Project

General

Profile

Bug #5355 ยป config-kx-old-fw1.cmn.local-20151029083535-pw-cleared.xml

Vitali Kari, 10/29/2015 03:42 AM

 
1
<?xml version="1.0"?>
2
<pfsense>
3
	<version>11.9</version>
4
	<lastchange/>
5
	<theme>pfsense_ng</theme>
6
	<system>
7
		<optimization>normal</optimization>
8
		<hostname>kx-old-fw1</hostname>
9
		<domain>cmn.local</domain>
10
		<group>
11
			<name>all</name>
12
			<description><![CDATA[All Users]]></description>
13
			<scope>system</scope>
14
			<gid>1998</gid>
15
			<member>0</member>
16
		</group>
17
		<group>
18
			<name>admins</name>
19
			<description><![CDATA[System Administrators]]></description>
20
			<scope>system</scope>
21
			<gid>1999</gid>
22
			<member>0</member>
23
			<priv>page-all</priv>
24
		</group>
25
		<user>
26
			<name>admin</name>
27
			<descr><![CDATA[System Administrator]]></descr>
28
			<scope>system</scope>
29
			<groupname>admins</groupname>
30
			<password>XXX</password>
31
			<uid>0</uid>
32
			<priv>user-shell-access</priv>
33
			<md5-hash>f071f011a53a3410c6570f7d4129bc9f</md5-hash>
34
			<nt-hash>3034383731333663356633633438373433363761646235643130313965363937</nt-hash>
35
		</user>
36
		<nextuid>2000</nextuid>
37
		<nextgid>2000</nextgid>
38
		<timezone>Europe/Berlin</timezone>
39
		<time-update-interval/>
40
		<timeservers>0.de.pool.ntp.org</timeservers>
41
		<webgui>
42
			<protocol>https</protocol>
43
			<loginautocomplete/>
44
			<ssl-certref>561b9dd7e98c9</ssl-certref>
45
			<port/>
46
			<max_procs>2</max_procs>
47
		</webgui>
48
		<disablenatreflection>yes</disablenatreflection>
49
		<disablesegmentationoffloading/>
50
		<disablelargereceiveoffloading/>
51
		<ipv6allow/>
52
		<powerd_ac_mode>hadp</powerd_ac_mode>
53
		<powerd_battery_mode>hadp</powerd_battery_mode>
54
		<powerd_normal_mode>hadp</powerd_normal_mode>
55
		<bogons>
56
			<interval>monthly</interval>
57
		</bogons>
58
		<kill_states/>
59
		<enablesshd>enabled</enablesshd>
60
		<language>en_US</language>
61
		<dns1gw>none</dns1gw>
62
		<dns2gw>none</dns2gw>
63
		<dns3gw>none</dns3gw>
64
		<dns4gw>none</dns4gw>
65
		<maximumstates/>
66
		<aliasesresolveinterval/>
67
		<maximumtableentries/>
68
		<maximumfrags/>
69
		<reflectiontimeout/>
70
		<disableconsolemenu/>
71
		<serialspeed>115200</serialspeed>
72
		<primaryconsole>serial</primaryconsole>
73
		<enableserial/>
74
		<dnsserver>185.74.180.3</dnsserver>
75
		<dnsserver>185.74.183.111</dnsserver>
76
		<dnsserver>8.8.8.8</dnsserver>
77
		<dnsserver>8.8.4.4</dnsserver>
78
		<dnsallowoverride/>
79
	</system>
80
	<interfaces>
81
		<wan>
82
			<if>rl0</if>
83
			<blockpriv/>
84
			<blockbogons/>
85
			<descr><![CDATA[WAN]]></descr>
86
			<spoofmac/>
87
			<media>autoselect</media>
88
			<alias-address/>
89
			<alias-subnet>32</alias-subnet>
90
			<enable/>
91
			<ipaddr>dhcp</ipaddr>
92
			<dhcphostname/>
93
			<dhcprejectfrom/>
94
			<adv_dhcp_pt_timeout/>
95
			<adv_dhcp_pt_retry/>
96
			<adv_dhcp_pt_select_timeout/>
97
			<adv_dhcp_pt_reboot/>
98
			<adv_dhcp_pt_backoff_cutoff/>
99
			<adv_dhcp_pt_initial_interval/>
100
			<adv_dhcp_pt_values>SavedCfg</adv_dhcp_pt_values>
101
			<adv_dhcp_send_options/>
