feat: remove unnecessary conf from VPN

This commit is contained in:
VC
2024-07-05 11:53:35 +02:00
parent b3abba99a8
commit 3004469c0f

View File

@@ -200,6 +200,7 @@ config rule
option dest_port '80 443' option dest_port '80 443'
option target 'ACCEPT' option target 'ACCEPT'
option family 'ipv6' option family 'ipv6'
{% endfor %} {% endfor %}
# Allow traffic to and from bt.dmz.mateu.be # Allow traffic to and from bt.dmz.mateu.be
@@ -256,6 +257,7 @@ config rule
option dest_port '8006' option dest_port '8006'
option target 'ACCEPT' option target 'ACCEPT'
option family 'ipv6' option family 'ipv6'
{% endfor %} {% endfor %}
# Allow XMPP traffic # Allow XMPP traffic
@@ -534,39 +536,31 @@ config zone
option input 'ACCEPT' option input 'ACCEPT'
option output 'ACCEPT' option output 'ACCEPT'
option forward 'ACCEPT' option forward 'ACCEPT'
option network 'lan' list network 'lan'
config zone config zone
option name 'dmz' option name 'dmz'
option input 'REJECT' option input 'REJECT'
option output 'REJECT' option output 'REJECT'
option forward 'REJECT' option forward 'REJECT'
option network 'dmz' list network 'dmz'
config zone config zone
option name 'iot' option name 'iot'
option input 'REJECT' option input 'REJECT'
option output 'REJECT' option output 'REJECT'
option forward 'REJECT' option forward 'REJECT'
option network 'iot' list network 'iot'
config zone config zone
option name 'wan' option name 'wan'
option input 'REJECT' option input 'REJECT'
option output 'ACCEPT' option output 'ACCEPT'
option forward 'REJECT' option forward 'REJECT'
option network 'vpn'
option masq '1'
option mtu_fix '1'
config zone
option name 'orig'
option input 'REJECT'
option output 'ACCEPT'
option forward 'REJECT'
option network 'wan'
option masq '1' option masq '1'
option mtu_fix '1' option mtu_fix '1'
list network 'wan'
list network 'wan6'
config forwarding config forwarding
option src 'lan' option src 'lan'
@@ -579,7 +573,3 @@ config forwarding
config forwarding config forwarding
option src 'lan' option src 'lan'
option dest 'iot' option dest 'iot'
config forwarding
option src 'lan'
option dest 'orig'