Project

General

Profile

Download (16.8 KB) Statistics
| Branch: | Tag: | Revision:
1
<?xml version="1.0"?>
2
<!-- pfSense default system configuration -->
3
<pfsense>
4
	<version>5.5</version>
5
	<lastchange></lastchange>
6
	<theme>nervecenter</theme>
7
	<sysctl>
8
		<item>
9
			<desc>Set the ephemeral port range to be lower.</desc>
10
			<tunable>net.inet.ip.portrange.first</tunable>
11
			<value>1024</value>
12
		</item>
13
		<item>
14
			<desc>Drop packets to closed TCP ports without returning a RST</desc>
15
			<tunable>net.inet.tcp.blackhole</tunable>
16
			<value>2</value>
17
		</item>
18
		<item>
19
			<desc>Do not send ICMP port unreachable messages for closed UDP ports</desc>
20
			<tunable>net.inet.udp.blackhole</tunable>
21
			<value>1</value>
22
		</item>
23
		<item>
24
			<desc>Randomize the ID field in IP packets (default is 0: sequential IP IDs)</desc>
25
			<tunable>net.inet.ip.random_id</tunable>
26
			<value>1</value>
27
		</item>
28
		<item>
29
			<desc>Drop SYN-FIN packets (breaks RFC1379, but nobody uses it anyway)</desc>
30
			<tunable>net.inet.tcp.drop_synfin</tunable>
31
			<value>1</value>
32
		</item>
33
		<item>
34
			<desc>Enable sending IPv4 redirects</desc>
35
			<tunable>net.inet.ip.redirect</tunable>
36
			<value>1</value>
37
		</item>
38
		<item>
39
			<desc>Enable sending IPv6 redirects</desc>
40
			<tunable>net.inet6.ip6.redirect</tunable>
41
			<value>1</value>
42
		</item>
43
		<item>
44
			<desc>Generate SYN cookies for outbound SYN-ACK packets</desc>
45
			<tunable>net.inet.tcp.syncookies</tunable>
46
			<value>1</value>
47
		</item>
48
		<item>
49
			<desc>Maximum incoming/outgoing TCP datagram size (receive)</desc>
50
			<tunable>net.inet.tcp.recvspace</tunable>
51
			<value>65228</value>
52
		</item>
53
		<item>
54
			<desc>Maximum incoming/outgoing TCP datagram size (send)</desc>
55
			<tunable>net.inet.tcp.sendspace</tunable>
56
			<value>65228</value>
57
		</item>
58
		<item>
59
			<desc>IP Fastforwarding</desc>
60
			<tunable>net.inet.ip.fastforwarding</tunable>
61
			<value>1</value>
62
		</item>
63
		<item>
64
			<desc>Do not delay ACK to try and piggyback it onto a data packet</desc>
65
			<tunable>net.inet.tcp.delayed_ack</tunable>
66
			<value>0</value>
67
		</item>
68
		<item>
69
			<desc>Maximum outgoing UDP datagram size</desc>
70
			<tunable>net.inet.udp.maxdgram</tunable>
71
			<value>57344</value>
72
		</item>
73
		<item>
74
			<desc>Handling of non-IP packets which are not passed to pfil (see if_bridge(4))</desc>
75
			<tunable>net.link.bridge.pfil_onlyip</tunable>
76
			<value>0</value>
77
		</item>
78
		<item>
79
		        <desc>Set to 0 to disable filtering on the incoming and outgoing member interfaces.</desc>
80
		        <tunable>net.link.bridge.pfil_member</tunable>
81
		        <value>1</value>
82
		</item>
83
		<item>
84
		        <desc>Set to 1 to enable filtering on the bridge interface</desc>
85
		        <tunable>net.link.bridge.pfil_bridge</tunable>
86
		        <value>0</value>
87
		</item>
88
		<item>
89
			<desc>Allow unprivileged access to tap(4) device nodes</desc>
90
			<tunable>net.link.tap.user_open</tunable>
