1219 lines
49 KiB
XML
1219 lines
49 KiB
XML
<?xml version="1.0"?>
|
|
<pfsense>
|
|
<version>7.6</version>
|
|
<lastchange></lastchange>
|
|
<theme>pfsense_ng</theme>
|
|
<sysctl>
|
|
<item>
|
|
<descr><![CDATA[Disable the pf ftp proxy handler.]]></descr>
|
|
<tunable>debug.pfftpproxy</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Increase UFS read-ahead speeds to match current state of hard drives and NCQ. More information here: http://ivoras.sharanet.org/blog/tree/2010-11-19.ufs-read-ahead.html]]></descr>
|
|
<tunable>vfs.read_max</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Set the ephemeral port range to be lower.]]></descr>
|
|
<tunable>net.inet.ip.portrange.first</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Drop packets to closed TCP ports without returning a RST]]></descr>
|
|
<tunable>net.inet.tcp.blackhole</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Do not send ICMP port unreachable messages for closed UDP ports]]></descr>
|
|
<tunable>net.inet.udp.blackhole</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Randomize the ID field in IP packets (default is 0: sequential IP IDs)]]></descr>
|
|
<tunable>net.inet.ip.random_id</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Drop SYN-FIN packets (breaks RFC1379, but nobody uses it anyway)]]></descr>
|
|
<tunable>net.inet.tcp.drop_synfin</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Enable sending IPv4 redirects]]></descr>
|
|
<tunable>net.inet.ip.redirect</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Enable sending IPv6 redirects]]></descr>
|
|
<tunable>net.inet6.ip6.redirect</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Generate SYN cookies for outbound SYN-ACK packets]]></descr>
|
|
<tunable>net.inet.tcp.syncookies</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Maximum incoming/outgoing TCP datagram size (receive)]]></descr>
|
|
<tunable>net.inet.tcp.recvspace</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Maximum incoming/outgoing TCP datagram size (send)]]></descr>
|
|
<tunable>net.inet.tcp.sendspace</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[IP Fastforwarding]]></descr>
|
|
<tunable>net.inet.ip.fastforwarding</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Do not delay ACK to try and piggyback it onto a data packet]]></descr>
|
|
<tunable>net.inet.tcp.delayed_ack</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Maximum outgoing UDP datagram size]]></descr>
|
|
<tunable>net.inet.udp.maxdgram</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Handling of non-IP packets which are not passed to pfil (see if_bridge(4))]]></descr>
|
|
<tunable>net.link.bridge.pfil_onlyip</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Set to 0 to disable filtering on the incoming and outgoing member interfaces.]]></descr>
|
|
<tunable>net.link.bridge.pfil_member</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Set to 1 to enable filtering on the bridge interface]]></descr>
|
|
<tunable>net.link.bridge.pfil_bridge</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Allow unprivileged access to tap(4) device nodes]]></descr>
|
|
