Compare commits

...

3 Commits

1 changed files with 192 additions and 156 deletions

View File

@ -1291,6 +1291,15 @@
<dnsserver/> <dnsserver/>
<ntpserver/> <ntpserver/>
</staticmap> </staticmap>
<staticmap>
<mac>aa:cf:4d:81:f0:63</mac>
<ipaddr>192.168.69.69</ipaddr>
<hostname>dodgy-mac</hostname>
<descr>dodgy mac</descr>
<winsserver/>
<dnsserver/>
<ntpserver/>
</staticmap>
<staticmap> <staticmap>
<mac>62:0d:c3:83:cf:f0</mac> <mac>62:0d:c3:83:cf:f0</mac>
<ipaddr>192.168.100.1</ipaddr> <ipaddr>192.168.100.1</ipaddr>
@ -2085,135 +2094,30 @@
</rule> </rule>
</nat> </nat>
<filter> <filter>
<rule uuid="81644fc4-f08e-4a2e-b832-b4b9b528a830"> <rule uuid="3aa14700-0441-49d0-8115-0779e3598359">
<type>block</type> <type>block</type>
<interface>lan,wan</interface> <interface>opt1,lan,lo0,openvpn,wan</interface>
<ipprotocol>inet6</ipprotocol> <ipprotocol>inet</ipprotocol>
<statetype>keep state</statetype> <statetype>keep state</statetype>
<descr>Block all IPv6 and Do NOT log</descr> <descr>Dodgy MAC block</descr>
<direction>any</direction> <direction>any</direction>
<floating>yes</floating> <floating>yes</floating>
<quick>1</quick>
<source>
<any>1</any>
</source>
<destination>
<any>1</any>
</destination>
<updated>
<username>mshillam@192.168.1.10</username>
<time>1640653744.3777</time>
<description>/firewall_rules_edit.php made changes</description>
</updated>
<created>
<username>root@192.168.2.6</username>
<time>1517661056.9788</time>
<description>/firewall_rules_edit.php made changes</description>
</created>
</rule>
<rule uuid="ee333067-a0f6-4fd1-9217-20dae2d3a446">
<type>block</type>
<interface>lan,wan</interface>
<ipprotocol>inet46</ipprotocol>
<statetype>keep state</statetype>
<descr>Block Malicious IP's</descr>
<direction>any</direction>
<category>malware</category>
<floating>yes</floating>
<log>1</log> <log>1</log>
<quick>1</quick> <quick>1</quick>
<source> <source>
<any>1</any> <address>192.168.69.69/24</address>
</source>
<destination>
<address>UT_malicious_ips</address>
</destination>
<updated>
<username>mshillam@192.168.1.10</username>
<time>1645457378.7744</time>
<description>/firewall_rules_edit.php made changes</description>
</updated>
<created>
<username>mshillam@192.168.1.10</username>
<time>1645457378.7744</time>
<description>/firewall_rules_edit.php made changes</description>
</created>
</rule>
<rule uuid="7a0f02cc-17f6-4769-84ee-1b27c08cf698">
<type>block</type>
<interface>wan</interface>
<ipprotocol>inet</ipprotocol>
<statetype>keep state</statetype>
<direction>in</direction>
<floating>yes</floating>
<log>1</log>
<quick>1</quick>
<source>
<address>178.208.164.0/22</address>
</source> </source>
<destination> <destination>
<any>1</any> <any>1</any>
</destination> </destination>
<updated> <updated>
<username>mshillam@192.168.1.10</username> <username>mshillam@192.168.1.10</username>
<time>1664719936.5096</time> <time>1727375952.8533</time>
<description>/firewall_rules_edit.php made changes</description> <description>/firewall_rules_edit.php made changes</description>
</updated> </updated>
<created> <created>
<username>mshillam@192.168.1.10</username> <username>mshillam@192.168.1.10</username>
<time>1664719936.5096</time> <time>1727375952.8533</time>
<description>/firewall_rules_edit.php made changes</description>
</created>
</rule>
<rule uuid="1626d4dc-363b-4458-8823-6c6388cdc9ac">
<type>block</type>
<interface>wan</interface>
<ipprotocol>inet</ipprotocol>
<statetype>keep state</statetype>
<direction>in</direction>
<floating>yes</floating>
<log>1</log>
<quick>1</quick>
<source>
<address>178.208.172.0/22</address>
</source>
<destination>
<any>1</any>
</destination>
<updated>
<username>mshillam@192.168.1.10</username>
<time>1664730543.8147</time>
<description>/firewall_rules_edit.php made changes</description>
</updated>
<created>
<username>mshillam@192.168.1.10</username>
<time>1664730543.8147</time>
<description>/firewall_rules_edit.php made changes</description>
</created>
</rule>
<rule uuid="1e7cd6a1-a8e4-4f72-99a3-2004396deb4c">
<type>pass</type>
<interface>lan</interface>
<ipprotocol>inet</ipprotocol>
<statetype>keep state</statetype>
<descr>Allow all essential devices</descr>
