Project

General

Profile

Bug #2611 ยป config-r01.internetsuperbackbone.com-20120826213752.xml

Alexandre Paradis, 08/26/2012 08:40 PM

 
1
<?xml version="1.0"?>
2
<pfsense>
3
	<version>8.9</version>
4
	<lastchange/>
5
	<theme>pfsense_ng</theme>
6
	<sysctl>
7
		<item>
8
			<descr><![CDATA[Disable the pf ftp proxy handler.]]></descr>
9
			<tunable>debug.pfftpproxy</tunable>
10
			<value>default</value>
11
		</item>
12
		<item>
13
			<descr><![CDATA[Increase UFS read-ahead speeds to match current state of hard drives and NCQ. More information here: http://ivoras.sharanet.org/blog/tree/2010-11-19.ufs-read-ahead.html]]></descr>
14
			<tunable>vfs.read_max</tunable>
15
			<value>default</value>
16
		</item>
17
		<item>
18
			<descr><![CDATA[Set the ephemeral port range to be lower.]]></descr>
19
			<tunable>net.inet.ip.portrange.first</tunable>
20
			<value>default</value>
21
		</item>
22
		<item>
23
			<descr><![CDATA[Drop packets to closed TCP ports without returning a RST]]></descr>
24
			<tunable>net.inet.tcp.blackhole</tunable>
25
			<value>default</value>
26
		</item>
27
		<item>
28
			<descr><![CDATA[Do not send ICMP port unreachable messages for closed UDP ports]]></descr>
29
			<tunable>net.inet.udp.blackhole</tunable>
30
			<value>default</value>
31
		</item>
32
		<item>
33
			<descr><![CDATA[Randomize the ID field in IP packets (default is 0: sequential IP IDs)]]></descr>
34
			<tunable>net.inet.ip.random_id</tunable>
35
			<value>default</value>
36
		</item>
37
		<item>
38
			<descr><![CDATA[Drop SYN-FIN packets (breaks RFC1379, but nobody uses it anyway)]]></descr>
39
			<tunable>net.inet.tcp.drop_synfin</tunable>
40
			<value>default</value>
41
		</item>
42
		<item>
43
			<descr><![CDATA[Enable sending IPv4 redirects]]></descr>
44
			<tunable>net.inet.ip.redirect</tunable>
45
			<value>default</value>
46
		</item>
47
		<item>
48
			<descr><![CDATA[Enable sending IPv6 redirects]]></descr>
49
			<tunable>net.inet6.ip6.redirect</tunable>
50
			<value>default</value>
51
		</item>
52
		<item>
53
			<descr><![CDATA[Generate SYN cookies for outbound SYN-ACK packets]]></descr>
54
			<tunable>net.inet.tcp.syncookies</tunable>
55
			<value>default</value>
56
		</item>
57
		<item>
58
			<descr><![CDATA[Maximum incoming/outgoing TCP datagram size (receive)]]></descr>
59
			<tunable>net.inet.tcp.recvspace</tunable>
60
			<value>default</value>
61
		</item>
62
		<item>
63
			<descr><![CDATA[Maximum incoming/outgoing TCP datagram size (send)]]></descr>
64
			<tunable>net.inet.tcp.sendspace</tunable>
65
			<value>default</value>
66
		</item>
67
		<item>
68
			<descr><![CDATA[IP Fastforwarding]]></descr>
69
			<tunable>net.inet.ip.fastforwarding</tunable>
70
			<value>default</value>
71
		</item>
72
		<item>
73
			<descr><![CDATA[Do not delay ACK to try and piggyback it onto a data packet]]></descr>
74
			<tunable>net.inet.tcp.delayed_ack</tunable>
75
			<value>default</value>
76
		</item>
77
		<item>
78
			<descr><![CDATA[Maximum outgoing UDP datagram size]]></descr>
79
			<tunable>net.inet.udp.maxdgram</tunable>
80
			<value>default</value>
81
		</item>
82
		<item>
83
			<descr><![CDATA[Handling of non-IP packets which are not passed to pfil (see if_bridge(4))]]></descr>
84
			<tunable>net.link.bridge.pfil_onlyip</tunable>
85
			<value>default</value>
86
		</item>
87
		<item>
88
			<descr><![CDATA[Set to 0 to disable filtering on the incoming and outgoing member interfaces.]]></descr>
89
			<tunable>net.link.bridge.pfil_member</tunable>
90
			<value>default</value>
91
		</item>
92
		<item>
93
			<descr><![CDATA[Set to 1 to enable filtering on the bridge interface]]></descr>
94
			<tunable>net.link.bridge.pfil_bridge</tunable>
95
			<value>default</value>
96
		</item>
97
		<item>
98
			<descr><![CDATA[Allow unprivileged access to tap(4) device nodes]]></descr>
99
			<tunable>net.link.tap.user_open</tunable>
100
			<value>default</value>
101
		</item>
102
		<item>
103
			<descr><![CDATA[Randomize PID's (see src/sys/kern/kern_fork.c: sysctl_kern_randompid())]]></descr>
104
			<tunable>kern.randompid</tunable>
105
			<value>default</value>
106
		</item>
107
		<item>
108
			<descr><![CDATA[Maximum size of the IP input queue]]></descr>
109
			<tunable>net.inet.ip.intr_queue_maxlen</tunable>
110
			<value>default</value>
111
		</item>
112
		<item>
113
			<descr><![CDATA[Disable CTRL+ALT+Delete reboot from keyboard.]]></descr>
114
