|
@@ -1,6 +1,6 @@
|
|
|
<?xml version="1.0" encoding="utf-8"?>
|
|
<?xml version="1.0" encoding="utf-8"?>
|
|
|
<!DOCTYPE FWObjectDatabase SYSTEM "fwbuilder.dtd">
|
|
<!DOCTYPE FWObjectDatabase SYSTEM "fwbuilder.dtd">
|
|
|
-<FWObjectDatabase xmlns="http://www.fwbuilder.org/1.0/" version="24" lastModified="1700572010" id="root">
|
|
|
|
|
|
|
+<FWObjectDatabase xmlns="http://www.fwbuilder.org/1.0/" version="24" lastModified="1723495747" id="root">
|
|
|
<Library id="syslib000" color="#d4f8ff" name="Standard" comment="Standard objects" ro="True">
|
|
<Library id="syslib000" color="#d4f8ff" name="Standard" comment="Standard objects" ro="True">
|
|
|
<AnyNetwork id="sysid0" name="Any" comment="Any Network" ro="False" address="0.0.0.0" netmask="0.0.0.0"/>
|
|
<AnyNetwork id="sysid0" name="Any" comment="Any Network" ro="False" address="0.0.0.0" netmask="0.0.0.0"/>
|
|
|
<AnyIPService id="sysid1" protocol_num="0" name="Any" comment="Any IP Service" ro="False"/>
|
|
<AnyIPService id="sysid1" protocol_num="0" name="Any" comment="Any IP Service" ro="False"/>
|
|
@@ -2484,6 +2484,8 @@
|
|
|
<TCPService id="id13791X40508" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="jitsi-meet video" comment="" ro="False" src_range_start="0" src_range_end="0" dst_range_start="4443" dst_range_end="4443"/>
|
|
<TCPService id="id13791X40508" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="jitsi-meet video" comment="" ro="False" src_range_start="0" src_range_end="0" dst_range_start="4443" dst_range_end="4443"/>
|
|
|
<TCPService id="id13852X7211" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="jitsi-meet https" comment="" ro="False" src_range_start="0" src_range_end="0" dst_range_start="4444" dst_range_end="4444"/>
|
|
<TCPService id="id13852X7211" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="jitsi-meet https" comment="" ro="False" src_range_start="0" src_range_end="0" dst_range_start="4444" dst_range_end="4444"/>
|
|
|
<TCPService id="id14253X257812" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="Sieve-ssl" comment="" ro="False" src_range_start="0" src_range_end="0" dst_range_start="4191" dst_range_end="4191"/>
|
|
<TCPService id="id14253X257812" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="Sieve-ssl" comment="" ro="False" src_range_start="0" src_range_end="0" dst_range_start="4191" dst_range_end="4191"/>
|
|
|
|
|
+ <TCPService id="id14312X4426" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="openvpn 8443" comment="" ro="False" src_range_start="0" src_range_end="0" dst_range_start="8443" dst_range_end="8443"/>
|
|
|
|
|
+ <TCPService id="id14345X4426" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="OpenvVPN" comment="" ro="False" src_range_start="0" src_range_end="0" dst_range_start="1194" dst_range_end="1194"/>
|
|
|
</ServiceGroup>
|
|
</ServiceGroup>
|
|
|
<ServiceGroup id="id1596X5690" name="UDP" comment="" ro="False">
|
|
<ServiceGroup id="id1596X5690" name="UDP" comment="" ro="False">
|
|
|
<UDPService id="id4342X8596" name="openvpn source" comment="" ro="False" src_range_start="1194" src_range_end="1194" dst_range_start="0" dst_range_end="0"/>
|
|
<UDPService id="id4342X8596" name="openvpn source" comment="" ro="False" src_range_start="1194" src_range_end="1194" dst_range_start="0" dst_range_end="0"/>
|
|
@@ -2496,7 +2498,7 @@
|
|
|
<ServiceGroup id="id1599X5690" name="TagServices" comment="" ro="False"/>
|
|
<ServiceGroup id="id1599X5690" name="TagServices" comment="" ro="False"/>
|
|
|
</ServiceGroup>
|
|
</ServiceGroup>
|
|
|