<tunable>net.link.tap.user_open</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Verbosity of the rndtest driver (0: do not display results on console)]]></descr>
|
|
<tunable>kern.rndtest.verbose</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Randomize PID's (see src/sys/kern/kern_fork.c: sysctl_kern_randompid())]]></descr>
|
|
<tunable>kern.randompid</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Maximum size of the IP input queue]]></descr>
|
|
<tunable>net.inet.ip.intr_queue_maxlen</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Disable CTRL+ALT+Delete reboot from keyboard.]]></descr>
|
|
<tunable>hw.syscons.kbd_reboot</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Enable TCP Inflight mode]]></descr>
|
|
<tunable>net.inet.tcp.inflight.enable</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Enable TCP extended debugging]]></descr>
|
|
<tunable>net.inet.tcp.log_debug</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Set ICMP Limits]]></descr>
|
|
<tunable>net.inet.icmp.icmplim</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[TCP Offload Engine]]></descr>
|
|
<tunable>net.inet.tcp.tso</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
<item>
|
|
<descr><![CDATA[Maximum socket buffer size]]></descr>
|
|
<tunable>kern.ipc.maxsockbuf</tunable>
|
|
<value>default</value>
|
|
</item>
|
|
</sysctl>
|
|
<system>
|
|
<optimization>normal</optimization>
|
|
<hostname>univnautes</hostname>
|
|
<domain>entrouvert.lan</domain>
|
|
<dnsserver/>
|
|
<dnsallowoverride/>
|
|
<group>
|
|
<name>all</name>
|
|
<description><![CDATA[All Users]]></description>
|
|
<scope>system</scope>
|
|
<gid>1998</gid>
|
|
<member>0</member>
|
|
</group>
|
|
<group>
|
|
<name>admins</name>
|
|
<description><![CDATA[System Administrators]]></description>
|
|
<scope>system</scope>
|
|
<gid>1999</gid>
|
|
<member>0</member>
|
|
<priv>page-all</priv>
|
|
</group>
|
|
<group>
|
|
<name>idp</name>
|
|
<description><![CDATA[Local IdP users (univnautes)]]></description>
|
|
<gid>2000</gid>
|
|
<priv>univnautes-idp</priv>
|
|
</group>
|
|
<user>
|
|
<name>admin</name>
|
|
<descr><![CDATA[System Administrator]]></descr>
|
|
<scope>system</scope>
|
|
<groupname>admins</groupname>
|
|
<password>$1$dSJImFph$GvZ7.1UbuWu.Yb8etC0re.</password>
|
|
<uid>0</uid>
|
|
<priv>user-shell-access</priv>
|
|
</user>
|
|
<nextuid>2000</nextuid>
|
|
<nextgid>2001</nextgid>
|
|
<timezone>Europe/Paris</timezone>
|
|
<time-update-interval>300</time-update-interval>
|
|
<timeservers>0.pfsense.pool.ntp.org</timeservers>
|
|
<webgui>
|
|
<protocol>https</protocol>
|
|
<ssl-certref>4d1212de42517</ssl-certref>
|
|
<port>8443</port>
|
|
<disablehttpredirect/>
|
|
<noantilockout/>
|
|
</webgui>
|
|
<disablenatreflection>yes</disablenatreflection>
|
|
<disablesegmentationoffloading/>
|
|
<disablelargereceiveoffloading/>
|
|
<firmware>
|
|
<alturl>
|
|
<enable/>
|
|
<firmwareurl>http://isos.univnautes.entrouvert.com/update</firmwareurl>
|
|
</alturl>
|
|
</firmware>
|
|
</system>
|
|
<interfaces>
|
|
<wan>
|
|
<enable/>
|
|
<if>ed0</if>
|
|
<mtu/>
|
|
<ipaddr>dhcp</ipaddr>
|
|
<subnet/>
|
|
<gateway/>
|
|
<blockbogons/>
|
|
<dhcphostname/>
|
|
<media/>
|
|
<mediaopt/>
|
|
</wan>
|
|
<lan>
|
|
<enable/>
|
|
<if>ed1</if>
|
|
<ipaddr>10.42.0.1</ipaddr>
|
