Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Error loading rules when used wizard

    Scheduled Pinned Locked Moved Traffic Shaping
    6 Posts 1 Posters 4.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      Jonb
      last edited by

      When applying the traffic shaper wizared I get this:

      There were error(s) loading the rules: /tmp/qwanRoot.rules:39: syntax error pfctl: Syntax error in config file: pf rules not loaded pfctl: load anchors - The line in question reads [39]:

      1.2.1-RC4
      built on Sun Dec 21 09:09:14 EST 2008

      Hosted desktops and servers with support without complication.
      www.blueskysystems.co.uk

      1 Reply Last reply Reply Quote 0
      • J
        Jonb
        last edited by

        I have tried all sort to try and get rid of this error but the problem is I always get an error stright from the wizard.

        Hosted desktops and servers with support without complication.
        www.blueskysystems.co.uk

        1 Reply Last reply Reply Quote 0
        • J
          Jonb
          last edited by

          I am still getting this error on a number of installs, even with build 1.2.2. Is there any fix for this.

          Hosted desktops and servers with support without complication.
          www.blueskysystems.co.uk

          1 Reply Last reply Reply Quote 0
          • J
            Jonb
            last edited by

            does anyone else get this problem as it is very important for me to fix.

            Hosted desktops and servers with support without complication.
            www.blueskysystems.co.uk

            1 Reply Last reply Reply Quote 0
            • J
              Jonb
              last edited by

              My /tmp/qwanRoot.rules reads

              System Aliases

              loopback = "{ lo0 }"
              lan = "{ bce1  }"
              wan = "{ em2  }"
              enc0 = "{ enc0 }"
              WAN4Leasedline = "{ em1 }"
              spare = "{ bce0 }"
              DMZ = "{ em0 }"

