ich wollte jetzt einfach mal meine meine zusammen stellung mal posten
ich hab einen ST 510v4
neue firmware: 510v4 4.2.7.16.0
zum NAT-configen: NAT-Manager
und die user.ini ist aus diesem forum ( zur ĂĽbersicht poste ich es hir ) user.ini
- Code: Alles auswählen
[ env.ini ]
set var="CONF_REGION" value="Austria"
set var="CONF_PROVIDER" value="Internet Service Provider"
set var="CONF_DESCRIPTION" value="Austria"
set var="CONF_SERVICE" value="Broadband Access"
set var="CONF_DATE" value="Configuration modified manually"
set var="CONF_VERSION" value="0.1"
set var="HOST_SETUP" value="none"
set var="ST_LAN_IP_ADDR" value="10.0.0.138"
set var="ST_LAN_NET_MASK" value="255.255.255.0"
set var="COLUMNS" value="80"
set var="ROWS" value="24"
set var="SESSIONTIMEOUT" value="120"
[ phone.ini ]
add name="DIALUP_PPP1" addr=8*48 type=pppoa
[ qos.ini ]
add name="default" class=ubr
[ oam.ini ]
config clp=1
[ bridge.ini ]
config age=300
[ pptp.ini ]
profadd name="default"
[ dhcp.ini ]
config autodhcp=on scantime=20 spoofing=off trace=off
policy verifyfirst=off trustclient=on
spoof failtime=4 errorlt=60 dodlt=10
stop
[ mer.ini ]
[ ipoa.ini ]
[ ppp.ini ]
ifadd intf="DIALUP_PPP1"
rtadd intf=DIALUP_PPP1 dst=0.0.0.0/0 src=10.0.0.0/24 metric=1
ifconfig intf=DIALUP_PPP1 dest=DIALUP_PPP1 proto=pppoa accomp=on idle=15 addrtrans=pat
ifconfig intf=DIALUP_PPP1 user="USERID" password=PASSWORT status=down
[ cip.ini ]
[ pfilter.ini ]
[ pfirewall.ini ]
chain create chain="sink"
chain create chain="forward"
chain create chain="source"
rule create chain=sink index=0 srcintfgrp=!wan action=accept
rule create chain=sink index=1 prot=udp dstport=dns action=accept
rule create chain=sink index=2 prot=udp dstport=bootpc action=accept
rule create chain=sink index=3 action=drop
rule create chain=forward index=0 srcintfgrp=wan dstintfgrp=wan action=drop
rule create chain=source index=0 dstintfgrp=!wan action=accept
rule create chain=source index=1 prot=udp dstport=dns action=accept
rule create chain=source index=2 prot=udp dstport=bootps action=accept
rule create chain=source index=3 action=drop
assign hook=sink chain="sink"
assign hook=forward chain="forward"
assign hook=source chain="source"
[ ip.ini ]
config forwarding=on firewalling=on redirects=on sourcerouting=off netbroadcasts=off ttl=64 fraglimit=64 defragmode=always addrcheck=dynamic mssclamping=on
apadd addr=10.0.0.138/24 intf=eth0 addroute=no
ifconfig intf=loop mtu=1500 group=local
ifconfig intf=eth0 mtu=1500 group=lan
ifconfig intf=DIALUP_PPP1 mtu=1500 group=wan
rtadd dst=0.0.0.0/0 intf=eth0 metric=70
rtadd dst=224.0.0.0/4 intf=eth0
rtadd dst=10.0.0.0/24 src=10.0.0.138/32 gateway=10.0.0.138 metric=1
[ autoip.ini ]
[ eth.ini ]
ifconfig intf=0 type=auto
[ dnsd.ini ]
domain domain="lan"
start
troff
[ dhcc.ini ]
config trace=off
[ adslpots.ini ]
config opermode=multimode maxbitspertoneUS=13
[ upnp.ini ]
config maxage=1800
[ nat.ini ]
bind application=SIP port=5060
bind application=GRE port=1
bind application=PPTP port=1723
bind application=ESP port=1
bind application=IKE port=ike
bind application=ILS port=ldap
bind application=ILS port=ils
bind application=H323 port=h323
bind application=FTP port=ftp
bind application=RTSP port=rtsp
bind application=IRC port=irc-u
bind application=RAUDIO(PNA) port=realaudio
[ system.ini ]
config upnp=disabled mdap=enabled dcache=enabled
[ endofarch ]
und es funktioniert ganz gut, das ST 510 lauft seit 1monat durch und noch keine fehler endeckt.
mfg wargave