6 # Uncomment this line to disable ipv6 rules
7 # option disable_ipv6 1
27 # We need to accept udp packets on port 68,
28 # see https://dev.openwrt.org/ticket/4108
39 option icmp_type echo-request
42 # include a file with users custom iptables rules
44 option path /etc/firewall.user
47 ### EXAMPLE CONFIG SECTIONS
48 # do not allow a specific ip to access wan
51 # option src_ip 192.168.45.2
54 # option target REJECT
56 # block a specific mac on wan
59 # option src_mac 00:11:22:33:44:66
60 # option target REJECT
62 # block incoming ICMP traffic on a zone
68 # port redirect port coming in on wan to lan
73 # option dest_ip 192.168.16.235
78 ### FULL CONFIG SECTIONS
81 # option src_ip 192.168.45.2
82 # option src_mac 00:11:22:33:44:55
85 # option dest_ip 194.25.2.129
86 # option dest_port 120
88 # option target REJECT
92 # option src_ip 192.168.45.2
93 # option src_mac 00:11:22:33:44:55
94 # option src_port 1024
96 # option dest_ip 194.25.2.129
97 # option dest_port 120