			<tunable>hw.syscons.kbd_reboot</tunable>
115
			<value>default</value>
116
		</item>
117
		<item>
118
			<descr><![CDATA[Enable TCP Inflight mode]]></descr>
119
			<tunable>net.inet.tcp.inflight.enable</tunable>
120
			<value>default</value>
121
		</item>
122
		<item>
123
			<descr><![CDATA[Enable TCP extended debugging]]></descr>
124
			<tunable>net.inet.tcp.log_debug</tunable>
125
			<value>default</value>
126
		</item>
127
		<item>
128
			<descr><![CDATA[Set ICMP Limits]]></descr>
129
			<tunable>net.inet.icmp.icmplim</tunable>
130
			<value>default</value>
131
		</item>
132
		<item>
133
			<descr><![CDATA[TCP Offload Engine]]></descr>
134
			<tunable>net.inet.tcp.tso</tunable>
135
			<value>default</value>
136
		</item>
137
		<item>
138
			<descr><![CDATA[Maximum socket buffer size]]></descr>
139
			<tunable>kern.ipc.maxsockbuf</tunable>
140
			<value>default</value>
141
		</item>
142
	</sysctl>
143
	<system>
144
		<optimization>normal</optimization>
145
		<hostname>r01</hostname>
146
		<domain>internetsuperbackbone.com</domain>
147
		<group>
148
			<name>all</name>
149
			<description><![CDATA[All Users]]></description>
150
			<scope>system</scope>
151
			<gid>1998</gid>
152
		</group>
153
		<group>
154
			<name>admins</name>
155
			<description><![CDATA[System Administrators]]></description>
156
			<scope>system</scope>
157
			<gid>1999</gid>
158
			<member>0</member>
159
			<member>2000</member>
160
			<priv>page-all</priv>
161
		</group>
162
		<user>
163
			<name>admin</name>
164
			<descr><![CDATA[System Administrator]]></descr>
165
			<scope>system</scope>
166
			<groupname>admins</groupname>
167
			<password>$1$dSJImFph$GvZ7.1UbuWu.Yb8etC0re.</password>
168
			<uid>0</uid>
169
			<priv>user-shell-access</priv>
170
			<expires/>
171
			<authorizedkeys/>
172
			<ipsecpsk/>
173
			<disabled/>
174
		</user>
175
		<user>
176
			<scope>user</scope>
177
			<password>$1$Ow/8kmeT$CbKr4vPUyFoaxrmjKgpvk/</password>
178
			<md5-hash>d8be091dc5952048adb5580f1700a26b</md5-hash>
179
			<nt-hash>3662383437333939663566393430373237333665383835633739613965393931</nt-hash>
180
			<name>tacgnol</name>
181
			<descr><![CDATA[Alexandre Paradis]]></descr>
182
			<expires/>
183
			<authorizedkeys/>
184
			<ipsecpsk/>
185
			<uid>2000</uid>
186
		</user>
187
		<nextuid>2001</nextuid>
188
		<nextgid>2000</nextgid>
189
		<timezone>America/Montreal</timezone>
190
		<time-update-interval/>
191
		<timeservers>0.pfsense.pool.ntp.org</timeservers>
192
		<webgui>
193
			<protocol>https</protocol>
194
			<ssl-certref>502a4d7c52bc0</ssl-certref>
195
			<port/>
196
			<max_procs>2</max_procs>
197
			<althostnames>r01.internetsuperbackbone.com</althostnames>
198
		</webgui>
199
		<disablenatreflection>yes</disablenatreflection>
200
		<disablesegmentationoffloading/>
201
		<disablelargereceiveoffloading/>
202
		<ipv6allow/>
203
		<powerd_mode>hadp</powerd_mode>
204
		<language>en_US</language>
205
		<dns1gw>WAN_DHCP</dns1gw>
206
		<dns2gw>WAN_DHCP</dns2gw>
207
		<dns3gw>none</dns3gw>
208
		<dns4gw>none</dns4gw>
209
		<serialspeed>9600</serialspeed>
210
		<firmware>
211
			<allowinvalidsig/>
212
			<alturl>
213
				<enable/>
214
				<firmwareurl>http://snapshots.pfsense.org/FreeBSD_RELENG_8_3/amd64/pfSense_HEAD/.updaters</firmwareurl>
215
			</alturl>
216
		</firmware>
217
		<gitsync>
218
			<repositoryurl/>
219
			<branch/>
220
		</gitsync>
221
		<dnsserver>205.204.88.60</dnsserver>
222
		<dnsserver>178.21.23.150</dnsserver>
223
		<maximumstates/>
224
		<maximumtables>5000</maximumtables>
225
		<maximumtableentries>500000</maximumtableentries>
226
		<reflectiontimeout/>
227
	</system>
228
	<interfaces>
229
		<wan>
230
			<enable/>
231
			<if>em1</if>
232
			<mtu/>
233
			<ipaddr>dhcp</ipaddr>
234
			<ipaddrv6>dhcp6</ipaddrv6>
235
			<subnet/>
236
			<gateway/>
237
			<blockpriv/>
238
			<blockbogons/>
239
			<dhcphostname/>
240
			<media/>
241
			<mediaopt/>
242
			<dhcp6-duid/>
243
			<dhcp6-ia-pd-len>0</dhcp6-ia-pd-len>
244
			<descr><![CDATA[WAN]]></descr>
245
		</wan>
246
		<lan>
247
			<enable/>
248
			<if>em2</if>
249
			<ipaddr>192.168.5.1</ipaddr>
250
			<subnet>27</subnet>
251
			<ipaddrv6>track6</ipaddrv6>
252
			<subnetv6>64</subnetv6>
253
			<media/>
254
			<mediaopt/>
255
			<track6-interface>wan</track6-interface>
256
			<track6-prefix-id>0</track6-prefix-id>
257
			<descr><![CDATA[LAN]]></descr>
258
		</lan>
259
		<opt1>
260
			<descr><![CDATA[StrongvpnUSA]]></descr>
