Skip to content

Commit

Permalink
firewall: T5729: remove obsolete enable and correct interface name
Browse files Browse the repository at this point in the history
  • Loading branch information
nvollmar authored May 10, 2024
1 parent 4417661 commit a2c9827
Show file tree
Hide file tree
Showing 2 changed files with 12 additions and 12 deletions.
12 changes: 6 additions & 6 deletions docs/configuration/firewall/ipv4.rst
Original file line number Diff line number Diff line change
Expand Up @@ -864,13 +864,13 @@ geoip) to keep database and rules updated.
set firewall ipv4 input filter rule 13 tcp flags not 'fin'
.. cfgcmd:: set firewall ipv4 forward filter rule <1-999999>
state [established | invalid | new | related] [enable | disable]
state [established | invalid | new | related]
.. cfgcmd:: set firewall ipv4 input filter rule <1-999999>
state [established | invalid | new | related] [enable | disable]
state [established | invalid | new | related]
.. cfgcmd:: set firewall ipv4 output filter rule <1-999999>
state [established | invalid | new | related] [enable | disable]
state [established | invalid | new | related]
.. cfgcmd:: set firewall ipv4 name <name> rule <1-999999>
state [established | invalid | new | related] [enable | disable]
state [established | invalid | new | related]

Match against the state of a packet.

Expand Down Expand Up @@ -985,12 +985,12 @@ Requirements to enable synproxy:
set firewall global-options syn-cookies 'enable'
set firewall ipv4 input filter rule 10 action 'synproxy'
set firewall ipv4 input filter rule 10 destination port '8080'
set firewall ipv4 input filter rule 10 inbound-interface interface-name 'eth1'
set firewall ipv4 input filter rule 10 inbound-interface name 'eth1'
set firewall ipv4 input filter rule 10 protocol 'tcp'
set firewall ipv4 input filter rule 10 synproxy tcp mss '1460'
set firewall ipv4 input filter rule 10 synproxy tcp window-scale '7'
set firewall ipv4 input filter rule 1000 action 'drop'
set firewall ipv4 input filter rule 1000 state invalid 'enable'
set firewall ipv4 input filter rule 1000 state invalid
***********************
Expand Down
12 changes: 6 additions & 6 deletions docs/configuration/firewall/ipv6.rst
Original file line number Diff line number Diff line change
Expand Up @@ -850,13 +850,13 @@ geoip) to keep database and rules updated.
set firewall ipv6 input filter rule 13 tcp flags not 'fin'
.. cfgcmd:: set firewall ipv6 forward filter rule <1-999999>
state [established | invalid | new | related] [enable | disable]
state [established | invalid | new | related]
.. cfgcmd:: set firewall ipv6 input filter rule <1-999999>
state [established | invalid | new | related] [enable | disable]
state [established | invalid | new | related]
.. cfgcmd:: set firewall ipv6 output filter rule <1-999999>
state [established | invalid | new | related] [enable | disable]
state [established | invalid | new | related]
.. cfgcmd:: set firewall ipv6 name <name> rule <1-999999>
state [established | invalid | new | related] [enable | disable]
state [established | invalid | new | related]

Match against the state of a packet.

Expand Down Expand Up @@ -971,12 +971,12 @@ Requirements to enable synproxy:
set firewall global-options syn-cookies 'enable'
set firewall ipv6 input filter rule 10 action 'synproxy'
set firewall ipv6 input filter rule 10 destination port '8080'
set firewall ipv6 input filter rule 10 inbound-interface interface-name 'eth1'
set firewall ipv6 input filter rule 10 inbound-interface name 'eth1'
set firewall ipv6 input filter rule 10 protocol 'tcp'
set firewall ipv6 input filter rule 10 synproxy tcp mss '1460'
set firewall ipv6 input filter rule 10 synproxy tcp window-scale '7'
set firewall ipv6 input filter rule 1000 action 'drop'
set firewall ipv6 input filter rule 1000 state invalid 'enable'
set firewall ipv6 input filter rule 1000 state invalid
***********************
Operation-mode Firewall
Expand Down

0 comments on commit a2c9827

Please sign in to comment.