker>0100000101</tracker>
374
			<type>pass</type>
375
			<interface>LANs</interface>
376
			<ipprotocol>inet</ipprotocol>
377
			<tag/>
378
			<tagged/>
379
			<max/>
380
			<max-src-nodes/>
381
			<max-src-conn/>
382
			<max-src-states/>
383
			<statetimeout/>
384
			<statetype>keep state</statetype>
385
			<os/>
386
			<source>
387
				<network>lan</network>
388
			</source>
389
			<destination>
390
				<any/>
391
			</destination>
392
			<descr><![CDATA[Default allow LAN to any rule]]></descr>
393
			<updated>
394
				<time>1416807144</time>
395
				<username>admin@10.0.64.20</username>
396
			</updated>
397
		</rule>
398
		<rule>
399
			<id/>
400
			<tracker>1416807180</tracker>
401
			<type>pass</type>
402
			<interface>opt3</interface>
403
			<ipprotocol>inet</ipprotocol>
404
			<tag/>
405
			<tagged/>
406
			<max/>
407
			<max-src-nodes/>
408
			<max-src-conn/>
409
			<max-src-states/>
410
			<statetimeout/>
411
			<statetype>keep state</statetype>
412
			<os/>
413
			<source>
414
				<any/>
415
			</source>
416
			<destination>
417
				<any/>
418
			</destination>
419
			<descr/>
420
			<updated>
421
				<time>1416807180</time>
422
				<username>admin@10.0.64.20</username>
423
			</updated>
424
			<created>
425
				<time>1416807180</time>
426
				<username>admin@10.0.64.20</username>
427
			</created>
428
		</rule>
429
		<rule>
430
			<id/>
431
			<tracker>1416807188</tracker>
432
			<type>pass</type>
433
			<interface>opt3</interface>
434
			<ipprotocol>inet6</ipprotocol>
435
			<tag/>
436
			<tagged/>
437
			<max/>
438
			<max-src-nodes/>
439
			<max-src-conn/>
440
			<max-src-states/>
441
			<statetimeout/>
442
			<statetype>keep state</statetype>
443
			<os/>
444
			<source>
445
				<any/>
446
			</source>
447
			<destination>
448
				<any/>
449
			</destination>
450
			<descr/>
451
			<updated>
452
				<time>1416807188</time>
453
				<username>admin@10.0.64.20</username>
454
			</updated>
455
			<created>
456
				<time>1416807188</time>
457
				<username>admin@10.0.64.20</username>
458
			</created>
459
		</rule>
460
	</filter>
461
	<shaper/>
462
	<ipsec/>
463
	<aliases/>
464
	<proxyarp/>
465
	<cron>
466
		<item>
467
			<minute>1,31</minute>
468
			<hour>0-5</hour>
469
			<mday>*</mday>
470
			<month>*</month>
471
			<wday>*</wday>
472
			<who>root</who>
473
			<command>/usr/bin/nice -n20 adjkerntz -a</command>
474
		</item>
475
		<item>
476
			<minute>1</minute>
477
			<hour>3</hour>
478
			<mday>1</mday>
479
			<month>*</month>
480
			<wday>*</wday>
481
			<who>root</who>
482
			<command>/usr/bin/nice -n20 /etc/rc.update_bogons.sh</command>
483
		</item>
484
		<item>
485
			<minute>*/60</minute>
486
			<hour>*</hour>
487
			<mday>*</mday>
488
			<month>*</month>
489
			<wday>*</wday>
490
			<who>root</who>
491
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 sshlockout</command>
492
		</item>
493
		<item>
494
			<minute>1</minute>
495
			<hour>1</hour>
496
			<mday>*</mday>
497
			<month>*</month>
498
			<wday>*</wday>
499
			<who>root</who>
500
			<command>/usr/bin/nice -n20 /etc/rc.dyndns.update</command>
501
		</item>
502
		<item>
503
			<minute>*/60</minute>
504
			<hour>*</hour>
505
			<mday>*</mday>
506
			<month>*</month>
507