261
			<if>ovpnc1</if>
262
			<enable/>
263
			<spoofmac/>
264
		</opt1>
265
		<opt2>
266
			<descr><![CDATA[StrongvpnUK]]></descr>
267
			<if>ovpnc2</if>
268
			<enable/>
269
			<spoofmac/>
270
		</opt2>
271
	</interfaces>
272
	<staticroutes/>
273
	<dhcpd>
274
		<lan>
275
			<enable/>
276
			<range>
277
				<from>192.168.5.20</from>
278
				<to>192.168.5.30</to>
279
			</range>
280
			<staticmap>
281
				<mac>00:1b:21:78:cd:41</mac>
282
				<ipaddr>192.168.5.6</ipaddr>
283
				<hostname>fs01</hostname>
284
				<descr><![CDATA[file server # 1]]></descr>
285
				<filename/>
286
				<rootpath/>
287
			</staticmap>
288
			<staticmap>
289
				<mac>00:02:55:8a:77:91</mac>
290
				<ipaddr>192.168.5.7</ipaddr>
291
				<hostname>syslog</hostname>
292
				<descr><![CDATA[syslog and jumpoint server]]></descr>
293
				<filename/>
294
				<rootpath/>
295
			</staticmap>
296
			<staticmap>
297
				<mac>68:05:ca:02:f1:0c</mac>
298
				<ipaddr>192.168.5.18</ipaddr>
299
				<hostname>subsonic</hostname>
300
				<descr><![CDATA[subsonic server]]></descr>
301
				<filename/>
302
				<rootpath/>
303
			</staticmap>
304
			<defaultleasetime/>
305
			<maxleasetime/>
306
			<netmask/>
307
			<failover_peerip/>
308
			<gateway/>
309
			<domain/>
310
			<domainsearchlist/>
311
			<ddnsdomain/>
312
			<tftp>192.168.5.7</tftp>
313
			<ldap/>
314
			<nextserver/>
315
			<filename/>
316
			<rootpath/>
317
			<dhcpleaseinlocaltime/>
318
			<numberoptions/>
319
		</lan>
320
	</dhcpd>
321
	<pptpd>
322
		<mode/>
323
		<redir/>
324
		<localip/>
325
		<remoteip/>
326
	</pptpd>
327
	<dnsmasq>
328
		<enable/>
329
	</dnsmasq>
330
	<snmpd>
331
		<syslocation/>
332
		<syscontact/>
333
		<rocommunity>public</rocommunity>
334
	</snmpd>
335
	<diag>
336
		<ipv6nat>
337
			<ipaddr/>
338
		</ipv6nat>
339
	</diag>
340
	<bridge/>
341
	<syslog>
342
		<reverse/>
343
		<nentries>300</nentries>
344
		<nologdefaultblock/>
345
	</syslog>
346
	<nat>
347
		<ipsecpassthru>
348
			<enable/>
349
		</ipsecpassthru>
350
		<rule>
351
			<source>
352
				<any/>
353
			</source>
354
			<destination>
355
				<network>wanip</network>
356
				<port>22</port>
357
			</destination>
358
			<protocol>tcp</protocol>
359
			<target>192.168.5.7</target>
360
			<local-port>22</local-port>
361
			<interface>wan</interface>
362
			<descr><![CDATA[ssh to jumpoint]]></descr>
363
			<associated-rule-id>nat_502a4fb3465048.81799239</associated-rule-id>
364
		</rule>
365
		<rule>
366
			<source>
367
				<any/>
368
			</source>
369
			<destination>
370
				<network>wanip</network>
371
				<port>80</port>
372
			</destination>
373
			<protocol>tcp/udp</protocol>
374
			<target>192.168.5.18</target>
375
			<local-port>4040</local-port>
376
			<interface>wan</interface>
377
			<descr><![CDATA[subsonic server]]></descr>
378
			<associated-rule-id>nat_502a50f538c908.91712939</associated-rule-id>
379
		</rule>
380
		<advancedoutbound>
381
			<rule>
382
				<source>
383
					<network>192.168.5.0/27</network>
384
				</source>
385
				<dstport>500</dstport>
386
				<descr><![CDATA[Auto created rule for ISAKMP - LAN to WAN]]></descr>
387
				<target/>
388
				<interface>wan</interface>
389
				<destination>
390
					<any/>
391
				</destination>
392
				<staticnatport/>
393
			</rule>
394
			<rule>
395
				<source>
396
					<network>192.168.5.0/27</network>
397
				</source>
398
				<sourceport/>
399
				<descr><![CDATA[Auto created rule for LAN to WAN]]></descr>
400
				<target/>
401
				<interface>wan</interface>
402
				<destination>
403
					<any/>
404
				</destination>
405
				<natport/>
406
			</rule>
407
			<rule>
408
				<source>
409
					<network>127.0.0.0/8</network>
410
				</source>
411
				<dstport/>
412
				<descr><![CDATA[Auto created rule for localhost to WAN]]></descr>
413
				<target/>
414
				<interface>wan</interface>
415
				<destination>
416
					<any/>
417
				</destination>
418
				<natport>1024:65535</natport>
419
			</rule>
420
			<rule>
421
				<source>
422
					<network>192.168.5.0/27</network>
423
				</source>
424
				<dstport>500</dstport>
425
				<descr><![CDATA[Auto created rule for ISAKMP - LAN to STRONGVPNUSA]]></descr>
426
				<target/>
427
				<interface>opt1</interface>
428
				<destination>
429
					<any/>
430
				</destination>
431
				<staticnatport/>
432
			</rule>
433
			<rule>
434
				<source>
435
					<network>192.168.5.0/27</network>
436
				</source>
