You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
set service dhcp-server disabled 'false'set service dhcp-server shared-network-name LAN subnet 10.0.71.0/24 default-router '10.0.71.1'set service dhcp-server shared-network-name LAN subnet 10.0.71.0/24 dns-server '10.0.71.1'set service dhcp-server shared-network-name LAN subnet 10.0.71.0/24 domain-name 'internal-network'set service dhcp-server shared-network-name LAN subnet 10.0.71.0/24 lease '86400'set service dhcp-server shared-network-name LAN subnet 10.0.71.0/24 start 10.0.71.101 stop '10.0.71.201'
Add a DNS forwarder
set service dns forwarding cache-size '0'set service dns forwarding listen-on 'eth1'set service dns forwarding name-server '8.8.8.8'set service dns forwarding name-server '8.8.4.4'
Add a set of firewall policies for our "Outside" interface
set firewall name OUTSIDE-IN default-action 'drop'set firewall name OUTSIDE-IN rule 10 action 'accept'set firewall name OUTSIDE-IN rule 10 state established 'enable'set firewall name OUTSIDE-IN rule 10 state related 'enable'set firewall name OUTSIDE-LOCAL default-action 'drop'set firewall name OUTSIDE-LOCAL rule 10 action 'accept'set firewall name OUTSIDE-LOCAL rule 10 state established 'enable'set firewall name OUTSIDE-LOCAL rule 10 state related 'enable'set firewall name OUTSIDE-LOCAL rule 20 action 'accept'set firewall name OUTSIDE-LOCAL rule 20 icmp type-name 'echo-request'set firewall name OUTSIDE-LOCAL rule 20 protocol 'icmp'set firewall name OUTSIDE-LOCAL rule 20 state new 'enable'set firewall name OUTSIDE-LOCAL rule 30 action 'drop'set firewall name OUTSIDE-LOCAL rule 30 destination port '22'set firewall name OUTSIDE-LOCAL rule 30 protocol 'tcp'set firewall name OUTSIDE-LOCAL rule 30 recent count '4'set firewall name OUTSIDE-LOCAL rule 30 recent time'60'set firewall name OUTSIDE-LOCAL rule 30 state new 'enable'set firewall name OUTSIDE-LOCAL rule 31 action 'accept'set firewall name OUTSIDE-LOCAL rule 31 destination port '22'set firewall name OUTSIDE-LOCAL rule 31 protocol 'tcp'set firewall name OUTSIDE-LOCAL rule 31 state new 'enable'
Apply the firewall policies
set interfaces ethernet eth0 firewall in name 'OUTSIDE-IN'set interfaces ethernet eth0 firewall local name 'OUTSIDE-LOCAL'
Commit changes, save the configuration, and exit configuration mode