Project

General

Profile

Download (16.3 KB) Statistics
| Branch: | Tag: | Revision:
1
<?xml version="1.0"?>
2
<!-- pfSense default system configuration -->
3
<pfsense>
4
	<version>5.8</version>
5
	<lastchange></lastchange>
6
	<theme>nervecenter</theme>
7
	<sysctl>
8
		<item>
9
			<desc>Set the ephemeral port range to be lower.</desc>
10
			<tunable>net.inet.ip.portrange.first</tunable>
11
			<value>1024</value>
12
		</item>
13
		<item>
14
			<desc>Drop packets to closed TCP ports without returning a RST</desc>
15
			<tunable>net.inet.tcp.blackhole</tunable>
16
			<value>2</value>
17
		</item>
18
		<item>
19
			<desc>Do not send ICMP port unreachable messages for closed UDP ports</desc>
20
			<tunable>net.inet.udp.blackhole</tunable>
21
			<value>1</value>
22
		</item>
23
		<item>
24
			<desc>Randomize the ID field in IP packets (default is 0: sequential IP IDs)</desc>
25
			<tunable>net.inet.ip.random_id</tunable>
26
			<value>1</value>
27
		</item>
28
		<item>
29
			<desc>Drop SYN-FIN packets (breaks RFC1379, but nobody uses it anyway)</desc>
30
			<tunable>net.inet.tcp.drop_synfin</tunable>
31
			<value>1</value>
32
		</item>
33
		<item>
34
			<desc>Enable sending IPv4 redirects</desc>
35
			<tunable>net.inet.ip.redirect</tunable>
36
			<value>1</value>
37
		</item>
38
		<item>
39
			<desc>Enable sending IPv6 redirects</desc>
40
			<tunable>net.inet6.ip6.redirect</tunable>
41
			<value>1</value>
42
		</item>
43
		<item>
44
			<desc>Generate SYN cookies for outbound SYN-ACK packets</desc>
45
			<tunable>net.inet.tcp.syncookies</tunable>
46
			<value>1</value>
47
		</item>
48
		<item>
49
			<desc>Maximum incoming/outgoing TCP datagram size (receive)</desc>
50
			<tunable>net.inet.tcp.recvspace</tunable>
51
			<value>65228</value>
52
		</item>
53
		<item>
54
			<desc>Maximum incoming/outgoing TCP datagram size (send)</desc>
55
			<tunable>net.inet.tcp.sendspace</tunable>
56
			<value>65228</value>
57
		</item>
58
		<item>
59
			<desc>IP Fastforwarding</desc>
60
			<tunable>net.inet.ip.fastforwarding</tunable>
61
			<value>1</value>
62
		</item>
63
		<item>
64
			<desc>Do not delay ACK to try and piggyback it onto a data packet</desc>
65
			<tunable>net.inet.tcp.delayed_ack</tunable>
66
			<value>0</value>
67
		</item>
68
		<item>
69
			<desc>Maximum outgoing UDP datagram size</desc>
70
			<tunable>net.inet.udp.maxdgram</tunable>
71
			<value>57344</value>
72
		</item>
73
		<item>
74
			<desc>Handling of non-IP packets which are not passed to pfil (see if_bridge(4))</desc>
75
			<tunable>net.link.bridge.pfil_onlyip</tunable>
76
			<value>0</value>
77
		</item>
78
		<item>
79
		        <desc>Set to 0 to disable filtering on the incoming and outgoing member interfaces.</desc>
80
		        <tunable>net.link.bridge.pfil_member</tunable>
81
		        <value>1</value>
82
		</item>
83
		<item>
84
		        <desc>Set to 1 to enable filtering on the bridge interface</desc>
85
		        <tunable>net.link.bridge.pfil_bridge</tunable>
86
		        <value>0</value>
87
		</item>
88
		<item>
89
			<desc>Allow unprivileged access to tap(4) device nodes</desc>
90
			<tunable>net.link.tap.user_open</tunable>
91
			<value>1</value>
92
		</item>
93
		<item>
94
			<desc>Verbosity of the rndtest driver (0: do not display results on console)</desc>
95