437
				<sourceport/>
438
				<descr><![CDATA[Auto created rule for LAN to STRONGVPNUSA]]></descr>
439
				<target/>
440
				<interface>opt1</interface>
441
				<destination>
442
					<any/>
443
				</destination>
444
				<natport/>
445
			</rule>
446
			<rule>
447
				<source>
448
					<network>127.0.0.0/8</network>
449
				</source>
450
				<dstport/>
451
				<descr><![CDATA[Auto created rule for localhost to STRONGVPNUSA]]></descr>
452
				<target/>
453
				<interface>opt1</interface>
454
				<destination>
455
					<any/>
456
				</destination>
457
				<natport>1024:65535</natport>
458
			</rule>
459
			<rule>
460
				<source>
461
					<network>192.168.5.0/27</network>
462
				</source>
463
				<dstport>500</dstport>
464
				<descr><![CDATA[Auto created rule for ISAKMP - LAN to STRONGVPNUK]]></descr>
465
				<target/>
466
				<destination>
467
					<any/>
468
				</destination>
469
				<staticnatport/>
470
			</rule>
471
			<rule>
472
				<source>
473
					<network>192.168.5.0/27</network>
474
				</source>
475
				<sourceport/>
476
				<descr><![CDATA[Auto created rule for LAN to STRONGVPNUK]]></descr>
477
				<target/>
478
				<destination>
479
					<any/>
480
				</destination>
481
				<natport/>
482
			</rule>
483
			<rule>
484
				<source>
485
					<network>127.0.0.0/8</network>
486
				</source>
487
				<dstport/>
488
				<descr><![CDATA[Auto created rule for localhost to STRONGVPNUK]]></descr>
489
				<target/>
490
				<destination>
491
					<any/>
492
				</destination>
493
				<natport>1024:65535</natport>
494
			</rule>
495
			<enable/>
496
		</advancedoutbound>
497
	</nat>
498
	<filter>
499
		<rule>
500
			<id/>
501
			<tag/>
502
			<tagged/>
503
			<max/>
504
			<max-src-nodes/>
505
			<max-src-conn/>
506
			<max-src-states/>
507
			<statetimeout/>
508
			<statetype>keep state</statetype>
509
			<os/>
510
			<type>block</type>
511
			<descr><![CDATA[pfBlockerTopSpammers auto rule]]></descr>
512
			<source>
513
				<address>pfBlockerTopSpammers</address>
514
			</source>
515
			<destination>
516
				<any/>
517
			</destination>
518
			<interface>wan</interface>
519
		</rule>
520
		<rule>
521
			<id/>
522
			<type>pass</type>
523
			<interface>wan</interface>
524
			<ipprotocol>inet46</ipprotocol>
525
			<tag/>
526
			<tagged/>
527
			<max/>
528
			<max-src-nodes/>
529
			<max-src-conn/>
530
			<max-src-states/>
531
			<statetimeout/>
532
			<statetype>keep state</statetype>
533
			<os/>
534
			<protocol>tcp</protocol>
535
			<source>
536
				<any/>
537
			</source>
538
			<destination>
539
				<network>wanip</network>
540
				<port>443</port>
541
			</destination>
542
			<descr><![CDATA[webui]]></descr>
543
		</rule>
544
		<rule>
545
			<source>
546
				<any/>
547
			</source>
548
			<interface>wan</interface>
549
			<protocol>tcp</protocol>
550
			<destination>
551
				<address>192.168.5.7</address>
552
				<port>22</port>
553
			</destination>
554
			<descr><![CDATA[NAT ssh to jumpoint]]></descr>
555
			<associated-rule-id>nat_502a4fb3465048.81799239</associated-rule-id>
556
		</rule>
557
		<rule>
558
			<source>
559
				<any/>
560
			</source>
561
			<interface>wan</interface>
562
			<protocol>tcp/udp</protocol>
563
			<destination>
564
				<address>192.168.5.18</address>
565
				<port>4040</port>
566
			</destination>
567
			<descr><![CDATA[NAT subsonic server]]></descr>
568
			<associated-rule-id>nat_502a50f538c908.91712939</associated-rule-id>
569
		</rule>
570
		<rule>
571
			<id/>
572
			<type>pass</type>
573
			<interface>lan</interface>
574
			<ipprotocol>inet</ipprotocol>
575
			<tag/>
576
			<tagged/>
577
			<max/>
578
			<max-src-nodes/>
579
			<max-src-conn/>
580
			<max-src-states/>
581
			<statetimeout/>
582
			<statetype>keep state</statetype>
583
			<os/>
584
			<source>
585
				<network>lan</network>
586
			</source>
587
			<destination>
588
				<address>198.186.190.120</address>
589
			</destination>
590
			<descr><![CDATA[blocknews through ebox]]></descr>
591
			<gateway>WAN_DHCP</gateway>
592
		</rule>
593
		<rule>
594
			<id/>
595
			<type>pass</type>
596
			<interface>lan</interface>
597
			<ipprotocol>inet</ipprotocol>
598
			<tag/>
599
			<tagged/>
600
			<max/>
601
			<max-src-nodes/>
602
			<max-src-conn/>
603
			<max-src-states/>
604
			<statetimeout/>
605
			<statetype>keep state</statetype>
606
			<os/>
607
			<source>
608
				<network>lan</network>
609
			</source>
610
			<destination>
