VyOS Stream 1.5终于来了
本帖最后由 coolbo 于 2025-2-21 14:07 编辑VyOS Stream 1.5-2025-Q1 is available for download
基于VyOS 1.5 daily版本发布,每个季度发布一版迭代
https://blog.vyos.io/vyos-stream-1.5-2025-q1
https://community-downloads.vyos.dev/stream/1.5-stream-2025-Q1/vyos-1.5-stream-2025-Q1-generic-amd64.iso 有gui了吗 老饭 发表于 2025-2-21 15:25
有gui了吗
没有UI才是优势,UI功能不完整而且容易产生冲突,FortiOS的ui和cli都不能完全兼容 我遇到一个防火墙的问题
在1.2下用
set firewall name WAN_IN default-action 'drop'
set firewall name WAN_IN rule 10 description 'Allow established/related'
set firewall name WAN_IN rule 10 action 'accept'
set firewall name WAN_IN rule 10 state established 'enable'
set firewall name WAN_IN rule 10 state related 'enable'
set firewall name WAN_IN rule 20 description 'Drop invalid state'
set firewall name WAN_IN rule 20 action 'drop'
set firewall name WAN_IN rule 20 state invalid 'enable'
set firewall name WAN_LOCAL default-action 'drop'
set firewall name WAN_LOCAL rule 10 description 'Allow established/related'
set firewall name WAN_LOCAL rule 10 action 'accept'
set firewall name WAN_LOCAL rule 10 state established 'enable'
set firewall name WAN_LOCAL rule 10 state related 'enable'
set firewall name WAN_LOCAL rule 20 description 'Drop invalid state'
set firewall name WAN_LOCAL rule 20 action 'drop'
set firewall name WAN_LOCAL rule 20 state invalid 'enable'
在1.5下用这个下面这个配置直接就连不上了
set firewall global-options state-policy established action accept
set firewall global-options state-policy related action accept
set firewall global-options state-policy invalid action drop
主要影响的是最后一行 invalid action drop,不知道啥原因,我理解逻辑是一样的,这里只不过还控制了output链 4年了,终于将opennhrp换成nhrpd了,找个时间下载试用下。 coolbo 发表于 2025-2-21 17:12
我遇到一个防火墙的问题
在1.2下用
在reddit上找到了遇到相同问题的人
https://www.reddit.com/r/vyos/comments/1gxoju6/setting_global_options_in_vyos_firewall_breaks/
页:
[1]