              User Aliases

              Athena = "{ 192.168.16.11 }"
              hades = "{ 192.168.16.13 }"
              ironport = "{ 192.168.42.42 }"
              orion = "{ 192.168.16.12 }"
              spare = "{ 192.168.16.18 }"
              sqlsvr = "{ 192.168.16.21 }"
              zeus = "{ 192.168.16.10 }"
              sip = "{ 192.168.16.35 }"
              pass in quick on $wan reply-to (em2 87.83.24.113) proto gre from any to <orion>keep state  queue (qwanRoot, qwanacks) label "USER_RULE: NAT PPTP from leased line"
              pass in quick on $wan reply-to (em2 87.83.24.113) proto tcp from any to <orion>port = 1723 keep state  queue (qwanRoot, qwanacks) label "USER_RULE: NAT PPTP from leased line"
              pass in quick on $wan reply-to (em2 87.83.24.113) proto tcp from any to <spare>port = 80 keep state  queue (qwanRoot, qwanacks) label "USER_RULE: NAT HTTP"
              pass in quick on $wan reply-to (em2 87.83.24.113) proto { tcp udp } from any to <orion>port = 21 keep state  queue (qwanRoot, qwanacks) label "USER_RULE: NAT FTP"
              pass in quick on $wan reply-to (em2 87.83.24.113) proto { tcp udp } from any to 87.83.24.114 port = 21 keep state  queue (qwanRoot, qwanacks) label "USER_RULE: NAT FTP"
              pass in quick on $wan reply-to (em2 87.83.24.113) proto { tcp udp } from any to <orion>port = 20 keep state  queue (qwanRoot, qwanacks) label "USER_RULE: NAT FTP"
              pass in quick on $wan reply-to (em2 87.83.24.113) proto tcp from any to <zeus>port = 25 keep state  queue (qwanRoot, qwanacks) label "USER_RULE: NAT E-mail users"
              pass in quick on $wan reply-to (em2 87.83.24.113) proto tcp from any to <ironport>port = 25 keep state  queue (qwanRoot, qwanacks) label "USER_RULE: NAT Email"
              pass in quick on $wan reply-to (em2 87.83.24.113) proto { tcp udp } from any to {  192.168.16.68 } port = 514 keep state  queue (qwanRoot, qwanacks) label "USER_RULE: NAT syslog"
              pass in quick on $wan reply-to (em2 87.83.24.113) proto { tcp udp } from {  212.115.37.165 } to {  192.168.16.241 } port = 515 keep state  queue (qwanRoot, qwanacks) label "USER_RULE: NAT traveltek printjob"
              pass in quick on $wan reply-to (em2 87.83.24.113) proto tcp from any to {  192.168.42.10 } port = 23 keep state  queue (qwanRoot, qwanacks) label "USER_RULE: NAT Resortserver"
              pass in quick on $wan reply-to (em2 87.83.24.113) proto tcp from any to {  192.168.42.10 } port = 22 keep state  queue (qwanRoot, qwanacks) label "USER_RULE: NAT Resortserver"
              queue qwanRoot label "USER_RULE"
              pass in quick on $DMZ from {  192.168.42.10 } to any keep state  queue qwanRoot label "USER_RULE: Resortserver"
              pass in quick on $DMZ proto tcp from any to {  192.168.16.0/24 } port = 25 keep state  queue qwanRoot label "USER_RULE: mail to zeus"
              pass in quick on $DMZ proto tcp from any to {  192.168.16.0/24 } port = 389 keep state  queue qwanRoot label "USER_RULE: LDAP to zeus"
              pass in quick on $DMZ proto { tcp udp } from any to {  192.168.16.0/24 } port = 53 keep state  queue qwanRoot label "USER_RULE: DNS to zeus"
              pass in quick on $DMZ proto tcp from {  192.168.42.0/24 } to any port = 25 keep state  queue qwanRoot label "USER_RULE: E-mail out"
              pass in quick on $DMZ from any to  !192.168.16.0/24 keep state  queue qwanRoot label "USER_RULE"
