{
"firewall": {
"ipv6-name": {
"WANv6_IN": {
"default-action": "drop",
"description": "WANv6 inbound traffic forwarded to LAN",
"rule": {
"10": {
"action": "accept",
"description": "Allow established/related",
"state": {
"established": "enable",
"related": "enable"
}
},
"20": {
"action": "drop",
"description": "Drop invalid state",
"state": {
"invalid": "enable"
}
},
"30": {
"action": "accept",
"description": "Allow ICMPv6",
"log": "disable",
"protocol": "icmpv6"
}
}
},
"WANv6_LOCAL": {
"default-action": "drop",
"description": "WANv6 inbound traffic to the router",
"rule": {
"10": {
"action": "accept",
"description": "Allow established/related",
"state": {
"established": "enable",
"related": "enable"
}
},
"20": {
"action": "drop",
"description": "Drop invalid state",
"state": {
"invalid": "enable"
}
},
"30": {
"action": "accept",
"description": "Allow ICMPv6",
"log": "disable",
"protocol": "icmpv6"
},
"40": {
"action": "accept",
"description": "Allow DHCPv6",
"destination": {
"port": "546"
},
"protocol": "udp",
"source": {
"port": "547"
}
}
}
},
"WANv6_OUT": {
"default-action": "accept",
"description": "WANv6 outbound traffic",
"rule": {
"10": {
"action": "accept",
"description": "Allow established/related",
"state": {
"established": "enable",
"related": "enable"
}
},
"20": {
"action": "reject",
"description": "Reject invalid state",
"state": {
"invalid": "enable"
}
}
}
}
}
},
"interfaces": {
"ethernet": {
"eth0": {
"description": "WAN Orange",
"duplex": "auto",
"speed": "auto",
"vif": {
"832": {
"description": "VLAN Internet Orange",
"dhcp-options": {
"client-option": [
"retry 60;",
"send vendor-class-identifier "sagem";",
"send user-class "\\053FSVDSL_livebox.Internet.softathome.Livebox4";",
"send rfc3118-auth 00:00:00:00:00:00:00:00:00:00:00:XX:XX:XX:XX:XX:XX:XX:XX:XX:XX:XX;",
"request subnet-mask, routers, domain-name-servers, domain-name, broadcast-address, dhcp-lease-time, dhcp-renewal-time, dhcp-rebinding-time, rfc3118-auth;"
],
"default-route": "update"
},
"egress-qos": "0:0 1:0 2:0 3:0 4:0 5:0 6:6 7:0",
"firewall": {
"in": {
"ipv6-name": "WANv6_IN"
},
"local": {
"ipv6-name": "WANv6_LOCAL"
},
"out": {
"ipv6-name": "WANv6_OUT"
}
},
"ipv6": {
"address": {
"autoconf": "''"
},
"dup-addr-detect-transmits": "1"
}
}
}
},
"eth1": {
"ipv6": {
"dup-addr-detect-transmits": "1",
"router-advert": {
"cur-hop-limit": "64",
"link-mtu": "0",
"managed-flag": "false",
"max-interval": "600",
"other-config-flag": "false",
"prefix": {
"::/64": {
"autonomous-flag": "true",
"on-link-flag": "true",
"preferred-lifetime": "14400",
"valid-lifetime": "18000"
}
},
"reachable-time": "0",
"retrans-timer": "0"
}
}
}
}
}
}
J'ai retiré des sections perso (clé SSH and co), donc passe un petit coup de python -m json.tool avant pour être sur que je n'ai pas cassé le json.
Je n'utilise pas de VLAN sur ETH1 ou ETH2 pour le moment.