91
			<value>1</value>
92
		</item>
93
		<item>
94
			<desc>Verbosity of the rndtest driver (0: do not display results on console)</desc>
95
			<tunable>kern.rndtest.verbose</tunable>
96
			<value>0</value>
97
		</item>
98
		<item>
99
			<desc>Randomize PID's (see src/sys/kern/kern_fork.c: sysctl_kern_randompid())</desc>
100
			<tunable>kern.randompid</tunable>
101
			<value>347</value>
102
		</item>
103
		<item>
104
			<desc>Maximum size of the IP input queue</desc>
105
			<tunable>net.inet.ip.intr_queue_maxlen</tunable>
106
			<value>1000</value>
107
		</item>
108
		<item>
109
			<desc>Disable CTRL+ALT+Delete reboot from keyboard.</desc>
110
			<tunable>hw.syscons.kbd_reboot</tunable>
111
			<value>0</value>
112
		</item>
113
		<item>
114
			<desc>Enable TCP Inflight mode</desc>
115
			<tunable>net.inet.tcp.inflight.enable</tunable>
116
			<value>1</value>
117
		</item>
118
		<item>
119
			<desc>Enable TCP extended debugging</desc>
120
			<tunable>net.inet.tcp.log_debug</tunable>
121
			<value>0</value>
122
		</item>
123
		<item>
124
			<desc>Set ICMP Limits</desc>
125
			<tunable>net.inet.icmp.icmplim</tunable>
126
			<value>750</value>
127
		</item>
128
		<item>
129
			<desc>TCP Offload Engine</desc>
130
			<tunable>net.inet.tcp.tso</tunable>
131
			<value>0</value>
132
		</item>
133
		<item>
134
			<desc>TCP Offload Engine - BCE</desc>
135
			<tunable>hw.bce.tso_enable</tunable>
136
			<value>0</value>
137
		</item>
138
	</sysctl>
139
	<system>
140
		<optimization>normal</optimization>
141
		<hostname>pfSense</hostname>
142
		<domain>local</domain>
143
		<dnsserver></dnsserver>
144
		<dnsallowoverride/>
145
		<group>
146
			<name>all</name>
147
			<description>All Users</description>
148
			<scope>system</scope>
149
			<gid>1998</gid>
150
			<member>0</member>
151
		</group>
152
		<group>
153
			<name>admins</name>
154
			<description>System Administrators</description>
155
			<scope>system</scope>
156
			<gid>1999</gid>
157
			<member>0</member>
158
			<priv>page-all</priv>
159
		</group>
160
		<user>
161
			<name>admin</name>
162
			<fullname>System Administrator</fullname>
163
			<scope>system</scope>
164
			<groupname>admins</groupname>
165
			<password>$1$dSJImFph$GvZ7.1UbuWu.Yb8etC0re.</password>
166
			<uid>0</uid>
167
			<priv>user-shell-access</priv>
168
		</user>
169
		<nextuid>2000</nextuid>
170
		<nextgid>2000</nextgid>
171
		<timezone>Etc/UTC</timezone>
172
		<time-update-interval>300</time-update-interval>
173
		<timeservers>0.pfsense.pool.ntp.org</timeservers>
174
		<webgui>
175
			<protocol>http</protocol>
176
			<!--
177
			<port></port>
178
			<certificate></certificate>
179
			<private-key></private-key>
180
			<noassigninterfaces/>
181
			<expanddiags/>
182
			<noantilockout></noantilockout>
183
			-->
184
		</webgui>
185
                <disablenatreflection>yes</disablenatreflection>
186
		<!-- <disableconsolemenu/> -->
187
		<!-- <disablefirmwarecheck/> -->
188
		<!-- <shellcmd></shellcmd> -->
189
		<!-- <earlyshellcmd></earlyshellcmd> -->
190
		<!-- <harddiskstandby></harddiskstandby> -->
191
	</system>
192
	<interfaces>
193