              pass in quick on $WAN4Leasedline reply-to (em1 81.145.141.145) proto { tcp udp } from {  212.115.37.165 } to {  192.168.16.241 } port = 515 keep state  queue qwanRoot label "USER_RULE: NAT traveltek printjob"
              pass in quick on $WAN4Leasedline reply-to (em1 81.145.141.145) proto tcp from any to <ironport>port = 25 keep state  queue qwanRoot label "USER_RULE: NAT Email"
              pass in quick on $WAN4Leasedline reply-to (em1 81.145.141.145) proto gre from any to <orion>keep state  queue qwanRoot label "USER_RULE: NAT PPTP from leased line"
              pass in quick on $WAN4Leasedline reply-to (em1 81.145.141.145) proto tcp from any to <orion>port = 1723 keep state  queue qwanRoot label "USER_RULE: NAT PPTP from leased line"
              pass in quick on $WAN4Leasedline reply-to (em1 81.145.141.145) proto { tcp udp } from any to <orion>port = 21 keep state  queue qwanRoot label "USER_RULE: NAT FTP"
              pass in quick on $WAN4Leasedline reply-to (em1 81.145.141.145) proto { tcp udp } from any to 81.145.141.147 port = 21 keep state  queue qwanRoot label "USER_RULE: NAT FTP"
              pass in quick on $WAN4Leasedline reply-to (em1 81.145.141.145) proto { tcp udp } from any to <orion>port = 20 keep state  queue qwanRoot label "USER_RULE: NAT FTP"
              pass in quick on $WAN4Leasedline reply-to (em1 81.145.141.145) proto { tcp udp } from any to <orion>port 6149 >< 6201 keep state  queue qwanRoot label "USER_RULE: NAT FTP passive"
              pass in quick on $lan proto gre from any  to <vpns>keep state  label "NEGATE_ROUTE: Negate policy route for local network(s)"
              pass in quick on $lan  route-to ( em1 81.145.141.145 ) proto gre from any to any keep state  queue (qwanRoot, qlanacks) label "USER_RULE: PPTP > leased line"
              pass in quick on $lan from any to {  192.168.42.0/24 } keep state  queue (qwanRoot, qlanacks) label "USER_RULE: DMZ"
              pass in quick on $lan from any to {  10.255.0.0/24 } keep state  queue (qwanRoot, qlanacks) label "USER_RULE: IPSEC"
              pass in quick on $lan from any to {  192.168.17.0/24 } keep state  queue (qwanRoot, qlanacks) label "USER_RULE: IPSEC"
              pass in quick on $lan from {  192.168.16.18 } to any keep state  queue (qwanRoot, qlanacks) label "USER_RULE: spare"
              pass in quick on $lan proto tcp from 192.168.16.0/24  to <vpns>port = 443 keep state  label "NEGATE_ROUTE: Negate policy route for local network(s)"
              pass in quick on $lan  route-to { ( em2 87.83.24.113 ) } proto tcp from 192.168.16.0/24 to any port = 443 keep state  queue (qwanRoot, qlanacks) label "USER_RULE: Route https through one working connection"
              pass in quick on $lan proto { tcp udp } from 192.168.16.0/24  to <vpns>port = 80 keep state  label "NEGATE_ROUTE: Negate policy route for local network(s)"
              pass in quick on $lan  route-to { ( em2 87.83.24.113 ) } proto { tcp udp } from 192.168.16.0/24 to any port = 80 keep state  queue (qwanRoot, qlanacks) label "USER_RULE: Route http through all working connection"
              pass in quick on $lan from 192.168.16.0/24 to any keep state  queue (qwanRoot, qlanacks) label "USER_RULE: Default LAN -> any"
              pass in quick on $enc0 from any to any keep state  queue qwanRoot label "USER_RULE: Default IPSEC -> any"

