27: Configuring firewall 
_______________________________________________________________________________________________________ 
_____________________________________________________________________________________________________ 
© Virtual Access 2017 
GW1000 Series User Manual 
Issue: 1.9    Page 255 of 350 
27.3.4  Firewall port forwards 
To set port forwarding rules, enter: 
uci add firewall redirect 
uci set firewall.@redirect[1].name=Forward 
uci set firewall.@redirect[1].proto=tcp 
uci set firewall.@redirect[1].src=wan   #  <- zone names 
uci set firewall.@redirect[1].dest=lan   # <- zone names 
uci set firewall.@redirect[1].src_dport=2001 
uci set firewall.@redirect[1].dest_ip=192.168.0.100 
uci set firewall.@redirect[1].dest_port=2005 
uci set firewall.@redirect[1].enabled=1 
27.3.5  Firewall traffic rules 
To set traffic rules, enter: 
uci add firewall rule 
uci set firewall.@rule[1].enabled=1 
uci set firewall.@rule[1].name=Allow_ICMP 
uci set firewall.@rule[1].family=any 
uci set firewall.@rule[1].proto=ICMP 
uci set firewall.@rule[1].icmp_type=any 
uci set firewall.@rule[1].src=wan 
uci set firewall.@rule[1].src_mac=ff:ff:ff:ff:ff:ff 
uci set firewall.@rule[1].src_port= 
uci set firewall.@rule[1].dest=lan 
uci set firewall.@rule[1].dest_port= 
uci set firewall.@rule[1].dest_ip=192.168.100.1 
uci set firewall.@rule[1].target=ACCEPT 
uci set firewall.@rule[1].extra= 
uci set firewall.@rule[1].src_ip=8.8.8.8 
uci set firewall.@rule[1].src_dip=9.9.9.9 
uci set firewall.@rule[1].src_dport=68 
uci set firewall.@rule[1].reflection=1 
uci set firewall.@rule[1].limit=3/second 
uci set firewall.@rule[1].limit_burst=30