611
				<address>216.168.3.30</address>
612
			</destination>
613
			<descr><![CDATA[supernews through ebox]]></descr>
614
			<gateway>WAN_DHCP</gateway>
615
		</rule>
616
		<rule>
617
			<id/>
618
			<type>pass</type>
619
			<interface>lan</interface>
620
			<ipprotocol>inet</ipprotocol>
621
			<tag/>
622
			<tagged/>
623
			<max/>
624
			<max-src-nodes/>
625
			<max-src-conn/>
626
			<max-src-states/>
627
			<statetimeout/>
628
			<statetype>keep state</statetype>
629
			<os/>
630
			<source>
631
				<network>lan</network>
632
			</source>
633
			<destination>
634
				<address>74.209.131.10</address>
635
			</destination>
636
			<descr><![CDATA[usenetserver through ebox]]></descr>
637
			<gateway>WAN_DHCP</gateway>
638
		</rule>
639
		<rule>
640
			<id/>
641
			<type>pass</type>
642
			<interface>lan</interface>
643
			<ipprotocol>inet</ipprotocol>
644
			<tag/>
645
			<tagged/>
646
			<max/>
647
			<max-src-nodes/>
648
			<max-src-conn/>
649
			<max-src-states/>
650
			<statetimeout/>
651
			<statetype>keep state</statetype>
652
			<os/>
653
			<source>
654
				<network>lan</network>
655
			</source>
656
			<destination>
657
				<address>108.166.182.18</address>
658
			</destination>
659
			<descr><![CDATA[vanillacraft through ebox]]></descr>
660
			<gateway>WAN_DHCP</gateway>
661
		</rule>
662
		<rule>
663
			<id/>
664
			<type>pass</type>
665
			<interface>lan</interface>
666
			<ipprotocol>inet</ipprotocol>
667
			<tag/>
668
			<tagged/>
669
			<max/>
670
			<max-src-nodes/>
671
			<max-src-conn/>
672
			<max-src-states/>
673
			<statetimeout/>
674
			<statetype>keep state</statetype>
675
			<os/>
676
			<source>
677
				<network>lan</network>
678
			</source>
679
			<destination>
680
				<address>207.229.75.17</address>
681
			</destination>
682
			<descr><![CDATA[mfc through ebox]]></descr>
683
			<gateway>WAN_DHCP</gateway>
684
		</rule>
685
		<rule>
686
			<id/>
687
			<type>pass</type>
688
			<interface>lan</interface>
689
			<ipprotocol>inet</ipprotocol>
690
			<tag/>
691
			<tagged/>
692
			<max/>
693
			<max-src-nodes/>
694
			<max-src-conn/>
695
			<max-src-states/>
696
			<statetimeout/>
697
			<statetype>keep state</statetype>
698
			<os/>
699
			<source>
700
				<network>lan</network>
701
			</source>
702
			<destination>
703
				<address>pfBlockerNorthAmerica</address>
704
			</destination>
705
			<descr><![CDATA[usa traffic through usa vpn]]></descr>
706
			<gateway>STRONGVPNUSA_VPNV4</gateway>
707
		</rule>
708
		<rule>
709
			<type>pass</type>
710
			<ipprotocol>inet</ipprotocol>
711
			<descr><![CDATA[Default allow LAN to any rule]]></descr>
712
			<interface>lan</interface>
713
			<source>
714
				<network>lan</network>
715
			</source>
716
			<destination>
717
				<any/>
718
			</destination>
719
		</rule>
720
		<rule>
721
			<type>pass</type>
722
			<ipprotocol>inet6</ipprotocol>
723
			<descr><![CDATA[Default allow LAN IPv6 to any rule]]></descr>
724
			<interface>lan</interface>
725
			<source>
726
				<network>lan</network>
727
			</source>
728
			<destination>
729
				<any/>
730
			</destination>
731
		</rule>
732
		<rule>
733
			<id/>
734
			<type>pass</type>
735
			<interface>openvpn</interface>
736
			<ipprotocol>inet</ipprotocol>
737
			<tag/>
738
			<tagged/>
739
			<max/>
740
			<max-src-nodes/>
741
			<max-src-conn/>
742
			<max-src-states/>
743
			<statetimeout/>
744
			<statetype>keep state</statetype>
745
			<os/>
746
			<source>
747
				<any/>
748
			</source>
749
			<destination>
750
				<any/>
751
			</destination>
752
			<descr><![CDATA[pass any any]]></descr>
753
		</rule>
754
		<rule>
755
			<id/>
756
			<type>pass</type>
757
			<interface>opt1</interface>
758
			<ipprotocol>inet</ipprotocol>
759
			<tag/>
760
			<tagged/>
761
			<max/>
762
			<max-src-nodes/>
763
			<max-src-conn/>
764
			<max-src-states/>
765
			<statetimeout/>
766
			<statetype>keep state</statetype>
767
			<os/>
768
			<source>
769
				<any/>
770
			</source>
771
			<destination>
772
				<any/>
773
			</destination>
774
			<descr><![CDATA[pass any any]]></descr>
775
		</rule>
776
		<rule>
777
			<id/>
778
			<type>pass</type>
779
			<interface>opt2</interface>
780
			<ipprotocol>inet</ipprotocol>
781
			<tag/>
782
			<tagged/>
783
			<max/>
784
			<max-src-nodes/>
785
			<max-src-conn/>
786
			<max-src-states/>
787
			<statetimeout/>
788
			<statetype>keep state</statetype>
789
			<os/>
790
			<source>
791