102
			<adv_dhcp_request_options/>
103
			<adv_dhcp_required_options/>
104
			<adv_dhcp_option_modifiers/>
105
			<adv_dhcp_config_advanced/>
106
			<adv_dhcp_config_file_override/>
107
			<adv_dhcp_config_file_override_path/>
108
			<ipaddrv6>dhcp6</ipaddrv6>
109
			<dhcp6-duid/>
110
			<dhcp6-ia-pd-len>0</dhcp6-ia-pd-len>
111
		</wan>
112
		<lan>
113
			<enable/>
114
			<if>rl1</if>
115
			<descr><![CDATA[CMN]]></descr>
116
			<spoofmac/>
117
			<ipaddr>10.10.105.1</ipaddr>
118
			<subnet>29</subnet>
119
		</lan>
120
		<opt1>
121
			<descr><![CDATA[CT100]]></descr>
122
			<if>rl1_vlan100</if>
123
			<enable/>
124
			<spoofmac/>
125
			<ipaddr>185.74.183.241</ipaddr>
126
			<subnet>28</subnet>
127
		</opt1>
128
		<opt2>
129
			<descr><![CDATA[CMN_P]]></descr>
130
			<if>rl1_vlan2</if>
131
			<spoofmac/>
132
			<enable/>
133
		</opt2>
134
		<opt3>
135
			<descr><![CDATA[VoIP_P]]></descr>
136
			<if>rl1_vlan3</if>
137
			<enable/>
138
			<spoofmac/>
139
		</opt3>
140
	</interfaces>
141
	<staticroutes/>
142
	<dhcpd>
143
		<lan>
144
			<range>
145
				<from>10.3.30.50</from>
146
				<to>10.3.30.200</to>
147
			</range>
148
			<failover_peerip/>
149
			<dhcpleaseinlocaltime/>
150
			<defaultleasetime/>
151
			<maxleasetime/>
152
			<netmask/>
153
			<gateway/>
154
			<domain/>
155
			<domainsearchlist>ruhe-agrar.local</domainsearchlist>
156
			<ddnsdomain/>
157
			<ddnsdomainprimary/>
158
			<ddnsdomainkeyname/>
159
			<ddnsdomainkey/>
160
			<mac_allow/>
161
			<mac_deny/>
162
			<tftp/>
163
			<ldap/>
164
			<nextserver/>
165
			<filename/>
166
			<filename32/>
167
			<filename64/>
168
			<rootpath/>
169
			<numberoptions/>
170
			<dnsserver>10.3.30.2</dnsserver>
171
			<dnsserver>8.8.8.8</dnsserver>
172
			<dnsserver>8.8.4.4</dnsserver>
173
		</lan>
174
	</dhcpd>
175
	<pptpd>
176
		<mode/>
177
		<redir/>
178
		<localip/>
179
		<remoteip/>
180
	</pptpd>
181
	<snmpd>
182
		<syslocation/>
183
		<syscontact/>
184
		<rocommunity>public</rocommunity>
185
	</snmpd>
186
	<diag>
187
		<ipv6nat>
188
			<ipaddr/>
189
		</ipv6nat>
190
	</diag>
191
	<bridge/>
192
	<syslog>
193
		<reverse/>
194
		<nentries>100</nentries>
195
		<sourceip/>
196
		<ipproto>ipv4</ipproto>
197
	</syslog>
198
	<nat>
199
		<outbound>
200
			<mode>automatic</mode>
201
		</outbound>
202
	</nat>
203
	<filter>
204
		<rule>
205
			<type>block</type>
206
			<interface>wan</interface>
207
			<ipprotocol>inet</ipprotocol>
208
			<source>
209
				<address>EasyRuleBlockHostsWAN</address>
210
			</source>
211
			<destination>
212
				<any/>
213
			</destination>
214
			<descr><![CDATA[Easy Rule: Blocked from Firewall Log View]]></descr>
215
			<created>
216
				<time>1446048508</time>
217
				<username>Easy Rule</username>
218
			</created>
219
		</rule>
220
		<rule>
221
			<id/>
222
			<tracker>1445424144</tracker>
223
			<type>pass</type>
224
			<interface>wan</interface>
225
			<ipprotocol>inet</ipprotocol>
226
			<tag/>
227
			<tagged/>
228
			<max/>
229
			<max-src-nodes/>
230
			<max-src-conn/>
231
			<max-src-states/>
232
			<statetimeout/>
233
			<statetype>keep state</statetype>
234
			<os/>
235