<direction>in</direction>
<floating>yes</floating>
<quick>1</quick>
<source>
<address>essential_devices</address>
</source>
<destination>
<any>1</any>
</destination>
<updated>
<username>mshillam@192.168.1.10</username>
<time>1654128038.6972</time>
<description>/firewall_rules_edit.php made changes</description>
</updated>
<created>
<username>mshillam@192.168.2.6</username>
<time>1589544984.064</time>
<description>/firewall_rules_edit.php made changes</description> <description>/firewall_rules_edit.php made changes</description>
</created> </created>
</rule> </rule>
@ -2582,6 +2486,72 @@
<description>/firewall_nat_edit.php made changes</description> <description>/firewall_nat_edit.php made changes</description>
</created> </created>
</rule> </rule>
<rule uuid="1fddd605-af5f-44c0-b3c1-059bf4c4e6df">
<associated-rule-id>nat_66def8ba4fe696.76889959</associated-rule-id>
<source>
<any>1</any>
</source>
<interface>wan</interface>
<statetype>keep state</statetype>
<protocol>tcp</protocol>
<ipprotocol>inet</ipprotocol>
<destination>
<address>192.168.0.30</address>
<port>21114-21119</port>
</destination>
<log>1</log>
<descr>RUST TCP</descr>
<category/>
<created>
<username>mshillam@192.168.1.10</username>
<time>1725888698.3273</time>
<description>/firewall_nat_edit.php made changes</description>
</created>
</rule>
<rule uuid="8cf27e62-d327-4efb-babd-ae26ac657b88">
<associated-rule-id>nat_66def8da81e935.85411277</associated-rule-id>
<source>
<any>1</any>
</source>
<interface>wan</interface>
<statetype>keep state</statetype>
<protocol>udp</protocol>
<ipprotocol>inet</ipprotocol>
<destination>
<address>192.168.0.30</address>
<port>21116</port>
</destination>
<log>1</log>
<descr>RUST UDP</descr>
<category/>
<created>
<username>mshillam@192.168.1.10</username>
<time>1725888730.5321</time>
<description>/firewall_nat_edit.php made changes</description>
</created>
</rule>
<rule uuid="e1b59e6b-8a97-4644-a934-10d1c6b80451">
<associated-rule-id>nat_66df22be1ab373.51577272</associated-rule-id>
<source>
<any>1</any>
</source>
<interface>wan</interface>
<statetype>keep state</statetype>
<protocol>tcp/udp</protocol>
<ipprotocol>inet</ipprotocol>
<destination>
<address>192.168.0.32</address>
<port>9999</port>
</destination>
<log>1</log>
<descr>REMOTELY</descr>
<category/>
<created>
<username>mshillam@192.168.1.10</username>
<time>1725899454.1094</time>
<description>/firewall_nat_edit.php made changes</description>
</created>
</rule>
<rule uuid="bada502c-03fe-43eb-8d37-d125b41e516d"> <rule uuid="bada502c-03fe-43eb-8d37-d125b41e516d">
<type>pass</type> <type>pass</type>
<interface>lan</interface> <interface>lan</interface>
@ -2721,70 +2691,136 @@
<description>/firewall_rules_edit.php made changes</description> <description>/firewall_rules_edit.php made changes</description>
</created> </created>
</rule> </rule>
<rule> <rule uuid="81644fc4-f08e-4a2e-b832-b4b9b528a830">
<associated-rule-id>nat_66def8ba4fe696.76889959</associated-rule-id> <type>block</type>
<interface>lan,wan</interface>
<ipprotocol>inet6</ipprotocol>
<statetype>keep state</statetype>
<descr>Block all IPv6 and Do NOT log</descr>
<direction>any</direction>
<floating>yes</floating>
<quick>1</quick>
<source> <source>
<any>1</any> <any>1</any>
</source> </source>
<interface>wan</interface>
<statetype>keep state</statetype>
<protocol>tcp</protocol>
<ipprotocol>inet</ipprotocol>
<destination> <destination>
<address>192.168.0.30</address> <any>1</any>
<port>21114-21119</port>
</destination> </destination>
<log>1</log> <updated>
<descr>RUST TCP</descr>
<category/>
<created>
<username>mshillam@192.168.1.10</username> <username>mshillam@192.168.1.10</username>
<time>1725888698.3273</time> <time>1640653744.3777</time>
<description>/firewall_nat_edit.php made changes</description> <description>/firewall_rules_edit.php made changes</description>
</updated>
<created>
<username>root@192.168.2.6</username>
<time>1517661056.9788</time>
<description>/firewall_rules_edit.php made changes</description>
</created> </created>
</rule> </rule>
<rule> <rule uuid="ee333067-a0f6-4fd1-9217-20dae2d3a446">
