Firewall
Firewall
1 add address=0.0.0.0/8
add address=10.0.0.0/8
2
3 disabled=yes list=bogons
4 add address=127.0.0.0/8
5 add address=169.254.0.0/16
add address=172.16.0.0/12
6
7 disabled=yes list=bogons
add address=192.168.0.0/16
8
9 disabled=yes list=bogons
10 add address=192.0.2.0/24
add address=192.88.99.0/24
11
12 add address=198.18.0.0/15
13 add address=198.51.100.0/24
14 add address=203.0.113.0/24
add address=224.0.0.0/4
15
16
add action=add-src-to-address-list address-
17 list=Syn_Flooder address-list-timeout=30m
chain=input \
24
33 disabled=no
add action=accept chain=input
34
add action=accept chain=input
35
add action=drop chain=input
36
Drop all packets from public internet which should not exist
in public network in-interface=WAN src-address-
list=NotPublic
Drop all packets in local network which does not have local
network address in-interface=LAN src-address=!
192.168.88.0/24