|
<subnet>16</subnet>
|
|
<media/>
|
|
<mediaopt/>
|
|
</lan>
|
|
</interfaces>
|
|
<dhcpd>
|
|
<lan>
|
|
<range>
|
|
<from>10.42.1.1</from>
|
|
<to>10.42.254.254</to>
|
|
</range>
|
|
<defaultleasetime>600</defaultleasetime>
|
|
<maxleasetime>1800</maxleasetime>
|
|
<netmask/>
|
|
<failover_peerip/>
|
|
<gateway/>
|
|
<domain>univnautes.lan</domain>
|
|
<domainsearchlist/>
|
|
<enable/>
|
|
<ddnsdomain/>
|
|
<tftp/>
|
|
<ldap/>
|
|
<next-server/>
|
|
<filename/>
|
|
<rootpath/>
|
|
<numberoptions/>
|
|
</lan>
|
|
</dhcpd>
|
|
<staticroutes/>
|
|
<pptpd>
|
|
<mode/>
|
|
<redir/>
|
|
<localip/>
|
|
<remoteip/>
|
|
</pptpd>
|
|
<ovpn/>
|
|
<dnsmasq>
|
|
<enable/>
|
|
<hosts>
|
|
<host>univnautes</host>
|
|
<domain>entrouvert.lan</domain>
|
|
<ip>10.42.0.1</ip>
|
|
<descr><![CDATA[captive portal]]></descr>
|
|
</hosts>
|
|
</dnsmasq>
|
|
<snmpd>
|
|
<syslocation>univnautes hotspot</syslocation>
|
|
<syscontact/>
|
|
<rocommunity>edustop</rocommunity>
|
|
<modules>
|
|
<mibii/>
|
|
<netgraph/>
|
|
<pf/>
|
|
<hostres/>
|
|
<ucd_univnautes/>
|
|
</modules>
|
|
<enable/>
|
|
<pollport>161</pollport>
|
|
<trapserver></trapserver>
|
|
<trapserverport></trapserverport>
|
|
<trapstring></trapstring>
|
|
</snmpd>
|
|
<diag>
|
|
<ipv6nat>
|
|
<ipaddr/>
|
|
</ipv6nat>
|
|
</diag>
|
|
<bridge/>
|
|
<syslog/>
|
|
<filter>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>wan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>wan</network>
|
|
</source>
|
|
<destination>
|
|
<network>wanip</network>
|
|
<port>22</port>
|
|
</destination>
|
|
<descr><![CDATA[SSH (from WAN)]]></descr>
|
|
<disabled/>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>wan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<any/>
|
|
</source>
|
|
<destination>
|
|
<network>wanip</network>
|
|
<port>LocalIDP</port>
|
|
</destination>
|
|
<descr><![CDATA[Local IdP access]]></descr>
|
|
<disabled/>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>wan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>wan</network>
|
|
</source>
|
|
<destination>
|
|
<network>wanip</network>
|
|
<port>WebAdmin</port>
|
|
</destination>
|
|
<descr><![CDATA[web admin (from WAN)]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>wan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os></os>
|
|
<protocol>udp</protocol>
|
|
<source>
|
|
<network>wan</network>
|
|
</source>
|
|
<destination>
|
|
<network>wanip</network>
|
|
<port>161</port>
|
|
</destination>
|
|
<descr><![CDATA[SNMP (from WAN)]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<network>lanip</network>
|
|
<port>WebAdmin</port>
|
|
</destination>
|
|
<descr><![CDATA[web admin (from LAN)]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os></os>
|
|
<protocol>udp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<network>lanip</network>
|
|
<port>161</port>
|
|
</destination>
|
|
<descr><![CDATA[SNMP (from LAN)]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>icmp</protocol>
|
|
<icmptype>echoreq</icmptype>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
</destination>
|
|
<descr><![CDATA[ping]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp/udp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>53</port>
|
|