				<any/>
792
			</source>
793
			<destination>
794
				<any/>
795
			</destination>
796
			<descr><![CDATA[allow any any]]></descr>
797
		</rule>
798
	</filter>
799
	<shaper/>
800
	<ipsec>
801
		<preferoldsa/>
802
	</ipsec>
803
	<aliases>
804
		<alias>
805
			<name>pfBlockerEurope</name>
806
			<url>https://127.0.0.1:443/pfblocker.php?pfb=pfBlockerEurope</url>
807
			<updatefreq>32</updatefreq>
808
			<address/>
809
			<descr><![CDATA[pfBlocker country list]]></descr>
810
			<type>urltable</type>
811
			<detail><![CDATA[DO NOT EDIT THIS ALIAS]]></detail>
812
		</alias>
813
		<alias>
814
			<name>pfBlockerNorthAmerica</name>
815
			<url>https://127.0.0.1:443/pfblocker.php?pfb=pfBlockerNorthAmerica</url>
816
			<updatefreq>32</updatefreq>
817
			<address/>
818
			<descr><![CDATA[pfBlocker country list]]></descr>
819
			<type>urltable</type>
820
			<detail><![CDATA[DO NOT EDIT THIS ALIAS]]></detail>
821
		</alias>
822
		<alias>
823
			<name>pfBlockerTopSpammers</name>
824
			<url>https://127.0.0.1:443/pfblocker.php?pfb=pfBlockerTopSpammers</url>
825
			<updatefreq>32</updatefreq>
826
			<address/>
827
			<descr><![CDATA[pfBlocker country list]]></descr>
828
			<type>urltable</type>
829
			<detail><![CDATA[DO NOT EDIT THIS ALIAS]]></detail>
830
		</alias>
831
	</aliases>
832
	<proxyarp/>
833
	<cron>
834
		<item>
835
			<minute>0</minute>
836
			<hour>*</hour>
837
			<mday>*</mday>
838
			<month>*</month>
839
			<wday>*</wday>
840
			<who>root</who>
841
			<command>/usr/bin/nice -n20 newsyslog</command>
842
		</item>
843
		<item>
844
			<minute>1,31</minute>
845
			<hour>0-5</hour>
846
			<mday>*</mday>
847
			<month>*</month>
848
			<wday>*</wday>
849
			<who>root</who>
850
			<command>/usr/bin/nice -n20 adjkerntz -a</command>
851
		</item>
852
		<item>
853
			<minute>1</minute>
854
			<hour>3</hour>
855
			<mday>1</mday>
856
			<month>*</month>
857
			<wday>*</wday>
858
			<who>root</who>
859
			<command>/usr/bin/nice -n20 /etc/rc.update_bogons.sh</command>
860
		</item>
861
		<item>
862
			<minute>*/60</minute>
863
			<hour>*</hour>
864
			<mday>*</mday>
865
			<month>*</month>
866
			<wday>*</wday>
867
			<who>root</who>
868
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 sshlockout</command>
869
		</item>
870
		<item>
871
			<minute>1</minute>
872
			<hour>1</hour>
873
			<mday>*</mday>
874
			<month>*</month>
875
			<wday>*</wday>
876
			<who>root</who>
877
			<command>/usr/bin/nice -n20 /etc/rc.dyndns.update</command>
878
		</item>
879
		<item>
880
			<minute>*/60</minute>
881
			<hour>*</hour>
882
			<mday>*</mday>
883
			<month>*</month>
884
			<wday>*</wday>
885
			<who>root</who>
886
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 virusprot</command>
887
		</item>
888
		<item>
889
			<minute>30</minute>
890
			<hour>12</hour>
891
			<mday>*</mday>
892
			<month>*</month>
893
			<wday>*</wday>
894
			<who>root</who>
895
			<command>/usr/bin/nice -n20 /etc/rc.update_urltables</command>
896
		</item>
897
		<item>
898
			<minute>0</minute>
899
			<hour>*</hour>
900
			<mday>*</mday>
901
			<month>*</month>
902
			<wday>*</wday>
903
			<who>root</who>
904
			<command>/usr/local/bin/php -q /usr/local/www/pfblocker.php cron</command>
905
		</item>
906
	</cron>
907
	<wol/>
908
	<rrd>
909
		<enable/>
910
	</rrd>
911
	<load_balancer>
912
		<monitor_type>
913
			<name>ICMP</name>
914
			<type>icmp</type>
915
			<descr><![CDATA[ICMP]]></descr>
916
			<options/>
917
		</monitor_type>
918
		<monitor_type>
919
			<name>TCP</name>
920
			<type>tcp</type>
921
			<descr><![CDATA[Generic TCP]]></descr>
922
			<options/>
923
		</monitor_type>
924
		<monitor_type>
925
			<name>HTTP</name>
926
			<type>http</type>
927
			<descr><![CDATA[Generic HTTP]]></descr>
928
			<options>
929
				<path>/</path>
930
				<host/>
931
				<code>200</code>
932
			</options>
933
		</monitor_type>
934
		<monitor_type>
935
			<name>HTTPS</name>
936
			<type>https</type>
937
			<descr><![CDATA[Generic HTTPS]]></descr>
938
			<options>
939
				<path>/</path>
940
				<host/>
941
				<code>200</code>
942
			</options>
943
		</monitor_type>
944
		<monitor_type>
945
			<name>SMTP</name>
946
			<type>send</type>
947
			<descr><![CDATA[Generic SMTP]]></descr>
948
			<options>
949
				<send/>
950
				<expect>220 *</expect>
951
			</options>
952
		</monitor_type>
953
	</load_balancer>
954
	<widgets>
955
