[openwrt] firewall

root@OpenWrt:/etc/config# ls
4g                     dataUsageCfg           network
8192eeshare            dhcp                   qos
8192eewpa              dropbear               remoteupgrade
APNProfiles            easycwmp               signalCfg
CusAPNCfg              firewall               snmpd
CusCMCfg               firewallaccessacl      system
PINBAK                 firewallaccessspecial  ucitrack
confapp                fstab                  uhttpd
cusfirewall            l3filter_rule          upnpd
dataUsage              lte-gw                 wireless
dataUsageBak           luci
root@OpenWrt:/etc/config# cat cusfirewall 

config Environment 'l2filter'
        option enable 'enable'
        option strategy 'White'
        option rule_nums '0'

config Environment 'l3filter'
        option enable 'true'
        option strategy 'Black'
        option rule_nums '1'

config Environment 'l7filter'
        option enable 'false'
        option strategy 'black'
        option rule_nums '0'

config Environment 'applications'
        option email 'true'
        option ftp 'true'
        option http 'true'
        option https 'true'
        option telnet 'true'

root@OpenWrt:/etc/config# cat l3filter_rule 

config l3filter
        option enable 'true'
        option rulename 'rule1'
        option strategy 'White'
        option l3srcaddrstart '192.168.0.88'
        option l3srcaddrend '192.168.0.88'
        option l3destaddrstart '192.168.1.115'
        option l3destaddrend '192.168.1.115'
        option l3protocol 'Dummy'
        option l4protocol 'both'
        option l4srcportstart '5'
        option l4srcportend '255'
        option l4destportstart '5'
        option l4destportend '200'
        option interface 'br0'

root@OpenWrt:/etc/config# 

猜你喜欢

转载自blog.csdn.net/linbounconstraint/article/details/80334626
今日推荐