Никто не поможет переделать существвующие парвила локальной сети для работы интернет по VPN?
Код:
allow ip from 192.168.1.0/24 to any via rl1
allow ip from any to 192.168.1.0/24 via rl1
allow ip from 192.168.2.0/29 to any via ed0
allow ip from any to 192.168.2.0/29 via ed0
fwd 127.0.0.1,3128 tcp from 192.168.1.0/24 to any dst-port 80 via rl0
divert 8668 ip from 192.168.1.0/24 to not 192.168.1.0/24 via rl0
divert 8668 ip from any to me via rl0
allow tcp from me 1025-65535 to any dst-port 20 via rl0
allow tcp from any 20 to me dst-port 1025-65535 via rl0
allow tcp from me 1025-65535 to any dst-port 21 via rl0
allow tcp from any 21 to me dst-port 1025-65535 via rl0
allow tcp from 192.168.1.0/24 1025-65535 to any dst-port 20 via rl0
allow tcp from any 20 to 192.168.1.0/24 dst-port 1025-65535 via rl0
allow tcp from 192.168.1.0/24 1025-65535 to any dst-port 21 via rl0
allow tcp from any 21 to 192.168.1.0/24 dst-port 1025-65535 via rl0
allow tcp from me 25 to any via rl0
allow tcp from 192.168.1.0/24 25 to any via rl0
allow tcp from any to 192.168.1.0/24 dst-port 25 via rl0 established
allow udp from me 1025-65535 to any dst-port 53 via rl0
allow udp from any 53 to me dst-port 1025-65535 via rl0
allow udp from any 53 to 192.168.1.0/24 dst-port 1025-65535 via rl0
allow tcp from me 1025-65535 to any dst-port 80 via rl0
allow tcp from any 80 to me dst-port 1025-65535 via rl0 established
allow tcp from me 110 to any via rl0
allow tcp from 192.168.1.0/24 110 to any via rl0
allow tcp from any to 192.168.1.0/24 dst-port 110 via rl0
allow tcp from me 443 to any via rl0
allow tcp from 192.168.1.0/24 443 to any via rl0
allow tcp from any to 192.168.1.0/24 dst-port 443 via rl0 established
allow tcp from me 5190 to any out via rl0
allow tcp from any to 192.168.1.0/24 dst-port 5190 via rl0 established
allow tcp from 172.16.0.50 to any
allow tcp from me 1025-65535 to any via rl0
allow tcp from any to 192.168.1.0/24 dst-port 1025-65535 via rl0
Код:
allow ip from 192.168.1.0/24 to any via rl1
allow ip from any to 192.168.1.0/24 via rl1
allow ip from 192.168.2.0/29 to any via ed0
allow ip from any to 192.168.2.0/29 via ed0
fwd 127.0.0.1,3128 tcp from 192.168.1.0/24 to any dst-port 80 via rl0
divert 8668 ip from 192.168.1.0/24 to not 192.168.1.0/24 via rl0
divert 8668 ip from any to me via rl0
allow tcp from me 1025-65535 to any dst-port 20 via rl0
allow tcp from any 20 to me dst-port 1025-65535 via rl0
allow tcp from me 1025-65535 to any dst-port 21 via rl0
allow tcp from any 21 to me dst-port 1025-65535 via rl0
allow tcp from 192.168.1.0/24 1025-65535 to any dst-port 20 via rl0
allow tcp from any 20 to 192.168.1.0/24 dst-port 1025-65535 via rl0
allow tcp from 192.168.1.0/24 1025-65535 to any dst-port 21 via rl0
allow tcp from any 21 to 192.168.1.0/24 dst-port 1025-65535 via rl0
allow tcp from me 25 to any via rl0
allow tcp from 192.168.1.0/24 25 to any via rl0
allow tcp from any to 192.168.1.0/24 dst-port 25 via rl0 established
allow udp from me 1025-65535 to any dst-port 53 via rl0
allow udp from any 53 to me dst-port 1025-65535 via rl0
allow udp from any 53 to 192.168.1.0/24 dst-port 1025-65535 via rl0
allow tcp from me 1025-65535 to any dst-port 80 via rl0
allow tcp from any 80 to me dst-port 1025-65535 via rl0 established
allow tcp from me 110 to any via rl0
allow tcp from 192.168.1.0/24 110 to any via rl0
allow tcp from any to 192.168.1.0/24 dst-port 110 via rl0
allow tcp from me 443 to any via rl0
allow tcp from 192.168.1.0/24 443 to any via rl0
allow tcp from any to 192.168.1.0/24 dst-port 443 via rl0 established
allow tcp from me 5190 to any out via rl0
allow tcp from any to 192.168.1.0/24 dst-port 5190 via rl0 established
allow tcp from 172.16.0.50 to any
allow tcp from me 1025-65535 to any via rl0
allow tcp from any to 192.168.1.0/24 dst-port 1025-65535 via rl0