			<protocol>tcp</protocol>
236
			<source>
237
				<address>185.74.183.110</address>
238
			</source>
239
			<destination>
240
				<any/>
241
				<port>500</port>
242
			</destination>
243
			<log/>
244
			<descr><![CDATA[IPSec WAN]]></descr>
245
			<updated>
246
				<time>1445424144</time>
247
				<username>admin@10.10.105.6</username>
248
			</updated>
249
			<created>
250
				<time>1445424144</time>
251
				<username>admin@10.10.105.6</username>
252
			</created>
253
		</rule>
254
		<rule>
255
			<id/>
256
			<tracker>1445598641</tracker>
257
			<type>pass</type>
258
			<interface>wan</interface>
259
			<ipprotocol>inet</ipprotocol>
260
			<tag/>
261
			<tagged/>
262
			<max/>
263
			<max-src-nodes/>
264
			<max-src-conn/>
265
			<max-src-states/>
266
			<statetimeout/>
267
			<statetype>keep state</statetype>
268
			<os/>
269
			<protocol>tcp</protocol>
270
			<source>
271
				<address>185.74.183.110</address>
272
			</source>
273
			<destination>
274
				<any/>
275
				<port>4500</port>
276
			</destination>
277
			<log/>
278
			<descr><![CDATA[IPSec WAN over NAT]]></descr>
279
			<updated>
280
				<time>1445598641</time>
281
				<username>admin@10.10.105.6</username>
282
			</updated>
283
			<created>
284
				<time>1445598641</time>
285
				<username>admin@10.10.105.6</username>
286
			</created>
287
		</rule>
288
		<rule>
289
			<id/>
290
			<tracker>1445598529</tracker>
291
			<type>pass</type>
292
			<interface>wan</interface>
293
			<ipprotocol>inet</ipprotocol>
294
			<tag/>
295
			<tagged/>
296
			<max/>
297
			<max-src-nodes/>
298
			<max-src-conn/>
299
			<max-src-states/>
300
			<statetimeout/>
301
			<statetype>keep state</statetype>
302
			<os/>
303
			<source>
304
				<address>185.74.180.0/22</address>
305
			</source>
306
			<destination>
307
				<network>wanip</network>
308
			</destination>
309
			<descr><![CDATA[enable acces from KOMNEXX AS]]></descr>
310
			<created>
311
				<time>1445594241</time>
312
				<username>Easy Rule</username>
313
			</created>
314
			<updated>
315
				<time>1446103512</time>
316
				<username>admin@10.10.105.6</username>
317
			</updated>
318
		</rule>
319
		<rule>
320
			<type>pass</type>
321
			<ipprotocol>inet</ipprotocol>
322
			<descr><![CDATA[Default allow LAN to any rule]]></descr>
323
			<interface>lan</interface>
324
			<tracker>0100000101</tracker>
325
			<source>
326
				<network>lan</network>
327
			</source>
328
			<destination>
329
				<any/>
330
			</destination>
331
		</rule>
332
		<rule>
333
			<type>pass</type>
334
			<ipprotocol>inet6</ipprotocol>
335
			<descr><![CDATA[Default allow LAN IPv6 to any rule]]></descr>
336
			<interface>lan</interface>
337
			<tracker>0100000102</tracker>
338
			<source>
339
				<network>lan</network>
340
			</source>
341
			<destination>
342
				<any/>
343
			</destination>
344
		</rule>
345
		<rule>
346
			<type>pass</type>
347
			<interface>lan</interface>
348
			<ipprotocol>inet</ipprotocol>
349
			<descr><![CDATA[Easy Rule: Passed from Firewall Log View]]></descr>
350
			<protocol>icmp</protocol>
351
			<icmptype>echoreq</icmptype>
352
			<source>
353
				<address>10.10.105.6</address>
354