			<tunable>kern.rndtest.verbose</tunable>
96
			<value>0</value>
97
		</item>
98
		<item>
99
			<desc>Randomize PID's (see src/sys/kern/kern_fork.c: sysctl_kern_randompid())</desc>
100
			<tunable>kern.randompid</tunable>
101
			<value>347</value>
102
		</item>
103
		<item>
104
			<desc>Maximum size of the IP input queue</desc>
105
			<tunable>net.inet.ip.intr_queue_maxlen</tunable>
106
			<value>1000</value>
107
		</item>
108
		<item>
109
			<desc>Disable CTRL+ALT+Delete reboot from keyboard.</desc>
110
			<tunable>hw.syscons.kbd_reboot</tunable>
111
			<value>0</value>
112
		</item>
113
		<item>
114
			<desc>Enable TCP Inflight mode</desc>
115
			<tunable>net.inet.tcp.inflight.enable</tunable>
116
			<value>1</value>
117
		</item>
118
		<item>
119
			<desc>Enable TCP extended debugging</desc>
120
			<tunable>net.inet.tcp.log_debug</tunable>
121
			<value>0</value>
122
		</item>
123
		<item>
124
			<desc>Set ICMP Limits</desc>
125
			<tunable>net.inet.icmp.icmplim</tunable>
126
			<value>750</value>
127
		</item>
128
		<item>
129
			<desc>TCP Offload Engine</desc>
130
			<tunable>net.inet.tcp.tso</tunable>
131
			<value>0</value>
132
		</item>
133
		<item>
134
			<desc>TCP Offload Engine - BCE</desc>
135
			<tunable>hw.bce.tso_enable</tunable>
136
			<value>0</value>
137
		</item>		
138
	</sysctl>
139
	<system>
140
		<optimization>normal</optimization>
141
		<hostname>pfSense</hostname>
142
		<domain>local</domain>
143
		<dnsserver></dnsserver>
144
		<dnsallowoverride/>
145
		<group>
146
			<name>all</name>
147
			<description>All Users</description>
148
			<scope>system</scope>
149
			<gid>1998</gid>
150
			<member>0</member>
151
		</group>
152
		<group>
153
			<name>admins</name>
154
			<description>System Administrators</description>
155
			<scope>system</scope>
156
			<gid>1999</gid>
157
			<member>0</member>
158
			<priv>page-all</priv>
159
		</group>
160
		<user>
161
			<name>admin</name>
162
			<fullname>System Administrator</fullname>
163
			<scope>system</scope>
164
			<groupname>admins</groupname>
165
			<password>$1$dSJImFph$GvZ7.1UbuWu.Yb8etC0re.</password>
166
			<uid>0</uid>
167
			<priv>user-shell-access</priv>
168
		</user>
169
		<nextuid>2000</nextuid>
170
		<nextgid>2000</nextgid>
171
		<timezone>Etc/UTC</timezone>
172
		<time-update-interval>300</time-update-interval>
173
		<timeservers>0.pfsense.pool.ntp.org</timeservers>
174
		<webgui>
175
			<protocol>http</protocol>
176
			<!--
177
			<port></port>
178
			<certificate></certificate>
179
			<private-key></private-key>
180
			<noassigninterfaces/>
181
			<expanddiags/>
182
			<noantilockout></noantilockout>
183
			-->
184
		</webgui>
185
                <disablenatreflection>yes</disablenatreflection>
186
		<!-- <disableconsolemenu/> -->
187
		<!-- <disablefirmwarecheck/> -->
188
		<!-- <shellcmd></shellcmd> -->
189
		<!-- <earlyshellcmd></earlyshellcmd> -->
190
		<!-- <harddiskstandby></harddiskstandby> -->
191
	</system>
192
	<interfaces>
193
		<wan>
194
			<if>vr1</if>
195
			<mtu></mtu>
196
			<ipaddr>dhcp</ipaddr>
197
			<!-- *or* ipv4-address *or* 'pppoe' *or* 'pptp' *or* 'bigpond' -->
198
			<subnet></subnet>
199
			<gateway></gateway>
200
			<blockpriv/>
201
			<blockbogons/>
202
			<dhcphostname></dhcphostname>
203
			<media></media>
204
			<mediaopt></mediaopt>