              Interface empty for rule: NAT Email > Quik queue qwanRoot

              Interface empty for rule: NAT RDP > Quik queue qwanRoot

              Interface empty for rule: NAT Web E-mail queue qwanRoot

              Interface empty for rule: NAT Web E-mail queue qwanRoot

              Interface empty for rule: NAT Sql remote queue qwanRoot

              Interface empty for rule: NAT PPTP from leased line queue qwanRoot

              pass in quick on $wan reply-to (em2 87.83.24.113) proto { tcp udp } from any to <sip>port = 5060 keep state  queue (qwanRoot, qwanacks) label "USER_RULE: NAT sip for phone system"
              pass in quick on $wan reply-to (em2 87.83.24.113) proto { tcp udp } from any to <sip>port = 62076 keep state  queue (qwanRoot, qwanacks) label "USER_RULE: NAT sip for phone system"</sip></sip></vpns></vpns></vpns></orion></orion></orion></orion></orion></ironport></ironport></zeus></orion></orion></spare></orion></orion>

              and in the config is:

              • <shaper><schedulertype>hfsc</schedulertype>
              • <queue><name>qwanRoot</name>
                  <associatedrule>0</associatedrule>
                  <priority>0</priority>
                  <parentqueue>on</parentqueue>
                  <bandwidth>8000</bandwidth>
                  <bandwidthtype>Kb</bandwidthtype></queue>
              • <queue><name>qlanRoot</name>
                  <associatedrule>0</associatedrule>
                  <priority>0</priority>
                  <parentqueue>on</parentqueue>
                  <bandwidth>8000</bandwidth>
                  <bandwidthtype>Kb</bandwidthtype></queue>
              • <queue><name>qwandef</name>
                  <attachtoqueue>qwanRoot</attachtoqueue>
                  <associatedrule>0</associatedrule>
                  <defaultqueue>true</defaultqueue>
                  <priority>1</priority>
                  <realtime>on</realtime>
                  <realtime3>1%</realtime3>
                  <bandwidth>1</bandwidth>
                  <bandwidthtype>%</bandwidthtype>
                  <qlimit>500</qlimit></queue>
              • <queue><name>qlandef</name>
                  <priority>1</priority>
                  <attachtoqueue>qlanRoot</attachtoqueue>
                  <associatedrule>0</associatedrule>
                  <defaultqueue>true</defaultqueue>
                  <realtime>on</realtime>
                  <realtime3>1%</realtime3>
                  <bandwidth>1</bandwidth>
                  <bandwidthtype>%</bandwidthtype>
                  <qlimit>500</qlimit></queue>
              • <queue><name>qwanacks</name>
                  <ack><attachtoqueue>qwanRoot</attachtoqueue>
                  <associatedrule>0</associatedrule>
                  <priority>7</priority>
                  <realtime>on</realtime>
                  <realtime3>10%</realtime3>
                  <bandwidth>25</bandwidth>
                  <bandwidthtype>%</bandwidthtype></ack></queue>
              • <queue><name>qlanacks</name>
                  <ack><attachtoqueue>qlanRoot</attachtoqueue>
                  <associatedrule>0</associatedrule>
                  <priority>7</priority>
                  <realtime>on</realtime>
                  <realtime3>10%</realtime3>
                  <bandwidth>25</bandwidth>
                  <bandwidthtype>%</bandwidthtype></ack></queue>
              • <queue><name>qVOIPUp</name>
                  <attachtoqueue>qwanRoot</attachtoqueue>
                  <associatedrule>0</associatedrule>
                  <priority>7</priority>
                  <realtime>on</realtime>
                  <realtime3>1024Kb</realtime3>
                  <bandwidth>25</bandwidth>
                  <bandwidthtype>%</bandwidthtype></queue>
              • <queue><name>qVOIPDown</name>
                  <attachtoqueue>qlanRoot</attachtoqueue>
                  <associatedrule>0</associatedrule>
                  <priority>7</priority>
                  <realtime>on</realtime>
                  <realtime3>1024Kb</realtime3>
                  <bandwidth>25</bandwidth>
                  <bandwidthtype>%</bandwidthtype></queue>
              • <queue><name>qPenaltyUp</name>
                  <attachtoqueue>qwanRoot</attachtoqueue>
                  <associatedrule>0</associatedrule>
                  <priority>2</priority>
                  <red>on</red>
                  <ecn>on</ecn>
                  <upperlimit>on</upperlimit>
                  <upperlimit3>500Kb</upperlimit3>
                  <bandwidth>1</bandwidth>
                  <bandwidthtype>%</bandwidthtype>
                  <qlimit>500</qlimit></queue>
              • <queue><name>qPenaltyDown</name>
                  <attachtoqueue>qlanRoot</attachtoqueue>
                  <associatedrule>0</associatedrule>
                  <priority>2</priority>
                  <red>on</red>
                  <ecn>on</ecn>
                  <upperlimit>on</upperlimit>
                  <upperlimit3>500Kb</upperlimit3>
                  <bandwidth>1</bandwidth>
                  <bandwidthtype>%</bandwidthtype>
                  <qlimit>500</qlimit></queue>
              • <queue><name>qOthersUpH</name>
                  <attachtoqueue>qwanRoot</attachtoqueue>
                  <associatedrule>0</associatedrule>
                  <priority>4</priority>
                  <red>on</red>
                  <ecn>on</ecn>
                  <realtime>on</realtime>
                  <realtime3>1Kb</realtime3>
                  <bandwidth>25</bandwidth>
                  <bandwidthtype>%</bandwidthtype></queue>
              • <queue><name>qOthersDownH</name>
                  <attachtoqueue>qlanRoot</attachtoqueue>
                  <associatedrule>0</associatedrule>
                  <priority>4</priority>
                  <red>on</red>
                  <ecn>on</ecn>
                  <realtime>on</realtime>
                  <realtime3>1Kb</realtime3>
                  <bandwidth>25</bandwidth>
                  <bandwidthtype>%</bandwidthtype></queue>
              • <queue><name>qOthersUpL</name>
                  <attachtoqueue>qwanRoot</attachtoqueue>
                  <associatedrule>0</associatedrule>
                  <priority>2</priority>
                  <red>on</red>
                  <ecn>on</ecn>
                  <realtime>on</realtime>
                  <realtime3>1Kb</realtime3>
                  <bandwidth>1</bandwidth>
                  <bandwidthtype>%</bandwidthtype>
                  <qlimit>500</qlimit></queue>
              • <queue><name>qOthersDownL</name>
                  <attachtoqueue>qlanRoot</attachtoqueue>
                  <associatedrule>0</associatedrule>
                  <priority>2</priority>
                  <red>on</red>
                  <ecn>on</ecn>
                  <realtime>on</realtime>
                  <realtime3>1Kb</realtime3>
                  <bandwidth>1</bandwidth>
                  <bandwidthtype>%</bandwidthtype>
                  <qlimit>500</qlimit></queue>
              • <rule><descr>VOIP Adapter</descr>
                  <inqueue>qVOIPUp</inqueue>
                  <outqueue>qVOIPDown</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><address>192.168.16.35</address></destination></any></rule>
              • <rule><descr>VOIP Adapter</descr>
                  <inqueue>qVOIPDown</inqueue>
                  <outqueue>qVOIPUp</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>

              <address>192.168.16.35</address>

              • <destination><any></any></destination></rule>
              • <rule><descr>Penalty IP</descr>
                  <inqueue>qPenaltyDown</inqueue>
                  <outqueue>qPenaltyUp</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>

