mirror of
https://github.com/fwbuilder/fwbuilder
synced 2026-09-15 01:19:29 +02:00
fixed unit test
This commit is contained in:
@@ -1,6 +1,6 @@
|
||||
<?xml version="1.0" encoding="utf-8"?>
|
||||
<!DOCTYPE FWObjectDatabase SYSTEM "fwbuilder.dtd">
|
||||
<FWObjectDatabase xmlns="http://www.fwbuilder.org/1.0/" version="18" lastModified="1295999701" id="root">
|
||||
<FWObjectDatabase xmlns="http://www.fwbuilder.org/1.0/" version="18" lastModified="1298422069" id="root">
|
||||
<Library id="syslib000" color="#d4f8ff" name="Standard" comment="Standard objects" ro="True">
|
||||
<AnyNetwork id="sysid0" name="Any" comment="Any Network" ro="False" address="0.0.0.0" netmask="0.0.0.0"/>
|
||||
<AnyIPService id="sysid1" protocol_num="0" name="Any" comment="Any IP Service" ro="False"/>
|
||||
@@ -318,6 +318,12 @@
|
||||
<TCPService id="id41291887" ack_flag="False" ack_flag_mask="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="vnc-java-1" comment="Java VNC viewer, display 1" ro="False" src_range_start="0" src_range_end="0" dst_range_start="5801" dst_range_end="5801"/>
|
||||
<TCPService id="id41291888" ack_flag="False" ack_flag_mask="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="vnc-1" comment="Regular VNC viewer, display 1" ro="False" src_range_start="0" src_range_end="0" dst_range_start="5901" dst_range_end="5901"/>
|
||||
<TCPService id="id463FE5FE11008" ack_flag="False" ack_flag_mask="False" established="True" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="All TCP established" comment="Some firewall platforms can match TCP packets with flags ACK or RST set; the option is usually called "established". Note that you can use this object only in the policy rules of the firewall that supports this option. If you need to match reply packets for a specific TCP service and wish to use option "established", make a copy of this object and set source port range to match the service. " ro="False" src_range_start="0" src_range_end="0" dst_range_start="0" dst_range_end="0"/>
|
||||
<TCPService id="id1577X28030" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="rtmp" comment="Real Time Messaging Protocol" ro="False" src_range_start="0" src_range_end="0" dst_range_start="1935" dst_range_end="1935"/>
|
||||
<TCPService id="id1590X28030" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="xmpp-client" comment="Extensible Messaging and Presence Protocol (XMPP) RFC3920 " ro="False" src_range_start="0" src_range_end="0" dst_range_start="5222" dst_range_end="5222"/>
|
||||
<TCPService id="id1609X28030" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="xmpp-server" comment="Extensible Messaging and Presence Protocol (XMPP) RFC3920 " ro="False" src_range_start="0" src_range_end="0" dst_range_start="5269" dst_range_end="5269"/>
|
||||
<TCPService id="id1622X28030" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="xmpp-client-ssl" comment="Extensible Messaging and Presence Protocol (XMPP) RFC3920 " ro="False" src_range_start="0" src_range_end="0" dst_range_start="5223" dst_range_end="5223"/>
|
||||
<TCPService id="id1631X28030" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="xmpp-server-ssl" comment="Extensible Messaging and Presence Protocol (XMPP) RFC3920 " ro="False" src_range_start="0" src_range_end="0" dst_range_start="5270" dst_range_end="5270"/>
|
||||
<TCPService id="id1644X28030" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="nrpe" comment="NRPE add-on for Nagios http://www.nagios.org/ " ro="False" src_range_start="0" src_range_end="0" dst_range_start="5666" dst_range_end="5666"/>
|
||||
</ServiceGroup>
|
||||
<ServiceGroup id="stdid08" name="UDP" comment="" ro="False">
|
||||
<UDPService id="udp-ALL_UDP_Masqueraded" name="ALL UDP Masqueraded" comment="ipchains used to use this port range for masqueraded packets" ro="False" src_range_start="61000" src_range_end="65095" dst_range_start="0" dst_range_end="0"/>
|
||||
|
||||
@@ -1,6 +1,6 @@
|
||||
<?xml version="1.0" encoding="utf-8"?>
|
||||
<!DOCTYPE FWObjectDatabase SYSTEM "fwbuilder.dtd">
|
||||
<FWObjectDatabase xmlns="http://www.fwbuilder.org/1.0/" version="18" lastModified="1296002154" id="root">
|
||||
<FWObjectDatabase xmlns="http://www.fwbuilder.org/1.0/" version="18" lastModified="1298422069" id="root">
|
||||
<Library id="syslib000" color="#d4f8ff" name="Standard" comment="Standard objects" ro="True">
|
||||
<AnyNetwork id="sysid0" name="Any" comment="Any Network" ro="False" address="0.0.0.0" netmask="0.0.0.0"/>
|
||||
<AnyIPService id="sysid1" protocol_num="0" name="Any" comment="Any IP Service" ro="False"/>
|
||||
@@ -318,6 +318,12 @@
|
||||
<TCPService id="id41291887" ack_flag="False" ack_flag_mask="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="vnc-java-1" comment="Java VNC viewer, display 1" ro="False" src_range_start="0" src_range_end="0" dst_range_start="5801" dst_range_end="5801"/>
|
||||
<TCPService id="id41291888" ack_flag="False" ack_flag_mask="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="vnc-1" comment="Regular VNC viewer, display 1" ro="False" src_range_start="0" src_range_end="0" dst_range_start="5901" dst_range_end="5901"/>
|
||||
<TCPService id="id463FE5FE11008" ack_flag="False" ack_flag_mask="False" established="True" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="All TCP established" comment="Some firewall platforms can match TCP packets with flags ACK or RST set; the option is usually called "established". Note that you can use this object only in the policy rules of the firewall that supports this option. If you need to match reply packets for a specific TCP service and wish to use option "established", make a copy of this object and set source port range to match the service. " ro="False" src_range_start="0" src_range_end="0" dst_range_start="0" dst_range_end="0"/>
|
||||
<TCPService id="id1577X28030" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="rtmp" comment="Real Time Messaging Protocol" ro="False" src_range_start="0" src_range_end="0" dst_range_start="1935" dst_range_end="1935"/>
|
||||
<TCPService id="id1590X28030" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="xmpp-client" comment="Extensible Messaging and Presence Protocol (XMPP) RFC3920 " ro="False" src_range_start="0" src_range_end="0" dst_range_start="5222" dst_range_end="5222"/>
|
||||
<TCPService id="id1609X28030" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="xmpp-server" comment="Extensible Messaging and Presence Protocol (XMPP) RFC3920 " ro="False" src_range_start="0" src_range_end="0" dst_range_start="5269" dst_range_end="5269"/>
|
||||
<TCPService id="id1622X28030" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="xmpp-client-ssl" comment="Extensible Messaging and Presence Protocol (XMPP) RFC3920 " ro="False" src_range_start="0" src_range_end="0" dst_range_start="5223" dst_range_end="5223"/>
|
||||
<TCPService id="id1631X28030" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="xmpp-server-ssl" comment="Extensible Messaging and Presence Protocol (XMPP) RFC3920 " ro="False" src_range_start="0" src_range_end="0" dst_range_start="5270" dst_range_end="5270"/>
|
||||