		<wan>
194
			<if>sis1</if>
195
			<mtu></mtu>
196
			<ipaddr>dhcp</ipaddr>
197
			<!-- *or* ipv4-address *or* 'pppoe' *or* 'pptp' *or* 'bigpond' -->
198
			<subnet></subnet>
199
			<gateway></gateway>
200
			<blockpriv/>
201
			<blockbogons/>
202
                        <disableftpproxy/>
203
			<dhcphostname></dhcphostname>
204
			<media></media>
205
			<mediaopt></mediaopt>
206
			<bandwidth>100</bandwidth>
207
			<bandwidthtype>Mb</bandwidthtype>
208
			<!--
209
			<wireless>
210
				*see below (opt[n])*
211
			</wireless>
212
			-->
213
		</wan>
214
		<lan>
215
			<if>sis0</if>
216
			<ipaddr>192.168.1.1</ipaddr>
217
			<subnet>24</subnet>
218
			<media></media>
219
			<mediaopt></mediaopt>
220
			<bandwidth>100</bandwidth>
221
			<bandwidthtype>Mb</bandwidthtype>
222
			<!--
223
			<wireless>
224
				*see below (opt[n])*
225
			</wireless>
226
			-->
227
		</lan>
228
		<!--
229
		<opt[n]>
230
			<enable/>
231
			<descr></descr>
232
			<if></if>
233
			<ipaddr></ipaddr>
234
			<subnet></subnet>
235
			<media></media>
236
			<mediaopt></mediaopt>
237
			<bridge>lan|wan|opt[n]</bridge>
238
			<wireless>
239
				<mode>hostap *or* bss *or* ibss</mode>
240
				<ssid></ssid>
241
				<channel></channel>
242
				<wep>
243
					<enable/>
244
					<key>
245
						<txkey/>
246
						<value></value>
247
					</key>
248
				</wep>
249
			</wireless>
250
		</opt[n]>
251
		-->
252
	</interfaces>
253
	<!--
254
	<vlans>
255
		<vlan>
256
			<tag></tag>
257
			<if></if>
258
			<descr></descr>
259
		</vlan>
260
	</vlans>
261
	-->
262
	<staticroutes>
263
		<!--
264
		<route>
265
			<interface>lan|opt[n]|pptp</interface>
266
			<network>xxx.xxx.xxx.xxx/xx</network>
267
			<gateway>xxx.xxx.xxx.xxx</gateway>
268
			<descr></descr>
269
		</route>
270
		-->
271
	</staticroutes>
272
	<pppoe>
273
		<username></username>
274
		<password></password>
275
		<provider></provider>
276
		<!--
277
		<ondemand/>
278
		<timeout></timeout>
279
		-->
280
	</pppoe>
281
	<pptp>
282
		<username></username>
283
		<password></password>
284
		<local></local>
285
		<subnet></subnet>
286
		<remote></remote>
287
		<!--
288
		<ondemand/>
289
		<timeout></timeout>
290
		-->
291
	</pptp>
292
	<bigpond>
293
		<username></username>
294
		<password></password>
295
		<authserver></authserver>
296
		<authdomain></authdomain>
297
		<minheartbeatinterval></minheartbeatinterval>
298
	</bigpond>
299
	<dyndns>
300
		<!-- <enable/> -->
301
		<type>dyndns</type>
302
		<username></username>
303
		<password></password>
304
		<host></host>
305
		<mx></mx>
306
		<!-- <wildcard/> -->
307
	</dyndns>
308
	<dhcpd>
309
		<lan>
310
			<enable/>
311
			<range>
312
				<from>192.168.1.100</from>
313
				<to>192.168.1.199</to>
314
			</range>
315
			<!--
316
			<winsserver>xxx.xxx.xxx.xxx</winsserver>
317
			<defaultleasetime></defaultleasetime>
318
			<maxleasetime></maxleasetime>
319
			<gateway>xxx.xxx.xxx.xxx</gateway>
320
			<domain></domain>
321
			<dnsserver></dnsserver>
322
			<ntpserver>xxx.xxx.xxx.xxx</ntpserver>
323
			<next-server></next-server>
324
			<filename></filename>
325
			-->
326
		</lan>
327
		<!--
328
		<opt[n]>
329
			...