<ObjectGroup id="id1600X5690" name="Firewalls" comment="" ro="False">
|
|
<ObjectGroup id="id1600X5690" name="Firewalls" comment="" ro="False">
|
|
|
- <Firewall id="id8899X28426" host_OS="linux24" inactive="False" lastCompiled="1700572034" lastInstalled="1700572082" lastModified="1700572026" platform="iptables" version="1.4.20" name="kvmhost02" comment="" ro="False">
|
|
|
|
|
|
|
+ <Firewall id="id8899X28426" host_OS="linux24" inactive="False" lastCompiled="1723495842" lastInstalled="1723495867" lastModified="1723495785" platform="iptables" version="1.4.20" name="kvmhost02" comment="" ro="False">
|
|
|
<NAT id="id13393X65696" name="NAT" comment="" ro="False" ipv4_rule_set="True" ipv6_rule_set="False" top_rule_set="True">
|
|
<NAT id="id13393X65696" name="NAT" comment="" ro="False" ipv4_rule_set="True" ipv6_rule_set="False" top_rule_set="True">
|
|
|
<NATRule id="id13395X65696" disabled="False" group="outgoing NAT" position="0" action="Translate" comment="NAT all outgoing mail traffic to mail IP">
|
|
<NATRule id="id13395X65696" disabled="False" group="outgoing NAT" position="0" action="Translate" comment="NAT all outgoing mail traffic to mail IP">
|
|
|
<OSrc neg="False">
|
|
<OSrc neg="False">
|
|
@@ -3046,7 +3048,34 @@
|
|
|
</ItfOutb>
|
|
</ItfOutb>
|
|
|
<NATRuleOptions/>
|
|
<NATRuleOptions/>
|
|
|
</NATRule>
|
|
</NATRule>
|
|
|
- <NATRule id="id14053X65696" disabled="False" group="" position="20" action="Translate" comment="">
|
|
|
|
|
|
|
+ <NATRule id="id14251X4426" disabled="False" group="" position="20" action="Translate" comment="">
|
|
|
|
|
+ <OSrc neg="False">
|
|
|
|
|
+ <ObjectRef ref="sysid0"/>
|
|
|
|
|
+ </OSrc>
|
|
|
|
|
+ <ODst neg="False">
|
|
|
|
|
+ <ObjectRef ref="id13268X354"/>
|
|
|
|
|
+ </ODst>
|
|
|
|
|
+ <OSrv neg="False">
|
|
|
|
|
+ <ServiceRef ref="id14312X4426"/>
|
|
|
|
|
+ </OSrv>
|
|
|
|
|
+ <TSrc neg="False">
|
|
|
|
|
+ <ObjectRef ref="sysid0"/>
|
|
|
|
|
+ </TSrc>
|
|
|
|
|
+ <TDst neg="False">
|
|
|
|
|
+ <ObjectRef ref="id11122X65696"/>
|
|
|
|
|
+ </TDst>
|
|
|
|
|
+ <TSrv neg="False">
|
|
|
|
|
+ <ServiceRef ref="id14345X4426"/>
|
|
|
|
|
+ </TSrv>
|
|
|
|
|
+ <ItfInb neg="False">
|
|
|
|
|
+ <ObjectRef ref="sysid0"/>
|
|
|
|
|
+ </ItfInb>
|
|
|
|
|
+ <ItfOutb neg="False">
|
|
|
|
|
+ <ObjectRef ref="sysid0"/>
|
|
|
|
|
+ </ItfOutb>
|
|
|
|
|
+ <NATRuleOptions/>
|
|
|
|
|
+ </NATRule>
|
|
|
|
|
+ <NATRule id="id14053X65696" disabled="False" group="" position="21" action="Translate" comment="">
|
|
|
<OSrc neg="False">
|
|
<OSrc neg="False">
|
|
|
<ObjectRef ref="sysid0"/>
|
|
<ObjectRef ref="sysid0"/>
|
|
|
</OSrc>
|
|
</OSrc>
|
|
@@ -3080,7 +3109,7 @@
|
|
|
</ItfOutb>
|
|
</ItfOutb>
|
|
|
<NATRuleOptions/>
|
|
<NATRuleOptions/>
|
|
|
</NATRule>
|
|
</NATRule>
|
|
|
- <NATRule id="id14102X65696" disabled="False" group="" position="21" action="Translate" comment="">
|
|
|
|
|
|
|
+ <NATRule id="id14102X65696" disabled="False" group="" position="22" action="Translate" comment="">
|
|
|
<OSrc neg="False">
|
|
<OSrc neg="False">
|
|
|
<ObjectRef ref="sysid0"/>
|
|
<ObjectRef ref="sysid0"/>
|
|
|
</OSrc>
|
|
</OSrc>
|
|
@@ -3747,6 +3776,7 @@
|
|
|
<ServiceRef ref="id10843X4569"/>
|
|
<ServiceRef ref="id10843X4569"/>
|
|
|
<ServiceRef ref="id11505X65696"/>
|
|
<ServiceRef ref="id11505X65696"/>
|
|
|
<ServiceRef ref="id41291883"/>
|
|
<ServiceRef ref="id41291883"/>
|
|
|
|
|
+ <ServiceRef ref="id14345X4426"/>
|
|
|
</Srv>
|
|
</Srv>
|
|
|
<Itf neg="False">
|
|
<Itf neg="False">
|
|
|
<ObjectRef ref="sysid0"/>
|
|
<ObjectRef ref="sysid0"/>
|