Hi,
For some reason my openwrt firewall has decide to not read the contents of the firewall configuration file but rather delete all the settings even though the configuration file is not empty.
Here are the contents of my firewall config file:
config defaults
option input 'ACCEPT'
option output 'ACCEPT'
option synflood_protect '1'
option forward 'ACCEPT'
config zone 'lan'
option name 'lan'
option input 'ACCEPT'
option output 'ACCEPT'
option forward 'ACCEPT'
option network 'lan'
config zone 'wan'
option name 'wan'
option input 'REJECT'
option output 'ACCEPT'
option forward 'REJECT'
option masq '1'
option mtu_fix '1'
config rule
option name 'Allow-DHCP-Renew'
option proto 'udp'
option dest_port '68'
option target 'ACCEPT'
option family 'ipv4'
option src 'relay'
config rule
option name 'Allow-Ping'
option proto 'icmp'
option family 'ipv4'
option target 'ACCEPT'
list icmp_type 'echo-request'
option src 'relay'
option dest '*'
config rule
option name 'Allow-IGMP'
option proto 'igmp'
option family 'ipv4'
option target 'ACCEPT'
option src 'relay'
config rule
option name 'Allow-DHCPv6'
option proto 'udp'
option dest_port '546'
option family 'ipv6'
option target 'ACCEPT'
option src 'relay'
list dest_ip 'fc00::/6'
list src_ip 'fc00::/6'
config rule
option name 'Allow-MLD'
option proto 'icmp'
option family 'ipv6'
option target 'ACCEPT'
list src_ip 'fe80::/10'
option src 'relay'
config rule
option name 'Allow-ICMPv6-Input'
option proto 'icmp'
option limit '1000/sec'
option family 'ipv6'
option target 'ACCEPT'
list icmp_type 'destination-unreachable'
list icmp_type 'echo-reply'
list icmp_type 'echo-request'
list icmp_type 'neighbour-advertisement'
list icmp_type 'neighbour-solicitation'
list icmp_type 'router-advertisement'
list icmp_type 'router-solicitation'
list icmp_type 'time-exceeded'
option src 'relay'
config rule
option name 'Allow-ICMPv6-Forward'
option dest '*'
option proto 'icmp'
option limit '1000/sec'
option family 'ipv6'
option target 'ACCEPT'
list icmp_type 'destination-unreachable'
list icmp_type 'echo-reply'
list icmp_type 'echo-request'
list icmp_type 'time-exceeded'
option src 'relay'
config rule
option name 'Allow-IPSec-ESP'
option proto 'esp'
option target 'ACCEPT'
option src 'relay'
option dest 'relay'
config rule
option name 'Allow-ISAKMP'
option dest_port '500'
option proto 'udp'
option target 'ACCEPT'
option src 'relay'
option dest 'relay'
config include
option path '/etc/firewall.user'
config zone
option name 'relay'
option forward 'ACCEPT'
option network 'relayBridge'
option input 'ACCEPT'
option output ACCEPT'
config redirect
option dest_port '3000'
option src 'relay'
option name 'Beef'
option src_dport '3000'
option target 'DNAT'
option dest_ip '10.1.1.31'
list proto 'tcp'
option dest 'relay'
config redirect
option dest_port '32400'
option src 'relay'
option name 'Plex'
option src_dport '32400'
option target 'DNAT'
option dest_ip '10.1.1.31'
list proto 'tcp'
option dest 'relay'
config redirect
option dest_port '25565'
option src 'relay'
option src_dport '25565'
option target 'DNAT'
option dest_ip '10.1.1.31'
list proto 'tcp'
option name 'Minecraft'
option dest 'relay'
config redirect
option dest_port '1190'
option src 'relay'
option name 'OpenVPN'
option src_dport '1190'
option target 'DNAT'
list proto 'udp'
config redirect
option dest_port '9'
option src 'relay'
option name 'WoL'
option src_dport '9'
option target 'DNAT'
option dest_ip '10.1.1.31'
list proto 'tcp'
option dest 'relay'
config rule
option src_port '631'
option src 'relay'
option name 'Printer'
option target 'ACCEPT'
option dest_port '631'
option dest 'relay'
config zone
option name 'VPN'
option input 'ACCEPT'
option output 'ACCEPT'
option forward 'ACCEPT'
list device 'tun0'
option network 'VPN'
config rule 'ovpn'
option name 'Allow-OpenVPN'
option proto 'udp'
option target 'ACCEPT'
option src 'relay'
option dest_port '1190'
config zone
option name 'wwan'
option input 'ACCEPT'
option output 'ACCEPT'
option forward 'ACCEPT'
option network 'wwan'
config rule
option src_port '22'
option src 'relay'
option name 'ssh'
option target 'ACCEPT'
list dest_ip '10.1.1.31'
option dest_port '22'
list proto 'tcp'
option dest 'relay'
config forwarding
option dest 'relay'
option src 'lan'
config forwarding
option dest 'lan'
option src 'relay'
config forwarding
option dest 'relay'
option src 'VPN'
config forwarding
option dest 'VPN'
option src 'relay'
config forwarding
option dest 'relay'
option src 'wwan'
config forwarding
option dest 'wwan'
option src 'relay'
config redirect
option dest_port '5900'
option src 'relay'
option src_dport '5900'
option target 'DNAT'
option dest 'relay'
list proto 'tcp'
option name 'VNC'
Thanks,
Nightwalker