<TCPService id="id1644X28030" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="nrpe" comment="NRPE add-on for Nagios http://www.nagios.org/ " ro="False" src_range_start="0" src_range_end="0" dst_range_start="5666" dst_range_end="5666"/>
|
||||
</ServiceGroup>
|
||||
<ServiceGroup id="stdid08" name="UDP" comment="" ro="False">
|
||||
<UDPService id="udp-ALL_UDP_Masqueraded" name="ALL UDP Masqueraded" comment="ipchains used to use this port range for masqueraded packets" ro="False" src_range_start="61000" src_range_end="65095" dst_range_start="0" dst_range_end="0"/>
|
||||
@@ -631,7 +637,7 @@
|
||||
<Option name="color">#C86E6E</Option>
|
||||
</NATRuleOptions>
|
||||
</NATRule>
|
||||
<NATRule id="id688" disabled="False" group="" position="1" action="Translate" comment="Original rule defines outbound interface 'eth0'. Replace address in TSrc with matching interface of the firewall.">
|
||||
<NATRule id="id692" disabled="False" group="" position="1" action="Translate" comment="Original rule defines outbound interface 'eth0'. Replace address in TSrc with matching interface of the firewall.">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="id28"/>
|
||||
</OSrc>
|
||||
@@ -660,7 +666,7 @@
|
||||
<Option name="color">#C86E6E</Option>
|
||||
</NATRuleOptions>
|
||||
</NATRule>
|
||||
<NATRule id="id702" disabled="False" group="" position="2" action="Translate" comment="Original rule defines outbound interface 'eth+'. Replace address in TSrc with matching interface of the firewall.">
|
||||
<NATRule id="id710" disabled="False" group="" position="2" action="Translate" comment="Original rule defines outbound interface 'eth+'. Replace address in TSrc with matching interface of the firewall.">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="id29"/>
|
||||
</OSrc>
|
||||
@@ -689,7 +695,7 @@
|
||||
<Option name="color">#C86E6E</Option>
|
||||
</NATRuleOptions>
|
||||
</NATRule>
|
||||
<NATRule id="id716" disabled="False" group="" position="3" action="Translate" comment="Original rule defines outbound interface 'eth+'. Replace address in TSrc with matching interface of the firewall.">
|
||||
<NATRule id="id728" disabled="False" group="" position="3" action="Translate" comment="Original rule defines outbound interface 'eth+'. Replace address in TSrc with matching interface of the firewall.">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="id28"/>
|
||||
</OSrc>
|
||||
@@ -718,7 +724,7 @@
|
||||
<Option name="color">#C86E6E</Option>
|
||||
</NATRuleOptions>
|
||||
</NATRule>
|
||||
<NATRule id="id730" disabled="False" group="" position="4" action="Translate" comment="Original rule defines outbound interface 'eth+'. Replace address in TSrc with matching interface of the firewall.">
|
||||
<NATRule id="id746" disabled="False" group="" position="4" action="Translate" comment="Original rule defines outbound interface 'eth+'. Replace address in TSrc with matching interface of the firewall.">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="id28"/>
|
||||
</OSrc>
|
||||
@@ -747,7 +753,7 @@
|
||||
<Option name="color">#C86E6E</Option>
|
||||
</NATRuleOptions>
|
||||
</NATRule>
|
||||
<NATRule id="id744" disabled="False" group="" position="5" action="Translate" comment="Original rule defines outbound interface 'eth1'. Replace address in TSrc with matching interface of the firewall.">
|
||||
<NATRule id="id764" disabled="False" group="" position="5" action="Translate" comment="Original rule defines outbound interface 'eth1'. Replace address in TSrc with matching interface of the firewall.">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="id13"/>
|
||||
</OSrc>
|
||||
@@ -776,7 +782,7 @@
|
||||
<Option name="color">#C86E6E</Option>
|
||||
</NATRuleOptions>
|
||||
</NATRule>
|
||||
<NATRule id="id758" disabled="False" group="" position="6" action="Translate" comment="">
|
||||
<NATRule id="id782" disabled="False" group="" position="6" action="Translate" comment="">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="id28"/>
|
||||
</OSrc>
|
||||
@@ -787,7 +793,7 @@
|
||||
<ServiceRef ref="sysid1"/>
|
||||
</OSrv>
|
||||
<TSrc neg="False">
|
||||
<ObjectRef ref="id1962"/>
|
||||
<ObjectRef ref="id2038"/>
|
||||
</TSrc>
|
||||
<TDst neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
@@ -803,7 +809,7 @@
|
||||
</ItfOutb>
|
||||
<NATRuleOptions/>
|
||||
</NATRule>
|
||||
<NATRule id="id772" disabled="False" group="" position="7" action="Translate" comment="">
|
||||
<NATRule id="id800" disabled="False" group="" position="7" action="Translate" comment="">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="id28"/>
|
||||
<ObjectRef ref="id28"/>
|
||||
@@ -831,7 +837,7 @@
|
||||
</ItfOutb>
|
||||
<NATRuleOptions/>
|
||||
</NATRule>
|
||||
<NATRule id="id787" disabled="False" group="" position="8" action="Translate" comment="">
|
||||
<NATRule id="id819" disabled="False" group="" position="8" action="Translate" comment="">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</OSrc>
|
||||
@@ -858,7 +864,7 @@
|
||||
</ItfOutb>
|
||||
<NATRuleOptions/>
|
||||
</NATRule>
|
||||
<NATRule id="id801" disabled="False" group="" position="9" action="Translate" comment="">
|
||||
<NATRule id="id837" disabled="False" group="" position="9" action="Translate" comment="">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</OSrc>
|
||||
@@ -885,7 +891,7 @@
|
||||
</ItfOutb>
|
||||
<NATRuleOptions/>
|
||||
</NATRule>
|
||||
<NATRule id="id815" disabled="False" group="" position="10" action="Translate" comment="">
|
||||
<NATRule id="id855" disabled="False" group="" position="10" action="Translate" comment="">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</OSrc>
|
||||
@@ -912,7 +918,7 @@
|
||||
</ItfOutb>
|
||||
<NATRuleOptions/>
|
||||
</NATRule>
|
||||
<NATRule id="id829" disabled="False" group="" position="11" action="Translate" comment="">
|
||||
<NATRule id="id873" disabled="False" group="" position="11" action="Translate" comment="">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</OSrc>
|
||||
@@ -939,7 +945,7 @@
|
||||
</ItfOutb>
|
||||
<NATRuleOptions/>
|
||||
</NATRule>
|
||||
<NATRule id="id843" disabled="False" group="" position="12" action="Translate" comment="">
|
||||
<NATRule id="id891" disabled="False" group="" position="12" action="Translate" comment="">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</OSrc>
|
||||
@@ -966,7 +972,7 @@
|
||||
</ItfOutb>
|
||||
<NATRuleOptions/>
|
||||
</NATRule>
|
||||
<NATRule id="id857" disabled="False" group="" position="13" action="Translate" comment="">
|
||||
<NATRule id="id909" disabled="False" group="" position="13" action="Translate" comment="">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</OSrc>
|
||||
@@ -993,7 +999,7 @@
|
||||
</ItfOutb>
|
||||
<NATRuleOptions/>
|
||||
</NATRule>
|
||||
<NATRule id="id871" disabled="False" group="" position="14" action="Translate" comment="Original rule defines inbound interface 'eth0'. Replace address in ODst with matching interface of the firewall.">
|
||||
<NATRule id="id927" disabled="False" group="" position="14" action="Translate" comment="Original rule defines inbound interface 'eth0'. Replace address in ODst with matching interface of the firewall.">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</OSrc>
