5 option title 'Firewall zones'
6 option package 'firewall'
10 option title 'Name of this firewall zone'
11 option section 'firewall.zone'
16 option title 'Associated network of this firewall zone'
17 option section 'firewall.zone'
18 option valueof 'network.interface'
23 option title 'Zone specific action for forwarded traffic'
24 option section 'firewall.zone'
29 option title 'Zone specific action for incoming traffic'
30 option section 'firewall.zone'
35 option title 'Zone specific action for outgoing traffic'
36 option section 'firewall.zone'
41 option title 'Enable masquerading for outgoing zone traffic'
42 option section 'firewall.zone'
43 option datatype 'boolean'
48 option name 'defaults'
49 option title 'Global firewall defaults'
50 option package 'firewall'
56 option title 'Action for forwarded traffic'
57 option section 'firewall.defaults'
62 option title 'Action for incoming traffic'
63 option section 'firewall.defaults'
68 option title 'Action for outgoing traffic'
69 option section 'firewall.defaults'
73 option name 'syn_flood'
74 option title 'Enable syn-flood protection'
75 option section 'firewall.defaults'
76 option datatype 'boolean'
81 option name 'forwarding'
82 option title 'Firewall traffic forwarding rules'
83 option package 'firewall'
87 option title 'Source zone'
88 option section 'firewall.forwarding'
89 option valueof 'firewall.zone.name'
94 option title 'Destination zone'
95 option section 'firewall.forwarding'
96 option valueof 'firewall.zone.name'
103 option title 'Custom rule specification'
104 option package 'firewall'
105 list depends 'target, src'
106 list depends 'target, dest'
107 list depends 'target, src_ip'
108 list depends 'target, src_port'
109 list depends 'target, src_mac'
110 list depends 'target, dest_ip'
111 list depends 'target, dest_port'
112 list depends 'target, proto'
116 option title 'Source zone'
117 option section 'firewall.rule'
118 option valueof 'firewall.zone.name'
122 option title 'Source IP address'
123 option section 'firewall.rule'
124 option datatype 'ipaddr'
127 option name 'src_port'
128 option title 'Source port'
129 option section 'firewall.rule'
130 option datatype 'portrange'
133 option name 'src_mac'
134 option title 'Source MAC address'
135 option section 'firewall.rule'
136 option datatype 'macaddr'
140 option title 'Destination zone'
141 option section 'firewall.rule'
142 option valueof 'firewall.zone.name'
145 option name 'dest_ip'
146 option title 'Destination IP address'
147 option section 'firewall.rule'
148 option datatype 'ipaddr'
151 option name 'dest_port'
152 option title 'Destination port'
153 option section 'firewall.rule'
154 option datatype 'portrange'
158 option title 'Protocol'
159 option section 'firewall.rule'
160 option datatype 'string'
164 option title 'Option target'
165 option section 'firewall.rule'
166 option datatype 'string'
172 option name 'redirect'
173 option title 'Traffic redirection rule definition'
174 option package 'firewall'
178 option title 'Source zone'
179 option section 'firewall.redirect'
180 option valueof 'firewall.zone.name'
184 option title 'Source IP address'
185 option section 'firewall.redirect'
186 option datatype 'ipaddr'
189 option name 'src_port'
190 option title 'Source port'
191 option section 'firewall.redirect'
192 option datatype 'portrange'
195 option name 'src_dport'
196 option title 'Source destination port'
197 option section 'firewall.redirect'
198 option datatype 'portrange'
201 option name 'src_mac'
202 option title 'Option src_mac'
203 option section 'firewall.redirect'
204 option datatype 'macaddr'
208 option title 'Destination zone'
209 option section 'firewall.redirect'
210 option valueof 'firewall.zone.name'
213 option name 'dest_ip'
214 option title 'Destination IP address'
215 option section 'firewall.redirect'
216 option datatype 'ipaddr'
219 option name 'dest_port'
220 option title 'Destination port'
221 option section 'firewall.redirect'
222 option datatype 'portrange'
226 option title 'Protocol'
227 option section 'firewall.redirect'
228 option datatype 'string'
233 option name 'include'
234 option title 'User defined config includes'
235 option package 'firewall'
239 option title 'Path to the include file'
240 option section 'firewall.include'
241 option datatype 'file'