</destination>
|
|
<disabled/>
|
|
<descr><![CDATA[ask any DNS server]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp/udp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<network>lanip</network>
|
|
<port>53</port>
|
|
</destination>
|
|
<descr><![CDATA[ask CP DNS server]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>reject</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<network>lanip</network>
|
|
<port>80</port>
|
|
</destination>
|
|
<descr><![CDATA[reject HTTP on CP]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>80</port>
|
|
</destination>
|
|
<descr><![CDATA[HTTP]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>443</port>
|
|
</destination>
|
|
<descr><![CDATA[HTTPS]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<network>lanip</network>
|
|
<port>LocalIDP</port>
|
|
</destination>
|
|
<descr><![CDATA[Local IdP access]]></descr>
|
|
<disabled/>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>993</port>
|
|
</destination>
|
|
<descr><![CDATA[IMAPS]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>995</port>
|
|
</destination>
|
|
<descr><![CDATA[POP3/S]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>SMTPS</port>
|
|
</destination>
|
|
<descr><![CDATA[SMTP Submission]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>reject</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<network>lanip</network>
|
|
<port>22</port>
|
|
</destination>
|
|
<descr><![CDATA[reject SSH on CP]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>22</port>
|
|
</destination>
|
|
<descr><![CDATA[SSH]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>119</port>
|
|
</destination>
|
|
<disabled/>
|
|
<descr><![CDATA[NNTP]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>143</port>
|
|
</destination>
|
|
<disabled/>
|
|
<descr><![CDATA[IMAP]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>110</port>
|
|
</destination>
|
|
<disabled/>
|
|
<descr><![CDATA[POP3]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp/udp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>1194</port>
|
|
</destination>
|
|
<descr><![CDATA[OpenVPN]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>esp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
</destination>
|
|
<descr><![CDATA[ESP (ipsec)]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>ah</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
</destination>
|
|
<descr><![CDATA[AH (ipsec)]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>udp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
<port>500</port>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>500</port>
|
|
</destination>
|
|
<descr><![CDATA[ISAKMP (ipsec)]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>udp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
<port>4500</port>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>4500</port>
|
|
</destination>
|
|
<descr><![CDATA[NAT-T (ipsec)]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>udp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>10000</port>
|
|
</destination>
|
|
<descr><![CDATA[IPSec Cisco (ipsec)]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>udp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<network>lanip</network>
