home *** CD-ROM | disk | FTP | other *** search
/ Chip 2007 January / CHIP_CD_01_2007.iso / Hity z okladki / F-Secure Internet Security 2007 / fs2007.exe / program / inst / fsfw_dpf / fsavfw.dpf
Encoding:
Text File  |  2006-11-02  |  151.3 KB  |  2,888 lines

  1.  // -------------------------------------------------------------------
  2.  //    Default policy file. Created by MIB Editor
  3.  //    26.10.2006 9:25:19
  4.  // -------------------------------------------------------------------
  5.  
  6. 8:version1
  7. 1
  8.  
  9. {1.3.6.1.4.1
  10.    {2213 // F-Secure
  11.       {25 // F-Secure Internet Shield
  12.          {1 // Settings
  13.             {2:DisplayString = 3:ENG (read_only)} // Language
  14.             {10:Table(iDisplayString,iDisplayString,Integer,Integer,DisplayString,DisplayString,String,Integer,Integer,String,Integer,Integer,DisplayString) =  // Rules
  15.                {
  16.                   {7:10block (read_only)} // Security Level
  17.                   {2:01 (read_only)} // Priority
  18.                   {1 (choice:1:0,read_only)} // Enabled
  19.                   {3 (choice:2:3:4,read_only)} // Type
  20.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  21.                   {8:all:both (read_only)} // Services
  22.                   {9:Block all (read_only)} // Name/Comment
  23.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  24.                   { (read_only)} // Alert Trap
  25.                   { (read_only)} // Alert Comment
  26.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  27.                   {0 (choice:0:1,read_only)} // Dialup Only
  28.                   { (read_only)} // Flags
  29.                }
  30.                {
  31.                   {8:20mobile (read_only)} // Security Level
  32.                   {2:01 (read_only)} // Priority
  33.                   {1 (choice:1:0,read_only)} // Enabled
  34.                   {2 (choice:2:3:4,read_only)} // Type
  35.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  36.                   {7:FTP:out (read_only)} // Services
  37.                   {10:Active FTP (read_only)} // Name/Comment
  38.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  39.                   { (read_only)} // Alert Trap
  40.                   { (read_only)} // Alert Comment
  41.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  42.                   {0 (choice:0:1,read_only)} // Dialup Only
  43.                   { (read_only)} // Flags
  44.                }
  45.                {
  46.                   {8:20mobile (read_only)} // Security Level
  47.                   {2:02 (read_only)} // Priority
  48.                   {1 (choice:1:0,read_only)} // Enabled
  49.                   {2 (choice:2:3:4,read_only)} // Type
  50.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  51.                   {36:HTTP:out,HTTPS:out,FTP (Passive):out (read_only)} // Services
  52.                   {12:Web browsing (read_only)} // Name/Comment
  53.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  54.                   { (read_only)} // Alert Trap
  55.                   { (read_only)} // Alert Comment
  56.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  57.                   {0 (choice:0:1,read_only)} // Dialup Only
  58.                   { (read_only)} // Flags
  59.                }
  60.                {
  61.                   {8:20mobile (read_only)} // Security Level
  62.                   {2:03 (read_only)} // Priority
  63.                   {1 (choice:1:0,read_only)} // Enabled
  64.                   {2 (choice:2:3:4,read_only)} // Type
  65.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  66.                   {54:POP3(SSL):out,IMAP(SSL):out,POP3:out,IMAP:out,SMTP:out (read_only)} // Services
  67.                   {21:E-mail client traffic (read_only)} // Name/Comment
  68.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  69.                   { (read_only)} // Alert Trap
  70.                   { (read_only)} // Alert Comment
  71.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  72.                   {0 (choice:0:1,read_only)} // Dialup Only
  73.                   { (read_only)} // Flags
  74.                }
  75.                {
  76.                   {8:20mobile (read_only)} // Security Level
  77.                   {2:04 (read_only)} // Priority
  78.                   {1 (choice:1:0,read_only)} // Enabled
  79.                   {2 (choice:2:3:4,read_only)} // Type
  80.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  81.                   {22:NNTP:out,NNTP(SSL):out (read_only)} // Services
  82.                   {19:Usenet News traffic (read_only)} // Name/Comment
  83.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  84.                   { (read_only)} // Alert Trap
  85.                   { (read_only)} // Alert Comment
  86.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  87.                   {0 (choice:0:1,read_only)} // Dialup Only
  88.                   { (read_only)} // Flags
  89.                }
  90.                {
  91.                   {8:20mobile (read_only)} // Security Level
  92.                   {2:05 (read_only)} // Priority
  93.                   {1 (choice:1:0,read_only)} // Enabled
  94.                   {2 (choice:2:3:4,read_only)} // Type
  95.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  96.                   {56:SSH:out,IKE:out,ESP:out,AH:out,PPTP:out,L2TP:out,GRE:out (read_only)} // Services
  97.                   {24:Encrypted communications (read_only)} // Name/Comment
  98.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  99.                   { (read_only)} // Alert Trap
  100.                   { (read_only)} // Alert Comment
  101.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  102.                   {0 (choice:0:1,read_only)} // Dialup Only
  103.                   { (read_only)} // Flags
  104.                }
  105.                {
  106.                   {8:20mobile (read_only)} // Security Level
  107.                   {2:06 (read_only)} // Priority
  108.                   {1 (choice:1:0,read_only)} // Enabled
  109.                   {2 (choice:2:3:4,read_only)} // Type
  110.                   {7:[myDNS] (read_only)} // Remote Host
  111.                   {21:DNS:out,DNS (TCP):out (read_only)} // Services
  112.                   {14:Name resolving (read_only)} // Name/Comment
  113.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  114.                   { (read_only)} // Alert Trap
  115.                   { (read_only)} // Alert Comment
  116.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  117.                   {0 (choice:0:1,read_only)} // Dialup Only
  118.                   { (read_only)} // Flags
  119.                }
  120.                {
  121.                   {8:20mobile (read_only)} // Security Level
  122.                   {2:07 (read_only)} // Priority
  123.                   {1 (choice:1:0,read_only)} // Enabled
  124.                   {2 (choice:2:3:4,read_only)} // Type
  125.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  126.                   {27:Ping:out,ICMP restricted:in (read_only)} // Services
  127.                   {29:Commonly needed ICMP messages (read_only)} // Name/Comment
  128.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  129.                   { (read_only)} // Alert Trap
  130.                   { (read_only)} // Alert Comment
  131.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  132.                   {0 (choice:0:1,read_only)} // Dialup Only
  133.                   { (read_only)} // Flags
  134.                }
  135.                {
  136.                   {8:20mobile (read_only)} // Security Level
  137.                   {2:08 (read_only)} // Priority
  138.                   {1 (choice:1:0,read_only)} // Enabled
  139.                   {2 (choice:2:3:4,read_only)} // Type
  140.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  141.                   {14:Backweb v6:out (read_only)} // Services
  142.                   {15:Backweb updates (read_only)} // Name/Comment
  143.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  144.                   { (read_only)} // Alert Trap
  145.                   { (read_only)} // Alert Comment
  146.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  147.                   {0 (choice:0:1,read_only)} // Dialup Only
  148.                   { (read_only)} // Flags
  149.                }
  150.                {
  151.                   {8:20mobile (read_only)} // Security Level
  152.                   {2:10 (read_only)} // Priority
  153.                   {1 (choice:0:1,read_only)} // Enabled
  154.                   {2 (choice:2:3:4,read_only)} // Type
  155.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  156.                   {7:NTP:out (read_only)} // Services
  157.                   {21:Network Time Protocol (read_only)} // Name/Comment
  158.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  159.                   { (read_only)} // Alert Trap
  160.                   { (read_only)} // Alert Comment
  161.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  162.                   {0 (choice:0:1,read_only)} // Dialup Only
  163.                   { (read_only)} // Flags
  164.                }
  165.                {
  166.                   {8:20mobile (read_only)} // Security Level
  167.                   {2:11 (read_only)} // Priority
  168.                   {1 (choice:1:0,read_only)} // Enabled
  169.                   {4 (choice:2:3:4,read_only)} // Type
  170.                   { (read_only)} // Remote Host
  171.                   { (read_only)} // Services
  172.                   {20:User definable rules (read_only)} // Name/Comment
  173.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  174.                   { (read_only)} // Alert Trap
  175.                   { (read_only)} // Alert Comment