330
		</opt[n]>
331
		-->
332
		<!--
333
		<staticmap>
334
			<mac>xx:xx:xx:xx:xx:xx</mac>
335
			<ipaddr>xxx.xxx.xxx.xxx</ipaddr>
336
			<descr></descr>
337
		</staticmap>
338
		-->
339
	</dhcpd>
340
	<pptpd>
341
		<mode><!-- off *or* server *or* redir --></mode>
342
		<redir></redir>
343
		<localip></localip>
344
		<remoteip></remoteip>
345
		<!-- <accounting/> -->
346
		<!--
347
		<user>
348
			<name></name>
349
			<password></password>
350
		</user>
351
		-->
352
	</pptpd>
353
	<ovpn>
354
		<!--
355
		<server>
356
			<enable/>
357
			<ca_cert></ca_cert>
358
			<srv_cert></srv_cert>
359
			<srv_key></srv_key>
360
			<dh_param></dh_param>
361
			<verb></verb>
362
			<tun_iface></tun_iface>
363
			<port></port>
364
			<bind_iface></bind_iface>
365
			<cli2cli/>
366
			<maxcli></maxcli>
367
			<prefix></prefix>
368
			<ipblock></ipblock>
369
			<crypto></crypto>
370
			<dupcn/>
371
			<psh_options>
372
				<redir></redir>
373
				<redir_loc></redir_loc>
374
				<rte_delay></rte_delay>
375
				<ping></ping>
376
				<pingrst></pingrst>
377
				<pingexit></pingexit>
378
				<inact></inact>
379
			</psh_options>
380
		</server>
381
		<client>
382
			<tunnel></tunnel>
383
			<ca_cert></ca_cert>
384
			<cli_cert></cli_cert>
385
			<cli_key></cli_key>
386
			<type></type>
387
			<tunnel>
388
				<if></if>
389
				<proto></proto>
390
				<cport></cport>
391
				<saddr></saddr>
392
				<sport></sport>
393
				<crypto></crypto>
394
			</tunnel>
395
		</client>
396
		-->
397
	</ovpn>
398
	<dnsmasq>
399
		<enable/>
400
		<!--
401
		<hosts>
402
			<host></host>
403
			<domain></domain>
404
			<ip></ip>
405
			<descr></descr>
406
		</hosts>
407
		-->
408
	</dnsmasq>
409
	<snmpd>
410
		<!-- <enable/> -->
411
		<syslocation></syslocation>
412
		<syscontact></syscontact>
413
		<rocommunity>public</rocommunity>
414
	</snmpd>
415
	<diag>
416
		<ipv6nat>
417
			<!-- <enable/> -->
418
			<ipaddr></ipaddr>
419
		</ipv6nat>
420
	</diag>
421
	<bridge>
422
		<!-- <filteringbridge/> -->
423
	</bridge>
424
	<syslog>
425
		<!--
426
		<reverse/>
427
		<enable/>
428
		<remoteserver>xxx.xxx.xxx.xxx</remoteserver>
429
		<filter/>
430
		<dhcp/>
431
		<system/>
432
		<nologdefaultblock/>
433
		-->
434
	</syslog>
435
	<!--
436
	<captiveportal>
437
		<enable/>
438
		<interface>lan|opt[n]</interface>
439
		<idletimeout>minutes</idletimeout>
440
		<timeout>minutes</timeout>
441
		<page>
442
			<htmltext></htmltext>
443
			<errtext></errtext>
444
		</page>
445
		<httpslogin/>
446
		<httpsname></httpsname>
447
		<certificate></certificate>
448
		<private-key></private-key>
449
		<redirurl></redirurl>
450
		<radiusip></radiusip>
451
		<radiusport></radiusport>
452
		<radiuskey></radiuskey>
453
		<nomacfilter/>
454
	</captiveportal>
455
	-->
456
	<nat>
457
		<ipsecpassthru>
458
			<enable/>
459
		</ipsecpassthru>
460
		<!--
461
		<rule>
462
			<interface></interface>
463
			<external-address></external-address>
464
			<protocol></protocol>
465
			<external-port></external-port>
466
			<target></target>
467
			<local-port></local-port>
468
			<descr></descr>
469
		</rule>
470
		-->
471
		<!--
472
		<onetoone>
473
			<interface></interface>
474
			<external>xxx.xxx.xxx.xxx</external>
475
			<internal>xxx.xxx.xxx.xxx</internal>
476
			<subnet></subnet>
477
			<descr></descr>
478
		</onetoone>
479
		-->
480
		<!--
481
		<advancedoutbound>
482
			<enable/>
483
			<rule>
484
				<interface></interface>
485
				<source>
486
					<network>xxx.xxx.xxx.xxx/xx</network>
487
				</source>
488
				<destination>
489
					<not/>
490
					<any/>
491
					*or*
492
					<network>xxx.xxx.xxx.xxx/xx</network>
493
				</destination>
494
				<target>xxx.xxx.xxx.xxx</target>
