Wel grappig om te zien dat er dus meerdere manieren mogelijk zijn. Ik gebruik weer een andere config. Ben zelf wel inmiddels bezig om deze config zoveel mogelijk uit te kleden en weer meer in de interface te configureren.
config.gateway.json
{
"interfaces":{
"ethernet":{
"eth2":{
"vif":{
"4":{
"address":[
"dhcp"
],
"description":"IPTV",
"mac":"xxxxxxxxxxx:14",
"dhcp-options":{
"client-option":[
"request subnet-mask, routers, rfc3442-classless-static-routes;"
],
"default-route":"no-update",
"default-route-distance":"220",
"name-server":"update"
},
"ip":{
"source-validation":"loose"
}
},
"34":{
"mac":"xxxxxxx:12"
}
}
}
}
},
"port-forward":{
"auto-firewall":"enable",
"wan-interface":"eth2.34"
},
"protocols":{
"static":{
"interface-route":{
"0.0.0.0/0":{
"next-hop-interface":{
"eth2.34":"''"
}
}
},
"route": {
"185.24.175.0/24": {
"next-hop": {
"10.10.48.1": "''"
}
},
"185.41.48.0/24": {
"next-hop": {
"10.10.48.1": "''"
}
}
}
},
"igmp-proxy":{
"interface":{
"eth2.4":{
"alt-subnet":[
"0.0.0.0/0"
],
"role":"upstream",
"threshold":"1"
},
"eth0.444":{
"role":"downstream",
"threshold":"1",
"whitelist":[
"239.0.3.0/16",
"225.0.71.0/24",
"224.0.0.0/16"
]
},
"eth2.34":{
"role":"disabled",
"threshold":"1"
},
"eth0":{
"role":"disabled",
"threshold":"1"
},
"eth1":{
"role":"disabled",
"threshold":"1"
},
"eth3":{
"role":"disabled",
"threshold":"1"
}
}
}
},
"service":{
"lldp":{
"interface":{
"eth2":{
"disable":"''"
}
}
},
"dns":{
"forwarding":{
"except-interface":[
"eth2",
"eth2.34",
"eth2.4"
]
}
},
"nat":{
"rule":{
"5001":{
"description":"MASQ corporate_network to IPTV network",
"log":"disable",
"outbound-interface":"eth2.4",
"protocol":"all",
"type":"masquerade"
},
"6001":{
"description":"MASQ corporate_network to WAN",
"log":"disable",
"outbound-interface":"eth2.34",
"protocol":"all",
"source":{
"group":{
"network-group":"corporate_network"
}
},
"type":"masquerade"
},
"6002":{
"description":"MASQ remote_user_vpn_network to WAN",
"log":"disable",
"outbound-interface":"eth2.34",
"protocol":"all",
"source":{
"group":{
"network-group":"remote_user_vpn_network"
}
},
"type":"masquerade"
},
"6003":{
"description":"MASQ guest_network to WAN",
"log":"disable",
"outbound-interface":"eth2.34",
"protocol":"all",
"source":{
"group":{
"network-group":"guest_network"
}
},
"type":"masquerade"
}
}
}
},
"vpn":{
"ipsec":{
"auto-firewall-nat-exclude":"disable",
"ipsec-interfaces":{
"interface":[
"eth2.34"
]
},
"nat-traversal":"enable"
},
"l2tp":{
"remote-access":{
"dhcp-interface":"eth2.34"
}
}
}
}
en dan nog dit stukje volgen: Uitzending gemist e.d.