This commit is contained in:
jeka
2023-12-18 17:44:44 +05:00
parent 15a1d4eb0d
commit d53412f482
2 changed files with 358 additions and 359 deletions

View File

@@ -400,164 +400,164 @@ uci set firewall.@redirect[-1].proto='tcp'
uci set firewall.@redirect[-1].src_dport='5269'
uci set firewall.@redirect[-1].dest_port='5269'
uci set firewall.@redirect[-1].name='jabber3'
uci set firewall.@redirect[2].dest_ip='192.168.77.2'
uci set firewall.@redirect[-1].dest_ip='192.168.77.2'
uci add firewall redirect
uci set firewall.@redirect[3].target='DNAT'
uci set firewall.@redirect[3].src='wan'
uci set firewall.@redirect[3].dest='lan'
uci set firewall.@redirect[3].proto='tcp'
uci set firewall.@redirect[3].src_dport='5280'
uci set firewall.@redirect[3].dest_port='5280'
uci set firewall.@redirect[3].name='jabber4'
uci set firewall.@redirect[3].dest_ip='192.168.77.2'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].proto='tcp'
uci set firewall.@redirect[-1].src_dport='5280'
uci set firewall.@redirect[-1].dest_port='5280'
uci set firewall.@redirect[-1].name='jabber4'
uci set firewall.@redirect[-1].dest_ip='192.168.77.2'
uci add firewall redirect
uci set firewall.@redirect[4].target='DNAT'
uci set firewall.@redirect[4].src='wan'
uci set firewall.@redirect[4].dest='lan'
uci set firewall.@redirect[4].proto='tcp'
uci set firewall.@redirect[4].src_dport='5443'
uci set firewall.@redirect[4].dest_port='5443'
uci set firewall.@redirect[4].name='jabber5'
uci set firewall.@redirect[4].dest_ip='192.168.77.2'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].proto='tcp'
uci set firewall.@redirect[-1].src_dport='5443'
uci set firewall.@redirect[-1].dest_port='5443'
uci set firewall.@redirect[-1].name='jabber5'
uci set firewall.@redirect[-1].dest_ip='192.168.77.2'
uci add firewall redirect
uci set firewall.@redirect[5].target='DNAT'
uci set firewall.@redirect[5].src='wan'
uci set firewall.@redirect[5].dest='lan'
uci set firewall.@redirect[5].proto='udp'
uci set firewall.@redirect[5].dest_ip='192.168.77.3'
uci set firewall.@redirect[5].name='rtp'
uci set firewall.@redirect[5].src_dport='10000-20000'
uci set firewall.@redirect[5].dest_port='10000-20000'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].proto='udp'
uci set firewall.@redirect[-1].dest_ip='192.168.77.3'
uci set firewall.@redirect[-1].name='rtp'
uci set firewall.@redirect[-1].src_dport='10000-20000'
uci set firewall.@redirect[-1].dest_port='10000-20000'
uci add firewall redirect
uci set firewall.@redirect[6].dest='lan'
uci set firewall.@redirect[6].target='DNAT'
uci set firewall.@redirect[6].name='stunt'
uci set firewall.@redirect[6].src='wan'
uci set firewall.@redirect[6].src_dport='3478'
uci set firewall.@redirect[6].dest_ip='192.168.77.2'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].name='stunt'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].src_dport='3478'
uci set firewall.@redirect[-1].dest_ip='192.168.77.2'
uci add firewall redirect
uci set firewall.@redirect[7].dest='lan'
uci set firewall.@redirect[7].target='DNAT'
uci set firewall.@redirect[7].name='stunts'
uci set firewall.@redirect[7].proto='tcp'
uci set firewall.@redirect[7].src='wan'
uci set firewall.@redirect[7].src_dport='5349'
uci set firewall.@redirect[7].dest_ip='192.168.77.2'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].name='stunts'
uci set firewall.@redirect[-1].proto='tcp'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].src_dport='5349'
uci set firewall.@redirect[-1].dest_ip='192.168.77.2'
uci add firewall redirect
uci set firewall.@redirect[8].dest='lan'
uci set firewall.@redirect[8].target='DNAT'
uci set firewall.@redirect[8].name='turn'
uci set firewall.@redirect[8].src='wan'
uci set firewall.@redirect[8].src_dport='3478'
uci set firewall.@redirect[8].dest_ip='192.168.77.2'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].name='turn'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].src_dport='3478'