		<sequence>system_information-container:col1:show,captive_portal_status-container:col1:close,carp_status-container:col1:close,cpu_graphs-container:col1:close,gmirror_status-container:col1:close,installed_packages-container:col1:close,interface_statistics-container:col1:close,interfaces-container:col2:show,ipsec-container:col2:hide,load_balancer_status-container:col2:close,log-container:col2:close,picture-container:col2:close,rss-container:col2:close,services_status-container:col2:close,traffic_graphs-container:col2:close,openvpn-container:col2:show,smart_status-container:col2:none,gateways-container:col2:show,wake_on_lan-container:col2:none,pfBlocker-container:col2:none</sequence>
956
	</widgets>
957
	<revision>
958
		<time>1346026922</time>
959
		<description><![CDATA[tacgnol@192.168.5.26: /firewall_rules.php made unknown change]]></description>
960
		<username>tacgnol@192.168.5.26</username>
961
	</revision>
962
	<openvpn>
963
		<openvpn-client>
964
			<vpnid>1</vpnid>
965
			<protocol>UDP</protocol>
966
			<dev_mode>tun</dev_mode>
967
			<ipaddr/>
968
			<interface>wan</interface>
969
			<local_port/>
970
			<server_addr>199.127.250.187</server_addr>
971
			<server_port>4672</server_port>
972
			<resolve_retry>yes</resolve_retry>
973
			<proxy_addr/>
974
			<proxy_port/>
975
			<proxy_authtype>none</proxy_authtype>
976
			<proxy_user/>
977
			<proxy_passwd/>
978
			<description><![CDATA[StrongvpnUSA]]></description>
979
			<mode>p2p_tls</mode>
980
			<custom_options>verb 5;tun-mtu 1500; route-delay 2;explicit-exit-notify 2;fragment 1390;</custom_options>
981
			<caref>5039d84f662d8</caref>
982
			<certref>5039d86921c21</certref>
983
			<tls>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</tls>
984
			<crypto>BF-CBC</crypto>
985
			<engine>none</engine>
986
			<tunnel_network/>
987
			<tunnel_networkv6/>
988
			<remote_network/>
989
			<remote_networkv6/>
990
			<use_shaper/>
991
			<compression>yes</compression>
992
			<passtos/>
993
		</openvpn-client>
994
		<openvpn-client>
995
			<vpnid>2</vpnid>
996
			<protocol>UDP</protocol>
997
			<dev_mode>tun</dev_mode>
998
			<ipaddr/>
999
			<interface>wan</interface>
1000
			<local_port/>
1001
			<server_addr>195.191.218.184</server_addr>
1002
			<server_port>4398</server_port>
1003
			<resolve_retry>yes</resolve_retry>
1004
			<proxy_addr/>
1005
			<proxy_port/>
1006
			<proxy_authtype>none</proxy_authtype>
1007
			<proxy_user/>
1008
			<proxy_passwd/>
1009
			<description><![CDATA[StrongvpnUK]]></description>
1010
			<mode>p2p_tls</mode>
1011
			<custom_options>verb 5;tun-mtu 1500; route-delay 2;explicit-exit-notify 2;fragment 1390;</custom_options>
1012
			<caref>503aae4fdb01e</caref>
1013
			<certref>503aae67babcf</certref>
1014
			<tls>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</tls>
1015
			<crypto>BF-CBC</crypto>
1016
			<engine>none</engine>
1017
			<tunnel_network/>
1018
			<tunnel_networkv6/>
1019
			<remote_network/>
1020
			<remote_networkv6/>
1021
			<use_shaper/>
1022
			<compression>yes</compression>
1023
			<passtos/>
1024
		</openvpn-client>
1025
	</openvpn>
1026
	<l7shaper>
1027
		<container/>
1028
	</l7shaper>
1029
	<dnshaper/>
1030
	<cert>
1031
		<refid>502a4d7c52bc0</refid>
1032
		<descr><![CDATA[webConfigurator default]]></descr>
1033
		<crt>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</crt>
1034
		<prv>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</prv>
1035
	</cert>
1036
	<cert>
1037
		<refid>5039d86921c21</refid>
1038
		<descr><![CDATA[StrongvpnUSA]]></descr>
1039
		<crt>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</crt>
1040
		<prv>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</prv>
1041
	</cert>
1042
	<cert>
1043
		<refid>503aae67babcf</refid>
1044
		<descr><![CDATA[StrongvpnUK]]></descr>
1045
		<crt>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</crt>
1046
		<prv>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</prv>
1047
	</cert>
1048
	<dhcpdv6/>
1049
	<dyndnses>
1050
		<dyndns>
1051
			<type>dyndns-custom</type>
1052
			<username>singerie</username>
1053
			<password>buklauFTW!</password>
1054
			<host>r01.internetsuperbackbone.com</host>
1055
			<mx/>
1056
			<wildcard/>
1057
			<enable/>
1058
			<interface>wan</interface>
1059
			<zoneid/>
1060
			<ttl/>
1061
			<updateurl/>
1062
			<resultmatch/>
1063
			<requestif>wan</requestif>
1064
			<descr/>
1065
			<id>0</id>
1066
		</dyndns>
1067
	</dyndnses>
1068
	<installedpackages>
1069