			<wday>*</wday>
508
			<who>root</who>
509
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 virusprot</command>
510
		</item>
511
		<item>
512
			<minute>30</minute>
513
			<hour>12</hour>
514
			<mday>*</mday>
515
			<month>*</month>
516
			<wday>*</wday>
517
			<who>root</who>
518
			<command>/usr/bin/nice -n20 /etc/rc.update_urltables</command>
519
		</item>
520
		<item>
521
			<minute>*/60</minute>
522
			<hour>*</hour>
523
			<mday>*</mday>
524
			<month>*</month>
525
			<wday>*</wday>
526
			<who>root</who>
527
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 webConfiguratorlockout</command>
528
		</item>
529
	</cron>
530
	<wol/>
531
	<rrd>
532
		<enable/>
533
	</rrd>
534
	<load_balancer>
535
		<monitor_type>
536
			<name>ICMP</name>
537
			<type>icmp</type>
538
			<descr><![CDATA[ICMP]]></descr>
539
			<options/>
540
		</monitor_type>
541
		<monitor_type>
542
			<name>TCP</name>
543
			<type>tcp</type>
544
			<descr><![CDATA[Generic TCP]]></descr>
545
			<options/>
546
		</monitor_type>
547
		<monitor_type>
548
			<name>HTTP</name>
549
			<type>http</type>
550
			<descr><![CDATA[Generic HTTP]]></descr>
551
			<options>
552
				<path>/</path>
553
				<host/>
554
				<code>200</code>
555
			</options>
556
		</monitor_type>
557
		<monitor_type>
558
			<name>HTTPS</name>
559
			<type>https</type>
560
			<descr><![CDATA[Generic HTTPS]]></descr>
561
			<options>
562
				<path>/</path>
563
				<host/>
564
				<code>200</code>
565
			</options>
566
		</monitor_type>
567
		<monitor_type>
568
			<name>SMTP</name>
569
			<type>send</type>
570
			<descr><![CDATA[Generic SMTP]]></descr>
571
			<options>
572
				<send/>
573
				<expect>220 *</expect>
574
			</options>
575
		</monitor_type>
576
	</load_balancer>
577
	<widgets>
578
		<sequence>system_information-container:col1:show,captive_portal_status-container:col1:close,carp_status-container:col1:close,cpu_graphs-container:col1:close,gateways-container:col1:close,gmirror_status-container:col1:close,installed_packages-container:col1:close,interface_statistics-container:col1:close,interfaces-container:col2:show,ipsec-container:col2:close,load_balancer_status-container:col2:close,log-container:col2:close,picture-container:col2:close,rss-container:col2:close,services_status-container:col2:close,traffic_graphs-container:col2:close</sequence>
579
	</widgets>
580
	<revision>
581
		<time>1431719569</time>
582
		<description><![CDATA[admin@172.27.111.6: /services_dhcp.php made unknown change]]></description>
583
		<username>admin@172.27.111.6</username>
584
	</revision>
585
	<openvpn/>
586
	<dnshaper/>
587
	<cert>
588
		<refid>545c7a3a2504e</refid>
589
		<descr><![CDATA[webConfigurator default (545c7a3a2504e)]]></descr>
590
		<type>server</type>
591
		<crt>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</crt>
592
