|
1 | 1 | <?xml version="1.0" encoding="utf-8"?>
|
2 | 2 | <!DOCTYPE FWObjectDatabase SYSTEM "fwbuilder.dtd">
|
3 |
| -<FWObjectDatabase xmlns="http://www.fwbuilder.org/1.0/" version="20" lastModified="" id="root"> |
| 3 | +<FWObjectDatabase xmlns="http://www.fwbuilder.org/1.0/" version="22" id="root"> |
4 | 4 | <Library id="sysid99" name="Deleted Objects" comment="" ro="False"/>
|
5 | 5 | <Library id="syslib001" color="#d2ffd0" name="User" comment="User defined objects" ro="False">
|
6 | 6 | <ObjectGroup id="stdid01_1_clusters" name="Clusters" comment="" ro="False"/>
|
|
40 | 40 | <RuleSetOptions/>
|
41 | 41 | </NAT>
|
42 | 42 | <Policy id="id3F9A1BD5" name="Policy" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="True">
|
43 |
| - <PolicyRule id="id3F9A1CE7" disabled="False" log="False" position="0" action="Accept" direction="Both" comment=""> |
| 43 | + <PolicyRule id="id3F9A1CE7" disabled="False" group="" log="False" position="0" action="Accept" direction="Both" comment=""> |
44 | 44 | <Src neg="False">
|
45 | 45 | <ObjectRef ref="id3F9A1BC7"/>
|
46 | 46 | </Src>
|
|
57 | 57 | <IntervalRef ref="sysid2"/>
|
58 | 58 | </When>
|
59 | 59 | <PolicyRuleOptions>
|
60 |
| - <Option name="pf_classify_str"/> |
61 |
| - </PolicyRuleOptions> |
62 |
| - |
| 60 | + <Option name="pf_classify_str"></Option> |
| 61 | + </PolicyRuleOptions> |
63 | 62 | </PolicyRule>
|
64 |
| - <PolicyRule id="id3F9AF2C0" disabled="False" log="True" position="1" action="Deny" direction="Both" comment=""> |
| 63 | + <PolicyRule id="id3F9AF2C0" disabled="False" group="" log="True" position="1" action="Deny" direction="Both" comment=""> |
65 | 64 | <Src neg="False">
|
66 | 65 | <ObjectRef ref="id3F9AF27F"/>
|
67 | 66 | </Src>
|
|
80 | 79 | <IntervalRef ref="sysid2"/>
|
81 | 80 | </When>
|
82 | 81 | <PolicyRuleOptions>
|
| 82 | + <Option name="pf_classify_str"></Option> |
83 | 83 | <Option name="stateless">True</Option>
|
84 |
| - |
85 |
| - <Option name="pf_classify_str"/> |
86 |
| - </PolicyRuleOptions> |
87 |
| - |
| 84 | + </PolicyRuleOptions> |
88 | 85 | </PolicyRule>
|
89 |
| - <PolicyRule id="id3F9A1BF6" disabled="False" log="False" position="2" action="Accept" direction="Both" comment=""> |
| 86 | + <PolicyRule id="id3F9A1BF6" disabled="False" group="" log="False" position="2" action="Accept" direction="Both" comment=""> |
90 | 87 | <Src neg="False">
|
91 | 88 | <ObjectRef ref="id3F9A1BCA"/>
|
92 | 89 | </Src>
|
|
103 | 100 | <IntervalRef ref="sysid2"/>
|
104 | 101 | </When>
|
105 | 102 | <PolicyRuleOptions>
|
106 |
| - <Option name="pf_classify_str"/> |
107 |
| - </PolicyRuleOptions> |
108 |
| - |
| 103 | + <Option name="pf_classify_str"></Option> |
| 104 | + </PolicyRuleOptions> |
109 | 105 | </PolicyRule>
|
110 |
| - <PolicyRule id="id3F9A1BEC" disabled="False" log="False" position="3" action="Accept" direction="Both" comment=""> |
| 106 | + <PolicyRule id="id3F9A1BEC" disabled="False" group="" log="False" position="3" action="Accept" direction="Both" comment=""> |