|
||||
@@ -1022,7 +1028,7 @@
|
||||
<Option name="color">#C86E6E</Option>
|
||||
</NATRuleOptions>
|
||||
</NATRule>
|
||||
<NATRule id="id885" disabled="False" group="" position="15" action="Translate" comment="">
|
||||
<NATRule id="id945" disabled="False" group="" position="15" action="Translate" comment="">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="id28"/>
|
||||
</OSrc>
|
||||
@@ -1049,7 +1055,7 @@
|
||||
</ItfOutb>
|
||||
<NATRuleOptions/>
|
||||
</NATRule>
|
||||
<NATRule id="id899" disabled="False" group="" position="16" action="Translate" comment="">
|
||||
<NATRule id="id963" disabled="False" group="" position="16" action="Translate" comment="">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="id28"/>
|
||||
</OSrc>
|
||||
@@ -1076,7 +1082,7 @@
|
||||
</ItfOutb>
|
||||
<NATRuleOptions/>
|
||||
</NATRule>
|
||||
<NATRule id="id913" disabled="False" group="" position="17" action="Translate" comment="">
|
||||
<NATRule id="id981" disabled="False" group="" position="17" action="Translate" comment="">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</OSrc>
|
||||
@@ -1103,7 +1109,7 @@
|
||||
</ItfOutb>
|
||||
<NATRuleOptions/>
|
||||
</NATRule>
|
||||
<NATRule id="id927" disabled="False" group="" position="18" action="Translate" comment="">
|
||||
<NATRule id="id999" disabled="False" group="" position="18" action="Translate" comment="">
|
||||
<OSrc neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</OSrc>
|
||||
@@ -1230,7 +1236,7 @@
|
||||
<IntervalRef ref="sysid2"/>
|
||||
</When>
|
||||
<PolicyRuleOptions>
|
||||
<Option name="branch_id">id1571</Option>
|
||||
<Option name="branch_id">id1647</Option>
|
||||
<Option name="stateless">True</Option>
|
||||
<Option name="tagobject_id"></Option>
|
||||
</PolicyRuleOptions>
|
||||
@@ -1252,7 +1258,7 @@
|
||||
<IntervalRef ref="sysid2"/>
|
||||
</When>
|
||||
<PolicyRuleOptions>
|
||||
<Option name="branch_id">id1585</Option>
|
||||
<Option name="branch_id">id1661</Option>
|
||||
<Option name="stateless">True</Option>
|
||||
<Option name="tagobject_id"></Option>
|
||||
</PolicyRuleOptions>
|
||||
@@ -1268,7 +1274,7 @@
|
||||
<ServiceRef ref="sysid1"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1601"/>
|
||||
<ObjectRef ref="id1677"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -1294,7 +1300,7 @@
|
||||
<IntervalRef ref="sysid2"/>
|
||||
</When>
|
||||
<PolicyRuleOptions>
|
||||
<Option name="branch_id">id943</Option>
|
||||
<Option name="branch_id">id1019</Option>
|
||||
<Option name="stateless">True</Option>
|
||||
<Option name="tagobject_id"></Option>
|
||||
</PolicyRuleOptions>
|
||||
@@ -1316,7 +1322,7 @@
|
||||
<IntervalRef ref="sysid2"/>
|
||||
</When>
|
||||
<PolicyRuleOptions>
|
||||
<Option name="branch_id">id1602</Option>
|
||||
<Option name="branch_id">id1678</Option>
|
||||
<Option name="stateless">True</Option>
|
||||
<Option name="tagobject_id"></Option>
|
||||
</PolicyRuleOptions>
|
||||
@@ -1332,13 +1338,13 @@
|
||||
<ServiceRef ref="id130"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
</When>
|
||||
<PolicyRuleOptions>
|
||||
<Option name="branch_id">id1772</Option>
|
||||
<Option name="branch_id">id1848</Option>
|
||||
<Option name="stateless">True</Option>
|
||||
<Option name="tagobject_id"></Option>
|
||||
</PolicyRuleOptions>
|
||||
@@ -1719,7 +1725,7 @@
|
||||
<IntervalRef ref="sysid2"/>
|
||||
</When>
|
||||
<PolicyRuleOptions>
|
||||
<Option name="branch_id">id943</Option>
|
||||
<Option name="branch_id">id1019</Option>
|
||||
<Option name="stateless">True</Option>
|
||||
<Option name="tagobject_id"></Option>
|
||||
</PolicyRuleOptions>
|
||||
@@ -1840,7 +1846,7 @@
|
||||
<ServiceRef ref="id114"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1786"/>
|
||||
<ObjectRef ref="id1862"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -1862,7 +1868,7 @@
|
||||
<ServiceRef ref="id114"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1786"/>
|
||||
<ObjectRef ref="id1862"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -1884,7 +1890,7 @@
|
||||
<ServiceRef ref="id114"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1786"/>
|
||||
<ObjectRef ref="id1862"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -1906,7 +1912,7 @@
|
||||
<ServiceRef ref="id114"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1786"/>
|
||||
<ObjectRef ref="id1862"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -1928,7 +1934,7 @@
|
||||
<ServiceRef ref="id115"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1786"/>
|
||||
<ObjectRef ref="id1862"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -2054,8 +2060,8 @@
|
||||
</PolicyRule>
|
||||
<RuleSetOptions/>
|
||||
</Policy>
|
||||
<Policy id="id943" name="user_chain" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id945" disabled="False" group="" log="False" position="0" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Policy id="id1019" name="user_chain" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1021" disabled="False" group="" log="False" position="0" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2075,7 +2081,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id957" disabled="False" group="" log="False" position="1" action="Accept" direction="Inbound" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1033" disabled="False" group="" log="False" position="1" action="Accept" direction="Inbound" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -2086,7 +2092,7 @@
|
||||
<ServiceRef ref="id72"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -2095,7 +2101,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id969" disabled="False" group="" log="False" position="2" action="Continue" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1045" disabled="False" group="" log="False" position="2" action="Continue" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id26"/>
|
||||
</Src>
|
||||
@@ -2115,7 +2121,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id981" disabled="False" group="" log="False" position="3" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1057" disabled="False" group="" log="False" position="3" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -2135,7 +2141,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id993" disabled="False" group="" log="False" position="4" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1069" disabled="False" group="" log="False" position="4" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id27"/>
|
||||
</Src>
|
||||
@@ -2155,7 +2161,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1005" disabled="False" group="" log="False" position="5" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1081" disabled="False" group="" log="False" position="5" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id7"/>
|
||||
</Src>
|
||||
@@ -2175,7 +2181,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1017" disabled="False" group="" log="False" position="6" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1093" disabled="False" group="" log="False" position="6" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id24"/>
|
||||
</Src>
|
||||