			</source>
355
			<destination>
356
				<address>10.10.105.1</address>
357
			</destination>
358
			<created>
359
				<time>1446046856</time>
360
				<username>Easy Rule</username>
361
			</created>
362
		</rule>
363
		<rule>
364
			<id/>
365
			<tracker>1446048032</tracker>
366
			<type>pass</type>
367
			<interface>enc0</interface>
368
			<ipprotocol>inet</ipprotocol>
369
			<tag/>
370
			<tagged/>
371
			<max/>
372
			<max-src-nodes/>
373
			<max-src-conn/>
374
			<max-src-states/>
375
			<statetimeout/>
376
			<statetype>keep state</statetype>
377
			<os/>
378
			<source>
379
				<address>10.10.100.0/24</address>
380
			</source>
381
			<destination>
382
				<any/>
383
			</destination>
384
			<descr><![CDATA[CMN to CMN-OLD]]></descr>
385
			<created>
386
				<time>1446044588</time>
387
				<username>Easy Rule</username>
388
			</created>
389
			<updated>
390
				<time>1446101866</time>
391
				<username>admin@192.168.0.19</username>
392
			</updated>
393
		</rule>
394
		<rule>
395
			<id/>
396
			<tracker>1446048756</tracker>
397
			<type>pass</type>
398
			<interface>enc0</interface>
399
			<ipprotocol>inet</ipprotocol>
400
			<tag/>
401
			<tagged/>
402
			<max/>
403
			<max-src-nodes/>
404
			<max-src-conn/>
405
			<max-src-states/>
406
			<statetimeout/>
407
			<statetype>keep state</statetype>
408
			<os/>
409
			<source>
410
				<any/>
411
			</source>
412
			<destination>
413
				<any/>
414
			</destination>
415
			<descr><![CDATA[ALL to CT100-OLD]]></descr>
416
			<created>
417
				<time>1446048756</time>
418
				<username>admin@192.168.0.19</username>
419
			</created>
420
			<updated>
421
				<time>1446101876</time>
422
				<username>admin@192.168.0.19</username>
423
			</updated>
424
		</rule>
425
	</filter>
426
	<shaper/>
427
	<ipsec>
428
		<enable/>
429
		<phase1>
430
			<ikeid>1</ikeid>
431
			<iketype>ikev1</iketype>
432
			<mode>aggressive</mode>
433
			<interface>wan</interface>
434
			<remote-gateway>185.74.183.110</remote-gateway>
435
			<protocol>inet</protocol>
436
			<myid_type>dyn_dns</myid_type>
437
			<myid_data>kx-old-fw1.spdns.de</myid_data>
438
			<peerid_type>peeraddress</peerid_type>
439
			<peerid_data/>
440
			<encryption-algorithm>
441
				<name>3des</name>
442
			</encryption-algorithm>
443
			<hash-algorithm>sha1</hash-algorithm>
444
			<dhgroup>2</dhgroup>
445
			<lifetime>3600</lifetime>
446
			<pre-shared-key>XXX</pre-shared-key>
447
			<private-key/>
448
			<certref/>
449
			<caref/>
450
			<authentication_method>pre_shared_key</authentication_method>
451
			<descr><![CDATA[kx-olb-fw1]]></descr>
452
			<nat_traversal>on</nat_traversal>
453
			<mobike>off</mobike>
454
			<dpd_delay>10</dpd_delay>
455
			<dpd_maxfail>5</dpd_maxfail>
456
		</phase1>
457
		<uniqueids>yes</uniqueids>
458
		<client/>
459
		<phase2>
460
			<ikeid>1</ikeid>
461
			<uniqid>5627764f75cdc</uniqid>
462
			<mode>tunnel</mode>
463
			<reqid>1</reqid>
464
			<localid>
465
				<type>lan</type>
466
			</localid>
467
			<remoteid>
468
				<type>network</type>
469
				<address>10.10.100.0</address>
470
				<netbits>24</netbits>
471
			</remoteid>
472
			<protocol>esp</protocol>
