Changeset 10589 in hybrid for branches/releng-9.0/nanobsd/files/etc/pf.proxy.conf
- Timestamp:
- Apr 26, 2012, 2:01:09 PM (13 years ago)
- File:
-
- 1 copied
Legend:
- Unmodified
- Added
- Removed
-
branches/releng-9.0/nanobsd/files/etc/pf.proxy.conf
r10580 r10589 29 29 ext_if="vr0" 30 30 ext_if_net="vr0:network" 31 ext_if_ default_route="192.168.42.1"31 ext_if_gw="127.127.127.127" 32 32 captive_portal_interfaces="wlan0" 33 33 publicnat="http,https" … … 68 68 69 69 # This quirck is needed to override the routing table default route (8) 70 pass out on !$ext_if route-to ($ext_if $ext_if_ default_route) proto tcp from any to !$wl_net port {22, 80, 443} user != unknown keep state71 pass out on !$ext_if route-to ($ext_if $ext_if_ default_route) proto udp from any to !$wl_net port {53} user != unknown keep state70 pass out on !$ext_if route-to ($ext_if $ext_if_gw) proto tcp from any to !$wl_net port {22, 80, 443} user != unknown keep state 71 pass out on !$ext_if route-to ($ext_if $ext_if_gw) proto udp from any to !$wl_net port {53} user != unknown keep state 72 72 73 73 # By default deny all outgoing traffic to avoid systems spamming the network (9)
Note:
See TracChangeset
for help on using the changeset viewer.