205
			<bandwidth>100</bandwidth>
206
			<bandwidthtype>Mb</bandwidthtype>
207
			<!--
208
			<wireless>
209
				*see below (opt[n])*
210
			</wireless>
211
			-->
212
		</wan>
213
		<lan>
214
			<if>vr0</if>
215
			<ipaddr>192.168.1.1</ipaddr>
216
			<subnet>24</subnet>
217
			<media></media>
218
			<mediaopt></mediaopt>
219
			<bandwidth>100</bandwidth>
220
			<bandwidthtype>Mb</bandwidthtype>
221
			<!--
222
			<wireless>
223
				*see below (opt[n])*
224
			</wireless>
225
			-->
226
		</lan>
227
		<!--
228
		<opt[n]>
229
			<enable/>
230
			<descr></descr>
231
			<if></if>
232
			<ipaddr></ipaddr>
233
			<subnet></subnet>
234
			<media></media>
235
			<mediaopt></mediaopt>
236
			<bridge>lan|wan|opt[n]</bridge>
237
			<wireless>
238
				<mode>hostap *or* bss *or* ibss</mode>
239
				<ssid></ssid>
240
				<channel></channel>
241
				<wep>
242
					<enable/>
243
					<key>
244
						<txkey/>
245
						<value></value>
246
					</key>
247
				</wep>
248
			</wireless>
249
		</opt[n]>
250
		-->
251
	</interfaces>
252
	<!--
253
	<vlans>
254
		<vlan>
255
			<tag></tag>
256
			<if></if>
257
			<descr></descr>
258
		</vlan>
259
	</vlans>
260
	-->
261
	<staticroutes>
262
		<!--
263
		<route>
264
			<interface>lan|opt[n]|pptp</interface>
265
			<network>xxx.xxx.xxx.xxx/xx</network>
266
			<gateway>xxx.xxx.xxx.xxx</gateway>
267
			<descr></descr>
268
		</route>
269
		-->
270
	</staticroutes>
271
	<pppoe>
272
		<username></username>
273
		<password></password>
274
		<provider></provider>
275
		<!--
276
		<ondemand/>
277
		<timeout></timeout>
278
		-->
279
	</pppoe>
280
	<pptp>
281
		<username></username>
282
		<password></password>
283
		<local></local>
284
		<subnet></subnet>
285
		<remote></remote>
286
		<!--
287
		<ondemand/>
288
		<timeout></timeout>
289
		-->
290
	</pptp>
291
	<dhcpd>
292
		<lan>
293
			<enable/>
294
			<range>
295
				<from>192.168.1.100</from>
296
				<to>192.168.1.199</to>
297
			</range>
298
			<!--
299
			<winsserver>xxx.xxx.xxx.xxx</winsserver>
300
			<defaultleasetime></defaultleasetime>
301
			<maxleasetime></maxleasetime>
302
			<gateway>xxx.xxx.xxx.xxx</gateway>
303
			<domain></domain>
304
			<dnsserver></dnsserver>
305
			<ntpserver>xxx.xxx.xxx.xxx</ntpserver>
306
			<next-server></next-server>
307
			<filename></filename>
308
			-->
309
		</lan>
310
		<!--
311
		<opt[n]>
312
			...
313
		</opt[n]>
314
		-->
315
		<!--
316
		<staticmap>
317
			<mac>xx:xx:xx:xx:xx:xx</mac>
318
			<ipaddr>xxx.xxx.xxx.xxx</ipaddr>
319
			<descr></descr>
320
		</staticmap>
321
		-->
322
	</dhcpd>
323
	<pptpd>
324
		<mode><!-- off *or* server *or* redir --></mode>
325
		<redir></redir>
326
		<localip></localip>
327
		<remoteip></remoteip>
328
		<!-- <accounting/> -->
329
		<!--
330
		<user>
331
			<name></name>
332
			<password></password>
333
		</user>
334
		-->
335
	</pptpd>
336
	<ovpn>
337
		<!--
338
		<server>
339
			<enable/>
340
			<ca_cert></ca_cert>
341
			<srv_cert></srv_cert>
342
			<srv_key></srv_key>
343
			<dh_param></dh_param>
344
			<verb></verb>
345
			<tun_iface></tun_iface>
346
			<port></port>
347
			<bind_iface></bind_iface>
348
			<cli2cli/>
349
			<maxcli></maxcli>
350
			<prefix></prefix>
351
			<ipblock></ipblock>
352
			<crypto></crypto>
353
			<dupcn/>
354
			<psh_options>
355
				<redir></redir>