@@ -2195,7 +2201,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1029" disabled="False" group="" log="False" position="7" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1105" disabled="False" group="" log="False" position="7" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id24"/>
|
||||
</Src>
|
||||
@@ -2215,7 +2221,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1041" disabled="False" group="" log="False" position="8" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1117" disabled="False" group="" log="False" position="8" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id8"/>
|
||||
</Src>
|
||||
@@ -2235,7 +2241,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1053" disabled="False" group="" log="False" position="9" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1129" disabled="False" group="" log="False" position="9" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id27"/>
|
||||
</Src>
|
||||
@@ -2255,7 +2261,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1065" disabled="False" group="" log="False" position="10" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1141" disabled="False" group="" log="False" position="10" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id27"/>
|
||||
</Src>
|
||||
@@ -2275,7 +2281,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1077" disabled="False" group="" log="False" position="11" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1153" disabled="False" group="" log="False" position="11" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id27"/>
|
||||
</Src>
|
||||
@@ -2295,7 +2301,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1089" disabled="False" group="" log="False" position="12" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1165" disabled="False" group="" log="False" position="12" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id24"/>
|
||||
</Src>
|
||||
@@ -2315,7 +2321,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1101" disabled="False" group="" log="False" position="13" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1177" disabled="False" group="" log="False" position="13" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id24"/>
|
||||
</Src>
|
||||
@@ -2335,7 +2341,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1113" disabled="False" group="" log="False" position="14" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1189" disabled="False" group="" log="False" position="14" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id24"/>
|
||||
</Src>
|
||||
@@ -2355,7 +2361,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1125" disabled="False" group="" log="False" position="15" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1201" disabled="False" group="" log="False" position="15" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id24"/>
|
||||
</Src>
|
||||
@@ -2375,7 +2381,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1137" disabled="False" group="" log="False" position="16" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1213" disabled="False" group="" log="False" position="16" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -2395,7 +2401,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1149" disabled="False" group="" log="False" position="17" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1225" disabled="False" group="" log="False" position="17" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id24"/>
|
||||
</Src>
|
||||
@@ -2415,7 +2421,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1161" disabled="False" group="" log="False" position="18" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1237" disabled="False" group="" log="False" position="18" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id8"/>
|
||||
</Src>
|
||||
@@ -2435,7 +2441,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1173" disabled="False" group="" log="False" position="19" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1249" disabled="False" group="" log="False" position="19" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -2455,7 +2461,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1185" disabled="False" group="" log="False" position="20" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1261" disabled="False" group="" log="False" position="20" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id9"/>
|
||||
</Src>
|
||||
@@ -2475,7 +2481,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1197" disabled="False" group="" log="False" position="21" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1273" disabled="False" group="" log="False" position="21" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id9"/>
|
||||
</Src>
|
||||
@@ -2495,7 +2501,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1209" disabled="False" group="" log="False" position="22" action="Accept" direction="Both" comment="Port spec 'foo' unknown. Error basic_ios::clear Port spec 'foo' unknown. Error basic_ios::clearChain user_chain. ">
|
||||
<PolicyRule id="id1285" disabled="False" group="" log="False" position="22" action="Accept" direction="Both" comment="Port spec 'foo' unknown. Error basic_ios::clear Port spec 'foo' unknown. Error basic_ios::clearChain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id24"/>
|
||||
</Src>
|
||||
@@ -2516,7 +2522,7 @@
|
||||
<Option name="stateless">False</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1221" disabled="False" group="" log="True" position="23" action="Continue" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1297" disabled="False" group="" log="True" position="23" action="Continue" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="True">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2543,7 +2549,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1233" disabled="False" group="" log="False" position="24" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1309" disabled="False" group="" log="False" position="24" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2563,7 +2569,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1245" disabled="False" group="" log="False" position="25" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1321" disabled="False" group="" log="False" position="25" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2583,7 +2589,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1257" disabled="False" group="" log="False" position="26" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1333" disabled="False" group="" log="False" position="26" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2603,7 +2609,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1269" disabled="False" group="" log="False" position="27" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1345" disabled="False" group="" log="False" position="27" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2623,7 +2629,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1281" disabled="False" group="" log="False" position="28" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1357" disabled="False" group="" log="False" position="28" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2643,7 +2649,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1293" disabled="False" group="" log="False" position="29" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1369" disabled="False" group="" log="False" position="29" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2663,7 +2669,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1305" disabled="False" group="" log="False" position="30" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1381" disabled="False" group="" log="False" position="30" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2683,7 +2689,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1317" disabled="False" group="" log="False" position="31" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1393" disabled="False" group="" log="False" position="31" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2703,7 +2709,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1329" disabled="False" group="" log="False" position="32" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1405" disabled="False" group="" log="False" position="32" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2723,7 +2729,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1341" disabled="False" group="" log="False" position="33" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1417" disabled="False" group="" log="False" position="33" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2743,7 +2749,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1353" disabled="False" group="" log="False" position="34" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1429" disabled="False" group="" log="False" position="34" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2763,7 +2769,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1365" disabled="False" group="" log="False" position="35" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1441" disabled="False" group="" log="False" position="35" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2784,7 +2790,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1378" disabled="False" group="" log="False" position="36" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1454" disabled="False" group="" log="False" position="36" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2805,7 +2811,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1391" disabled="False" group="" log="False" position="37" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1467" disabled="False" group="" log="False" position="37" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2825,7 +2831,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1403" disabled="False" group="" log="False" position="38" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1479" disabled="False" group="" log="False" position="38" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2845,7 +2851,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1415" disabled="False" group="" log="False" position="39" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1491" disabled="False" group="" log="False" position="39" action="Accept" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2865,7 +2871,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1427" disabled="False" group="" log="False" position="40" action="Deny" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1503" disabled="False" group="" log="False" position="40" action="Deny" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -2885,7 +2891,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1439" disabled="False" group="" log="False" position="41" action="Deny" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1515" disabled="False" group="" log="False" position="41" action="Deny" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -2905,7 +2911,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1451" disabled="False" group="" log="False" position="42" action="Branch" direction="Inbound" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1527" disabled="False" group="" log="False" position="42" action="Branch" direction="Inbound" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -2916,18 +2922,18 @@
|
||||
<ServiceRef ref="id83"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
</When>
|
||||
<PolicyRuleOptions>
|
||||
<Option name="branch_id">id1788</Option>
|
||||
<Option name="branch_id">id1864</Option>
|
||||
<Option name="stateless">True</Option>
|
||||
<Option name="tagobject_id"></Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1463" disabled="False" group="" log="False" position="43" action="Branch" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1539" disabled="False" group="" log="False" position="43" action="Branch" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2944,12 +2950,12 @@
|
||||
<IntervalRef ref="sysid2"/>
|
||||
</When>
|
||||
<PolicyRuleOptions>
|
||||
<Option name="branch_id">id1802</Option>
|
||||
<Option name="branch_id">id1878</Option>
|
||||
<Option name="stateless">True</Option>
|
||||
<Option name="tagobject_id"></Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1475" disabled="False" group="" log="False" position="44" action="Branch" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1551" disabled="False" group="" log="False" position="44" action="Branch" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id25"/>
|
||||
</Src>
|
||||
@@ -2966,12 +2972,12 @@
|
||||
<IntervalRef ref="sysid2"/>
|
||||
</When>
|
||||
<PolicyRuleOptions>
|
||||
<Option name="branch_id">id1816</Option>
|
||||
<Option name="branch_id">id1892</Option>
|
||||
<Option name="stateless">True</Option>
|
||||
<Option name="tagobject_id"></Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1487" disabled="False" group="" log="False" position="45" action="Branch" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1563" disabled="False" group="" log="False" position="45" action="Branch" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -2988,12 +2994,12 @@
|
||||
<IntervalRef ref="sysid2"/>
|
||||
</When>
|
||||
<PolicyRuleOptions>
|
||||
<Option name="branch_id">id1830</Option>
|
||||
<Option name="branch_id">id1906</Option>
|
||||
<Option name="stateless">True</Option>
|
||||
<Option name="tagobject_id"></Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1499" disabled="False" group="" log="False" position="46" action="Branch" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1575" disabled="False" group="" log="False" position="46" action="Branch" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3010,12 +3016,12 @@
|
||||
<IntervalRef ref="sysid2"/>
|
||||
</When>
|
||||
<PolicyRuleOptions>
|
||||
<Option name="branch_id">id1844</Option>
|
||||
<Option name="branch_id">id1920</Option>
|
||||
<Option name="stateless">True</Option>
|
||||
<Option name="tagobject_id"></Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1511" disabled="False" group="" log="False" position="47" action="Branch" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1587" disabled="False" group="" log="False" position="47" action="Branch" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3032,12 +3038,12 @@
|
||||
<IntervalRef ref="sysid2"/>
|
||||
</When>
|
||||