uci set firewall.@redirect[-1].dest_ip='192.168.77.2'
uci add firewall redirect
uci set firewall.@redirect[9].dest='lan'
uci set firewall.@redirect[9].target='DNAT'
uci set firewall.@redirect[9].name='turns'
uci set firewall.@redirect[9].proto='tcp'
uci set firewall.@redirect[9].src='wan'
uci set firewall.@redirect[9].src_dport='5349'
uci set firewall.@redirect[9].dest_ip='192.168.77.2'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].name='turns'
uci set firewall.@redirect[-1].proto='tcp'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].src_dport='5349'
uci set firewall.@redirect[-1].dest_ip='192.168.77.2'
uci add firewall redirect
uci set firewall.@redirect[10].dest='lan'
uci set firewall.@redirect[10].target='DNAT'
uci set firewall.@redirect[10].name='ejabb-stunt'
uci set firewall.@redirect[10].src='wan'
uci set firewall.@redirect[10].src_dport='49152-65535'
uci set firewall.@redirect[10].dest_ip='192.168.77.2'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].name='ejabb-stunt'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].src_dport='49152-65535'
uci set firewall.@redirect[-1].dest_ip='192.168.77.2'
uci add firewall redirect
uci set firewall.@redirect[11].dest='lan'
uci set firewall.@redirect[11].target='DNAT'
uci set firewall.@redirect[11].src='wan'
uci set firewall.@redirect[11].src_dport='80'
uci set firewall.@redirect[11].dest_ip='192.168.77.2'
uci set firewall.@redirect[11].dest_port='5280'
uci set firewall.@redirect[11].name='acme_ejabberd_http'
uci set firewall.@redirect[11].enabled='0'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].src_dport='80'
uci set firewall.@redirect[-1].dest_ip='192.168.77.2'
uci set firewall.@redirect[-1].dest_port='5280'
uci set firewall.@redirect[-1].name='acme_ejabberd_http'
uci set firewall.@redirect[-1].enabled='0'
uci add firewall redirect
uci set firewall.@redirect[12].dest='lan'
uci set firewall.@redirect[12].target='DNAT'
uci set firewall.@redirect[12].proto='udp'
uci set firewall.@redirect[12].src='wan'
uci set firewall.@redirect[12].src_dport='49152-65535'
uci set firewall.@redirect[12].dest_ip='192.168.77.2'
uci set firewall.@redirect[12].dest_port='49152-65535'
uci set firewall.@redirect[12].name='stun_udp_RANGE'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].proto='udp'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].src_dport='49152-65535'
uci set firewall.@redirect[-1].dest_ip='192.168.77.2'
uci set firewall.@redirect[-1].dest_port='49152-65535'
uci set firewall.@redirect[-1].name='stun_udp_RANGE'
uci add firewall redirect
uci set firewall.@redirect[13].dest='lan'
uci set firewall.@redirect[13].target='DNAT'
uci set firewall.@redirect[13].name='stun_tcp_RANGE'
uci set firewall.@redirect[13].proto='tcp'
uci set firewall.@redirect[13].src='wan'
uci set firewall.@redirect[13].src_dport='49152-65535'
uci set firewall.@redirect[13].dest_ip='192.168.77.2'
uci set firewall.@redirect[13].dest_port='49152-65535'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].name='stun_tcp_RANGE'
uci set firewall.@redirect[-1].proto='tcp'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].src_dport='49152-65535'
uci set firewall.@redirect[-1].dest_ip='192.168.77.2'
uci set firewall.@redirect[-1].dest_port='49152-65535'
uci add firewall redirect
uci set firewall.@redirect[14].dest='lan'
uci set firewall.@redirect[14].target='DNAT'
uci set firewall.@redirect[14].name='NPM-80'
uci set firewall.@redirect[14].src='wan'
uci set firewall.@redirect[14].src_dport='80'
uci set firewall.@redirect[14].dest_ip='192.168.77.191'
uci set firewall.@redirect[14].dest_port='80'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].name='NPM-80'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].src_dport='80'
uci set firewall.@redirect[-1].dest_ip='192.168.77.191'
uci set firewall.@redirect[-1].dest_port='80'
uci add firewall redirect
uci set firewall.@redirect[15].dest='lan'
uci set firewall.@redirect[15].target='DNAT'