<associated-rule-id>nat_66def8da81e935.85411277</associated-rule-id> <type>block</type>
<interface>lan,wan</interface>
<ipprotocol>inet46</ipprotocol>
<statetype>keep state</statetype>
<descr>Block Malicious IP's</descr>
<direction>any</direction>
<category>malware</category>
<floating>yes</floating>
<log>1</log>
<quick>1</quick>
<source> <source>
<any>1</any> <any>1</any>
</source> </source>
<interface>wan</interface>
<statetype>keep state</statetype>
<protocol>udp</protocol>
<ipprotocol>inet</ipprotocol>
<destination> <destination>
<address>192.168.0.30</address> <address>UT_malicious_ips</address>
<port>21116</port>
</destination> </destination>
<log>1</log> <updated>
<descr>RUST UDP</descr> <username>mshillam@192.168.1.10</username>
<category/> <time>1645457378.7744</time>
<description>/firewall_rules_edit.php made changes</description>
</updated>
<created> <created>
<username>mshillam@192.168.1.10</username> <username>mshillam@192.168.1.10</username>
<time>1725888730.5321</time> <time>1645457378.7744</time>
<description>/firewall_nat_edit.php made changes</description> <description>/firewall_rules_edit.php made changes</description>
</created> </created>
</rule> </rule>
<rule> <rule uuid="7a0f02cc-17f6-4769-84ee-1b27c08cf698">
<associated-rule-id>nat_66df22be1ab373.51577272</associated-rule-id> <type>block</type>
<source>
<any>1</any>
</source>
<interface>wan</interface> <interface>wan</interface>
<statetype>keep state</statetype>
<protocol>tcp/udp</protocol>
<ipprotocol>inet</ipprotocol> <ipprotocol>inet</ipprotocol>
<destination> <statetype>keep state</statetype>
<address>192.168.0.32</address> <direction>in</direction>
<port>9999</port> <floating>yes</floating>
</destination>
<log>1</log> <log>1</log>
<descr>REMOTELY</descr> <quick>1</quick>
<category/> <source>
<address>178.208.164.0/22</address>
</source>
<destination>
<any>1</any>
</destination>
<updated>
<username>mshillam@192.168.1.10</username>
<time>1664719936.5096</time>
<description>/firewall_rules_edit.php made changes</description>
</updated>
<created> <created>
<username>mshillam@192.168.1.10</username> <username>mshillam@192.168.1.10</username>
<time>1725899454.1094</time> <time>1664719936.5096</time>
<description>/firewall_nat_edit.php made changes</description> <description>/firewall_rules_edit.php made changes</description>
</created>
</rule>
<rule uuid="1626d4dc-363b-4458-8823-6c6388cdc9ac">
<type>block</type>
<interface>wan</interface>
<ipprotocol>inet</ipprotocol>
<statetype>keep state</statetype>
<direction>in</direction>
<floating>yes</floating>
<log>1</log>
<quick>1</quick>
<source>
<address>178.208.172.0/22</address>
</source>
<destination>
<any>1</any>
</destination>
<updated>
<username>mshillam@192.168.1.10</username>
<time>1664730543.8147</time>
<description>/firewall_rules_edit.php made changes</description>
</updated>
<created>
<username>mshillam@192.168.1.10</username>
<time>1664730543.8147</time>
<description>/firewall_rules_edit.php made changes</description>
</created>
</rule>
<rule uuid="1e7cd6a1-a8e4-4f72-99a3-2004396deb4c">
<type>pass</type>
<interface>lan</interface>
<ipprotocol>inet</ipprotocol>
<statetype>keep state</statetype>
<descr>Allow all essential devices</descr>
<direction>in</direction>
<floating>yes</floating>
<quick>1</quick>
<source>
<address>essential_devices</address>
</source>
<destination>
<any>1</any>
</destination>
<updated>
<username>mshillam@192.168.1.10</username>
<time>1654128038.6972</time>
<description>/firewall_rules_edit.php made changes</description>
</updated>
<created>
<username>mshillam@192.168.2.6</username>
<time>1589544984.064</time>
<description>/firewall_rules_edit.php made changes</description>
</created> </created>
</rule> </rule>
<scrub> <scrub>
@ -2868,8 +2904,8 @@
</widgets> </widgets>
<revision> <revision>
<username>mshillam@192.168.1.10</username> <username>mshillam@192.168.1.10</username>
<time>1725975753.7494</time> <time>1727375978.8521</time>
<description>/services_dhcp_edit.php made changes</description> <description>/firewall_rules.php made changes</description>
</revision> </revision>
<OPNsense> <OPNsense>
<captiveportal version="1.0.1"> <captiveportal version="1.0.1">