		<prv>LS0tLS1CRUdJTiBQUklWQVRFIEtFWS0tLS0tCk1JSUV2UUlCQURBTkJna3Foa2lHOXcwQkFRRUZBQVNDQktjd2dnU2pBZ0VBQW9JQkFRREdkZEVJUFc5bU9USzcKVnA4RVM2d0JYekRGR3AyclBWTXVMb1EvVDBycU9rS3hVWWUwaHAwMHBOaE1YWklTelI1K09rdUZPQ2VtRU1JdwpIbDF1eXBlK3VHcm5sbWVMeHkrVUxQNjQzcGZtQ1FSZjVoMkVhZldxWGhMeU5aRzJXWWxkbm5SbDljQ2F5TmkxCjY5c2VjaUxpbVZjSDhZaU5uWFZPQUR2OXl2UXhlT21qM1dNdjdrVVBWb0svNTdkY0hMQ29FbHJ3THpqbmJtZVIKb1lwcnF4Sk43aHUzZEkxQ01ENGh1QjdvVjZUQUVLbFp5RCs2TnFMb0Jwb3hKNTMyY1pUY1VxU0YzTTRkblpzUQp2ZHhaejhaOG5hRFpTeWVmQ3Ayd3VOYnU4K2FzcjJKRlZ6bTdZUXNPOGIzTWhmT2FheEZablRRQjV0TTBqbWZ5CmVRMUxhc2NCQWdNQkFBRUNnZ0VBREpIenpuak5zSVRZOE1LNHliWGRUQ3p5VXRtdnVPUG1lOXRZWndZbnNaUkYKR3lRVjIxcFhaTGs0TmdZTE5ZT21kY3BOZEQrdFN6aHVoRXU0RVVkbHV4L0ZMYXY2SFFGZHd4M2llR1VvNjlvUQpXOTZnYWYyb0lNVmFuOXJDd3ZFQzRWb2k5ejVNbDhFMjhMYmlweGdGbTZLb3Y0a041Q0pnQnJPL0dRRWMzSEUyClpnV2pLVTVLeVlyZStmSmE5aU5tbFJxT05mYlBaYjFvOXVHQXJVRE40T1RzcEs5UFRQMlM5LzBPSGEwUGNWNjEKck5DcmxRZERiTFVVVWdHaDRxV3hpVWhKL3JLRCtzRjQ4UkZOcmtWNG10K1IzRHVLZm9jdG9Sa2dybGtmVEl5SApvMzN2emtVNmpsOFNXdmYzK2FyWEY0OGExMHFhQzFTNm0rQlJCTkRBalFLQmdRRDhtdnFTVGc5M1ZYNm00V2YvCldzWjl6dTZHVGJUNnlyLzkxMllHSm93SnN3Y1g1dlFQT0pSUHRUSEsxOFVQNURlZkQzTi9RS3FQNS9CRFJZTXUKcnZKOGhJZlVOTnU1STJzMTZPT3U5L0VoVjVRZFRrd2RYMlZQUGt5MVJOSy90SG9oYWtTS2dPeDRrMFBreUJ0VAp5UlFDekJ2eEc5K2FkYml6OGFYUzlIMncyd0tCZ1FESklKRFh1enhhcUFxRmFwalRMQTJRL1hUSlVSRy9od1A0ClcwcG9LYVhIVUNzUlNIVG1Id1JZS0JGRXlXUnhqbEVjMGp3UEFHN2dIM0o1d29LVllCRmVsclZWdHF0d2l4a1IKRUVkS1ZTZnJQbzc4L0xISU1aclFBS2NhZXpXV1hvaEFpOG9FUXRjeVBPdUpWYTRZeDF4UVZRQlhxRlE2cVZORgpVNWZuOEJKUVV3S0JnRFJhcnBwS0lYeDdOTC9Ec2ZsRHlDWGxFSnkzV0U0dVhYSndCVTQ3Q1FVdG5NZkFiMDhFClRBRGxMZ2U3aHJWUGVKTzM4UmtydnU0S2hVcDhDcjlQTlNUSGx4dE5SVWp1NVZhTUNUeUhXT3V2S2h5VTBNTzUKdE5haXMrVlIrVmdRUU12U0taaUhOZnVia2hQRndad3c3YnZTcit2ZCtnOGFYUWkyaWNiYU0zN0hBb0dBZjhWaQpmc3FCNHczUjhVUHc1bWFjRDdvVWtUZ2hVRTFUcGxsSWdiZkRpMFZRdHVBUzg0Wk0yanhLRENyczFuOFU1SHhpCmp4MDFVc2huanhhVW9wU3ZOQ29GOVBmaEhkUWdEb2tLNFJ3TUNoUnAvaW9DUHkzVUxjUGNaS1JWUEx1OVQxUCsKK0lvRjcvSm5wNDE0MW1FQU1rQnR3VUk4a0MrMXFOc2NLOHFGdCtVQ2dZRUFpcEJMUlBPeGhNb2ZXZmJIa2RrawpkTURzcExkM1hkQmx3MzZLcGJMTFRBU1E5eXN2RFRTazlGRFVDOFpqaFdSSWFJWFI1ejF4dk1xcEtDcG1CL1ozCkNuTGUrWXA2T3J4cHBWeVg2YjZMSnNGem5rbkF6TDNEZUV5VGFiTTNiTCtaQ2svNXNqN25SNzMyNk1GQkdxOG8KNTd6Z05zVE1lMTZCOFlCTHloSk9pSjQ9Ci0tLS0tRU5EIFBSSVZBVEUgS0VZLS0tLS0K</prv>
593
	</cert>
594
	<ppps/>
595
	<gateways>
596
		<gateway_item>
597
			<interface>wan</interface>
598
			<gateway>172.27.44.1</gateway>
599
			<name>WANGW</name>
600
			<weight/>
601
			<ipprotocol>inet</ipprotocol>
602
			<interval/>
603
			<avg_delay_samples/>
604
			<avg_loss_samples/>
605
			<avg_loss_delay_samples/>
606
			<descr/>
607
			<defaultgw/>
608
		</gateway_item>
609
	</gateways>
610
	<bridges>
611
		<bridged>
612
			<members>lan,opt1,opt2</members>
613
			<descr/>
614
			<maxaddr/>
615
			<timeout/>
616
			<private>lan,opt1,opt2</private>
617
			<maxage/>
618
			<fwdelay/>
619
			<hellotime/>
620
			<priority/>
621
			<proto>rstp</proto>
622
			<holdcnt/>
623
			<ifpriority/>
624
			<ifpathcost/>
625
			<bridgeif>bridge0</bridgeif>
626
		</bridged>
627
	</bridges>
628
	<ifgroups>
629
		<ifgroupentry>
630
			<members>lan opt1 opt2</members>
631
			<descr/>
632
			<ifname>LANs</ifname>
633
		</ifgroupentry>
634
	</ifgroups>
635
	<virtualip>
636
		<vip>
637
			<mode>carp</mode>
638
			<interface>opt3</interface>
639
			<vhid>165</vhid>
640
			<advskew>0</advskew>
641
			<advbase>1</advbase>
642
			<password>sdlkjfasldrkjsdfd</password>
643
			<descr/>
644
			<type>single</type>
645
			<subnet_bits>24</subnet_bits>
646
			<subnet>192.168.165.254</subnet>
647
		</vip>
648
	</virtualip>
649
</pfsense>
    (1-1/1)