uci set firewall.@redirect[15].name='NPM-443'
uci set firewall.@redirect[15].src='wan'
uci set firewall.@redirect[15].src_dport='443'
uci set firewall.@redirect[15].dest_ip='192.168.77.191'
uci set firewall.@redirect[15].dest_port='443'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].name='NPM-443'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].src_dport='443'
uci set firewall.@redirect[-1].dest_ip='192.168.77.191'
uci set firewall.@redirect[-1].dest_port='443'
uci add firewall redirect
uci set firewall.@redirect[16].dest='lan'
uci set firewall.@redirect[16].target='DNAT'
uci set firewall.@redirect[16].name='gitea_SSH'
uci set firewall.@redirect[16].src='wan'
uci set firewall.@redirect[16].src_dport='2222'
uci set firewall.@redirect[16].dest_ip='192.168.77.193'
uci set firewall.@redirect[16].dest_port='22'
uci set firewall.@redirect[-1].dest='lan'
uci set firewall.@redirect[-1].target='DNAT'
uci set firewall.@redirect[-1].name='gitea_SSH'
uci set firewall.@redirect[-1].src='wan'
uci set firewall.@redirect[-1].src_dport='2222'
uci set firewall.@redirect[-1].dest_ip='192.168.77.193'
uci set firewall.@redirect[-1].dest_port='22'
# ADD FORWARD ZONES
uci add firewall forwarding
uci set firewall.@forwarding[1].dest='lan'
uci set firewall.@forwarding[1].src='vpn0'
uci set firewall.@forwarding[-1].dest='lan'
uci set firewall.@forwarding[-1].src='vpn0'
uci add firewall forwarding
uci set firewall.@forwarding[2].dest='vpn0'
uci set firewall.@forwarding[2].src='lan'
uci set firewall.@forwarding[-1].dest='vpn0'
uci set firewall.@forwarding[-1].src='lan'
uci add firewall forwarding
uci set firewall.@forwarding[3].dest='lan'
uci set firewall.@forwarding[3].src='vpn1'
uci set firewall.@forwarding[-1].dest='lan'
uci set firewall.@forwarding[-1].src='vpn1'
uci add firewall forwarding
uci set firewall.@forwarding[4].dest='vpn1'
uci set firewall.@forwarding[4].src='lan'
uci set firewall.@forwarding[-1].dest='vpn1'
uci set firewall.@forwarding[-1].src='lan'
uci add firewall forwarding
uci set firewall.@forwarding[5].src='vpn2'
uci set firewall.@forwarding[5].dest='lan'
uci set firewall.@forwarding[-1].src='vpn2'
uci set firewall.@forwarding[-1].dest='lan'
uci add firewall forwarding
uci set firewall.@forwarding[6].src='lan'
uci set firewall.@forwarding[6].dest='vpn2'
uci set firewall.@forwarding[-1].src='lan'
uci set firewall.@forwarding[-1].dest='vpn2'
uci add firewall forwarding
uci set firewall.@forwarding[7].dest='lan'
uci set firewall.@forwarding[7].src='vpn3'
uci set firewall.@forwarding[-1].dest='lan'
uci set firewall.@forwarding[-1].src='vpn3'
uci add firewall forwarding
uci set firewall.@forwarding[8].dest='vpn3'
uci set firewall.@forwarding[8].src='lan'
uci set firewall.@forwarding[-1].dest='vpn3'
uci set firewall.@forwarding[-1].src='lan'
uci add firewall forwarding
uci set firewall.@forwarding[9].src='wg777'
uci set firewall.@forwarding[9].dest='wan'
uci set firewall.@forwarding[-1].src='wg777'
uci set firewall.@forwarding[-1].dest='wan'
uci add firewall forwarding
uci set firewall.@forwarding[10].src='wan'
uci set firewall.@forwarding[10].dest='wg777'
uci set firewall.@forwarding[-1].src='wan'
uci set firewall.@forwarding[-1].dest='wg777'
uci add firewall forwarding
uci set firewall.@forwarding[11].dest='lan'
uci set firewall.@forwarding[11].src='wg777'
uci set firewall.@forwarding[-1].dest='lan'
uci set firewall.@forwarding[-1].src='wg777'
uci add firewall forwarding
uci set firewall.@forwarding[12].dest='wg777'
uci set firewall.@forwarding[12].src='lan'
uci set firewall.@forwarding[-1].dest='wg777'
uci set firewall.@forwarding[-1].src='lan'
uci add firewall forwarding
uci set firewall.@forwarding[13].family='ipv4'
uci set firewall.@forwarding[13].src='lan'
uci set firewall.@forwarding[13].dest='wg'
uci set firewall.@forwarding[-1].family='ipv4'
uci set firewall.@forwarding[-1].src='lan'
uci set firewall.@forwarding[-1].dest='wg'
uci commit firewall
/etc/init.d/firewall restart