<PolicyRuleOptions>
|
||||
<Option name="branch_id">id1858</Option>
|
||||
<Option name="branch_id">id1934</Option>
|
||||
<Option name="stateless">True</Option>
|
||||
<Option name="tagobject_id"></Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1523" disabled="False" group="" log="False" position="48" action="Branch" direction="Both" comment="Chain user_chain. Original rule combines match of tcp/udp/icmp protocols with two or more module matches, such as module 'mark', 'recent' or 'length'. Use additional branches to implement this complex match.">
|
||||
<PolicyRule id="id1599" disabled="False" group="" log="False" position="48" action="Branch" direction="Both" comment="Chain user_chain. Original rule combines match of tcp/udp/icmp protocols with two or more module matches, such as module 'mark', 'recent' or 'length'. Use additional branches to implement this complex match.">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3054,13 +3060,13 @@
|
||||
<IntervalRef ref="sysid2"/>
|
||||
</When>
|
||||
<PolicyRuleOptions>
|
||||
<Option name="branch_id">id1872</Option>
|
||||
<Option name="branch_id">id1948</Option>
|
||||
<Option name="color">#C86E6E</Option>
|
||||
<Option name="stateless">True</Option>
|
||||
<Option name="tagobject_id"></Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1535" disabled="False" group="" log="False" position="49" action="Branch" direction="Both" comment="Chain user_chain. Original rule combines match of tcp/udp/icmp protocols with two or more module matches, such as module 'mark', 'recent' or 'length'. Use additional branches to implement this complex match.">
|
||||
<PolicyRule id="id1611" disabled="False" group="" log="False" position="49" action="Branch" direction="Both" comment="Chain user_chain. Original rule combines match of tcp/udp/icmp protocols with two or more module matches, such as module 'mark', 'recent' or 'length'. Use additional branches to implement this complex match.">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3077,13 +3083,13 @@
|
||||
<IntervalRef ref="sysid2"/>
|
||||
</When>
|
||||
<PolicyRuleOptions>
|
||||
<Option name="branch_id">id1886</Option>
|
||||
<Option name="branch_id">id1962</Option>
|
||||
<Option name="color">#C86E6E</Option>
|
||||
<Option name="stateless">True</Option>
|
||||
<Option name="tagobject_id"></Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1547" disabled="False" group="" log="False" position="50" action="Deny" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1623" disabled="False" group="" log="False" position="50" action="Deny" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3103,7 +3109,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1559" disabled="False" group="" log="False" position="51" action="Deny" direction="Both" comment="Chain user_chain. ">
|
||||
<PolicyRule id="id1635" disabled="False" group="" log="False" position="51" action="Deny" direction="Both" comment="Chain user_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3125,8 +3131,8 @@
|
||||
</PolicyRule>
|
||||
<RuleSetOptions/>
|
||||
</Policy>
|
||||
<Policy id="id1571" name="OUTPUT_established_0" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1573" disabled="False" group="" log="False" position="0" action="Accept" direction="Both" comment="">
|
||||
<Policy id="id1647" name="OUTPUT_established_0" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1649" disabled="False" group="" log="False" position="0" action="Accept" direction="Both" comment="">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3148,8 +3154,8 @@
|
||||
</PolicyRule>
|
||||
<RuleSetOptions/>
|
||||
</Policy>
|
||||
<Policy id="id1585" name="OUTPUT_established_1" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1587" disabled="False" group="" log="False" position="0" action="Deny" direction="Both" comment="">
|
||||
<Policy id="id1661" name="OUTPUT_established_1" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1663" disabled="False" group="" log="False" position="0" action="Deny" direction="Both" comment="">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3171,11 +3177,11 @@
|
||||
</PolicyRule>
|
||||
<RuleSetOptions/>
|
||||
</Policy>
|
||||
<Policy id="id1599" name="drop_invalid" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<Policy id="id1675" name="drop_invalid" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<RuleSetOptions/>
|
||||
</Policy>
|
||||
<Policy id="id1602" name="scan_checks_chain" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1604" disabled="False" group="" log="True" position="0" action="Continue" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<Policy id="id1678" name="scan_checks_chain" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1680" disabled="False" group="" log="True" position="0" action="Continue" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3186,7 +3192,7 @@
|
||||
<ServiceRef ref="id90"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -3202,7 +3208,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1616" disabled="False" group="" log="True" position="1" action="Continue" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<PolicyRule id="id1692" disabled="False" group="" log="True" position="1" action="Continue" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3213,7 +3219,7 @@
|
||||
<ServiceRef ref="id91"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -3229,7 +3235,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1628" disabled="False" group="" log="True" position="2" action="Continue" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<PolicyRule id="id1704" disabled="False" group="" log="True" position="2" action="Continue" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3240,7 +3246,7 @@
|
||||
<ServiceRef ref="id92"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -3256,7 +3262,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1640" disabled="False" group="" log="True" position="3" action="Continue" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<PolicyRule id="id1716" disabled="False" group="" log="True" position="3" action="Continue" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3267,7 +3273,7 @@
|
||||
<ServiceRef ref="id93"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -3283,7 +3289,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1652" disabled="False" group="" log="True" position="4" action="Continue" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<PolicyRule id="id1728" disabled="False" group="" log="True" position="4" action="Continue" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3294,7 +3300,7 @@
|
||||
<ServiceRef ref="id94"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -3310,7 +3316,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1664" disabled="False" group="" log="True" position="5" action="Continue" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<PolicyRule id="id1740" disabled="False" group="" log="True" position="5" action="Continue" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3321,7 +3327,7 @@
|
||||