473
			<encryption-algorithm-option>
474
				<name>aes</name>
475
				<keylen>auto</keylen>
476
			</encryption-algorithm-option>
477
			<hash-algorithm-option>hmac_sha1</hash-algorithm-option>
478
			<pfsgroup>5</pfsgroup>
479
			<lifetime>3600</lifetime>
480
			<pinghost>10.10.100.10</pinghost>
481
			<descr><![CDATA[CMN]]></descr>
482
		</phase2>
483
		<phase2>
484
			<ikeid>1</ikeid>
485
			<uniqid>562e1347a0c60</uniqid>
486
			<mode>tunnel</mode>
487
			<reqid>2</reqid>
488
			<localid>
489
				<type>opt1</type>
490
			</localid>
491
			<remoteid>
492
				<type>network</type>
493
				<address>0.0.0.0</address>
494
				<netbits>0</netbits>
495
			</remoteid>
496
			<protocol>esp</protocol>
497
			<encryption-algorithm-option>
498
				<name>aes</name>
499
				<keylen>auto</keylen>
500
			</encryption-algorithm-option>
501
			<hash-algorithm-option>hmac_sha1</hash-algorithm-option>
502
			<pfsgroup>0</pfsgroup>
503
			<lifetime>3600</lifetime>
504
			<pinghost/>
505
			<descr/>
506
		</phase2>
507
	</ipsec>
508
	<aliases>
509
		<alias>
510
			<name>EasyRuleBlockHostsWAN</name>
511
			<type>network</type>
512
			<descr><![CDATA[Hosts blocked from Firewall Log view]]></descr>
513
			<address>185.74.180.185/32</address>
514
			<detail><![CDATA[Entry added Wed, 28 Oct 2015 17:08:28 +0100||]]></detail>
515
		</alias>
516
	</aliases>
517
	<proxyarp/>
518
	<cron>
519
		<item>
520
			<minute>1,31</minute>
521
			<hour>0-5</hour>
522
			<mday>*</mday>
523
			<month>*</month>
524
			<wday>*</wday>
525
			<who>root</who>
526
			<command>/usr/bin/nice -n20 adjkerntz -a</command>
527
		</item>
528
		<item>
529
			<minute>1</minute>
530
			<hour>3</hour>
531
			<mday>1</mday>
532
			<month>*</month>
533
			<wday>*</wday>
534
			<who>root</who>
535
			<command>/usr/bin/nice -n20 /etc/rc.update_bogons.sh</command>
536
		</item>
537
		<item>
538
			<minute>*/60</minute>
539
			<hour>*</hour>
540
			<mday>*</mday>
541
			<month>*</month>
542
			<wday>*</wday>
543
			<who>root</who>
544
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 sshlockout</command>
545
		</item>
546
		<item>
547
			<minute>*/60</minute>
548
			<hour>*</hour>
549
			<mday>*</mday>
550
			<month>*</month>
551
			<wday>*</wday>
552
			<who>root</who>
553
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 webConfiguratorlockout</command>
554
		</item>
555
		<item>
556
			<minute>1</minute>
557
			<hour>1</hour>
558
			<mday>*</mday>
559
			<month>*</month>
560
			<wday>*</wday>
561
			<who>root</who>
562
			<command>/usr/bin/nice -n20 /etc/rc.dyndns.update</command>
563
		</item>
564
		<item>
565
			<minute>*/60</minute>
566
			<hour>*</hour>
567
			<mday>*</mday>
568
			<month>*</month>
569
			<wday>*</wday>
570
			<who>root</who>
571
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 virusprot</command>
572
		</item>
573
		<item>
574
			<minute>30</minute>
575
			<hour>12</hour>
576
			<mday>*</mday>
577
			<month>*</month>
578
			<wday>*</wday>
579
			<who>root</who>
580
			<command>/usr/bin/nice -n20 /etc/rc.update_urltables</command>
581
		</item>
582
	</cron>
583
	<wol/>
584
	<rrd>
585
		<enable/>
586