  176.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  177.                   {0 (choice:0:1,read_only)} // Dialup Only
  178.                   { (read_only)} // Flags
  179.                }
  180.                {
  181.                   {8:20mobile (read_only)} // Security Level
  182.                   {2:12 (read_only)} // Priority
  183.                   {1 (choice:1:0,read_only)} // Enabled
  184.                   {3 (choice:2:3:4,read_only)} // Type
  185.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  186.                   {6:TCP:in (read_only)} // Services
  187.                   {29:Deny inbound TCP with logging (read_only)} // Name/Comment
  188.                   {1 (choice:0:1:2:3,read_only)} // Send Alert
  189.                   { (read_only)} // Alert Trap
  190.                   {30:Inbound TCP connection attempt (read_only)} // Alert Comment
  191.                   {1 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  192.                   {0 (choice:0:1,read_only)} // Dialup Only
  193.                   { (read_only)} // Flags
  194.                }
  195.                {
  196.                   {8:20mobile (read_only)} // Security Level
  197.                   {2:13 (read_only)} // Priority
  198.                   {1 (choice:1:0,read_only)} // Enabled
  199.                   {3 (choice:2:3:4,read_only)} // Type
  200.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  201.                   {6:UDP:in (read_only)} // Services
  202.                   {24:Deny inbound UDP traffic (read_only)} // Name/Comment
  203.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  204.                   { (read_only)} // Alert Trap
  205.                   { (read_only)} // Alert Comment
  206.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  207.                   {0 (choice:0:1,read_only)} // Dialup Only
  208.                   { (read_only)} // Flags
  209.                }
  210.                {
  211.                   {8:20mobile (read_only)} // Security Level
  212.                   {2:99 (read_only)} // Priority
  213.                   {1 (choice:1:0,read_only)} // Enabled
  214.                   {3 (choice:2:3:4,read_only)} // Type
  215.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  216.                   {8:all:both (read_only)} // Services
  217.                   {9:Deny rest (read_only)} // Name/Comment
  218.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  219.                   { (read_only)} // Alert Trap
  220.                   { (read_only)} // Alert Comment
  221.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  222.                   {0 (choice:0:1,read_only)} // Dialup Only
  223.                   { (read_only)} // Flags
  224.                }
  225.                {
  226.                   {6:30home (read_only)} // Security Level
  227.                   {2:01 (read_only)} // Priority
  228.                   {1 (choice:1:0,read_only)} // Enabled
  229.                   {2 (choice:2:3:4,read_only)} // Type
  230.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  231.                   {7:FTP:out (read_only)} // Services
  232.                   {10:Active FTP (read_only)} // Name/Comment
  233.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  234.                   { (read_only)} // Alert Trap
  235.                   { (read_only)} // Alert Comment
  236.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  237.                   {0 (choice:0:1,read_only)} // Dialup Only
  238.                   { (read_only)} // Flags
  239.                }
  240.                {
  241.                   {6:30home (read_only)} // Security Level
  242.                   {2:02 (read_only)} // Priority
  243.                   {1 (choice:1:0,read_only)} // Enabled
  244.                   {2 (choice:2:3:4,read_only)} // Type
  245.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  246.                   {7:TCP:out (read_only)} // Services
  247.                   {24:Outbound TCP connections (read_only)} // Name/Comment
  248.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  249.                   { (read_only)} // Alert Trap
  250.                   { (read_only)} // Alert Comment
  251.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  252.                   {0 (choice:0:1,read_only)} // Dialup Only
  253.                   { (read_only)} // Flags
  254.                }
  255.                {
  256.                   {6:30home (read_only)} // Security Level
  257.                   {2:03 (read_only)} // Priority
  258.                   {1 (choice:1:0,read_only)} // Enabled
  259.                   {2 (choice:2:3:4,read_only)} // Type
  260.                   {7:[myDNS] (read_only)} // Remote Host
  261.                   {21:DNS:out,DNS (TCP):out (read_only)} // Services
  262.                   {14:Name resolving (read_only)} // Name/Comment
  263.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  264.                   { (read_only)} // Alert Trap
  265.                   { (read_only)} // Alert Comment
  266.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  267.                   {0 (choice:0:1,read_only)} // Dialup Only
  268.                   { (read_only)} // Flags
  269.                }
  270.                {
  271.                   {6:30home (read_only)} // Security Level
  272.                   {2:04 (read_only)} // Priority
  273.                   {1 (choice:1:0,read_only)} // Enabled
  274.                   {2 (choice:2:3:4,read_only)} // Type
  275.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  276.                   {27:Ping:out,ICMP restricted:in (read_only)} // Services
  277.                   {29:Commonly needed ICMP messages (read_only)} // Name/Comment
  278.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  279.                   { (read_only)} // Alert Trap
  280.                   { (read_only)} // Alert Comment
  281.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  282.                   {0 (choice:0:1,read_only)} // Dialup Only
  283.                   { (read_only)} // Flags
  284.                }
  285.                {
  286.                   {6:30home (read_only)} // Security Level
  287.                   {2:05 (read_only)} // Priority
  288.                   {1 (choice:0:1,read_only)} // Enabled
  289.                   {2 (choice:2:3:4,read_only)} // Type
  290.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  291.                   {7:NTP:out (read_only)} // Services
  292.                   {21:Network Time Protocol (read_only)} // Name/Comment
  293.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  294.                   { (read_only)} // Alert Trap
  295.                   { (read_only)} // Alert Comment
  296.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  297.                   {0 (choice:0:1,read_only)} // Dialup Only
  298.                   { (read_only)} // Flags
  299.                }
  300.                {
  301.                   {6:30home (read_only)} // Security Level
  302.                   {2:06 (read_only)} // Priority
  303.                   {1 (choice:1:0,read_only)} // Enabled
  304.                   {3 (choice:2:3:4,read_only)} // Type
  305.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  306.                   {238:Malware - Back Orifice:in,Malware - NetBus:in,Malware - Bagle.C:in,Malware - Bagle.Y:in,Malware - Blaster:in,Malware - Dabber:in,Malware - Kuang2:in,Malware - MyDoom:in,Malware - MyDoom.B:in,MalWare - PhatBot:in,Malware - Sasser server:in (read_only)} // Services
  307.                   {45:Deny and alert about malicious inbound probes (read_only)} // Name/Comment
  308.                   {3 (choice:0:1:2:3,read_only)} // Send Alert
  309.                   { (read_only)} // Alert Trap
  310.                   {21:Inbound malware probe (read_only)} // Alert Comment
  311.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  312.                   {0 (choice:0:1,read_only)} // Dialup Only
  313.                   { (read_only)} // Flags
  314.                }
  315.                {
  316.                   {6:30home (read_only)} // Security Level
  317.                   {2:07 (read_only)} // Priority
  318.                   {1 (choice:1:0,read_only)} // Enabled
  319.                   {4 (choice:2:3:4,read_only)} // Type
  320.                   { (read_only)} // Remote Host
  321.                   { (read_only)} // Services
  322.                   {20:User definable rules (read_only)} // Name/Comment
  323.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  324.                   { (read_only)} // Alert Trap
  325.                   { (read_only)} // Alert Comment
  326.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  327.                   {0 (choice:0:1,read_only)} // Dialup Only
  328.                   { (read_only)} // Flags
  329.                }
  330.                {
  331.                   {6:30home (read_only)} // Security Level
  332.                   {2:08 (read_only)} // Priority
  333.                   {1 (choice:1:0,read_only)} // Enabled
  334.                   {3 (choice:2:3:4,read_only)} // Type
  335.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  336.                   {6:TCP:in (read_only)} // Services
  337.                   {29:Deny inbound TCP with logging (read_only)} // Name/Comment
  338.                   {1 (choice:0:1:2:3,read_only)} // Send Alert
  339.                   { (read_only)} // Alert Trap
  340.                   {30:Inbound TCP connection attempt (read_only)} // Alert Comment
  341.                   {1 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  342.                   {0 (choice:0:1,read_only)} // Dialup Only
  343.                   { (read_only)} // Flags
  344.                }
  345.                {
  346.                   {6:30home (read_only)} // Security Level
