This commit is contained in:
2023-12-17 13:45:59 +05:00
parent a8bd30853d
commit 7d77fc4a80

View File

@@ -254,27 +254,27 @@ uci set firewall.@zone[-1].network='wg0'
# ADD FORWARDING
uci add firewall forwarding
uci set firewall.@forwarding[1].dest='lan'
uci set firewall.@forwarding[1].src='vpn0'
uci set firewall.@forwarding[-1].dest='lan'
uci set firewall.@forwarding[-1].src='vpn0'
uci add firewall forwarding
uci set firewall.@forwarding[2].dest='vpn0'
uci set firewall.@forwarding[2].src='lan'
uci set firewall.@forwarding[-1].dest='vpn0'
uci set firewall.@forwarding[-1].src='lan'
uci add firewall forwarding
uci set firewall.@forwarding[3].dest='lan'
uci set firewall.@forwarding[3].src='vpn1'
uci set firewall.@forwarding[-1].dest='lan'
uci set firewall.@forwarding[-1].src='vpn1'
uci add firewall forwarding
uci set firewall.@forwarding[4].dest='vpn1'
uci set firewall.@forwarding[4].src='lan'
uci set firewall.@forwarding[-1].dest='vpn1'
uci set firewall.@forwarding[-1].src='lan'
uci add firewall forwarding
uci set firewall.@forwarding[5].dest='lan'
uci set firewall.@forwarding[5].src='vpn2'
uci set firewall.@forwarding[-1].dest='lan'
uci set firewall.@forwarding[-1].src='vpn2'
uci add firewall forwarding
uci set firewall.@forwarding[6].dest='vpn2'
uci set firewall.@forwarding[6].src='lan'
uci set firewall.@forwarding[-1].dest='vpn2'
uci set firewall.@forwarding[-1].src='lan'
uci add firewall forwarding
uci set firewall.@forwarding[7].family='ipv4'
uci set firewall.@forwarding[7].src='lan'
uci set firewall.@forwarding[7].dest='wg'
uci set firewall.@forwarding[-1].family='ipv4'
uci set firewall.@forwarding[-1].src='lan'
uci set firewall.@forwarding[-1].dest='wg'
# ADD RULE
uci add firewall rule
@@ -284,28 +284,28 @@ uci set firewall.@rule[-1].dest_port='23558'
uci set firewall.@rule[-1].name='Allow-Aramil-Pivko-Inbound'
uci set firewall.@rule[-1].src='wan'
uci add firewall rule
uci set firewall.@rule[10].target='ACCEPT'
uci set firewall.@rule[10].proto='udp'
uci set firewall.@rule[10].dest_port='51820'
uci set firewall.@rule[10].name='Allow-Wireguard-VPS'
uci set firewall.@rule[10].src='wan'
uci set firewall.@rule[-1].target='ACCEPT'
uci set firewall.@rule[-1].proto='udp'
uci set firewall.@rule[-1].dest_port='51820'
uci set firewall.@rule[-1].name='Allow-Wireguard-VPS'
uci set firewall.@rule[-1].src='wan'
uci add firewall rule
uci set firewall.@rule[11].target='ACCEPT'
uci set firewall.@rule[11].proto='udp'
uci set firewall.@rule[11].dest_port='23557'
uci set firewall.@rule[11].name='Allow-Wireguard-Inbound'
uci set firewall.@rule[11].src='wan'
uci set firewall.@rule[-1].target='ACCEPT'
uci set firewall.@rule[-1].proto='udp'
uci set firewall.@rule[-1].dest_port='23557'
uci set firewall.@rule[-1].name='Allow-Wireguard-Inbound'
uci set firewall.@rule[-1].src='wan'
uci add firewall rule
uci set firewall.@rule[12].target='ACCEPT'
uci set firewall.@rule[12].proto='udp'
uci set firewall.@rule[12].dest_port='23556'
uci set firewall.@rule[12].name='Allow-Elmash-Aramil-Inbound'
uci set firewall.@rule[12].src='wan'
uci set firewall.@rule[-1].target='ACCEPT'
uci set firewall.@rule[-1].proto='udp'
uci set firewall.@rule[-1].dest_port='23556'
uci set firewall.@rule[-1].name='Allow-Elmash-Aramil-Inbound'
uci set firewall.@rule[-1].src='wan'
uci add firewall rule
uci set firewall.@rule[13].dest_port='5201'
uci set firewall.@rule[13].src='wan'
uci set firewall.@rule[13].name='iperf'
uci set firewall.@rule[13].target='ACCEPT'
uci set firewall.@rule[-1].dest_port='5201'
uci set firewall.@rule[-1].src='wan'
uci set firewall.@rule[-1].name='iperf'
uci set firewall.@rule[-1].target='ACCEPT'
uci add network rule
uci set network.@rule[-1].name='mark0x1'
uci set network.@rule[-1].mark='0x1'
@@ -327,78 +327,78 @@ uci set firewall.@rule[-1].family='ipv4'
# ADD REDIRECT
uci add firewall redirect
uci set firewall.@redirect[0].target='DNAT'
uci set firewall.@redirect[0].src='wan'
uci set firewall.@redirect[0].dest='lan'
uci set firewall.@redirect[0].dest_ip='192.168.47.9'
uci set firewall.@redirect[0].dest_port='6881'
uci set firewall.@redirect[0].proto='tcp' 'udp'
uci set firewall.@redirect[0].name='qbittorrent'
uci set firewall.@redirect[0].src_dport='6881'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].dest_ip='192.168.47.9'
uci set firewall.@redirect[-1].dest_port='6881'
uci set firewall.@redirect[-1].proto='tcp' 'udp'
uci set firewall.@redirect[-1].name='qbittorrent'
uci set firewall.@redirect[-1].src_dport='6881'
uci add firewall redirect
uci set firewall.@redirect[1].dest_port='25'
uci set firewall.@redirect[1].src='wan'
uci set firewall.@redirect[1].name='smtp_25'
uci set firewall.@redirect[1].src_dport='25'
uci set firewall.@redirect[1].target='DNAT'