              <address>192.168.16.12</address>

              • <destination><any></any></destination></rule>
              • <rule><descr>Penalty IP</descr>
                  <inqueue>qPenaltyUp</inqueue>
                  <outqueue>qPenaltyDown</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><address>192.168.16.12</address></destination></any></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>3283-3283</port></destination>
                  <descr>m_Other AppleRemoteDesktop3 inbound</descr>
                  <protocol>udp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>5900-5900</port></any></destination>
                  <descr>m_Other AppleRemoteDesktop4 outbound</descr>
                  <protocol>udp</protocol></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>3283-3283</port></any></destination>
                  <descr>m_Other AppleRemoteDesktop3 outbound</descr>
                  <protocol>udp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>5900-5900</port></destination>
                  <descr>m_Other AppleRemoteDesktop2 inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>5900-5900</port></destination>
                  <descr>m_Other AppleRemoteDesktop4 inbound</descr>
                  <protocol>udp</protocol></any></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>5190-5190</port></destination>
                  <descr>m_Other ICQ1 inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>5190-5190</port></destination>
                  <descr>m_Other ICQ2 inbound</descr>
                  <protocol>udp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>5190-5190</port></any></destination>
                  <descr>m_Other ICQ2 outbound</descr>
                  <protocol>udp</protocol></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>5900-5900</port></any></destination>
                  <descr>m_Other AppleRemoteDesktop2 outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>5190-5190</port></any></destination>
                  <descr>m_Other ICQ1 outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>5900-5930</port></destination>
                  <descr>m_Other VNC inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>161-161</port></destination>
                  <descr>m_Other SNMP inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>161-161</port></any></destination>
                  <descr>m_Other SNMP outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>554-554</port></destination>
                  <descr>m_Other RTSP1 inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>161-161</port></any></destination>
                  <descr>m_Other SNMP2 outbound</descr>
                  <protocol>udp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>161-161</port></destination>
                  <descr>m_Other SNMP2 inbound</descr>
                  <protocol>udp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>3283-3283</port></any></destination>
                  <descr>m_Other AppleRemoteDesktop1 outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>1352-1352</port></any></destination>
                  <descr>m_Other LotusNotes1 outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>5900-5930</port></any></destination>
                  <descr>m_Other VNC outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>3283-3283</port></destination>
                  <descr>m_Other AppleRemoteDesktop1 inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>1352-1352</port></destination>
                  <descr>m_Other LotusNotes2 inbound</descr>
                  <protocol>udp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>51234-51234</port></any></destination>
                  <descr>m_Other teamspeak2 outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>14534-14534</port></destination>
                  <descr>m_Other teamspeak1 inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>14534-14534</port></any></destination>
                  <descr>m_Other teamspeak1 outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>5632-5632</port></destination>
                  <descr>m_Other pcany2 inbound</descr>
                  <protocol>udp</protocol></any></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>51234-51234</port></destination>
                  <descr>m_Other teamspeak2 inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>8767-8768</port></any></destination>
                  <descr>m_Other teamspeak3 outbound</descr>
                  <protocol>udp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>5999-5999</port></destination>
                  <descr>m_Other cvs inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>5999-5999</port></any></destination>
                  <descr>m_Other cvs outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>8767-8768</port></destination>
                  <descr>m_Other teamspeak3 inbound</descr>
                  <protocol>udp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>5632-5632</port></any></destination>
                  <descr>m_Other pcany2 outbound</descr>
                  <protocol>udp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>5631-5631</port></destination>
                  <descr>m_Other pcany1 inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>3306-3306</port></destination>
                  <descr>m_Other MySQL1 inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>3306-3306</port></any></destination>
                  <descr>m_Other MySQL1 outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>554-554</port></any></destination>
                  <descr>m_Other RTSP1 outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>1352-1352</port></any></destination>
                  <descr>m_Other LotusNotes2 outbound</descr>
                  <protocol>udp</protocol></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>119-119</port></any></destination>
                  <descr>m_Other NNTP1 outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>119-119</port></destination>
                  <descr>m_Other NNTP1 inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>5631-5631</port></any></destination>
                  <descr>m_Other pcany1 outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>119-119</port></destination>
                  <descr>m_Other NNTP2 inbound</descr>
                  <protocol>udp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>119-119</port></any></destination>