|
|
<port>123</port>
|
|
</destination>
|
|
<descr><![CDATA[NTP on CP]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>udp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>123</port>
|
|
</destination>
|
|
<disabled/>
|
|
<descr><![CDATA[NTP]]></descr>
|
|
</rule>
|
|
<rule>
|
|
<id/>
|
|
<type>pass</type>
|
|
<interface>lan</interface>
|
|
<tag/>
|
|
<tagged/>
|
|
<max/>
|
|
<max-src-nodes/>
|
|
<max-src-conn/>
|
|
<max-src-states/>
|
|
<statetimeout/>
|
|
<statetype>keep state</statetype>
|
|
<os/>
|
|
<protocol>tcp</protocol>
|
|
<source>
|
|
<network>lan</network>
|
|
</source>
|
|
<destination>
|
|
<any/>
|
|
<port>XMPP</port>
|
|
</destination>
|
|
<descr><![CDATA[XMPP (jabber)]]></descr>
|
|
</rule>
|
|
</filter>
|
|
<ipsec>
|
|
<preferoldsa/>
|
|
</ipsec>
|
|
<aliases>
|
|
<alias>
|
|
<name>SMTPS</name>
|
|
<address>465 587</address>
|
|
<descr><![CDATA[SMTP with crypt+auth]]></descr>
|
|
<type>port</type>
|
|
<detail><![CDATA[SMTP/S||SMTP Submission]]></detail>
|
|
</alias>
|
|
<alias>
|
|
<name>XMPP</name>
|
|
<address>5222 5223</address>
|
|
<descr><![CDATA[XMPP/Jabber IM]]></descr>
|
|
<type>port</type>
|
|
<detail><![CDATA[Client-to-Server||Client-to-Server (old)]]></detail>
|
|
</alias>
|
|
<alias>
|
|
<name>WebAdmin</name>
|
|
<address>8443</address>
|
|
<descr><![CDATA[pfSense web admin access]]></descr>
|
|
<type>port</type>
|
|
<detail><![CDATA[HTTPS access to pfSense admin web]]></detail>
|
|
</alias>
|
|
<alias>
|
|
<name>LocalIDP</name>
|
|
<address>4443</address>
|
|
<descr><![CDATA[Local Identity Provider (UnivNautes)]]></descr>
|
|
<type>port</type>
|
|
<detail><![CDATA[HTTPS access to local IdP]]></detail>
|
|
</alias>
|
|
</aliases>
|
|
<proxyarp/>
|
|
<cron>
|
|
<item>
|
|
<minute>0</minute>
|
|
<hour>*</hour>
|
|
<mday>*</mday>
|
|
<month>*</month>
|
|
<wday>*</wday>
|
|
<who>root</who>
|
|
<command>/usr/bin/nice -n20 newsyslog</command>
|
|
</item>
|
|
<item>
|
|
<minute>1,31</minute>
|
|
<hour>0-5</hour>
|
|
<mday>*</mday>
|
|
<month>*</month>
|
|
<wday>*</wday>
|
|
<who>root</who>
|
|
<command>/usr/bin/nice -n20 adjkerntz -a</command>
|
|
</item>
|
|
<item>
|
|
<minute>1</minute>
|
|
<hour>3</hour>
|
|
<mday>1</mday>
|
|
<month>*</month>
|
|
<wday>*</wday>
|
|
<who>root</who>
|
|
<command>/usr/bin/nice -n20 /etc/rc.update_bogons.sh</command>
|
|
</item>
|
|
<item>
|
|
<minute>*/60</minute>
|
|
<hour>*</hour>
|
|
<mday>*</mday>
|
|
<month>*</month>
|
|
<wday>*</wday>
|
|
<who>root</who>
|
|
<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 sshlockout</command>
|
|
</item>
|
|
<item>
|
|
<minute>1</minute>
|
|
<hour>1</hour>
|
|
<mday>*</mday>
|
|
<month>*</month>
|
|
<wday>*</wday>
|
|
<who>root</who>
|
|
<command>/usr/bin/nice -n20 /etc/rc.dyndns.update</command>
|
|
</item>
|
|
<item>
|
|
<minute>*/60</minute>
|
|
<hour>*</hour>
|
|
<mday>*</mday>
|
|
<month>*</month>
|
|
<wday>*</wday>
|
|
<who>root</who>
|
|
<command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 virusprot</command>
|
|
</item>
|
|
</cron>
|
|
<wol/>
|
|
<rrd>
|
|
<enable/>
|
|
</rrd>
|
|
<load_balancer>
|
|
<monitor_type>
|
|
<name>ICMP</name>
|
|
<type>icmp</type>
|
|
<descr><![CDATA[ICMP]]></descr>
|
|