111 | 107 | <Src neg="False">
|
112 | 108 | <ObjectRef ref="id3F9A1BCA"/>
|
113 | 109 | </Src>
|
|
124 | 120 | <IntervalRef ref="sysid2"/>
|
125 | 121 | </When>
|
126 | 122 | <PolicyRuleOptions>
|
127 |
| - <Option name="pf_classify_str"/> |
128 |
| - </PolicyRuleOptions> |
129 |
| - |
| 123 | + <Option name="pf_classify_str"></Option> |
| 124 | + </PolicyRuleOptions> |
130 | 125 | </PolicyRule>
|
131 |
| - <PolicyRule id="id3F9A1C2E" disabled="False" log="False" position="4" action="Accept" direction="Both" comment=""> |
| 126 | + <PolicyRule id="id3F9A1C2E" disabled="False" group="" log="False" position="4" action="Accept" direction="Both" comment=""> |
132 | 127 | <Src neg="False">
|
133 | 128 | <ObjectRef ref="id3F9A1BCB"/>
|
134 | 129 | </Src>
|
|
145 | 140 | <IntervalRef ref="sysid2"/>
|
146 | 141 | </When>
|
147 | 142 | <PolicyRuleOptions>
|
148 |
| - <Option name="pf_classify_str"/> |
149 |
| - </PolicyRuleOptions> |
150 |
| - |
| 143 | + <Option name="pf_classify_str"></Option> |
| 144 | + </PolicyRuleOptions> |
151 | 145 | </PolicyRule>
|
152 |
| - <PolicyRule id="id3F9A1C96" disabled="False" log="False" position="5" action="Accept" direction="Both" comment=""> |
| 146 | + <PolicyRule id="id3F9A1C96" disabled="False" group="" log="False" position="5" action="Accept" direction="Both" comment=""> |
153 | 147 | <Src neg="False">
|
154 | 148 | <ObjectRef ref="id3F9A1BC7"/>
|
155 | 149 | </Src>
|
|
166 | 160 | <IntervalRef ref="sysid2"/>
|
167 | 161 | </When>
|
168 | 162 | <PolicyRuleOptions>
|
169 |
| - <Option name="pf_classify_str"/> |
170 |
| - </PolicyRuleOptions> |
171 |
| - |
| 163 | + <Option name="pf_classify_str"></Option> |
| 164 | + </PolicyRuleOptions> |
172 | 165 | </PolicyRule>
|
173 |
| - <PolicyRule id="id3F9A1C3A" disabled="False" log="True" position="6" action="Deny" direction="Both" comment=""> |
| 166 | + <PolicyRule id="id3F9A1C3A" disabled="False" group="" log="True" position="6" action="Deny" direction="Both" comment=""> |
174 | 167 | <Src neg="False">
|
175 | 168 | <ObjectRef ref="sysid0"/>
|
176 | 169 | </Src>
|
|
187 | 180 | <IntervalRef ref="sysid2"/>
|
188 | 181 | </When>
|
189 | 182 | <PolicyRuleOptions>
|
| 183 | + <Option name="pf_classify_str"></Option> |
190 | 184 | <Option name="stateless">True</Option>
|
191 |
| - |
192 |
| - <Option name="pf_classify_str"/> |
193 |
| - </PolicyRuleOptions> |
194 |
| - |
| 185 | + </PolicyRuleOptions> |
195 | 186 | </PolicyRule>
|
196 | 187 | <RuleSetOptions/>
|
197 | 188 | </Policy>
|
|
230 | 221 | <Option name="bridging_fw">False</Option>
|
231 | 222 | <Option name="check_shading">False</Option>
|
232 | 223 | <Option name="clamp_mss_to_mtu">False</Option>
|
233 |
| - <Option name="cmdline"/> |
234 |
| - <Option name="compiler"/> |
| 224 | + <Option name="cmdline"></Option> |
| 225 | + <Option name="compiler"></Option> |