495
				<descr></descr>
496
			</rule>
497
		</advancedoutbound>
498
		-->
499
		<!--
500
		<servernat>
501
			<ipaddr></ipaddr>
502
			<descr></descr>
503
		</servernat>
504
		-->
505
	</nat>
506
	<filter>
507
		<!-- <tcpidletimeout></tcpidletimeout> -->
508
		<rule>
509
			<type>pass</type>
510
			<descr>Default allow LAN to any rule</descr>
511
			<interface>lan</interface>
512
			<source>
513
				<network>lan</network>
514
			</source>
515
			<destination>
516
				<any/>
517
			</destination>
518
		</rule>
519
		<!-- rule syntax:
520
		<rule>
521
			<disabled/>
522
			<type>pass|block|reject</type>
523
			<descr>...</descr>
524
			<interface>lan|opt[n]|wan|pptp</interface>
525
			<protocol>tcp|udp|tcp/udp|...</protocol>
526
			<icmptype></icmptype>
527
			<source>
528
				<not/>
529

    
530
				<address>xxx.xxx.xxx.xxx(/xx) or alias</address>
531
				*or*
532
				<network>lan|opt[n]|pptp</network>
533
				*or*
534
				<any/>
535

    
536
				<port>a[-b]</port>
537
			</source>
538
			<destination>
539
				*same as for source*
540
			</destination>
541
			<frags/>
542
			<log/>
543
		</rule>
544
		-->
545
	</filter>
546
	<shaper>
547
		<!-- <enable/> -->
548
		<!-- <schedulertype>hfsc</schedulertype> -->
549
		<!-- rule syntax:
550
		<rule>
551
			<disabled/>
552
			<descr></descr>
553

    
554
			<targetpipe>number (zero based)</targetpipe>
555
			*or*
556
			<targetqueue>number (zero based)</targetqueue>
557

    
558
			<interface>lan|wan|opt[n]|pptp</interface>
559
			<protocol>tcp|udp</protocol>
560
			<direction>in|out</direction>
561
			<source>
562
				<not/>
563

    
564
				<address>xxx.xxx.xxx.xxx(/xx)</address>
565
				*or*
566
				<network>lan|opt[n]|pptp</network>
567
				*or*
568
				<any/>
569

    
570
				<port>a[-b]</port>
571
			</source>
572
			<destination>
573
				*same as for source*
574
			</destination>
575

    
576
			<iplen>from[-to]</iplen>
577
			<iptos>(!)lowdelay,throughput,reliability,mincost,congestion</iptos>
578
			<tcpflags>(!)fin,syn,rst,psh,ack,urg</tcpflags>
579
		</rule>
580
		<pipe>
581
			<descr></descr>
582
			<bandwidth></bandwidth>
583
			<delay></delay>
584
			<mask>source|destination</mask>
585
		</pipe>
586
		<queue>
587
			<descr></descr>
588
			<targetpipe>number (zero based)</targetpipe>
589
			<weight></weight>
590
			<mask>source|destination</mask>
591
		</queue>
592
		-->
593
	</shaper>
594
	<ipsec>
595
                <preferredoldsa/>
596
		<!-- <enable/> -->
597
		<!-- syntax:
598
		<tunnel>
599
			<disabled/>
600
			<auto/>
601
			<descr></descr>
602
			<interface>lan|wan|opt[n]</interface>
603
			<local-subnet>
604
				<address>xxx.xxx.xxx.xxx(/xx)</address>
605
				*or*
606
				<network>lan|opt[n]</network>
607
			</local-subnet>
608
			<remote-subnet>xxx.xxx.xxx.xxx/xx</remote-subnet>
609
			<remote-gateway></remote-gateway>
610
			<p1>
611
				<mode></mode>
612
				<myident>
613
					<myaddress/>
614
					*or*
615
					<address>xxx.xxx.xxx.xxx</address>
616
					*or*
617
					<fqdn>the.fq.dn</fqdn>
618
				</myident>
619
				<encryption-algorithm></encryption-algorithm>
620
				<hash-algorithm></hash-algorithm>
621
				<dhgroup></dhgroup>
622
				<lifetime></lifetime>
623
				<pre-shared-key></pre-shared-key>
624
			</p1>
625
			<p2>
626
				<protocol></protocol>
627
				<encryption-algorithm-option></encryption-algorithm-option>
628
				<hash-algorithm-option></hash-algorithm-option>
629
				<pfsgroup></pfsgroup>
630
				<lifetime></lifetime>
631
			</p2>
632
		</tunnel>
633
		<mobileclients>
634
			<enable/>
635
			<p1>
636
				<mode></mode>
637
				<myident>
638
					<myaddress/>
639
					*or*
640