<options/>
|
|
</monitor_type>
|
|
<monitor_type>
|
|
<name>TCP</name>
|
|
<type>tcp</type>
|
|
<descr><![CDATA[Generic TCP]]></descr>
|
|
<options/>
|
|
</monitor_type>
|
|
<monitor_type>
|
|
<name>HTTP</name>
|
|
<type>http</type>
|
|
<descr><![CDATA[Generic HTTP]]></descr>
|
|
<options>
|
|
<path>/</path>
|
|
<host/>
|
|
<code>200</code>
|
|
</options>
|
|
</monitor_type>
|
|
<monitor_type>
|
|
<name>HTTPS</name>
|
|
<type>https</type>
|
|
<descr><![CDATA[Generic HTTPS]]></descr>
|
|
<options>
|
|
<path>/</path>
|
|
<host/>
|
|
<code>200</code>
|
|
</options>
|
|
</monitor_type>
|
|
<monitor_type>
|
|
<name>SMTP</name>
|
|
<type>send</type>
|
|
<descr><![CDATA[Generic SMTP]]></descr>
|
|
<options>
|
|
<send>EHLO nosuchhost</send>
|
|
<expect>250-</expect>
|
|
</options>
|
|
</monitor_type>
|
|
</load_balancer>
|
|
<widgets>
|
|
<sequence>system_information-container:col1:show,captive_portal_status-container:col2:show,carp_status-container:col1:close,cpu_graphs-container:col1:close,gateways-container:col1:close,gmirror_status-container:col1:close,installed_packages-container:col1:close,interface_statistics-container:col1:close,interfaces-container:col2:show,ipsec-container:col2:close,load_balancer_status-container:col2:close,log-container:col2:close,picture-container:col2:close,rss-container:col2:close,services_status-container:col2:show,traffic_graphs-container:col2:close</sequence>
|
|
</widgets>
|
|
<openvpn/>
|
|
<l7shaper>
|
|
<container/>
|
|
</l7shaper>
|
|
<shaper/>
|
|
<dnshaper/>
|
|
<cert>
|
|
<refid>4d1212de42517</refid>
|
|
<descr><![CDATA[webConfigurator default]]></descr>
|
|
<crt>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</crt>
|
|
<prv>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</prv>
|
|
</cert>
|
|
<captiveportal>
|
|
<enable/>
|
|
<httpslogin/>
|
|
<interface>lan</interface>
|
|
<idletimeout>30</idletimeout>
|
|
<timeout>180</timeout>
|
|
<noconcurrentlogins/>
|
|
<httpsname>univnautes.entrouvert.lan</httpsname>
|
|
<certificate>LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tDQpNSUlDN3pDQ0FsaWdBd0lCQWdJSkFNdVdlVlA3UDMrWE1BMEdDU3FHU0liM0RRRUJCUVVBTUZreEN6QUpCZ05WDQpCQVlUQWtaU01ROHdEUVlEVlFRSUV3WkdjbUZ1WTJVeERqQU1CZ05WQkFjVEJWQmhjbWx6TVJBd0RnWURWUVFLDQpFd2RGWkhWVGNHOTBNUmN3RlFZRFZRUURFdzR4T1RJdU1UWTRMakV3TVM0eE1UQWVGdzB4TURFeU1qRXhORFF4DQpNamRhRncweE1URXlNakV4TkRReE1qZGFNRmt4Q3pBSkJnTlZCQVlUQWtaU01ROHdEUVlEVlFRSUV3WkdjbUZ1DQpZMlV4RGpBTUJnTlZCQWNUQlZCaGNtbHpNUkF3RGdZRFZRUUtFd2RGWkhWVGNHOTBNUmN3RlFZRFZRUURFdzR4DQpPVEl1TVRZNExqRXdNUzR4TVRDQm56QU5CZ2txaGtpRzl3MEJBUUVGQUFPQmpRQXdnWWtDZ1lFQXl2SHRQbXpxDQozTXkyUDI2dzFTaWVTY2czNEMwM0UybG1CbVBjYzIzUm5DRmRmZ2dkV0dxWUZvSTEwbzM0ejdNVlFRV3BaaGg2DQpUTVJFbktIck04cEE4U2Y4TUdZenRtbms5Qy8rdG4yc0dFL2Z6bEg2VlZNcHlnYmFhMHFuWmx5TmxCYTZQZldUDQo2QjdzRzNpV2t2bzROdUVtSUpnRzRPbk0xMnF2czA2eHkvOENBd0VBQWFPQnZqQ0J1ekFkQmdOVkhRNEVGZ1FVDQpxY2hOQjdjdWFUcjdDbWNGQ3RxQU84SG5XZWt3Z1lzR0ExVWRJd1NCZ3pDQmdJQVVxY2hOQjdjdWFUcjdDbWNGDQpDdHFBTzhIbldlbWhYYVJiTUZreEN6QUpCZ05WQkFZVEFrWlNNUTh3RFFZRFZRUUlFd1pHY21GdVkyVXhEakFNDQpCZ05WQkFjVEJWQmhjbWx6TVJBd0RnWURWUVFLRXdkRlpIVlRjRzkwTVJjd0ZRWURWUVFERXc0eE9USXVNVFk0DQpMakV3TVM0eE1ZSUpBTXVXZVZQN1AzK1hNQXdHQTFVZEV3UUZNQU1CQWY4d0RRWUpLb1pJaHZjTkFRRUZCUUFEDQpnWUVBUDdmZWlldXhhWHpiQTN4QmdBZkNyMXZYS0N1ZDlVZTY5ckZ2b2hEdTNCUEJLdlhhT2VkaG1QTUpURVlQDQphT0FpT0lTTEhEdVR6Nnh2Q012Z1F4ZzB2cVdUK0VLN2NvaFF6a29jeDg1N2ZQTi9tSSttT0FvQ0NaRms2NGpIDQpTb0NoQ0FzTzhqdCtJeW9LYkpNTXg0empMTXpUek00OHJuZnRyYzlGMldYZDNFOD0NCi0tLS0tRU5EIENFUlRJRklDQVRFLS0tLS0NCg==</certificate>