	</rrd>
587
	<load_balancer>
588
		<monitor_type>
589
			<name>ICMP</name>
590
			<type>icmp</type>
591
			<descr><![CDATA[ICMP]]></descr>
592
			<options/>
593
		</monitor_type>
594
		<monitor_type>
595
			<name>TCP</name>
596
			<type>tcp</type>
597
			<descr><![CDATA[Generic TCP]]></descr>
598
			<options/>
599
		</monitor_type>
600
		<monitor_type>
601
			<name>HTTP</name>
602
			<type>http</type>
603
			<descr><![CDATA[Generic HTTP]]></descr>
604
			<options>
605
				<path>/</path>
606
				<host/>
607
				<code>200</code>
608
			</options>
609
		</monitor_type>
610
		<monitor_type>
611
			<name>HTTPS</name>
612
			<type>https</type>
613
			<descr><![CDATA[Generic HTTPS]]></descr>
614
			<options>
615
				<path>/</path>
616
				<host/>
617
				<code>200</code>
618
			</options>
619
		</monitor_type>
620
		<monitor_type>
621
			<name>SMTP</name>
622
			<type>send</type>
623
			<descr><![CDATA[Generic SMTP]]></descr>
624
			<options>
625
				<send/>
626
				<expect>220 *</expect>
627
			</options>
628
		</monitor_type>
629
	</load_balancer>
630
	<widgets>
631
		<sequence>system_information-container:col1:show,captive_portal_status-container:col1:close,carp_status-container:col1:close,cpu_graphs-container:col1:close,gateways-container:col1:close,gmirror_status-container:col1:close,installed_packages-container:col1:close,interface_statistics-container:col1:close,interfaces-container:col2:show,ipsec-container:col2:close,load_balancer_status-container:col2:close,log-container:col2:close,picture-container:col2:close,rss-container:col2:close,services_status-container:col2:close,traffic_graphs-container:col2:close</sequence>
632
	</widgets>
633
	<openvpn/>
634
	<dnshaper/>
635
	<unbound>
636
		<enable/>
637
		<dnssec/>
638
		<active_interface>all</active_interface>
639
		<outgoing_interface/>
640
		<custom_options/>
641
		<hideidentity/>
642
		<hideversion/>
643
		<dnssecstripped/>
644
		<regdhcp/>
645
	</unbound>
646
	<revision>
647
		<time>1446104056</time>
648
		<description><![CDATA[admin@10.10.105.6: /interfaces.php made unknown change]]></description>
649
		<username>admin@10.10.105.6</username>
650
	</revision>
651
	<dhcpdv6/>
652
	<cert>
653
		<refid>561b9dd7e98c9</refid>
654
		<descr><![CDATA[webConfigurator default (561b9dd7e98c9)]]></descr>
655
		<type>server</type>
656
		<crt>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</crt>
657
		<prv>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</prv>
658
	</cert>
659
	<ppps>
660
	</ppps>
661
	<gateways>
662
		<gateway_item>
663
			<interface>wan</interface>
664
			<gateway>dynamic</gateway>
665
			<name>WAN_DHCP</name>
666
			<weight>1</weight>
667
			<ipprotocol>inet</ipprotocol>
668
			<interval/>
669
			<avg_delay_samples/>
670
			<avg_loss_samples/>
671
			<avg_loss_delay_samples/>
672
			<descr><![CDATA[Interface WAN_DHCP Gateway]]></descr>
673
			<defaultgw/>
674
		</gateway_item>
675
	</gateways>
676
	<notifications>
677
		<growl>
678
			<ipaddress>admin</ipaddress>
679
			<password>XXX</password>
680
			<name>PHP-Growl</name>
681
			<notification_name>pfSense growl alert</notification_name>
682
			<disable/>
683