  347.                   {2:09 (read_only)} // Priority
  348.                   {1 (choice:1:0,read_only)} // Enabled
  349.                   {3 (choice:2:3:4,read_only)} // Type
  350.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  351.                   {6:UDP:in (read_only)} // Services
  352.                   {24:Deny inbound UDP traffic (read_only)} // Name/Comment
  353.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  354.                   { (read_only)} // Alert Trap
  355.                   { (read_only)} // Alert Comment
  356.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  357.                   {0 (choice:0:1,read_only)} // Dialup Only
  358.                   { (read_only)} // Flags
  359.                }
  360.                {
  361.                   {6:30home (read_only)} // Security Level
  362.                   {2:99 (read_only)} // Priority
  363.                   {1 (choice:1:0,read_only)} // Enabled
  364.                   {3 (choice:2:3:4,read_only)} // Type
  365.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  366.                   {8:all:both (read_only)} // Services
  367.                   {9:Deny rest (read_only)} // Name/Comment
  368.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  369.                   { (read_only)} // Alert Trap
  370.                   { (read_only)} // Alert Comment
  371.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  372.                   {0 (choice:0:1,read_only)} // Dialup Only
  373.                   { (read_only)} // Flags
  374.                }
  375.                {
  376.                   {8:40office (read_only)} // Security Level
  377.                   {2:01 (read_only)} // Priority
  378.                   {1 (choice:0:1,read_only)} // Enabled
  379.                   {2 (choice:2:3:4,read_only)} // Type
  380.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  381.                   {7:FTP:out (read_only)} // Services
  382.                   {10:Active FTP (read_only)} // Name/Comment
  383.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  384.                   { (read_only)} // Alert Trap
  385.                   { (read_only)} // Alert Comment
  386.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  387.                   {0 (choice:0:1,read_only)} // Dialup Only
  388.                   { (read_only)} // Flags
  389.                }
  390.                {
  391.                   {8:40office (read_only)} // Security Level
  392.                   {2:02 (read_only)} // Priority
  393.                   {1 (choice:1:0,read_only)} // Enabled
  394.                   {2 (choice:2:3:4,read_only)} // Type
  395.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  396.                   {15:TCP:out,UDP:out (read_only)} // Services
  397.                   {28:Outbound TCP and UDP traffic (read_only)} // Name/Comment
  398.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  399.                   { (read_only)} // Alert Trap
  400.                   { (read_only)} // Alert Comment
  401.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  402.                   {0 (choice:0:1,read_only)} // Dialup Only
  403.                   { (read_only)} // Flags
  404.                }
  405.                {
  406.                   {8:40office (read_only)} // Security Level
  407.                   {2:03 (read_only)} // Priority
  408.                   {1 (choice:1:0,read_only)} // Enabled
  409.                   {2 (choice:2:3:4,read_only)} // Type
  410.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  411.                   {27:Ping:out,ICMP restricted:in (read_only)} // Services
  412.                   {29:Commonly needed ICMP messages (read_only)} // Name/Comment
  413.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  414.                   { (read_only)} // Alert Trap
  415.                   { (read_only)} // Alert Comment
  416.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  417.                   {0 (choice:0:1,read_only)} // Dialup Only
  418.                   { (read_only)} // Flags
  419.                }
  420.                {
  421.                   {8:40office (read_only)} // Security Level
  422.                   {2:04 (read_only)} // Priority
  423.                   {1 (choice:1:0,read_only)} // Enabled
  424.                   {3 (choice:2:3:4,read_only)} // Type
  425.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  426.                   {238:Malware - Back Orifice:in,Malware - NetBus:in,Malware - Bagle.C:in,Malware - Bagle.Y:in,Malware - Blaster:in,Malware - Dabber:in,Malware - Kuang2:in,Malware - MyDoom:in,Malware - MyDoom.B:in,MalWare - PhatBot:in,Malware - Sasser server:in (read_only)} // Services
  427.                   {45:Deny and alert about malicious inbound probes (read_only)} // Name/Comment
  428.                   {3 (choice:0:1:2:3,read_only)} // Send Alert
  429.                   { (read_only)} // Alert Trap
  430.                   {21:Inbound malware probe (read_only)} // Alert Comment
  431.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  432.                   {0 (choice:0:1,read_only)} // Dialup Only
  433.                   { (read_only)} // Flags
  434.                }
  435.                {
  436.                   {8:40office (read_only)} // Security Level
  437.                   {2:05 (read_only)} // Priority
  438.                   {1 (choice:1:0,read_only)} // Enabled
  439.                   {4 (choice:2:3:4,read_only)} // Type
  440.                   { (read_only)} // Remote Host
  441.                   { (read_only)} // Services
  442.                   {20:User definable rules (read_only)} // Name/Comment
  443.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  444.                   { (read_only)} // Alert Trap
  445.                   { (read_only)} // Alert Comment
  446.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  447.                   {0 (choice:0:1,read_only)} // Dialup Only
  448.                   { (read_only)} // Flags
  449.                }
  450.                {
  451.                   {8:40office (read_only)} // Security Level
  452.                   {2:06 (read_only)} // Priority
  453.                   {0 (choice:1:0,read_only)} // Enabled
  454.                   {2 (choice:2:3:4,read_only)} // Type
  455.                   {11:[myNetwork] (read_only)} // Remote Host
  456.                   {61:Windows Networking (1):in,Windows Networking (2):in,ICMP:both (read_only)} // Services
  457.                   {66:Allow inbound computer browsing and file sharing from local subnet (read_only)} // Name/Comment
  458.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  459.                   { (read_only)} // Alert Trap
  460.                   { (read_only)} // Alert Comment
  461.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  462.                   {0 (choice:0:1,read_only)} // Dialup Only
  463.                   { (read_only)} // Flags
  464.                }
  465.                {
  466.                   {8:40office (read_only)} // Security Level
  467.                   {2:07 (read_only)} // Priority
  468.                   {1 (choice:0:1,read_only)} // Enabled
  469.                   {3 (choice:2:3:4,read_only)} // Type
  470.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  471.                   {77:Windows Networking (1):in,Windows Networking (2):in,SMB (TCP):in,SMB (UDP):in (read_only)} // Services
  472.                   {47:Deny inbound computer browsing and file sharing (read_only)} // Name/Comment
  473.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  474.                   { (read_only)} // Alert Trap
  475.                   { (read_only)} // Alert Comment
  476.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  477.                   {0 (choice:0:1,read_only)} // Dialup Only
  478.                   { (read_only)} // Flags
  479.                }
  480.                {
  481.                   {8:40office (read_only)} // Security Level
  482.                   {2:08 (read_only)} // Priority
  483.                   {1 (choice:1:0,read_only)} // Enabled
  484.                   {3 (choice:2:3:4,read_only)} // Type
  485.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  486.                   {53:epmap:in,UPnP:in,NTDS:in,Windows Messenger Service:in (read_only)} // Services
  487.                   {48:Block remote access to vulnerable local services (read_only)} // Name/Comment
  488.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  489.                   { (read_only)} // Alert Trap
  490.                   { (read_only)} // Alert Comment
  491.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  492.                   {0 (choice:0:1,read_only)} // Dialup Only
  493.                   { (read_only)} // Flags
  494.                }
  495.                {
  496.                   {8:40office (read_only)} // Security Level
  497.                   {2:99 (read_only)} // Priority
  498.                   {1 (choice:1:0,read_only)} // Enabled
  499.                   {3 (choice:2:3:4,read_only)} // Type
  500.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  501.                   {8:all:both (read_only)} // Services
  502.                   {9:Deny rest (read_only)} // Name/Comment
  503.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  504.                   { (read_only)} // Alert Trap
  505.                   { (read_only)} // Alert Comment
  506.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  507.                   {0 (choice:0:1,read_only)} // Dialup Only
  508.                   { (read_only)} // Flags
  509.                }
  510.                {
  511.                   {8:45strict (read_only)} // Security Level
  512.                   {2:01 (read_only)} // Priority
  513.                   {1 (choice:0:1,read_only)} // Enabled
  514.                   {4 (choice:2:3:4,read_only)} // Type