                  <descr>m_Other NNTP2 outbound</descr>
                  <protocol>udp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>1352-1352</port></destination>
                  <descr>m_Other LotusNotes1 inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>445-445</port></destination>
                  <descr>m_Other SMB1 inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>8000-8100</port></destination>
                  <descr>m_Other STREAMINGMP3 inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>8000-8100</port></any></destination>
                  <descr>m_Other STREAMINGMP3 outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network></destination>
                  <descr>m_Other IPSEC inbound</descr>
                  <protocol>esp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any></any></destination>
                  <descr>m_Other IPSEC outbound</descr>
                  <protocol>esp</protocol></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>6667-6670</port></any></destination>
                  <descr>m_Other IRC outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>6667-6670</port></destination>
                  <descr>m_Other IRC inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>5223-5223</port></any></destination>
                  <descr>m_Other IRC outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>5222-5222</port></destination>
                  <descr>m_Other IRC inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>5222-5222</port></any></destination>
                  <descr>m_Other IRC outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network></destination>
                  <descr>m_Other IPSEC inbound</descr>
                  <protocol>ah</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any></any></destination>
                  <descr>m_Other IPSEC outbound</descr>
                  <protocol>ah</protocol></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>1723-1723</port></any></destination>
                  <descr>m_Other PPTP outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>3389-3389</port></destination>
                  <descr>m_Other MSRDP inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>3389-3389</port></any></destination>
                  <descr>m_Other MSRDP outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>1723-1723</port></destination>
                  <descr>m_Other PPTP inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any></any></destination>
                  <descr>m_Other PPTPGRE outbound</descr>
                  <protocol>gre</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>500-500</port></destination>
                  <descr>m_Other IPSEC inbound</descr>
                  <protocol>udp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>500-500</port></any></destination>
                  <descr>m_Other IPSEC outbound</descr>
                  <protocol>udp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network></destination>
                  <descr>m_Other PPTPGRE inbound</descr>
                  <protocol>gre</protocol></any></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>5223-5223</port></destination>
                  <descr>m_Other IRC inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>5269-5269</port></any></destination>
                  <descr>m_Other IRC outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any></any></destination>
                  <descr>m_Other ICMP outbound</descr>
                  <protocol>icmp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>110-110</port></destination>
                  <descr>m_Other POP3 inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>110-110</port></any></destination>
                  <descr>m_Other POP3 outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>25-25</port></destination>
                  <descr>m_Other SMTP inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network></destination>
                  <descr>m_Other ICMP inbound</descr>
                  <protocol>icmp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>143-143</port></any></destination>
                  <descr>m_Other IMAP outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>137-139-137-139</port></any></destination>
                  <descr>m_Other SMB2 outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>445-445</port></any></destination>
                  <descr>m_Other SMB1 outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>143-143</port></destination>
                  <descr>m_Other IMAP inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>25-25</port></any></destination>
                  <descr>m_Other SMTP outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>443-443</port></destination>
                  <descr>m_Other HTTPS inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any>- <destination><network>lan</network>
                  <port>53-53</port></destination>
                  <descr>m_Other DNS1 inbound</descr>
                  <protocol>tcp</protocol></any></rule>
              • <rule><inqueue>qlandef</inqueue>
                  <outqueue>qwandef</outqueue>
                  <in-interface>lan</in-interface>
                  <out-interface>wan</out-interface>
              • <source>
                  <network>lan</network>
              • <destination><any><port>53-53</port></any></destination>
                  <descr>m_Other DNS1 outbound</descr>
                  <protocol>tcp</protocol></rule>
              • <rule><inqueue>qwandef</inqueue>
                  <outqueue>qlandef</outqueue>
                  <in-interface>wan</in-interface>
                  <out-interface>lan</out-interface>
              • <source>
                  <any></any></rule></shaper>

              Hosted desktops and servers with support without complication.
              www.blueskysystems.co.uk

              1 Reply Last reply Reply Quote 0
              • J
                Jonb
                last edited by

                Error for post above reads

                php: : There were error(s) loading the rules: /tmp/qwanRoot.rules:30: syntax error pfctl: Syntax error in config file: pf rules not loaded pfctl: load anchors - The line in question reads [30]:

                Hosted desktops and servers with support without complication.
                www.blueskysystems.co.uk

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.