<ServiceRef ref="id95"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -3337,7 +3343,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1676" disabled="False" group="" log="True" position="6" action="Continue" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<PolicyRule id="id1752" disabled="False" group="" log="True" position="6" action="Continue" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3348,7 +3354,7 @@
|
||||
<ServiceRef ref="id96"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -3364,7 +3370,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1688" disabled="False" group="" log="False" position="7" action="Deny" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<PolicyRule id="id1764" disabled="False" group="" log="False" position="7" action="Deny" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3375,7 +3381,7 @@
|
||||
<ServiceRef ref="id90"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -3384,7 +3390,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1700" disabled="False" group="" log="False" position="8" action="Deny" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<PolicyRule id="id1776" disabled="False" group="" log="False" position="8" action="Deny" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3395,7 +3401,7 @@
|
||||
<ServiceRef ref="id91"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -3404,7 +3410,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1712" disabled="False" group="" log="False" position="9" action="Deny" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<PolicyRule id="id1788" disabled="False" group="" log="False" position="9" action="Deny" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3415,7 +3421,7 @@
|
||||
<ServiceRef ref="id92"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -3424,7 +3430,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1724" disabled="False" group="" log="False" position="10" action="Deny" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<PolicyRule id="id1800" disabled="False" group="" log="False" position="10" action="Deny" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3435,7 +3441,7 @@
|
||||
<ServiceRef ref="id93"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -3444,7 +3450,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1736" disabled="False" group="" log="False" position="11" action="Deny" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<PolicyRule id="id1812" disabled="False" group="" log="False" position="11" action="Deny" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3455,7 +3461,7 @@
|
||||
<ServiceRef ref="id94"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -3464,7 +3470,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1748" disabled="False" group="" log="False" position="12" action="Deny" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<PolicyRule id="id1824" disabled="False" group="" log="False" position="12" action="Deny" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3475,7 +3481,7 @@
|
||||
<ServiceRef ref="id95"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -3484,7 +3490,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1760" disabled="False" group="" log="False" position="13" action="Deny" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<PolicyRule id="id1836" disabled="False" group="" log="False" position="13" action="Deny" direction="Inbound" comment="Chain scan_checks_chain. ">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3495,7 +3501,7 @@
|
||||
<ServiceRef ref="id96"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1787"/>
|
||||
<ObjectRef ref="id1863"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -3506,8 +3512,8 @@
|
||||
</PolicyRule>
|
||||
<RuleSetOptions/>
|
||||
</Policy>
|
||||
<Policy id="id1772" name="Policy_eth1" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1774" disabled="False" group="" log="False" position="0" action="Accept" direction="Outbound" comment="Called from ruleset Policy, rule 9">
|
||||
<Policy id="id1848" name="Policy_eth1" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1850" disabled="False" group="" log="False" position="0" action="Accept" direction="Outbound" comment="Called from ruleset Policy, rule 9">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3518,7 +3524,7 @@
|
||||
<ServiceRef ref="sysid1"/>
|
||||
</Srv>
|
||||
<Itf neg="False">
|
||||
<ObjectRef ref="id1786"/>
|
||||
<ObjectRef ref="id1862"/>
|
||||
</Itf>
|
||||
<When neg="False">
|
||||
<IntervalRef ref="sysid2"/>
|
||||
@@ -3529,8 +3535,8 @@
|
||||
</PolicyRule>
|
||||
<RuleSetOptions/>
|
||||
</Policy>
|
||||
<Policy id="id1788" name="user_chain_42_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1790" disabled="False" group="" log="False" position="0" action="Deny" direction="Inbound" comment="Called from ruleset user_chain, rule 42">
|
||||
<Policy id="id1864" name="user_chain_42_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1866" disabled="False" group="" log="False" position="0" action="Deny" direction="Inbound" comment="Called from ruleset user_chain, rule 42">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3552,8 +3558,8 @@
|
||||
</PolicyRule>
|
||||
<RuleSetOptions/>
|
||||
</Policy>
|
||||
<Policy id="id1802" name="user_chain_43_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1804" disabled="False" group="" log="False" position="0" action="Deny" direction="Both" comment="Called from ruleset user_chain, rule 43">
|
||||
<Policy id="id1878" name="user_chain_43_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1880" disabled="False" group="" log="False" position="0" action="Deny" direction="Both" comment="Called from ruleset user_chain, rule 43">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3575,8 +3581,8 @@
|
||||
</PolicyRule>
|
||||
<RuleSetOptions/>
|
||||
</Policy>
|
||||
<Policy id="id1816" name="user_chain_44_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1818" disabled="False" group="" log="False" position="0" action="Deny" direction="Both" comment="Called from ruleset user_chain, rule 44">
|
||||
<Policy id="id1892" name="user_chain_44_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1894" disabled="False" group="" log="False" position="0" action="Deny" direction="Both" comment="Called from ruleset user_chain, rule 44">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3598,8 +3604,8 @@
|
||||
</PolicyRule>
|
||||
<RuleSetOptions/>
|
||||
</Policy>
|
||||
<Policy id="id1830" name="user_chain_45_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1832" disabled="False" group="" log="False" position="0" action="Deny" direction="Both" comment="Called from ruleset user_chain, rule 45">
|
||||
<Policy id="id1906" name="user_chain_45_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1908" disabled="False" group="" log="False" position="0" action="Deny" direction="Both" comment="Called from ruleset user_chain, rule 45">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3621,8 +3627,8 @@
|
||||
</PolicyRule>
|
||||
<RuleSetOptions/>
|
||||
</Policy>
|
||||
<Policy id="id1844" name="user_chain_46_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1846" disabled="False" group="" log="False" position="0" action="Tag" direction="Both" comment="Called from ruleset user_chain, rule 46">