  515.                   { (read_only)} // Remote Host
  516.                   { (read_only)} // Services
  517.                   {19:User definable rule (read_only)} // Name/Comment
  518.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  519.                   { (read_only)} // Alert Trap
  520.                   { (read_only)} // Alert Comment
  521.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  522.                   {0 (choice:0:1,read_only)} // Dialup Only
  523.                   { (read_only)} // Flags
  524.                }
  525.                {
  526.                   {8:45strict (read_only)} // Security Level
  527.                   {2:02 (read_only)} // Priority
  528.                   {1 (choice:0:1,read_only)} // Enabled
  529.                   {2 (choice:2:3:4,read_only)} // Type
  530.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  531.                   {7:FTP:out (read_only)} // Services
  532.                   {25:Allow active FTP outbound (read_only)} // Name/Comment
  533.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  534.                   { (read_only)} // Alert Trap
  535.                   { (read_only)} // Alert Comment
  536.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  537.                   {0 (choice:0:1,read_only)} // Dialup Only
  538.                   { (read_only)} // Flags
  539.                }
  540.                {
  541.                   {8:45strict (read_only)} // Security Level
  542.                   {2:03 (read_only)} // Priority
  543.                   {1 (choice:0:1,read_only)} // Enabled
  544.                   {2 (choice:2:3:4,read_only)} // Type
  545.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  546.                   {36:HTTP:out,HTTPS:out,FTP (Passive):out (read_only)} // Services
  547.                   {12:Web browsing (read_only)} // Name/Comment
  548.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  549.                   { (read_only)} // Alert Trap
  550.                   { (read_only)} // Alert Comment
  551.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  552.                   {0 (choice:0:1,read_only)} // Dialup Only
  553.                   { (read_only)} // Flags
  554.                }
  555.                {
  556.                   {8:45strict (read_only)} // Security Level
  557.                   {2:04 (read_only)} // Priority
  558.                   {1 (choice:0:1,read_only)} // Enabled
  559.                   {2 (choice:2:3:4,read_only)} // Type
  560.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  561.                   {54:POP3(SSL):out,IMAP(SSL):out,POP3:out,IMAP:out,SMTP:out (read_only)} // Services
  562.                   {21:E-mail client traffic (read_only)} // Name/Comment
  563.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  564.                   { (read_only)} // Alert Trap
  565.                   { (read_only)} // Alert Comment
  566.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  567.                   {0 (choice:0:1,read_only)} // Dialup Only
  568.                   { (read_only)} // Flags
  569.                }
  570.                {
  571.                   {8:45strict (read_only)} // Security Level
  572.                   {2:05 (read_only)} // Priority
  573.                   {1 (choice:0:1,read_only)} // Enabled
  574.                   {2 (choice:2:3:4,read_only)} // Type
  575.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  576.                   {22:NNTP:out,NNTP(SSL):out (read_only)} // Services
  577.                   {19:Usenet News traffic (read_only)} // Name/Comment
  578.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  579.                   { (read_only)} // Alert Trap
  580.                   { (read_only)} // Alert Comment
  581.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  582.                   {0 (choice:0:1,read_only)} // Dialup Only
  583.                   { (read_only)} // Flags
  584.                }
  585.                {
  586.                   {8:45strict (read_only)} // Security Level
  587.                   {2:06 (read_only)} // Priority
  588.                   {1 (choice:0:1,read_only)} // Enabled
  589.                   {2 (choice:2:3:4,read_only)} // Type
  590.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  591.                   {56:SSH:out,IKE:out,ESP:out,AH:out,PPTP:out,L2TP:out,GRE:out (read_only)} // Services
  592.                   {24:Encrypted communications (read_only)} // Name/Comment
  593.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  594.                   { (read_only)} // Alert Trap
  595.                   { (read_only)} // Alert Comment
  596.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  597.                   {0 (choice:0:1,read_only)} // Dialup Only
  598.                   { (read_only)} // Flags
  599.                }
  600.                {
  601.                   {8:45strict (read_only)} // Security Level
  602.                   {2:07 (read_only)} // Priority
  603.                   {1 (choice:0:1,read_only)} // Enabled
  604.                   {2 (choice:2:3:4,read_only)} // Type
  605.                   {7:[myDNS] (read_only)} // Remote Host
  606.                   {21:DNS:out,DNS (TCP):out (read_only)} // Services
  607.                   {14:Name resolving (read_only)} // Name/Comment
  608.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  609.                   { (read_only)} // Alert Trap
  610.                   { (read_only)} // Alert Comment
  611.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  612.                   {0 (choice:0:1,read_only)} // Dialup Only
  613.                   { (read_only)} // Flags
  614.                }
  615.                {
  616.                   {8:45strict (read_only)} // Security Level
  617.                   {2:08 (read_only)} // Priority
  618.                   {1 (choice:0:1,read_only)} // Enabled
  619.                   {2 (choice:2:3:4,read_only)} // Type
  620.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  621.                   {27:Ping:out,ICMP restricted:in (read_only)} // Services
  622.                   {29:Commonly needed ICMP messages (read_only)} // Name/Comment
  623.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  624.                   { (read_only)} // Alert Trap
  625.                   { (read_only)} // Alert Comment
  626.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  627.                   {0 (choice:0:1,read_only)} // Dialup Only
  628.                   { (read_only)} // Flags
  629.                }
  630.                {
  631.                   {8:45strict (read_only)} // Security Level
  632.                   {2:09 (read_only)} // Priority
  633.                   {1 (choice:0:1,read_only)} // Enabled
  634.                   {2 (choice:2:3:4,read_only)} // Type
  635.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  636.                   {14:Backweb v6:out (read_only)} // Services
  637.                   {15:Backweb updates (read_only)} // Name/Comment
  638.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  639.                   { (read_only)} // Alert Trap
  640.                   { (read_only)} // Alert Comment
  641.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  642.                   {0 (choice:0:1,read_only)} // Dialup Only
  643.                   { (read_only)} // Flags
  644.                }
  645.                {
  646.                   {8:45strict (read_only)} // Security Level
  647.                   {2:10 (read_only)} // Priority
  648.                   {1 (choice:0:1,read_only)} // Enabled
  649.                   {2 (choice:2:3:4,read_only)} // Type
  650.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  651.                   {7:NTP:out (read_only)} // Services
  652.                   {21:Network Time Protocol (read_only)} // Name/Comment
  653.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  654.                   { (read_only)} // Alert Trap
  655.                   { (read_only)} // Alert Comment
  656.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  657.                   {0 (choice:0:1,read_only)} // Dialup Only
  658.                   { (read_only)} // Flags
  659.                }
  660.                {
  661.                   {8:45strict (read_only)} // Security Level
  662.                   {2:11 (read_only)} // Priority
  663.                   {1 (choice:0:1,read_only)} // Enabled
  664.                   {3 (choice:2:3:4,read_only)} // Type
  665.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  666.                   {238:Malware - Back Orifice:in,Malware - NetBus:in,Malware - Bagle.C:in,Malware - Bagle.Y:in,Malware - Blaster:in,Malware - Dabber:in,Malware - Kuang2:in,Malware - MyDoom:in,Malware - MyDoom.B:in,MalWare - PhatBot:in,Malware - Sasser server:in (read_only)} // Services
  667.                   {45:Deny and alert about malicious inbound probes (read_only)} // Name/Comment
  668.                   {3 (choice:0:1:2:3,read_only)} // Send Alert
  669.                   { (read_only)} // Alert Trap
  670.                   {21:Inbound malware probe (read_only)} // Alert Comment
  671.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  672.                   {0 (choice:0:1,read_only)} // Dialup Only
  673.                   { (read_only)} // Flags
  674.                }
  675.                {
  676.                   {8:45strict (read_only)} // Security Level
  677.                   {2:12 (read_only)} // Priority
  678.                   {1 (choice:0:1,read_only)} // Enabled
  679.                   {3 (choice:2:3:4,read_only)} // Type
  680.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  681.                   {6:TCP:in (read_only)} // Services
  682.                   {29:Deny inbound TCP with logging (read_only)} // Name/Comment
  683.                   {1 (choice:0:1:2:3,read_only)} // Send Alert