356
				<redir_loc></redir_loc>
357
				<rte_delay></rte_delay>
358
				<ping></ping>
359
				<pingrst></pingrst>
360
				<pingexit></pingexit>
361
				<inact></inact>
362
			</psh_options>
363
		</server>
364
		<client>
365
			<tunnel></tunnel>
366
			<ca_cert></ca_cert>
367
			<cli_cert></cli_cert>
368
			<cli_key></cli_key>
369
			<type></type>
370
			<tunnel>
371
				<if></if>
372
				<proto></proto>
373
				<cport></cport>
374
				<saddr></saddr>
375
				<sport></sport>
376
				<crypto></crypto>
377
			</tunnel>
378
		</client>
379
		-->
380
	</ovpn>
381
	<dnsmasq>
382
		<enable/>
383
		<!--
384
		<hosts>
385
			<host></host>
386
			<domain></domain>
387
			<ip></ip>
388
			<descr></descr>
389
		</hosts>
390
		-->
391
	</dnsmasq>
392
	<snmpd>
393
		<!-- <enable/> -->
394
		<syslocation></syslocation>
395
		<syscontact></syscontact>
396
		<rocommunity>public</rocommunity>
397
	</snmpd>
398
	<diag>
399
		<ipv6nat>
400
			<!-- <enable/> -->
401
			<ipaddr></ipaddr>
402
		</ipv6nat>
403
	</diag>
404
	<bridge>
405
		<!-- <filteringbridge/> -->
406
	</bridge>
407
	<syslog>
408
		<!--
409
		<reverse/>
410
		<enable/>
411
		<remoteserver>xxx.xxx.xxx.xxx</remoteserver>
412
		<filter/>
413
		<dhcp/>
414
		<system/>
415
		<nologdefaultblock/>
416
		-->
417
	</syslog>
418
	<!--
419
	<captiveportal>
420
		<enable/>
421
		<interface>lan|opt[n]</interface>
422
		<idletimeout>minutes</idletimeout>
423
		<timeout>minutes</timeout>
424
		<page>
425
			<htmltext></htmltext>
426
			<errtext></errtext>
427
		</page>
428
		<httpslogin/>
429
		<httpsname></httpsname>
430
		<certificate></certificate>
431
		<private-key></private-key>
432
		<redirurl></redirurl>
433
		<radiusip></radiusip>
434
		<radiusport></radiusport>
435
		<radiuskey></radiuskey>
436
		<nomacfilter/>
437
	</captiveportal>
438
	-->
439
	<nat>
440
		<ipsecpassthru>
441
			<enable/>
442
		</ipsecpassthru>
443
		<!--
444
		<rule>
445
			<interface></interface>
446
			<external-address></external-address>
447
			<protocol></protocol>
448
			<external-port></external-port>
449
			<target></target>
450
			<local-port></local-port>
451
			<descr></descr>
452
		</rule>
453
		-->
454
		<!--
455
		<onetoone>
456
			<interface></interface>
457
			<external>xxx.xxx.xxx.xxx</external>
458
			<internal>xxx.xxx.xxx.xxx</internal>
459
			<subnet></subnet>
460
			<descr></descr>
461
		</onetoone>
462
		-->
463
		<!--
464
		<advancedoutbound>
465
			<enable/>
466
			<rule>
467
				<interface></interface>
468
				<source>
469
					<network>xxx.xxx.xxx.xxx/xx</network>
470
				</source>
471
				<destination>
472
					<not/>
473
					<any/>
474
					*or*
475
					<network>xxx.xxx.xxx.xxx/xx</network>
476
				</destination>
477
				<target>xxx.xxx.xxx.xxx</target>
478
				<descr></descr>
479
			</rule>
480
		</advancedoutbound>
481
		-->
482
		<!--
483
		<servernat>
484
			<ipaddr></ipaddr>
485
			<descr></descr>
486
		</servernat>
487
		-->
488
	</nat>
489
	<filter>
490
		<!-- <tcpidletimeout></tcpidletimeout> -->
491
		<rule>
492
			<type>pass</type>
493
			<descr>Default allow LAN to any rule</descr>
494
			<interface>lan</interface>
495
			<source>
496
				<network>lan</network>
497
			</source>
498
			<destination>
499
				<any/>
500
			</destination>
501
		</rule>
502
		<!-- rule syntax:
503
		<rule>
