Keresés

Új hozzászólás Aktív témák

  • VeryByte

    őstag

    válasz Cirbolya_sen #1004 üzenetére

    Nálam kb. hasonló a felállás, MTU nálam 1500. És működik.

    "What is the most important thing in a woman?" - "The soul."

  • VeryByte

    őstag

    válasz Cirbolya_sen #1004 üzenetére

    Időközben rájöttem, hogy most is ilyen helyen van a kis cucc, szóval, itt a konfig:

    firewall {
    all-ping enable
    broadcast-ping disable
    ipv6-receive-redirects disable
    ipv6-src-route disable
    ip-src-route disable
    log-martians enable
    name WAN_IN {
    default-action drop
    description "WAN to internal"
    rule 10 {
    action accept
    description "Allow established/related"
    state {
    established enable
    related enable
    }
    }
    rule 20 {
    action drop
    description "Drop invalid state"
    state {
    invalid enable
    }
    }
    }
    name WAN_LOCAL {
    default-action drop
    description "WAN to router"
    rule 10 {
    action accept
    description "Allow established/related"
    state {
    established enable
    related enable
    }
    }
    rule 20 {
    action drop
    description "Drop invalid state"
    state {
    invalid enable
    }
    }
    }
    receive-redirects disable
    send-redirects enable
    source-validation disable
    syn-cookies enable
    }
    interfaces {
    ethernet eth0 {
    address 89.x.x.212/29
    description Internet
    duplex auto
    firewall {
    in {
    name WAN_IN
    }
    local {
    name WAN_LOCAL
    }
    }
    speed auto
    }
    ethernet eth1 {
    description Local
    duplex auto
    speed auto
    }
    ethernet eth2 {
    description Local
    duplex auto
    speed auto
    }
    ethernet eth3 {
    description Local
    duplex auto
    speed auto
    }
    ethernet eth4 {
    description Local
    duplex auto
    speed auto
    }
    loopback lo {
    }
    switch switch0 {
    address 192.168.190.29/24
    description Local
    mtu 1500
    switch-port {
    interface eth1 {
    }
    interface eth2 {
    }
    interface eth3 {
    }
    interface eth4 {
    }
    vlan-aware disable
    }
    }
    }
    service {
    dns {
    forwarding {
    cache-size 150
    listen-on switch0
    }
    }
    gui {
    http-port 80
    https-port 443
    older-ciphers enable
    }
    nat {
    rule 5010 {
    description "masquerade for WAN"
    outbound-interface eth0
    type masquerade
    }
    }
    ssh {
    port 22
    protocol-version v2
    }
    }
    system {
    gateway-address 89.xx.xx.214
    host-name ubnt
    login {
    user admin {
    authentication {
    encrypted-password ****************
    plaintext-password ****************
    }
    level admin
    }
    }
    name-server 195.184.180.4
    name-server 1.1.1.1
    name-server 8.8.8.8
    ntp {
    server 0.ubnt.pool.ntp.org {
    }
    server 1.ubnt.pool.ntp.org {
    }
    server 2.ubnt.pool.ntp.org {
    }
    server 3.ubnt.pool.ntp.org {
    }
    }
    syslog {
    global {
    facility all {
    level notice
    }
    facility protocols {
    level debug
    }
    }
    }
    time-zone UTC
    }
    vpn {
    ipsec {
    auto-firewall-nat-exclude enable
    }
    }

    "What is the most important thing in a woman?" - "The soul."

Új hozzászólás Aktív témák