|
||||
<Policy id="id1920" name="user_chain_46_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1922" disabled="False" group="" log="False" position="0" action="Tag" direction="Both" comment="Called from ruleset user_chain, rule 46">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3646,8 +3652,8 @@
|
||||
</PolicyRule>
|
||||
<RuleSetOptions/>
|
||||
</Policy>
|
||||
<Policy id="id1858" name="user_chain_47_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1860" disabled="False" group="" log="False" position="0" action="Tag" direction="Both" comment="Called from ruleset user_chain, rule 47">
|
||||
<Policy id="id1934" name="user_chain_47_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1936" disabled="False" group="" log="False" position="0" action="Tag" direction="Both" comment="Called from ruleset user_chain, rule 47">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3671,8 +3677,8 @@
|
||||
</PolicyRule>
|
||||
<RuleSetOptions/>
|
||||
</Policy>
|
||||
<Policy id="id1872" name="user_chain_48_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1874" disabled="False" group="" log="False" position="0" action="Accept" direction="Both" comment="Called from ruleset user_chain, rule 48">
|
||||
<Policy id="id1948" name="user_chain_48_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1950" disabled="False" group="" log="False" position="0" action="Accept" direction="Both" comment="Called from ruleset user_chain, rule 48">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3694,8 +3700,8 @@
|
||||
</PolicyRule>
|
||||
<RuleSetOptions/>
|
||||
</Policy>
|
||||
<Policy id="id1886" name="user_chain_49_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1888" disabled="False" group="" log="False" position="0" action="Accept" direction="Both" comment="Called from ruleset user_chain, rule 49">
|
||||
<Policy id="id1962" name="user_chain_49_mod_match" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="False">
|
||||
<PolicyRule id="id1964" disabled="False" group="" log="False" position="0" action="Accept" direction="Both" comment="Called from ruleset user_chain, rule 49">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3717,8 +3723,8 @@
|
||||
</PolicyRule>
|
||||
<RuleSetOptions/>
|
||||
</Policy>
|
||||
<Policy id="id1900" name="Mangle" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="True">
|
||||
<PolicyRule id="id1902" disabled="False" group="" log="False" position="0" action="Accept" direction="Both" comment="Can not reproduce default action in table 'mangle' chain 'FORWARD'.">
|
||||
<Policy id="id1976" name="Mangle" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="True">
|
||||
<PolicyRule id="id1978" disabled="False" group="" log="False" position="0" action="Accept" direction="Both" comment="Can not reproduce default action in table 'mangle' chain 'FORWARD'.">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3739,7 +3745,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1914" disabled="False" group="" log="False" position="1" action="Accept" direction="Inbound" comment="Can not reproduce default action in table 'mangle' chain 'INPUT'.">
|
||||
<PolicyRule id="id1990" disabled="False" group="" log="False" position="1" action="Accept" direction="Inbound" comment="Can not reproduce default action in table 'mangle' chain 'INPUT'.">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3760,7 +3766,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1926" disabled="False" group="" log="False" position="2" action="Accept" direction="Outbound" comment="Default iptables policy in mangle/OUTPUT">
|
||||
<PolicyRule id="id2002" disabled="False" group="" log="False" position="2" action="Accept" direction="Outbound" comment="Default iptables policy in mangle/OUTPUT">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="id152"/>
|
||||
</Src>
|
||||
@@ -3780,7 +3786,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1938" disabled="False" group="" log="False" position="3" action="Accept" direction="Outbound" comment="Default iptables policy in mangle/POSTROUTING">
|
||||
<PolicyRule id="id2014" disabled="False" group="" log="False" position="3" action="Accept" direction="Outbound" comment="Default iptables policy in mangle/POSTROUTING">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3800,7 +3806,7 @@
|
||||
<Option name="stateless">True</Option>
|
||||
</PolicyRuleOptions>
|
||||
</PolicyRule>
|
||||
<PolicyRule id="id1950" disabled="False" group="" log="False" position="4" action="Accept" direction="Inbound" comment="Default iptables policy in mangle/PREROUTING">
|
||||
<PolicyRule id="id2026" disabled="False" group="" log="False" position="4" action="Accept" direction="Inbound" comment="Default iptables policy in mangle/PREROUTING">
|
||||
<Src neg="False">
|
||||
<ObjectRef ref="sysid0"/>
|
||||
</Src>
|
||||
@@ -3824,13 +3830,13 @@
|
||||
<Option name="mangle_only_rule_set">True</Option>
|
||||
</RuleSetOptions>
|
||||
</Policy>
|
||||
<Routing id="id941" name="Routing" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="True">
|
||||
<Routing id="id1017" name="Routing" comment="" ro="False" ipv4_rule_set="False" ipv6_rule_set="False" top_rule_set="True">
|
||||
<RuleSetOptions/>
|
||||
</Routing>
|
||||
<Interface id="id1601" dedicated_failover="False" dyn="False" security_level="0" unnum="True" unprotected="False" name="lo" comment="" ro="False"/>
|
||||
<Interface id="id1786" dedicated_failover="False" dyn="False" security_level="0" unnum="True" unprotected="False" name="eth1" comment="" ro="False"/>
|
||||
<Interface id="id1787" dedicated_failover="False" dyn="False" security_level="0" unnum="True" unprotected="False" name="eth0" comment="" ro="False"/>
|
||||
<Interface id="id1962" dedicated_failover="False" dyn="False" security_level="0" unnum="True" unprotected="False" name="eth2" comment="" ro="False"/>
|
||||
<Interface id="id1677" dedicated_failover="False" dyn="False" security_level="0" unnum="True" unprotected="False" name="lo" comment="" ro="False"/>
|
||||
<Interface id="id1862" dedicated_failover="False" dyn="False" security_level="0" unnum="True" unprotected="False" name="eth1" comment="" ro="False"/>
|
||||
<Interface id="id1863" dedicated_failover="False" dyn="False" security_level="0" unnum="True" unprotected="False" name="eth0" comment="" ro="False"/>
|
||||
<Interface id="id2038" dedicated_failover="False" dyn="False" security_level="0" unnum="True" unprotected="False" name="eth2" comment="" ro="False"/>
|
||||
<Management address="0.0.0.0">
|
||||
<SNMPManagement enabled="False" snmp_read_community="" snmp_write_community=""/>
|
||||
<FWBDManagement enabled="False" identity="" port="-1"/>
|
||||
@@ -3857,7 +3863,7 @@
|
||||
</FirewallOptions>
|
||||
</Firewall>
|
||||
</ObjectGroup>
|
||||
<ObjectGroup id="id1963" name="Clusters" comment="" ro="False"/>
|
||||
<IntervalGroup id="id1964" name="Time" comment="" ro="False"/>
|
||||
<ObjectGroup id="id2039" name="Clusters" comment="" ro="False"/>
|
||||
<IntervalGroup id="id2040" name="Time" comment="" ro="False"/>
|
||||
</Library>
|
||||
</FWObjectDatabase>
|
||||
|
||||
Reference in New Issue
Block a user