504
			<disabled/>
505
			<type>pass|block|reject</type>
506
			<descr>...</descr>
507
			<interface>lan|opt[n]|wan|pptp</interface>
508
			<protocol>tcp|udp|tcp/udp|...</protocol>
509
			<icmptype></icmptype>
510
			<source>
511
				<not/>
512

    
513
				<address>xxx.xxx.xxx.xxx(/xx) or alias</address>
514
				*or*
515
				<network>lan|opt[n]|pptp</network>
516
				*or*
517
				<any/>
518

    
519
				<port>a[-b]</port>
520
			</source>
521
			<destination>
522
				*same as for source*
523
			</destination>
524
			<frags/>
525
			<log/>
526
		</rule>
527
		-->
528
	</filter>
529
	<shaper>
530
		<!-- <enable/> -->
531
		<!-- <schedulertype>hfsc</schedulertype> -->
532
		<!-- rule syntax:
533
		<rule>
534
			<disabled/>
535
			<descr></descr>
536

    
537
			<targetpipe>number (zero based)</targetpipe>
538
			*or*
539
			<targetqueue>number (zero based)</targetqueue>
540

    
541
			<interface>lan|wan|opt[n]|pptp</interface>
542
			<protocol>tcp|udp</protocol>
543
			<direction>in|out</direction>
544
			<source>
545
				<not/>
546

    
547
				<address>xxx.xxx.xxx.xxx(/xx)</address>
548
				*or*
549
				<network>lan|opt[n]|pptp</network>
550
				*or*
551
				<any/>
552

    
553
				<port>a[-b]</port>
554
			</source>
555
			<destination>
556
				*same as for source*
557
			</destination>
558

    
559
			<iplen>from[-to]</iplen>
560
			<iptos>(!)lowdelay,throughput,reliability,mincost,congestion</iptos>
561
			<tcpflags>(!)fin,syn,rst,psh,ack,urg</tcpflags>
562
		</rule>
563
		<pipe>
564
			<descr></descr>
565
			<bandwidth></bandwidth>
566
			<delay></delay>
567
			<mask>source|destination</mask>
568
		</pipe>
569
		<queue>
570
			<descr></descr>
571
			<targetpipe>number (zero based)</targetpipe>
572
			<weight></weight>
573
			<mask>source|destination</mask>
574
		</queue>
575
		-->
576
	</shaper>
577
	<ipsec>
578
                <preferredoldsa/>
579
		<!-- <enable/> -->
580
		<!-- syntax:
581
		<tunnel>
582
			<disabled/>
583
			<auto/>
584
			<descr></descr>
585
			<interface>lan|wan|opt[n]</interface>
586
			<local-subnet>
587
				<address>xxx.xxx.xxx.xxx(/xx)</address>
588
				*or*
589
				<network>lan|opt[n]</network>
590
			</local-subnet>
591
			<remote-subnet>xxx.xxx.xxx.xxx/xx</remote-subnet>
592
			<remote-gateway></remote-gateway>
593
			<p1>
594
				<mode></mode>
595
				<myident>
596
					<myaddress/>
597
					*or*
598
					<address>xxx.xxx.xxx.xxx</address>
599
					*or*
600
					<fqdn>the.fq.dn</fqdn>
601
				</myident>
602
				<encryption-algorithm></encryption-algorithm>
603
				<hash-algorithm></hash-algorithm>
604
				<dhgroup></dhgroup>
605
				<lifetime></lifetime>
606
				<pre-shared-key></pre-shared-key>
607
			</p1>
608
			<p2>
609
				<protocol></protocol>
610
				<encryption-algorithm-option></encryption-algorithm-option>
611
				<hash-algorithm-option></hash-algorithm-option>
612
				<pfsgroup></pfsgroup>
613
				<lifetime></lifetime>
614
			</p2>
615
		</tunnel>
616
		<mobileclients>
617
			<enable/>
618
			<p1>
619
				<mode></mode>
620
				<myident>
621
					<myaddress/>
622
					*or*
623
					<address>xxx.xxx.xxx.xxx</address>
624
					*or*
625
					<fqdn>the.fq.dn</fqdn>
626
				</myident>
627
				<encryption-algorithm></encryption-algorithm>
628
				<hash-algorithm></hash-algorithm>
629