uci set firewall.@redirect[1].dest_ip='192.168.47.2'
uci set firewall.@redirect[1].dest='lan'
uci set firewall.@redirect[-1].dest_port='25'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].name='smtp_25'
uci set firewall.@redirect[-1].src_dport='25'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].dest_ip='192.168.47.2'
uci set firewall.@redirect[-1].dest='lan'
uci add firewall redirect
uci set firewall.@redirect[2].dest_port='143'
uci set firewall.@redirect[2].src='wan'
uci set firewall.@redirect[2].name='imap_143'
uci set firewall.@redirect[2].src_dport='143'
uci set firewall.@redirect[2].target='DNAT'
uci set firewall.@redirect[2].dest_ip='192.168.47.2'
uci set firewall.@redirect[2].dest='lan'
uci set firewall.@redirect[-1].dest_port='143'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].name='imap_143'
uci set firewall.@redirect[-1].src_dport='143'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].dest_ip='192.168.47.2'
uci set firewall.@redirect[-1].dest='lan'
uci add firewall redirect
uci set firewall.@redirect[3].dest_port='993'
uci set firewall.@redirect[3].src='wan'
uci set firewall.@redirect[3].name='imaps_993'
uci set firewall.@redirect[3].src_dport='993'
uci set firewall.@redirect[3].target='DNAT'
uci set firewall.@redirect[3].dest_ip='192.168.47.2'
uci set firewall.@redirect[3].dest='lan'
uci set firewall.@redirect[-1].dest_port='993'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].name='imaps_993'
uci set firewall.@redirect[-1].src_dport='993'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].dest_ip='192.168.47.2'
uci set firewall.@redirect[-1].dest='lan'
uci add firewall redirect
uci set firewall.@redirect[4].dest_port='465'
uci set firewall.@redirect[4].src='wan'
uci set firewall.@redirect[4].src_dport='465'
uci set firewall.@redirect[4].target='DNAT'
uci set firewall.@redirect[4].dest_ip='192.168.47.2'
uci set firewall.@redirect[4].dest='lan'
uci set firewall.@redirect[4].name='smtp_465'
uci set firewall.@redirect[-1].dest_port='465'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].src_dport='465'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].dest_ip='192.168.47.2'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].name='smtp_465'
uci add firewall redirect
uci set firewall.@redirect[5].dest_port='4190'
uci set firewall.@redirect[5].src='wan'
uci set firewall.@redirect[5].name='mail_sieve_4190'
uci set firewall.@redirect[5].src_dport='4190'
uci set firewall.@redirect[5].target='DNAT'
uci set firewall.@redirect[5].dest_ip='192.168.47.2'
uci set firewall.@redirect[5].dest='lan'
uci set firewall.@redirect[-1].dest_port='4190'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].name='mail_sieve_4190'
uci set firewall.@redirect[-1].src_dport='4190'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].dest_ip='192.168.47.2'
uci set firewall.@redirect[-1].dest='lan'
uci add firewall redirect
uci set firewall.@redirect[6].dest_port='587'
uci set firewall.@redirect[6].src='wan'
uci set firewall.@redirect[6].name='smtp_587'
uci set firewall.@redirect[6].src_dport='587'
uci set firewall.@redirect[6].target='DNAT'
uci set firewall.@redirect[6].dest_ip='192.168.47.2'
uci set firewall.@redirect[6].dest='lan'
uci set firewall.@redirect[-1].dest_port='587'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].name='smtp_587'
uci set firewall.@redirect[-1].src_dport='587'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].dest_ip='192.168.47.2'
uci set firewall.@redirect[-1].dest='lan'
uci add firewall redirect
uci set firewall.@redirect[7].dest_port='80'
uci set firewall.@redirect[7].src='wan'
uci set firewall.@redirect[7].src_dport='80'
uci set firewall.@redirect[7].target='DNAT'
uci set firewall.@redirect[7].dest='lan'
uci set firewall.@redirect[7].name='NPM-80'
uci set firewall.@redirect[7].dest_ip='192.168.47.191'
uci set firewall.@redirect[-1].dest_port='80'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].src_dport='80'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].name='NPM-80'
uci set firewall.@redirect[-1].dest_ip='192.168.47.191'
uci add firewall redirect
uci set firewall.@redirect[8].dest_port='443'
uci set firewall.@redirect[8].src='wan'
uci set firewall.@redirect[8].src_dport='443'
uci set firewall.@redirect[8].target='DNAT'
uci set firewall.@redirect[8].dest='lan'
uci set firewall.@redirect[8].name='NPM-443'
uci set firewall.@redirect[8].dest_ip='192.168.47.191'
uci set firewall.@redirect[-1].dest_port='443'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].src_dport='443'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].name='NPM-443'
uci set firewall.@redirect[-1].dest_ip='192.168.47.191'
uci commit firewall
/etc/init.d/firewall restart