von Gerhard » Fr 09 Mai, 2003 04:53
Das kann man in die user.ini einspielen und uploaden!
http erlaubt
ftp erlaubt
ftp vom DOS-Promt erlaubt
Email abrufen erlaubt
[ pfirewall.ini ]
chain create chain="sink"
chain create chain="forward"
chain create chain="source"
rule create chain=sink index=0 srcintfgrp=!wan action=accept
rule create chain=sink index=1 prot=udp dstport=dns action=accept
rule create chain=sink index=2 prot=udp dstport=bootpc action=accept
rule create chain=sink index=3 action=drop
rule create chain=forward index=0 srcintfgrp=wan prot=tcp ack=yes srcport=smtp action=accept
rule create chain=forward index=1 srcintfgrp=lan prot=tcp dstport=smtp action=accept
rule create chain=forward index=2 srcintfgrp=wan prot=tcp ack=yes srcport=pop3 action=accept
rule create chain=forward index=3 srcintfgrp=lan prot=tcp dstport=pop3 action=accept
rule create chain=forward index=4 srcintfgrp=wan prot=tcp srcport=ftp-data action=accept
rule create chain=forward index=5 srcintfgrp=lan prot=tcp dstport=ftp-data action=accept
rule create chain=forward index=6 srcintfgrp=wan prot=tcp ack=yes srcport=ftp action=accept
rule create chain=forward index=7 srcintfgrp=lan prot=tcp dstport=ftp action=accept
rule create chain=forward index=8 srcintfgrp=wan prot=tcp srcport=www-http action=accept
rule create chain=forward index=9 srcintfgrp=lan prot=tcp dstport=www-http action=accept
rule create chain=forward index=10 srcintfgrp=wan dstintfgrp=wan action=drop
rule create chain=forward index=11 action=drop
rule create chain=source index=0 dstintfgrp=!wan action=accept
rule create chain=source index=1 prot=udp dstport=dns action=accept
rule create chain=source index=2 prot=udp dstport=bootps action=accept
rule create chain=source index=3 action=drop
assign hook=sink chain="sink"
assign hook=forward chain="forward"
assign hook=source chain="source"
Gerhard