				<dhgroup></dhgroup>
630
				<lifetime></lifetime>
631
			</p1>
632
			<p2>
633
				<protocol></protocol>
634
				<encryption-algorithm-option></encryption-algorithm-option>
635
				<hash-algorithm-option></hash-algorithm-option>
636
				<pfsgroup></pfsgroup>
637
				<lifetime></lifetime>
638
			</p2>
639
		</mobileclients>
640
		<mobilekey>
641
			<ident></ident>
642
			<pre-shared-key></pre-shared-key>
643
		</mobilekey>
644
		-->
645
	</ipsec>
646
	<aliases>
647
		<!--
648
		<alias>
649
			<name></name>
650
			<address>xxx.xxx.xxx.xxx(/xx)</address>
651
			<descr></descr>
652
		</alias>
653
		-->
654
	</aliases>
655
	<proxyarp>
656
		<!--
657
		<proxyarpnet>
658
			<network>xxx.xxx.xxx.xxx/xx</network>
659
			*or*
660
			<range>
661
				<from>xxx.xxx.xxx.xxx</from>
662
				<to>xxx.xxx.xxx.xxx</to>
663
			</range>
664
		</proxyarpnet>
665
		-->
666
	</proxyarp>
667
	<cron>
668
		<item>
669
			<minute>0</minute>
670
			<hour>*</hour>
671
			<mday>*</mday>
672
			<month>*</month>
673
			<wday>*</wday>
674
			<who>root</who>
675
			<command>/usr/bin/nice -n20 newsyslog</command>
676
		</item>
677
		<item>
678
			<minute>1,31</minute>
679
			<hour>0-5</hour>
680
			<mday>*</mday>
681
			<month>*</month>
682
			<wday>*</wday>
683
			<who>root</who>
684
			<command>/usr/bin/nice -n20 adjkerntz -a</command>
685
		</item>
686
		<item>
687
			<minute>1</minute>
688
			<hour>3</hour>
689
			<mday>1</mday>
690
			<month>*</month>
691
			<wday>*</wday>
692
			<who>root</who>
693
			<command>/usr/bin/nice -n20 /etc/rc.update_bogons.sh</command>
694
		</item>
695
		<item>
696
			<minute>*/60</minute>
697
			<hour>*</hour>
698
			<mday>*</mday>
699
			<month>*</month>
700
			<wday>*</wday>
701
			<who>root</who>
702
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 sshlockout</command>
703
		</item>
704
		<item>
705
			<minute>1</minute>
706
			<hour>1</hour>
707
			<mday>*</mday>
708
			<month>*</month>
709
			<wday>*</wday>
710
			<who>root</who>
711
			<command>/usr/bin/nice -n20 /etc/rc.dyndns.update</command>
712
		</item>
713
		<item>
714
			<minute>*/60</minute>
715
			<hour>*</hour>
716
			<mday>*</mday>
717
			<month>*</month>
718
			<wday>*</wday>
719
			<who>root</who>
720
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 virusprot</command>
721
		</item>
722
		<item>
723
			<minute>*/60</minute>
724
			<hour>*</hour>
725
			<mday>*</mday>
726
			<month>*</month>
727
			<wday>*</wday>
728
			<who>root</who>
729
			<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -t 3600 snort2c</command>
730
		</item>
731
		<item>
732
			<minute>*/5</minute>
733
			<hour>*</hour>
734
			<mday>*</mday>
735
			<month>*</month>
736
			<wday>*</wday>
737
			<who>root</who>
738
			<command>/usr/bin/nice -n20 /usr/local/bin/checkreload.sh</command>
739
		</item>
740
		<item>
741
			<minute>*/5</minute>
742
			<hour>*</hour>
743
			<mday>*</mday>
744
			<month>*</month>
745
			<wday>*</wday>
746
			<who>root</who>
747
			<command>/usr/bin/nice -n20 /etc/ping_hosts.sh</command>
748
		</item>
749
	</cron>
750
	<wol>
751
		<!--
752
		<wolentry>
753
			<interface>lan|opt[n]</interface>
754
			<mac>xx:xx:xx:xx:xx:xx</mac>
755
			<descr></descr>
756
		</wolentry>
757
		-->
758
	</wol>
759
	<rrd>
760
		<enable/>
761
	</rrd>
762
</pfsense>
    (1-1/1)