  684.                   { (read_only)} // Alert Trap
  685.                   {30:Inbound TCP connection attempt (read_only)} // Alert Comment
  686.                   {1 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  687.                   {0 (choice:0:1,read_only)} // Dialup Only
  688.                   { (read_only)} // Flags
  689.                }
  690.                {
  691.                   {8:45strict (read_only)} // Security Level
  692.                   {2:13 (read_only)} // Priority
  693.                   {1 (choice:0:1,read_only)} // Enabled
  694.                   {3 (choice:2:3:4,read_only)} // Type
  695.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  696.                   {6:UDP:in (read_only)} // Services
  697.                   {24:Deny inbound UDP traffic (read_only)} // Name/Comment
  698.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  699.                   { (read_only)} // Alert Trap
  700.                   { (read_only)} // Alert Comment
  701.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  702.                   {0 (choice:0:1,read_only)} // Dialup Only
  703.                   { (read_only)} // Flags
  704.                }
  705.                {
  706.                   {8:45strict (read_only)} // Security Level
  707.                   {2:99 (read_only)} // Priority
  708.                   {1 (choice:0:1,read_only)} // Enabled
  709.                   {3 (choice:2:3:4,read_only)} // Type
  710.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  711.                   {8:all:both (read_only)} // Services
  712.                   {9:Deny rest (read_only)} // Name/Comment
  713.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  714.                   { (read_only)} // Alert Trap
  715.                   { (read_only)} // Alert Comment
  716.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  717.                   {0 (choice:0:1,read_only)} // Dialup Only
  718.                   { (read_only)} // Flags
  719.                }
  720.                {
  721.                   {8:50normal (read_only)} // Security Level
  722.                   {2:01 (read_only)} // Priority
  723.                   {1 (choice:1:0,read_only)} // Enabled
  724.                   {4 (choice:2:3:4,read_only)} // Type
  725.                   { (read_only)} // Remote Host
  726.                   { (read_only)} // Services
  727.                   {20:User definable rules (read_only)} // Name/Comment
  728.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  729.                   { (read_only)} // Alert Trap
  730.                   { (read_only)} // Alert Comment
  731.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  732.                   {0 (choice:0:1,read_only)} // Dialup Only
  733.                   { (read_only)} // Flags
  734.                }
  735.                {
  736.                   {8:50normal (read_only)} // Security Level
  737.                   {2:02 (read_only)} // Priority
  738.                   {1 (choice:0:1,read_only)} // Enabled
  739.                   {2 (choice:2:3:4,read_only)} // Type
  740.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  741.                   {7:FTP:out (read_only)} // Services
  742.                   {10:Active FTP (read_only)} // Name/Comment
  743.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  744.                   { (read_only)} // Alert Trap
  745.                   { (read_only)} // Alert Comment
  746.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  747.                   {0 (choice:0:1,read_only)} // Dialup Only
  748.                   { (read_only)} // Flags
  749.                }
  750.                {
  751.                   {8:50normal (read_only)} // Security Level
  752.                   {2:03 (read_only)} // Priority
  753.                   {1 (choice:1:0,read_only)} // Enabled
  754.                   {2 (choice:2:3:4,read_only)} // Type
  755.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  756.                   {7:all:out (read_only)} // Services
  757.                   {12:All outbound (read_only)} // Name/Comment
  758.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  759.                   { (read_only)} // Alert Trap
  760.                   { (read_only)} // Alert Comment
  761.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  762.                   {0 (choice:0:1,read_only)} // Dialup Only
  763.                   { (read_only)} // Flags
  764.                }
  765.                {
  766.                   {8:50normal (read_only)} // Security Level
  767.                   {2:04 (read_only)} // Priority
  768.                   {1 (choice:1:0,read_only)} // Enabled
  769.                   {2 (choice:2:3:4,read_only)} // Type
  770.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  771.                   {18:ICMP restricted:in (read_only)} // Services
  772.                   {29:Commonly needed ICMP messages (read_only)} // Name/Comment
  773.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  774.                   { (read_only)} // Alert Trap
  775.                   { (read_only)} // Alert Comment
  776.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  777.                   {0 (choice:0:1,read_only)} // Dialup Only
  778.                   { (read_only)} // Flags
  779.                }
  780.                {
  781.                   {8:50normal (read_only)} // Security Level
  782.                   {2:05 (read_only)} // Priority
  783.                   {1 (choice:1:0,read_only)} // Enabled
  784.                   {3 (choice:2:3:4,read_only)} // Type
  785.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  786.                   {77:Windows Networking (1):in,Windows Networking (2):in,SMB (TCP):in,SMB (UDP):in (read_only)} // Services
  787.                   {47:Deny inbound computer browsing and file sharing (read_only)} // Name/Comment
  788.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  789.                   { (read_only)} // Alert Trap
  790.                   { (read_only)} // Alert Comment
  791.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  792.                   {0 (choice:0:1,read_only)} // Dialup Only
  793.                   { (read_only)} // Flags
  794.                }
  795.                {
  796.                   {8:50normal (read_only)} // Security Level
  797.                   {2:06 (read_only)} // Priority
  798.                   {1 (choice:1:0,read_only)} // Enabled
  799.                   {3 (choice:2:3:4,read_only)} // Type
  800.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  801.                   {74:epmap:in,UPnP:in,NTDS:in,Windows Messenger Service:in,RDP (MS Terminal):in (read_only)} // Services
  802.                   {48:Block remote access to vulnerable local services (read_only)} // Name/Comment
  803.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  804.                   { (read_only)} // Alert Trap
  805.                   { (read_only)} // Alert Comment
  806.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  807.                   {0 (choice:0:1,read_only)} // Dialup Only
  808.                   { (read_only)} // Flags
  809.                }
  810.                {
  811.                   {8:50normal (read_only)} // Security Level
  812.                   {2:07 (read_only)} // Priority
  813.                   {1 (choice:1:0,read_only)} // Enabled
  814.                   {3 (choice:2:3:4,read_only)} // Type
  815.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  816.                   {238:Malware - Back Orifice:in,Malware - NetBus:in,Malware - Bagle.C:in,Malware - Bagle.Y:in,Malware - Blaster:in,Malware - Dabber:in,Malware - Kuang2:in,Malware - MyDoom:in,Malware - MyDoom.B:in,MalWare - PhatBot:in,Malware - Sasser server:in (read_only)} // Services
  817.                   {45:Deny and alert about malicious inbound probes (read_only)} // Name/Comment
  818.                   {3 (choice:0:1:2:3,read_only)} // Send Alert
  819.                   { (read_only)} // Alert Trap
  820.                   {21:Inbound malware probe (read_only)} // Alert Comment
  821.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  822.                   {0 (choice:0:1,read_only)} // Dialup Only
  823.                   { (read_only)} // Flags
  824.                }
  825.                {
  826.                   {8:50normal (read_only)} // Security Level
  827.                   {2:99 (read_only)} // Priority
  828.                   {1 (choice:1:0,read_only)} // Enabled
  829.                   {3 (choice:2:3:4,read_only)} // Type
  830.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  831.                   {8:all:both (read_only)} // Services
  832.                   {9:Deny rest (read_only)} // Name/Comment
  833.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  834.                   { (read_only)} // Alert Trap
  835.                   { (read_only)} // Alert Comment
  836.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  837.                   {0 (choice:0:1,read_only)} // Dialup Only
  838.                   { (read_only)} // Flags
  839.                }
  840.                {
  841.                   {8:55custom (read_only)} // Security Level
  842.                   {2:01 (read_only)} // Priority
  843.                   {1 (choice:0:1,read_only)} // Enabled
  844.                   {4 (choice:2:3:4,read_only)} // Type
  845.                   { (read_only)} // Remote Host
  846.                   { (read_only)} // Services
  847.                   {20:User definable rules (read_only)} // Name/Comment
  848.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  849.                   { (read_only)} // Alert Trap
  850.                   { (read_only)} // Alert Comment
  851.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  852.                   {0 (choice:0:1,read_only)} // Dialup Only
  853.                   { (read_only)} // Flags
