set interfaces ethernet eth0 pppoe 0 user-id PPPOE账号
set interfaces ethernet eth0 pppoe 0 password PPPOE密码
set interfaces ethernet eth0 pppoe 0 mtu 1492
set interfaces ethernet eth0 pppoe 0 default-route auto
set interfaces switch switch0 switch-port interface eth1
set interfaces switch switch0 switch-port interface eth2
set interfaces switch switch0 switch-port interface eth3
set interfaces switch switch0 switch-port interface eth4
set interfaces switch switch0 vlan-aware enable
set interfaces switch switch0 switch-port interface eth1 vlan pvid 10
set interfaces switch switch0 switch-port interface eth2 vlan pvid 10
set interfaces switch switch0 vif 10 address 192.168.1.1/24
set interfaces switch switch0 switch-port interface eth3 vlan pvid 20
set interfaces switch switch0 switch-port interface eth4 vlan pvid 20
set interfaces switch switch0 vif 20 address 192.168.2.1/24
set service dhcp-server shared-network-name VLAN10 subnet 192.168.1.0/24 default-router 192.168.1.1
set service dhcp-server shared-network-name VLAN10 subnet 192.168.1.0/24 start 192.168.1.10 stop 192.168.1.100
set service dhcp-server shared-network-name VLAN20 subnet 192.168.2.0/24 default-router 192.168.2.1
set service dhcp-server shared-network-name VLAN20 subnet 192.168.2.0/24 start 192.168.2.10 stop 192.168.2.100
set service nat rule 5000 description "NAT for LANs"
set service nat rule 5000 outbound-interface pppoe0
set service nat rule 5000 type masquerade
set service nat rule 5000 source address 192.168.1.0/16
set system offload hwnat enable
set system conntrack modules sip disable
set system conntrack modules h323 disable
set system conntrack modules pptp disable
set system conntrack modules ftp disable
set system conntrack table-size 458752
set system conntrack expect-table-size 2048
set system conntrack timeout tcp established 300
set system conntrack timeout tcp close-wait 60
set system conntrack timeout udp other 30
set firewall name WAN-IN default-action drop
set firewall name WAN-IN rule 10 action accept
set firewall name WAN-IN rule 10 state established enable
set firewall name WAN-IN rule 10 state related enable
set firewall name WAN-LOCAL default-action drop
set firewall name WAN-LOCAL rule 10 action accept
set firewall name WAN-LOCAL rule 10 state established enable
set firewall name WAN-LOCAL rule 10 state related enable
commit
save
exit
5664

被折叠的 条评论
为什么被折叠?