		<pfblockertopspammers>
1070
			<config>
1071
				<countries>KR,CN,IN,RU,TR,VN,UA,BR,VE,PK</countries>
1072
				<action>Deny_Inbound</action>
1073
			</config>
1074
		</pfblockertopspammers>
1075
		<pfblocker>
1076
			<config>
1077
				<enable_cb>on</enable_cb>
1078
				<enable_log/>
1079
				<inbound_interface>wan</inbound_interface>
1080
				<inbound_deny_action>block</inbound_deny_action>
1081
				<outbound_interface>lan</outbound_interface>
1082
				<outbound_deny_action>reject</outbound_deny_action>
1083
				<credits/>
1084
				<donation/>
1085
			</config>
1086
		</pfblocker>
1087
		<service/>
1088
		<pfblockernorthamerica>
1089
			<config>
1090
				<countries>US</countries>
1091
				<action>Alias_only</action>
1092
			</config>
1093
		</pfblockernorthamerica>
1094
		<package>
1095
			<name>pfBlocker</name>
1096
			<website/>
1097
			<descr><![CDATA[Introduce Enhanced Aliastable Feature to pfsense.&lt;br&gt;
1098
			Assign many IP urls lists from sites like I-blocklist to a single alias and then choose rule action to take.&lt;br&gt;
1099
			This package also Block countries and IP ranges.&lt;br&gt;
1100
			pfBlocker replaces Countryblock and IPblocklist]]></descr>
1101
			<category>Firewall</category>
1102
			<pkginfolink>http://forum.pfsense.org/index.php/topic,42543.0.html</pkginfolink>
1103
			<config_file>http://pfsense.org/packages/config/pf-blocker/pfblocker.xml</config_file>
1104
			<depends_on_package_base_url>http://files.pfsense.org/packages/amd64/8/All/</depends_on_package_base_url>
1105
			<version>1.0.2</version>
1106
			<status>Release</status>
1107
			<required_version>2.0</required_version>
1108
			<maintainer>tom@tomschaefer.org marcellocoutinho@gmail.com</maintainer>
1109
			<configurationfile>pfblocker.xml</configurationfile>
1110
		</package>
1111
		<menu>
1112
			<name>pfBlocker</name>
1113
			<tooltiptext>Configure pfblocker</tooltiptext>
1114
			<section>Firewall</section>
1115
			<url>/pkg_edit.php?xml=pfblocker.xml</url>
1116
		</menu>
1117
		<tab>
1118
			<text>General</text>
1119
			<url>/pkg_edit.php?xml=pfblocker.xml&amp;id=0</url>
1120
			<active/>
1121
		</tab>
1122
		<pfblockereurope>
1123
			<config>
1124
				<countries>GB</countries>
1125
				<action>Alias_only</action>
1126
			</config>
1127
		</pfblockereurope>
1128
	</installedpackages>
1129
	<dhcrelay/>
1130
	<ca>
1131
		<refid>5039d84f662d8</refid>
1132
		<descr><![CDATA[StrongvpnUSA]]></descr>
1133
		<crt>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</crt>
1134
	</ca>
1135
	<ca>
1136
		<refid>503aae4fdb01e</refid>
1137
		<descr><![CDATA[StrongvpnUK]]></descr>
1138
		<crt>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</crt>
1139
	</ca>
1140
	<ppps/>
1141
	<gateways>
1142
		<gateway_item>
1143
			<interface>opt1</interface>
1144
			<gateway>dynamic</gateway>
1145
			<name>STRONGVPNUSA_VPNV4</name>
1146
			<weight>1</weight>
1147
			<ipprotocol>inet</ipprotocol>
1148
			<interval/>
1149
			<descr><![CDATA[Interface STRONGVPNUSA_VPNV4 Gateway]]></descr>
1150
			<monitor>8.8.8.8</monitor>
1151
		</gateway_item>
1152
		<gateway_item>
1153
			<interface>wan</interface>
1154
			<gateway>dynamic</gateway>
1155
			<name>WAN_DHCP</name>
1156
			<weight>1</weight>
1157
			<ipprotocol>inet</ipprotocol>
1158
			<interval/>
1159
			<descr><![CDATA[Interface WAN_DHCP Gateway]]></descr>
1160
			<monitor>8.8.4.4</monitor>
1161
			<defaultgw/>
1162
		</gateway_item>
1163
		<gateway_item>
1164
			<interface>wan</interface>
1165
			<gateway>dynamic</gateway>
1166
			<name>WAN_DHCP6</name>
1167
			<weight>1</weight>
1168
			<ipprotocol>inet6</ipprotocol>
1169
			<interval/>
1170
			<descr><![CDATA[Interface WAN_DHCP6 Gateway]]></descr>
1171
		</gateway_item>
1172
		<gateway_item>
1173
			<interface>opt1</interface>
1174
			<gateway>dynamic</gateway>
1175
			<name>STRONGVPNUSA_VPNV6</name>
1176
			<weight>1</weight>
1177
			<ipprotocol>inet6</ipprotocol>
1178
			<interval/>
1179
			<descr><![CDATA[Interface STRONGVPNUSA_VPNV6 Gateway]]></descr>
1180
		</gateway_item>
1181
		<gateway_item>
1182
			<interface>opt2</interface>
1183
			<gateway>dynamic</gateway>
1184
			<name>STRONGVPNUK_VPNV4</name>
1185
			<weight>1</weight>
1186
			<ipprotocol>inet</ipprotocol>
1187
			<interval/>
1188
			<descr><![CDATA[Interface STRONGVPNUK_VPNV4 Gateway]]></descr>
1189
			<monitor>4.2.2.2</monitor>
1190
		</gateway_item>
1191
	</gateways>
1192
</pfsense>
    (1-1/1)