  854.                }
  855.                {
  856.                   {8:60bypass (read_only)} // Security Level
  857.                   {2:01 (read_only)} // Priority
  858.                   {1 (choice:1:0,read_only)} // Enabled
  859.                   {2 (choice:2:3:4,read_only)} // Type
  860.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  861.                   {8:all:both (read_only)} // Services
  862.                   {16:Allow everything (read_only)} // Name/Comment
  863.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  864.                   { (read_only)} // Alert Trap
  865.                   { (read_only)} // Alert Comment
  866.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  867.                   {0 (choice:0:1,read_only)} // Dialup Only
  868.                   { (read_only)} // Flags
  869.                }
  870.                {
  871.                   {7:9999ina (read_only)} // Security Level
  872.                   {2:01 (read_only)} // Priority
  873.                   {1 (choice:0:1,read_only)} // Enabled
  874.                   {2 (choice:2:3:4,read_only)} // Type
  875.                   {15:[updateservers] (read_only)} // Remote Host
  876.                   {20:[updateservices]:out (read_only)} // Services
  877.                   {16:F-Secure updates (read_only)} // Name/Comment
  878.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  879.                   { (read_only)} // Alert Trap
  880.                   { (read_only)} // Alert Comment
  881.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  882.                   {0 (choice:0:1,read_only)} // Dialup Only
  883.                   { (read_only)} // Flags
  884.                }
  885.                {
  886.                   {7:9999ina (read_only)} // Security Level
  887.                   {2:02 (read_only)} // Priority
  888.                   {1 (choice:0:1,read_only)} // Enabled
  889.                   {2 (choice:2:3:4,read_only)} // Type
  890.                   {7:[myDNS] (read_only)} // Remote Host
  891.                   {21:DNS:out,DNS (TCP):out (read_only)} // Services
  892.                   {14:Name resolving (read_only)} // Name/Comment
  893.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  894.                   { (read_only)} // Alert Trap
  895.                   { (read_only)} // Alert Comment
  896.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  897.                   {0 (choice:0:1,read_only)} // Dialup Only
  898.                   { (read_only)} // Flags
  899.                }
  900.                {
  901.                   {7:9999ina (read_only)} // Security Level
  902.                   {2:03 (read_only)} // Priority
  903.                   {1 (choice:0:1,read_only)} // Enabled
  904.                   {2 (choice:2:3:4,read_only)} // Type
  905.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  906.                   {18:ICMP restricted:in (read_only)} // Services
  907.                   {29:Commonly needed ICMP messages (read_only)} // Name/Comment
  908.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  909.                   { (read_only)} // Alert Trap
  910.                   { (read_only)} // Alert Comment
  911.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  912.                   {0 (choice:0:1,read_only)} // Dialup Only
  913.                   { (read_only)} // Flags
  914.                }
  915.                {
  916.                   {7:9999ina (read_only)} // Security Level
  917.                   {2:04 (read_only)} // Priority
  918.                   {1 (choice:0:1,read_only)} // Enabled
  919.                   {3 (choice:2:3:4,read_only)} // Type
  920.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  921.                   {6:TCP:in (read_only)} // Services
  922.                   {16:Deny inbound TCP (read_only)} // Name/Comment
  923.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  924.                   { (read_only)} // Alert Trap
  925.                   { (read_only)} // Alert Comment
  926.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  927.                   {0 (choice:0:1,read_only)} // Dialup Only
  928.                   { (read_only)} // Flags
  929.                }
  930.                {
  931.                   {7:9999ina (read_only)} // Security Level
  932.                   {2:05 (read_only)} // Priority
  933.                   {1 (choice:0:1,read_only)} // Enabled
  934.                   {3 (choice:2:3:4,read_only)} // Type
  935.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  936.                   {6:UDP:in (read_only)} // Services
  937.                   {16:Deny inbound UDP (read_only)} // Name/Comment
  938.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  939.                   { (read_only)} // Alert Trap
  940.                   { (read_only)} // Alert Comment
  941.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  942.                   {0 (choice:0:1,read_only)} // Dialup Only
  943.                   { (read_only)} // Flags
  944.                }
  945.                {
  946.                   {7:9999ina (read_only)} // Security Level
  947.                   {2:99 (read_only)} // Priority
  948.                   {1 (choice:0:1,read_only)} // Enabled
  949.                   {3 (choice:2:3:4,read_only)} // Type
  950.                   {9:0.0.0.0/0 (read_only)} // Remote Host
  951.                   {8:all:both (read_only)} // Services
  952.                   {9:Deny rest (read_only)} // Name/Comment
  953.                   {0 (choice:0:1:2:3,read_only)} // Send Alert
  954.                   { (read_only)} // Alert Trap
  955.                   { (read_only)} // Alert Comment
  956.                   {7 (choice:0:1:2:3:4:5:6:7,read_only)} // Alert On Inbound
  957.                   {0 (choice:0:1,read_only)} // Dialup Only
  958.                   { (read_only)} // Flags
  959.                }
  960.             }
  961.             {20:Table(iDisplayString,Integer,DisplayString,DisplayString,Integer,String,Integer,Integer) =  // Services
  962.                {
  963.                   {16:[updateservices] (read_only)} // Unique Name
  964.                   {0 (read_only)} // Protocol
  965.                   { (read_only)} // Initiator Ports
  966.                   { (read_only)} // Responder Ports
  967.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  968.                   {16:F-Secure updates (read_only)} // Comment
  969.                   {0 (read_only)} // Class
  970.                   {0 (choice:0:1,read_only)} // Extra Filtering
  971.                }
  972.                {
  973.                   {2:AH (read_only)} // Unique Name
  974.                   {51 (read_only)} // Protocol
  975.                   { (read_only)} // Initiator Ports
  976.                   { (read_only)} // Responder Ports
  977.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  978.                   {30:Authentication Header Protocol (read_only)} // Comment
  979.                   {1000 (read_only)} // Class
  980.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  981.                }
  982.                {
  983.                   {3:All (read_only)} // Unique Name
  984.                   {0 (read_only)} // Protocol
  985.                   { (read_only)} // Initiator Ports
  986.                   { (read_only)} // Responder Ports
  987.                   {1 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  988.                   {14:All IP traffic (read_only)} // Comment
  989.                   {0 (read_only)} // Class
  990.                   {0 (choice:0:1,read_only)} // Extra Filtering
  991.                }
  992.                {
  993.                   {14:Asheron's call (read_only)} // Unique Name
  994.                   {17 (read_only)} // Protocol
  995.                   {40:9000-9001,9004-9005,19008,9008,9012-9013 (read_only)} // Initiator Ports
  996.                   {5:>1023 (read_only)} // Responder Ports
  997.                   {1 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  998.                   {14:Asheron's Call (read_only)} // Comment
  999.                   {9000 (read_only)} // Class
  1000.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1001.                }
  1002.                {
  1003.                   {7:Backweb (read_only)} // Unique Name
  1004.                   {17 (read_only)} // Protocol
  1005.                   {3:371 (read_only)} // Initiator Ports
  1006.                   {5:>1023 (read_only)} // Responder Ports
  1007.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1008.                   {29:Backweb Polite Protocol (UDP) (read_only)} // Comment
  1009.                   {5000 (read_only)} // Class
  1010.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1011.                }
  1012.                {
  1013.                   {21:Backweb NeighbourCast (read_only)} // Unique Name
  1014.                   {17 (read_only)} // Protocol
  1015.                   {5:>1023 (read_only)} // Initiator Ports
  1016.                   {4:7371 (read_only)} // Responder Ports
  1017.                   {2 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1018.                   {38:Backweb NeighbourCast control protocol (read_only)} // Comment
  1019.                   {5000 (read_only)} // Class
  1020.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1021.                }
  1022.                {
  1023.                   {10:Backweb v6 (read_only)} // Unique Name
  1024.                   {17 (read_only)} // Protocol
  1025.                   {14:371, 9370-9400 (read_only)} // Initiator Ports
  1026.                   {9:370,>1023 (read_only)} // Responder Ports
  1027.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1028.                   {27:Backweb v.6 Polite Protocol (read_only)} // Comment
  1029.                   {5000 (read_only)} // Class