|
|
<cacertificate>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</cacertificate>
|
|
<private-key>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</private-key>
|
|
<page/>
|
|
<maxproc/>
|
|
<freelogins_count/>
|
|
<freelogins_resettimeout/>
|
|
<auth_method/>
|
|
<reauthenticateacct/>
|
|
<bwdefaultdn/>
|
|
<bwdefaultup/>
|
|
<redirurl/>
|
|
<radiusip/>
|
|
<radiusip2/>
|
|
<radiusport/>
|
|
<radiusport2/>
|
|
<radiusacctport/>
|
|
<radiuskey/>
|
|
<radiuskey2/>
|
|
<radiusvendor>default</radiusvendor>
|
|
<radiussrcip_attribute>wan</radiussrcip_attribute>
|
|
<radmac_format>default</radmac_format>
|
|
</captiveportal>
|
|
<installedpackages>
|
|
<univnautes>
|
|
<config>
|
|
<defaultidp>https://services-federation.renater.fr/test/idp</defaultidp>
|
|
<redirectdelay/>
|
|
<samlkey>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</samlkey>
|
|
<samlcrt>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</samlcrt>
|
|
|
|
<enableidp/>
|
|
<samlkeyidp/>
|
|
<samlcrtidp/>
|
|
<mdurl>https://services-federation.renater.fr/metadata/renater-test-metadata.xml</mdurl>
|
|
<mdca>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</mdca>
|
|
<mdcrt>LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tDQpNSUlDWlRDQ0FjNmdBd0lCQWdJRVNjbitxVEFOQmdrcWhraUc5dzBCQVFVRkFEQjNNUXN3Q1FZRFZRUUdFd0pHDQpVakVRTUE0R0ExVUVDaE1IVWtWT1FWUkZVakZXTUZRR0ExVUVBeE5OUTJWeWRHbG1hV05oZENCa1pTQnphV2R1DQpZWFIxY21VZ1pHVnpJRzFsZEdFZ1pHOXVibVZsY3lCa1pTQnNZU0JtWldSbGNtRjBhVzl1SUVWa2RXTmhkR2x2DQpiaTFTWldOb1pYSmphR1V3SGhjTk1Ea3dNekkxTURrMU1UTTNXaGNOTVRrd016SXpNRGsxTVRNM1dqQjNNUXN3DQpDUVlEVlFRR0V3SkdVakVRTUE0R0ExVUVDaE1IVWtWT1FWUkZVakZXTUZRR0ExVUVBeE5OUTJWeWRHbG1hV05oDQpkQ0JrWlNCemFXZHVZWFIxY21VZ1pHVnpJRzFsZEdFZ1pHOXVibVZsY3lCa1pTQnNZU0JtWldSbGNtRjBhVzl1DQpJRVZrZFdOaGRHbHZiaTFTWldOb1pYSmphR1V3Z1o4d0RRWUpLb1pJaHZjTkFRRUJCUUFEZ1kwQU1JR0pBb0dCDQpBSkJYY0xJZ3Vva0dpeXRZU09yZ21VNmZOKzFEWEs0ZWFxdXZGR01hc3d1aGNSUEQ0dFh0U3M4Q0d4UFA4L1ZGDQpNcGNyeTA0bGZQQTNtcHdEaXM0N2hzdm1McUdKVm1mU3V2a0RzUHgrSTMyNWg0V3FHekVWOGtmdHRrSlNpOEQwDQpRTEtrOXdzZUErQkh6b0JwVTZlNXVXbUdxZldKZ2JabGNVdVlLQ0lFMm5ML0FnTUJBQUV3RFFZSktvWklodmNODQpBUUVGQlFBRGdZRUFUMHJVUzVHVHRxVzlhMHBBdjBQamllU1M2YlczS0czTXRuMGpDMWRtYXY2WDlmYmhobUZMDQoxWFNDOVduQ1UyVUQzOTg2RVdXWUtoTjJJTkhnaEhFL2ZRR3ZlVndkY1ZTU3Q2MDFPcEFzVUYxOHR4MHZIcWtmDQpTaGNqN210ZXE1OUd2NGhPRThVMVVyZC9wU1JhSU8zRzQyWDYvTC9BbFhlRGtpY2ZHWkhocTdRPQ0KLS0tLS1FTkQgQ0VSVElGSUNBVEUtLS0tLQ==</mdcrt>
|
|
<wlurl>https://www.cru.fr/eduspot/whitelist-eduspot.txt</wlurl>
|
|
<wlca>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</wlca>
|
|
<wlstaticips>IyBJZFAgVEVTVCBzZXJ2aWNlcy1mZWRlcmF0aW9uLnJlbmF0ZXIuZnINCjE5NS4yMjAuOTQuMTkyDQojIGZvciBhIG5ldHdvcmssIHVzZTogYS5iLmMuZC9u</wlstaticips>
|
|
