From e80da3c57d0501d7a5962fcacd6416d47385e86a Mon Sep 17 00:00:00 2001 From: BBcan177 Date: Sat, 23 May 2015 16:28:12 -0400 Subject: pfBlockerNG v1.09 --- config/pfblockerng/pfblockerng_top20.xml | 129 +++++++++++++++++++++++++------ 1 file changed, 104 insertions(+), 25 deletions(-) (limited to 'config/pfblockerng/pfblockerng_top20.xml') diff --git a/config/pfblockerng/pfblockerng_top20.xml b/config/pfblockerng/pfblockerng_top20.xml index db898112..4a90ff8b 100644 --- a/config/pfblockerng/pfblockerng_top20.xml +++ b/config/pfblockerng/pfblockerng_top20.xml @@ -58,7 +58,7 @@
Firewall
pkg_edit.php?xml=pfblockerng.xml&id=0 - + General /pkg_edit.php?xml=pfblockerng.xml&id=0 @@ -124,7 +124,7 @@ Sync /pkg_edit.php?xml=/pfblockerng/pfblockerng_sync.xml&id=0 - + @@ -132,20 +132,19 @@ LINKS - none - Firewall Alias     Firewall Rules     Firewall Logs]]> + Firewall Alias     + Firewall Rules     Firewall Logs]]> info - + - Top 20 IPv4
Spammer Countries]]>
countries4 - - - Use CTRL + CLICK to unselect countries]]> - +
Top 20
Spammer Countries

+
Use CTRL + CLICK to unselect countries
]]> +
+
IPv4 Countries]]>
select - + @@ -169,14 +168,12 @@ 20 + + begin
- Top 20 IPv6
Spammer Countries]]>
countries6 - - - Use CTRL + CLICK to unselect countries]]> - +
IPv6 Countries
]]>
select @@ -199,13 +196,16 @@ - - 20 - + + 20 + + + + end
List Action - Default : Disabled

+ Default: Disabled

Select the Action for Firewall Rules on lists you have selected.

'Disabled' Rules: Disables selection and does nothing to selected Alias.

@@ -231,12 +231,12 @@ 'Alias' Rules:
'Alias' rules create an alias for the list (and do nothing else). This enables a pfBlockerNG list to be used by name, in any firewall rule or pfSense function, as desired. -
  • Options    - Alias Deny,  Alias Permit,  Alias Match,  Alias Native

  • +
    • Options - Alias Deny,  Alias Permit,  Alias Match,  Alias Native

    • 'Alias Deny' can use De-Duplication and Reputation Processes if configured.

    • 'Alias Permit' and 'Alias Match' will be saved in the Same folder as the other Permit/Match Auto-Rules

    • 'Alias Native' lists are kept in their Native format without any modifications.
    When using 'Alias' rules, change (pfB_) to ( pfb_ ) in the beginning of rule description and Use the 'Exact' spelling of - the Alias (no trailing Whitespace)  Custom 'Alias' rules with 'pfB_ xxx' description will be removed by package if + the Alias (no trailing Whitespace) Custom 'Alias' rules with 'pfB_ xxx' description will be removed by package if using Auto Rule Creation.

    Tip: You can create the Auto Rules and remove "auto rule" from the Rule Descriptions, then disable Auto Rules. This method will 'KEEP' these rules from being 'Deleted' which will allow editing for a Custom Alias Configuration
    ]]> @@ -262,7 +262,7 @@ Enable Logging aliaslog - Enable
    + Enable
    Select - Logging to Status: System Logs: FIREWALL ( Log )]]>
    select @@ -272,8 +272,87 @@
    - Click to SAVE Settings and/or Rule Edits.       Changes are Applied via CRON or - 'Force Update'
]]> + Advanced Inbound Firewall Rule Settings + listtopic +
+ + info + Note: In general Auto-Rules are created as follows:
+
    Inbound   - 'any' port, 'any' protocol and 'any' destination
    + Outbound - 'any' port, 'any' protocol and 'any' destination address in the lists
+ Configuring the Adv. Inbound Rule settings, will allow for more customization of the Inbound Auto-Rules.
+ Select the pfSense 'Port' and/or 'Destination' Alias below:]]> +
+
+ + autoports + Enable Custom Port + checkbox + aliasports + + begin + + + Define Alias + aliasports + Click Here to add/edit Aliases + Do not manually enter port numbers.
Do not use 'pfB_' in the Port Alias name.]]> +
+ 21 + aliases + port + + + end +
+ + autodest + Enable Custom Destination + checkbox + aliasdest,autonot + + begin + + + aliasdest + Click Here to add/edit Aliases + Do not manually enter Addresses(es).
Do not use 'pfB_' in the 'IP Network Type' Alias name.]]> +
+ 21 + aliases + network + + + +
+ + Invert + autonot + Invert - Option to invert the sense of the match.
+ ie - Not (!) Destination Address(es)]]> +
+ checkbox + + + end +
+ + Custom Protocol + autoproto + Default: any
Select the Protocol used for Inbound Firewall Rule(s).]]>
+ select + + + + + + + 4 + +
+ + Click to SAVE Settings and/or Rule Edits.       Changes are Applied via CRON or + 'Force Update']]> listtopic
-- cgit v1.2.3