  1030.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1031.                }
  1032.                {
  1033.                   {4:COMP (read_only)} // Unique Name
  1034.                   {108 (read_only)} // Protocol
  1035.                   { (read_only)} // Initiator Ports
  1036.                   { (read_only)} // Responder Ports
  1037.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1038.                   {27:Compression Header protocol (read_only)} // Comment
  1039.                   {0 (read_only)} // Class
  1040.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1041.                }
  1042.                {
  1043.                   {3:DNS (read_only)} // Unique Name
  1044.                   {17 (read_only)} // Protocol
  1045.                   {5:>1023 (read_only)} // Initiator Ports
  1046.                   {2:53 (read_only)} // Responder Ports
  1047.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1048.                   {30:DNS / Domain Name System (UDP) (read_only)} // Comment
  1049.                   {7000 (read_only)} // Class
  1050.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1051.                }
  1052.                {
  1053.                   {9:DNS (TCP) (read_only)} // Unique Name
  1054.                   {6 (read_only)} // Protocol
  1055.                   {5:>1023 (read_only)} // Initiator Ports
  1056.                   {2:53 (read_only)} // Responder Ports
  1057.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1058.                   {30:DNS / Domain Name System (TCP) (read_only)} // Comment
  1059.                   {6000 (read_only)} // Class
  1060.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1061.                }
  1062.                {
  1063.                   {7:EAPoUDP (read_only)} // Unique Name
  1064.                   {17 (read_only)} // Protocol
  1065.                   {5:>1023 (read_only)} // Initiator Ports
  1066.                   {5:21862 (read_only)} // Responder Ports
  1067.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1068.                   {53:EAPoUDP / Extensible Authentication Protocol over UDP (read_only)} // Comment
  1069.                   {7000 (read_only)} // Class
  1070.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1071.                }
  1072.                {
  1073.                   {3:EGP (read_only)} // Unique Name
  1074.                   {8 (read_only)} // Protocol
  1075.                   { (read_only)} // Initiator Ports
  1076.                   { (read_only)} // Responder Ports
  1077.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1078.                   {31:EGP / Exterior Gateway Protocol (read_only)} // Comment
  1079.                   {4000 (read_only)} // Class
  1080.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1081.                }
  1082.                {
  1083.                   {5:epmap (read_only)} // Unique Name
  1084.                   {6 (read_only)} // Protocol
  1085.                   {5:>1023 (read_only)} // Initiator Ports
  1086.                   {3:135 (read_only)} // Responder Ports
  1087.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1088.                   {41:epmap / Microsoft DCE endpoint resolution (read_only)} // Comment
  1089.                   {4000 (read_only)} // Class
  1090.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1091.                }
  1092.                {
  1093.                   {3:ESP (read_only)} // Unique Name
  1094.                   {50 (read_only)} // Protocol
  1095.                   { (read_only)} // Initiator Ports
  1096.                   { (read_only)} // Responder Ports
  1097.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1098.                   {45:ESP / Encapsulation Security Payload protocol (read_only)} // Comment
  1099.                   {1000 (read_only)} // Class
  1100.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1101.                }
  1102.                {
  1103.                   {6:Finger (read_only)} // Unique Name
  1104.                   {6 (read_only)} // Protocol
  1105.                   {5:>1023 (read_only)} // Initiator Ports
  1106.                   {2:79 (read_only)} // Responder Ports
  1107.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1108.                   {6:Finger (read_only)} // Comment
  1109.                   {6000 (read_only)} // Class
  1110.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1111.                }
  1112.                {
  1113.                   {19:F-Secure web output (read_only)} // Unique Name
  1114.                   {6 (read_only)} // Protocol
  1115.                   {5:>1023 (read_only)} // Initiator Ports
  1116.                   {11:58580,58581 (read_only)} // Responder Ports
  1117.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1118.                   {37:F-Secure VPN+ default web output port (read_only)} // Comment
  1119.                   {1000 (read_only)} // Class
  1120.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1121.                }
  1122.                {
  1123.                   {3:FTP (read_only)} // Unique Name
  1124.                   {6 (read_only)} // Protocol
  1125.                   {5:>1023 (read_only)} // Initiator Ports
  1126.                   {2:21 (read_only)} // Responder Ports
  1127.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1128.                   {41:FTP / File Transfer Protocol, active mode (read_only)} // Comment
  1129.                   {6000 (read_only)} // Class
  1130.                   {1 (choice:0:1:2,read_only)} // Extra Filtering
  1131.                }
  1132.                {
  1133.                   {13:FTP (Passive) (read_only)} // Unique Name
  1134.                   {6 (read_only)} // Protocol
  1135.                   {5:>1023 (read_only)} // Initiator Ports
  1136.                   {11:20-21,>1023 (read_only)} // Responder Ports
  1137.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1138.                   {50:FTP / File Transfer Protocol, only in passive mode (read_only)} // Comment
  1139.                   {6000 (read_only)} // Class
  1140.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1141.                }
  1142.                {
  1143.                   {3:GRE (read_only)} // Unique Name
  1144.                   {47 (read_only)} // Protocol
  1145.                   { (read_only)} // Initiator Ports
  1146.                   { (read_only)} // Responder Ports
  1147.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1148.                   {48:GRE / Cisco Generic Routing Encapsulation Tunnel (read_only)} // Comment
  1149.                   {4000 (read_only)} // Class
  1150.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1151.                }
  1152.                {
  1153.                   {4:HTTP (read_only)} // Unique Name
  1154.                   {6 (read_only)} // Protocol
  1155.                   {5:>1023 (read_only)} // Initiator Ports
  1156.                   {2:80 (read_only)} // Responder Ports
  1157.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1158.                   {35:HTTP / Hyper Text Transfer Protocol (read_only)} // Comment
  1159.                   {6000 (read_only)} // Class
  1160.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1161.                }
  1162.                {
  1163.                   {5:HTTPS (read_only)} // Unique Name
  1164.                   {6 (read_only)} // Protocol
  1165.                   {5:>1023 (read_only)} // Initiator Ports
  1166.                   {3:443 (read_only)} // Responder Ports
  1167.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1168.                   {11:HTTPS (SSL) (read_only)} // Comment
  1169.                   {1000 (read_only)} // Class
  1170.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1171.                }
  1172.                {
  1173.                   {4:ICMP (read_only)} // Unique Name
  1174.                   {1 (read_only)} // Protocol
  1175.                   {5:0-255 (read_only)} // Initiator Ports
  1176.                   { (read_only)} // Responder Ports
  1177.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1178.                   {40:ICMP / Internet Control Message Protocol (read_only)} // Comment
  1179.                   {3000 (read_only)} // Class
  1180.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1181.                }
  1182.                {
  1183.                   {15:ICMP restricted (read_only)} // Unique Name
  1184.                   {1 (read_only)} // Protocol
  1185.                   {9:3,4,11,12 (read_only)} // Initiator Ports
  1186.                   { (read_only)} // Responder Ports
  1187.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1188.                   {33:ICMP most common control messages (read_only)} // Comment
  1189.                   {3000 (read_only)} // Class
  1190.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1191.                }
  1192.                {
  1193.                   {3:IDP (read_only)} // Unique Name
  1194.                   {22 (read_only)} // Protocol
  1195.                   { (read_only)} // Initiator Ports
  1196.                   { (read_only)} // Responder Ports
  1197.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1198.                   {40:DP / Xerox NS Internet Datagram Protocol (read_only)} // Comment
  1199.                   {8000 (read_only)} // Class
  1200.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1201.                }
  1202.                {
  1203.                   {4:IGMP (read_only)} // Unique Name
  1204.                   {2 (read_only)} // Protocol
  1205.                   { (read_only)} // Initiator Ports
  1206.                   { (read_only)} // Responder Ports
  1207.                   {1 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1208.                   {41:IGMP / Internet Group Management Protocol (read_only)} // Comment