		</growl>
684
		<smtp>
685
			<ipaddress/>
686
			<port/>
687
			<notifyemailaddress/>
688
			<username/>
689
			<password/>
690
			<authentication_mechanism>PLAIN</authentication_mechanism>
691
			<fromaddress/>
692
		</smtp>
693
	</notifications>
694
	<installedpackages>
695
		<quaggaospfdinterfaces>
696
			<config>
697
				<interface>lan</interface>
698
				<metric/>
699
				<interfacearea/>
700
				<descr/>
701
				<passive/>
702
				<acceptfilter/>
703
				<md5password/>
704
				<password/>
705
				<routerpriorityelections/>
706
				<hellointervalinseconds/>
707
				<retransmitinterval/>
708
				<deadtimer/>
709
			</config>
710
			<config>
711
				<interface>wan</interface>
712
				<metric/>
713
				<interfacearea/>
714
				<descr/>
715
				<passive/>
716
				<acceptfilter/>
717
				<md5password/>
718
				<password/>
719
				<routerpriorityelections/>
720
				<hellointervalinseconds/>
721
				<retransmitinterval/>
722
				<deadtimer/>
723
			</config>
724
		</quaggaospfdinterfaces>
725
		<quaggaospfd>
726
			<config>
727
				<password>XXX</password>
728
				<logging/>
729
				<adjacencylog/>
730
				<routerid/>
731
				<area>0.0.0.0</area>
732
				<updatefib/>
733
				<redistributeconnectedsubnets>on</redistributeconnectedsubnets>
734
				<redistributedefaultroute/>
735
				<redistributestatic>on</redistributestatic>
736
				<redistributekernel>on</redistributekernel>
737
				<spfholdtime/>
738
				<spfdelay/>
739
				<rfc1583/>
740
				<row>
741
					<routevalue>185.74.183.110/32</routevalue>
742
					<routearea>0.0.0.0</routearea>
743
				</row>
744
				<carpstatusip/>
745
			</config>
746
		</quaggaospfd>
747
	</installedpackages>
748
	<dyndnses>
749
		<dyndns>
750
			<type>custom</type>
751
			<username>kx-old-fw1.spdns.de</username>
752
			<password>XXX</password>
753
			<host>kx-old-fw1.spdns.de</host>
754
			<mx/>
755
			<enable/>
756
			<interface>wan</interface>
757
			<zoneid/>
758
			<ttl/>
759
			<updateurl>https://update.spdns.de/nic/update?hostname=kx-old-fw1.spdns.de&amp;myip=%IP%</updateurl>
760
			<resultmatch/>
761
			<requestif>wan</requestif>
762
			<descr/>
763
			<id>0</id>
764
		</dyndns>
765
	</dyndnses>
766
	<ntpd>
767
		<interface>wan</interface>
768
		<gps>
769
			<type>Default</type>
770
		</gps>
771
	</ntpd>
772
	<vlans>
773
		<vlan>
774
			<if>rl1</if>
775
			<tag>100</tag>
776
			<descr><![CDATA[CT-100]]></descr>
777
			<vlanif>rl1_vlan100</vlanif>
778
		</vlan>
779
		<vlan>
780
			<if>rl1</if>
781
			<tag>2</tag>
782
			<descr><![CDATA[VLAN2]]></descr>
783
			<vlanif>rl1_vlan2</vlanif>
784
		</vlan>
785
		<vlan>
786
			<if>rl1</if>
787
			<tag>3</tag>
788
			<descr><![CDATA[VLAN3]]></descr>
789
			<vlanif>rl1_vlan3</vlanif>
790
		</vlan>
791
	</vlans>
792
	<bridges>
793
		<bridged>
794
			<members>lan,opt2</members>
795
			<descr><![CDATA[CMN]]></descr>
796
			<maxaddr/>
797
			<timeout/>
798
			<maxage/>
799
			<fwdelay/>
800
			<hellotime/>
801
			<priority/>
802
			<proto>rstp</proto>
803
			<holdcnt/>
804
			<ifpriority/>
805
			<ifpathcost/>
806
			<bridgeif>bridge0</bridgeif>
807
		</bridged>
808
	</bridges>
809
</pfsense>
    (1-1/1)