5 option title 'Firewall zones'
6 option package 'firewall'
10 option title 'Name of this firewall zone'
11 option section 'firewall.zone'
16 option title 'Associated network of this firewall zone'
17 option section 'firewall.zone'
18 option valueof 'network.interface'
23 option title 'Zone specific action for forwarded traffic'
24 option section 'firewall.zone'
29 option title 'Zone specific action for incoming traffic'
30 option section 'firewall.zone'
35 option title 'Zone specific action for outgoing traffic'
36 option section 'firewall.zone'
41 option title 'Enable masquerading for outgoing zone traffic'
42 option section 'firewall.zone'
43 option datatype 'boolean'
48 option name 'defaults'
49 option title 'Global firewall defaults'
50 option package 'firewall'
56 option title 'Action for forwarded traffic'
57 option section 'firewall.defaults'
62 option title 'Action for incoming traffic'
63 option section 'firewall.defaults'
68 option title 'Action for outgoing traffic'
69 option section 'firewall.defaults'
73 option name 'syn_flood'
74 option title 'Enable syn-flood protection'
75 option section 'firewall.defaults'
76 option datatype 'boolean'
81 option name 'forwarding'
82 option title 'Firewall traffic forwarding rules'
83 option package 'firewall'
87 option title 'Source zone'
88 option section 'firewall.forwarding'
89 option valueof 'firewall.zone.name'
94 option title 'Destination zone'
95 option section 'firewall.forwarding'
96 option valueof 'firewall.zone.name'
103 option title 'Custom rule specification'
104 option package 'firewall'
105 list depends 'target, src'
106 list depends 'target, dest'
107 list depends 'target, src_ip'
108 list depends 'target, src_port'
109 list depends 'target, src_mac'
110 list depends 'target, dest_ip'
111 list depends 'target, dest_port'
112 list depends 'target, proto'
116 option title 'Source zone'
117 option section 'firewall.rule'
118 option valueof 'firewall.zone.name'
122 option title 'Source IP address'
123 option section 'firewall.rule'
124 option datatype 'ipaddr'
127 option name 'src_port'
128 option title 'Source port'
129 option section 'firewall.rule'
130 option datatype 'portrange'
133 option name 'src_mac'
134 option title 'Source MAC address'
135 option section 'firewall.rule'
136 option datatype 'macaddr'
140 option title 'Destination zone'
141 option section 'firewall.rule'
142 option valueof 'firewall.zone.name'
145 option name 'dest_ip'
146 option title 'Destination IP address'
147 option section 'firewall.rule'
148 option datatype 'ipaddr'
151 option name 'dest_port'
152 option title 'Destination port'
153 option section 'firewall.rule'
154 option datatype 'portrange'
158 option title 'Protocol'
159 option section 'firewall.rule'
160 option datatype 'string'
164 option title 'Option target'
165 option section 'firewall.rule'
166 option datatype 'string'
171 option name 'redirect'
172 option title 'Traffic redirection rule definition'
173 option package 'firewall'
177 option title 'Source zone'
178 option section 'firewall.redirect'
179 option valueof 'firewall.zone.name'
183 option title 'Source IP address'
184 option section 'firewall.redirect'
185 option datatype 'ipaddr'
188 option name 'src_port'
189 option title 'Source port'
190 option section 'firewall.redirect'
191 option datatype 'portrange'
194 option name 'src_dport'
195 option title 'Source destination port'
196 option section 'firewall.redirect'
197 option datatype 'portrange'
200 option name 'src_mac'
201 option title 'Option src_mac'
202 option section 'firewall.redirect'
203 option datatype 'macaddr'
207 option title 'Destination zone'
208 option section 'firewall.redirect'
209 option valueof 'firewall.zone.name'
212 option name 'dest_ip'
213 option title 'Destination IP address'
214 option section 'firewall.redirect'
215 option datatype 'ipaddr'
218 option name 'dest_port'
219 option title 'Destination port'
220 option section 'firewall.redirect'
221 option datatype 'portrange'
225 option title 'Protocol'
226 option section 'firewall.redirect'
227 option datatype 'string'
232 option name 'include'
233 option title 'User defined config includes'
234 option package 'firewall'
238 option title 'Path to the include file'
239 option section 'firewall.include'
240 option datatype 'file'