set clock timezone 0 set vrouter trust-vr sharable unset vrouter "trust-vr" auto-route-export set service "minecraft" protocol tcp src-port 25565-25565 dst-port 25565-25565 set service "minecraft" + udp src-port 25565-25565 dst-port 25565-25565 set service "seccams" protocol tcp src-port 8085-8085 dst-port 8085-8085 set service "seccams" + tcp src-port 9000-9000 dst-port 9000-9000 set auth-server "Local" id 0 set auth-server "Local" server-name "Local" set auth default auth server "Local" set admin name "netscreen" set admin password "nJ7KEMrnDoqGcVCN9sYNiNDtDWOqOn" set admin auth timeout 10 set admin auth server "Local" set admin format dos set zone "Trust" vrouter "trust-vr" set zone "Untrust" vrouter "trust-vr" set zone "DMZ" vrouter "trust-vr" set zone "VLAN" vrouter "trust-vr" set zone "Trust" tcp-rst set zone "Untrust" block unset zone "Untrust" tcp-rst set zone "MGT" block set zone "DMZ" tcp-rst set zone "VLAN" block set zone "VLAN" tcp-rst set zone "Untrust" screen tear-drop set zone "Untrust" screen syn-flood set zone "Untrust" screen ping-death set zone "Untrust" screen ip-filter-src set zone "Untrust" screen land set zone "V1-Untrust" screen tear-drop set zone "V1-Untrust" screen syn-flood set zone "V1-Untrust" screen ping-death set zone "V1-Untrust" screen ip-filter-src set zone "V1-Untrust" screen land set interface "ethernet1" zone "Trust" set interface "ethernet2" zone "DMZ" set interface "ethernet3" zone "Untrust" unset interface vlan1 ip set interface ethernet1 ip 192.168.11.1/24 set interface ethernet1 nat set interface ethernet3 ip 68.63.154.139/21 set interface ethernet3 route unset interface vlan1 bypass-others-ipsec unset interface vlan1 bypass-non-ip set interface ethernet1 ip manageable unset interface ethernet3 ip manageable set interface ethernet1 dhcp server service set interface ethernet1 dhcp server enable set interface ethernet1 dhcp server option lease 1440000 set interface ethernet1 dhcp server option gateway 192.168.11.1 set interface ethernet1 dhcp server option netmask 255.255.255.0 set interface ethernet1 dhcp server option dns1 192.168.11.10 set interface ethernet1 dhcp server option dns2 8.8.8.8 set interface ethernet1 dhcp server option dns3 8.8.4.4 set interface ethernet1 dhcp server ip 192.168.11.15 to 192.168.11.50 set interface ethernet3 dhcp-client enable unset interface ethernet3 dhcp-client settings update-dhcpserver set hostname ns204 set address "Trust" "192.168.11.10/24" 192.168.11.10 255.255.255.0 set address "Trust" "192.168.11.245/24" 192.168.11.245 255.255.255.0 set address "Untrust" "192.168.11.10/24" 192.168.11.10 255.255.255.0 set ike respond-bad-spi 1 set policy id 1 from "Trust" to "Untrust" "Any" "Any" "ANY" permit set policy id 2 name "http" from "Untrust" to "Trust" "Any" "192.168.11.10/24" "HTTP" permit log set policy id 2 application "IGNORE" set policy id 3 name "https" from "Untrust" to "Trust" "Any" "192.168.11.10/24" "HTTPS" permit log set policy id 3 application "IGNORE" set policy id 4 name "ftp" from "Untrust" to "Trust" "Any" "192.168.11.10/24" "FTP" permit log set policy id 4 application "IGNORE" set policy id 5 name "minecraft" from "Untrust" to "Trust" "Any" "192.168.11.10/24" "minecraft" permit log set policy id 5 application "IGNORE" set policy id 6 name "seccams" from "Untrust" to "Trust" "Any" "192.168.11.245/24" "seccams" permit log set policy id 6 application "IGNORE" set pki authority default scep mode "auto" set pki x509 default cert-path partial set ssh version v2 set config lock timeout 5 set snmp port listen 161 set snmp port trap 162 set vrouter "untrust-vr" exit set vrouter "trust-vr" unset add-default-route exit