<mdlocal>PEVudGl0aWVzRGVzY3JpcHRvciB4bWxucz0idXJuOm9hc2lzOm5hbWVzOnRjOlNBTUw6Mi4wOm1ldGFkYXRhIj4NCg0KPCEtLSBleGFtcGxlIG9mIGEgbWluaW1hbCBJZFAgRW50aXR5RGVzY3JpcHRvciA6DQo8RW50aXR5RGVzY3JpcHRvciBlbnRpdHlJRD0iaHR0cHM6Ly9pZHAubG9jYWwvIj4NCjxPcmdhbml6YXRpb24+DQogICAgPE9yZ2FuaXphdGlvbk5hbWUgeG1sOmxhbmc9ImVuIj5Mb2NhbCBJZFA8L09yZ2FuaXphdGlvbk5hbWU+DQogICAgPE9yZ2FuaXphdGlvbkRpc3BsYXlOYW1lIHhtbDpsYW5nPSJlbiI+TG9jYWwgSWRQPC9Pcmdhbml6YXRpb25EaXNwbGF5TmFtZT4NCjwvT3JnYW5pemF0aW9uPg0KPElEUFNTT0Rlc2NyaXB0b3IgcHJvdG9jb2xTdXBwb3J0RW51bWVyYXRpb249InVybjpvYXNpczpuYW1lczp0YzpTQU1MOjIuMDpwcm90b2NvbCI+DQogICAgPE5hbWVJREZvcm1hdD51cm46b2FzaXM6bmFtZXM6dGM6U0FNTDoyLjA6bmFtZWlkLWZvcm1hdDp0cmFuc2llbnQ8L05hbWVJREZvcm1hdD4NCiAgICA8U2luZ2xlU2lnbk9uU2VydmljZSBCaW5kaW5nPSJ1cm46b2FzaXM6bmFtZXM6dGM6U0FNTDoyLjA6YmluZGluZ3M6SFRUUC1QT1NUIg0KICAgICAgICAgICAgICAgICAgICAgICAgIExvY2F0aW9uPSJodHRwczovL2lkcC5sb2NhbC9wcm9maWxlL1NBTUwyL1BPU1QvU1NPIi8+DQogICAgPEtleURlc2NyaXB0b3IgdXNlPSJzaWduaW5nIj4NCiAgICAgICAgPGRzOktleUluZm8geG1sbnM6ZHM9Imh0dHA6Ly93d3cudzMub3JnLzIwMDAvMDkveG1sZHNpZyMiPg0KICAgICAgICAgICAgPGRzOlg1MDlEYXRhPg0KICAgICAgICAgICAgICAgIDxkczpYNTA5Q2VydGlmaWNhdGU+DQpNSUlEV3pDQ0FrT2dBd0lCQWdJVUNKblROOUN3RU9aME5ZK2dXTks1TXZvekF4SXdEUVlKS29aSWh2Y05BUUVGDQpCUUF3SnpFbE1DTUdBMVVFQXhNY2MyaHBZbUp2YkdWMGFESXVkVzVwZGkxd2NtOTJaVzVqWlM1bWNqQWVGdzB4DQogICAgICAgICAgICAgICAgICAgICAgICAoLi4uKQ0Kc05xQ1ZQY3piSlBuK0x3bUZUSVAxWHRRb3Rkc05hVitxTk40VVZuZVZmbUpxRFJmd3RWaHQwZUZjRVBrd01jPQ0KICAgICAgICAgICAgICAgIDwvZHM6WDUwOUNlcnRpZmljYXRlPg0KICAgICAgICAgICAgPC9kczpYNTA5RGF0YT4NCiAgICAgICAgPC9kczpLZXlJbmZvPg0KICAgIDwvS2V5RGVzY3JpcHRvcj4NCjwvSURQU1NPRGVzY3JpcHRvcj4NCjwvRW50aXR5RGVzY3JpcHRvcj4gLS0+DQoNCjwhLS0gYWRkIG90aGVycyA8RW50aXR5RGVzY3JpcHRvcj4gaGVyZSAtLT4NCg0KPC9FbnRpdGllc0Rlc2NyaXB0b3I+</mdlocal>
|
|
<userbl>IyBleGFtcGxlcwojZWR1UGVyc29uVGFyZ2V0ZWRJRDpDOE5Rc20xWTNHYXM5bTBBTURoeFU3VXhDU0k9fGh0dHBzOi8vc2VydmljZXMtZmVkZXJhdGlvbi5yZW5hdGVyLmZyL3Rlc3QvaWRwCiN+OkM4TlFzbTFZM0dhczltMEFNRGh4VTdVeENTST18aHR0cHM6Ly9zZXJ2aWNlcy1mZWRlcmF0aW9uLnJlbmF0ZXIuZnIvdGVzdC9pZHAk</userbl>
|
|
<discostoresread>aHR0cHM6Ly93d3cuaWRlbnRpdHktaHViLmNvbS9kaXNjby9yZW5hdGVyL3N0b3Jl</discostoresread>
|
|
<discostoreswrite>aHR0cHM6Ly93d3cuaWRlbnRpdHktaHViLmNvbS9kaXNjby9yZW5hdGVyL3N0b3Jl</discostoreswrite>
|
|
<macbl/>
|
|
</config>
|
|
</univnautes>
|
|
<univnautestexts>
|
|
<config>
|
|
<header>PHA+PGZvbnQgY29sb3I9InJlZCI+Tm90ZSA6IGNlIHNlcnZpY2UgZXN0IGVuIGNvdXJzIGRlIHRlc3QuPC9mb250PjwvcD4=</header>
|
|
<footer>PHA+PC9wPg==</footer>
|
|
<disclaimer>PHA+DQpFbiB2b3VzIGNvbm5lY3RhbnQsIHZvdXMgYWNjZXB0ZXogbGVzIDxhIGhyZWY9Ii9tZWRpYS9wZGYvY2hhcnRlLXJlbmF0ZXItbW9kZWxlLnBkZiI+dGVybWVzIGV0IGNvbmRpdGlvbnMgZCd1dGlsaXNhdGlvbjwvYT4gZGUgbCdhY2PocyBpbnRlcm5ldC4NCjwvcD4=</disclaimer>
|
|
<univinfo>PCEtLQ0KPGgyPlRpdHJlPC9oMj4NCjx1bD4NCjxsaT5wb2ludCAxLi4uPC9saT4NCjxsaT5wb2ludCAyLi4uPC9saT4NCjwvdWw+DQotLT4=</univinfo>
|
|
<geourls>aHR0cHM6Ly9zdGF0aWMuZGlzY29qdWljZS5vcmcvZmVlZHMvcmVuYXRlcg0KaHR0cDovL2lzb3MudW5pdm5hdXRlcy5lbnRyb3V2ZXJ0LmNvbS91bml2bmF1dGVzLmdlbw==</geourls>
|
|
<geolocal/>
|
|
<start_bounds>[[41.1,-5.53],[51.5,9.91]]</start_bounds>
|
|
<email_subjects>TW9uIOl0YWJsaXNzZW1lbnQgbidlc3QgcGFzIGRhbnMgbGEgbGlzdGUNCkplIG5lIGNvbm5haXMgcGFzIG1lcyBjb2RlcyBkJ2FjY+hz</email_subjects>
|
|
<email_rcpt/>
|
|
<email_host/>
|
|
<email_port/>
|
|
<email_host_user/>
|
|
<email_host_password/>
|
|
<email_use_tls/>
|
|
</config>
|
|
</univnautestexts>
|
|
</installedpackages>
|
|
</pfsense>
|