					<address>xxx.xxx.xxx.xxx</address>
641
					*or*
642
					<fqdn>the.fq.dn</fqdn>
643
				</myident>
644
				<encryption-algorithm></encryption-algorithm>
645
				<hash-algorithm></hash-algorithm>
646
				<dhgroup></dhgroup>
647
				<lifetime></lifetime>
648
			</p1>
649
			<p2>
650
				<protocol></protocol>
651
				<encryption-algorithm-option></encryption-algorithm-option>
652
				<hash-algorithm-option></hash-algorithm-option>
653
				<pfsgroup></pfsgroup>
654
				<lifetime></lifetime>
655
			</p2>
656
		</mobileclients>
657
		<mobilekey>
658
			<ident></ident>
659
			<pre-shared-key></pre-shared-key>
660
		</mobilekey>
661
		-->
662
	</ipsec>
663
	<aliases>
664
		<!--
665
		<alias>
666
			<name></name>
667
			<address>xxx.xxx.xxx.xxx(/xx)</address>
668
			<descr></descr>
669
		</alias>
670
		-->
671
	</aliases>
672
	<proxyarp>
673
		<!--
674
		<proxyarpnet>
675
			<network>xxx.xxx.xxx.xxx/xx</network>
676
			*or*
677
			<range>
678
				<from>xxx.xxx.xxx.xxx</from>
679
				<to>xxx.xxx.xxx.xxx</to>
680
			</range>
681
		</proxyarpnet>
682
		-->
683
	</proxyarp>
684
	<cron>
685
		<item>
686
			<minute>0</minute>
687
			<hour>*</hour>
688
			<mday>*</mday>
689
			<month>*</month>
690
			<wday>*</wday>
691
			<who>root</who>
692
			<command>/usr/bin/nice -n20 newsyslog</command>
693
		</item>
694
		<item>
695
			<minute>1,31</minute>
696
			<hour>0-5</hour>
697
			<mday>*</mday>
698
			<month>*</month>
699
			<wday>*</wday>
700
			<who>root</who>
701
			<command>/usr/bin/nice -n20 adjkerntz -a</command>
702
		</item>
703
		<item>
704
			<minute>1</minute>
705
			<hour>3</hour>
706
			<mday>1</mday>
707
			<month>*</month>
708
			<wday>*</wday>
709
			<who>root</who>
710
			<command>/usr/bin/nice -n20 /etc/rc.update_bogons.sh</command>
711
		</item>
712
		<item>
713
			<minute>*/60</minute>
714
			<hour>*</hour>
715
			<mday>*</mday>
716
			<month>*</month>
717
			<wday>*</wday>
718
			<who>root</who>
719
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 sshlockout</command>
720
		</item>
721
		<item>
722
			<minute>1</minute>
723
			<hour>1</hour>
724
			<mday>*</mday>
725
			<month>*</month>
726
			<wday>*</wday>
727
			<who>root</who>
728
			<command>/usr/bin/nice -n20 /etc/rc.dyndns.update</command>
729
		</item>
730
		<item>
731
			<minute>*/60</minute>
732
			<hour>*</hour>
733
			<mday>*</mday>
734
			<month>*</month>
735
			<wday>*</wday>
736
			<who>root</who>
737
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 virusprot</command>
738
		</item>
739
		<item>
740
			<minute>*/60</minute>
741
			<hour>*</hour>
742
			<mday>*</mday>
743
			<month>*</month>
744
			<wday>*</wday>
745
			<who>root</who>
746
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -t 3600 snort2c</command>
747
		</item>
748
		<item>
749
			<minute>*/5</minute>
750
			<hour>*</hour>
751
			<mday>*</mday>
752
			<month>*</month>
753
			<wday>*</wday>
754
			<who>root</who>
755
			<command>/usr/local/bin/checkreload.sh</command>
756
		</item>
757
		<item>
758
			<minute>*/5</minute>
759
			<hour>*</hour>
760
			<mday>*</mday>
761
			<month>*</month>
762
			<wday>*</wday>
763
			<who>root</who>
764
			<command>/etc/ping_hosts.sh</command>
765
		</item>
766
		<item>
767
			<minute>*/140</minute>
768
			<hour>*</hour>
769
			<mday>*</mday>
770
			<month>*</month>
771
			<wday>*</wday>
772
			<who>root</who>
773
			<command>/usr/local/sbin/reset_slbd.sh</command>
774
		</item>
775
	</cron>
776
	<wol>
777
		<!--
778
		<wolentry>
779
			<interface>lan|opt[n]</interface>
780
			<mac>xx:xx:xx:xx:xx:xx</mac>
781
			<descr></descr>
782
		</wolentry>
783
		-->
784
	</wol>
785
	<rrd>
786
		<enable/>
787
	</rrd>
788
</pfsense>
(1-1/2)