235 | 226 | <Option name="debug">False</Option>
|
236 | 227 | <Option name="eliminate_duplicates">False</Option>
|
237 | 228 | <Option name="firewall_dir">/etc</Option>
|
238 | 229 | <Option name="firewall_is_part_of_any_and_networks">True</Option>
|
239 |
| - <Option name="freebsd_path_ipf"/> |
240 |
| - <Option name="freebsd_path_ipnat"/> |
241 |
| - <Option name="freebsd_path_sysctl"/> |
| 230 | + <Option name="freebsd_path_ipf"></Option> |
| 231 | + <Option name="freebsd_path_ipnat"></Option> |
| 232 | + <Option name="freebsd_path_sysctl"></Option> |
242 | 233 | <Option name="ignore_empty_groups">False</Option>
|
243 | 234 | <Option name="in_out_code">True</Option>
|
244 | 235 | <Option name="ipf_log_body">False</Option>
|
245 |
| - <Option name="ipf_log_facility"/> |
246 |
| - <Option name="ipf_log_level"/> |
| 236 | + <Option name="ipf_log_facility"></Option> |
| 237 | + <Option name="ipf_log_level"></Option> |
247 | 238 | <Option name="ipf_log_or_block">False</Option>
|
248 | 239 | <Option name="ipf_nat_ftp_proxy">False</Option>
|
249 | 240 | <Option name="ipf_nat_h323_proxy">False</Option>
|
250 | 241 | <Option name="ipf_nat_ipsec_proxy">False</Option>
|
251 | 242 | <Option name="ipf_nat_raudio_proxy">False</Option>
|
252 | 243 | <Option name="ipf_nat_rcmd_proxy">False</Option>
|
253 | 244 | <Option name="ipf_return_icmp_as_dest">False</Option>
|
254 |
| - <Option name="limit_suffix"/> |
| 245 | + <Option name="limit_suffix"></Option> |
255 | 246 | <Option name="limit_value">0</Option>
|
256 | 247 | <Option name="linux24_ip_forward">1</Option>
|
257 |
| - <Option name="linux24_path_ip"/> |
258 |
| - <Option name="linux24_path_iptables"/> |
259 |
| - <Option name="linux24_path_logger"/> |
260 |
| - <Option name="linux24_path_lsmod"/> |
261 |
| - <Option name="linux24_path_modprobe"/> |
| 248 | + <Option name="linux24_path_ip"></Option> |
| 249 | + <Option name="linux24_path_iptables"></Option> |
| 250 | + <Option name="linux24_path_logger"></Option> |
| 251 | + <Option name="linux24_path_lsmod"></Option> |
| 252 | + <Option name="linux24_path_modprobe"></Option> |
262 | 253 | <Option name="linux24_tcp_fin_timeout">30</Option>
|
263 | 254 | <Option name="linux24_tcp_keepalive_interval">1800</Option>
|
264 | 255 | <Option name="load_modules">True</Option>
|
|
273 | 264 | <Option name="loopback_interface">lo</Option>
|
274 | 265 | <Option name="manage_virtual_addr">True</Option>
|
275 | 266 | <Option name="pass_all_out">False</Option>
|
276 |
| - <Option name="snmp_contact"/> |
277 |
| - <Option name="snmp_description"/> |
278 |
| - <Option name="snmp_location"/> |
| 267 | + <Option name="snmp_contact"></Option> |
| 268 | + <Option name="snmp_description"></Option> |
| 269 | + <Option name="snmp_location"></Option> |
279 | 270 | <Option name="ulog_cprange">0</Option>
|
280 | 271 | <Option name="ulog_nlgroup">1</Option>
|
281 | 272 | <Option name="ulog_qthreshold">1</Option>
|
|
0 commit comments