  1209.                   {4000 (read_only)} // Class
  1210.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1211.                }
  1212.                {
  1213.                   {3:IKE (read_only)} // Unique Name
  1214.                   {17 (read_only)} // Protocol
  1215.                   {9:500,>1023 (read_only)} // Initiator Ports
  1216.                   {3:500 (read_only)} // Responder Ports
  1217.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1218.                   {36:IKE / Internet Key Exchange Protocol (read_only)} // Comment
  1219.                   {1000 (read_only)} // Class
  1220.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1221.                }
  1222.                {
  1223.                   {4:IMAP (read_only)} // Unique Name
  1224.                   {6 (read_only)} // Protocol
  1225.                   {5:>1023 (read_only)} // Initiator Ports
  1226.                   {7:143,220 (read_only)} // Responder Ports
  1227.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1228.                   {36:IMAP / Internet Mail Access Protocol (read_only)} // Comment
  1229.                   {2000 (read_only)} // Class
  1230.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1231.                }
  1232.                {
  1233.                   {9:IMAP(SSL) (read_only)} // Unique Name
  1234.                   {6 (read_only)} // Protocol
  1235.                   {5:>1023 (read_only)} // Initiator Ports
  1236.                   {3:993 (read_only)} // Responder Ports
  1237.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1238.                   {56:IMAP (SSL) Internet Mail Access Protocol, SSL encryption (read_only)} // Comment
  1239.                   {2000 (read_only)} // Class
  1240.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1241.                }
  1242.                {
  1243.                   {4:IPIP (read_only)} // Unique Name
  1244.                   {4 (read_only)} // Protocol
  1245.                   { (read_only)} // Initiator Ports
  1246.                   { (read_only)} // Responder Ports
  1247.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1248.                   {23:IPIP Tunnels (IP in IP) (read_only)} // Comment
  1249.                   {1000 (read_only)} // Class
  1250.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1251.                }
  1252.                {
  1253.                   {4:IPV6 (read_only)} // Unique Name
  1254.                   {41 (read_only)} // Protocol
  1255.                   { (read_only)} // Initiator Ports
  1256.                   { (read_only)} // Responder Ports
  1257.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1258.                   {42:IP Version 6 encapsulation in IP version 4 (read_only)} // Comment
  1259.                   {1000 (read_only)} // Class
  1260.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1261.                }
  1262.                {
  1263.                   {3:IRC (read_only)} // Unique Name
  1264.                   {6 (read_only)} // Protocol
  1265.                   {5:>1023 (read_only)} // Initiator Ports
  1266.                   {9:6666-6669 (read_only)} // Responder Ports
  1267.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1268.                   {25:IRC / Internet Relay Chat (read_only)} // Comment
  1269.                   {6000 (read_only)} // Class
  1270.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1271.                }
  1272.                {
  1273.                   {11:Kerberos v5 (read_only)} // Unique Name
  1274.                   {17 (read_only)} // Protocol
  1275.                   {5:>1023 (read_only)} // Initiator Ports
  1276.                   {2:88 (read_only)} // Responder Ports
  1277.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1278.                   {51:Kerberos network authentication protocol, version 5 (read_only)} // Comment
  1279.                   {7000 (read_only)} // Class
  1280.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1281.                }
  1282.                {
  1283.                   {4:L2TP (read_only)} // Unique Name
  1284.                   {17 (read_only)} // Protocol
  1285.                   {5:>1023 (read_only)} // Initiator Ports
  1286.                   {4:1701 (read_only)} // Responder Ports
  1287.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1288.                   {47:L2TP over UDP/IP / Layer Two Tunneling Protocol (read_only)} // Comment
  1289.                   {1000 (read_only)} // Class
  1290.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1291.                }
  1292.                {
  1293.                   {4:LDAP (read_only)} // Unique Name
  1294.                   {6 (read_only)} // Protocol
  1295.                   {5:>1023 (read_only)} // Initiator Ports
  1296.                   {3:389 (read_only)} // Responder Ports
  1297.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1298.                   {44:LDAP / Lightweight Directory Access Protocol (read_only)} // Comment
  1299.                   {6000 (read_only)} // Class
  1300.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1301.                }
  1302.                {
  1303.                   {9:LDAP(SSL) (read_only)} // Unique Name
  1304.                   {6 (read_only)} // Protocol
  1305.                   {5:>1023 (read_only)} // Initiator Ports
  1306.                   {3:636 (read_only)} // Responder Ports
  1307.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1308.                   {67:LDAP (SSL) / Lightweight Directory Access Protocoll, SSL encryption (read_only)} // Comment
  1309.                   {1000 (read_only)} // Class
  1310.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1311.                }
  1312.                {
  1313.                   {11:LOTUS Notes (read_only)} // Unique Name
  1314.                   {6 (read_only)} // Protocol
  1315.                   {5:>1023 (read_only)} // Initiator Ports
  1316.                   {4:1352 (read_only)} // Responder Ports
  1317.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1318.                   {47:Lotus Notes (direction must be "both" for this) (read_only)} // Comment
  1319.                   {6000 (read_only)} // Class
  1320.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1321.                }
  1322.                {
  1323.                   {22:Malware - Acid Shivers (read_only)} // Unique Name
  1324.                   {6 (read_only)} // Protocol
  1325.                   {7:0-65535 (read_only)} // Initiator Ports
  1326.                   {5:10520 (read_only)} // Responder Ports
  1327.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1328.                   {21:Acid shivers - Trojan (read_only)} // Comment
  1329.                   {10000 (read_only)} // Class
  1330.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1331.                }
  1332.                {
  1333.                   {22:Malware - Back Orifice (read_only)} // Unique Name
  1334.                   {17 (read_only)} // Protocol
  1335.                   {2:>0 (read_only)} // Initiator Ports
  1336.                   {23:31337-31338,54320,54321 (read_only)} // Responder Ports
  1337.                   {1 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1338.                   {16:Back Orifice RAT (read_only)} // Comment
  1339.                   {10000 (read_only)} // Class
  1340.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1341.                }
  1342.                {
  1343.                   {17:Malware - Bagle.C (read_only)} // Unique Name
  1344.                   {6 (read_only)} // Protocol
  1345.                   {2:>0 (read_only)} // Initiator Ports
  1346.                   {4:2745 (read_only)} // Responder Ports
  1347.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1348.                   {18:Bagle.C Worm Probe (read_only)} // Comment
  1349.                   {10000 (read_only)} // Class
  1350.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1351.                }
  1352.                {
  1353.                   {17:Malware - Bagle.Y (read_only)} // Unique Name
  1354.                   {6 (read_only)} // Protocol
  1355.                   {2:>0 (read_only)} // Initiator Ports
  1356.                   {4:2535 (read_only)} // Responder Ports
  1357.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1358.                   {18:Bagle.Y Worm probe (read_only)} // Comment
  1359.                   {10000 (read_only)} // Class
  1360.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1361.                }
  1362.                {
  1363.                   {16:Malware - BioNet (read_only)} // Unique Name
  1364.                   {6 (read_only)} // Protocol
  1365.                   {7:0-65535 (read_only)} // Initiator Ports
  1366.                   {5:12349 (read_only)} // Responder Ports
  1367.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1368.                   {15:BioNet - Trojan (read_only)} // Comment
  1369.                   {10000 (read_only)} // Class
  1370.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1371.                }
  1372.                {
  1373.                   {22:Malware - Blade Runner (read_only)} // Unique Name
  1374.                   {6 (read_only)} // Protocol
  1375.                   {7:0-65535 (read_only)} // Initiator Ports
  1376.                   {14:5400,5401,5402 (read_only)} // Responder Ports
  1377.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1378.                   {21:Blade Runner - Trojan (read_only)} // Comment
  1379.                   {10000 (read_only)} // Class
  1380.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1381.                }
  1382.                {
  1383.                   {17:Malware - Blaster (read_only)} // Unique Name
  1384.                   {6 (read_only)} // Protocol
  1385.                   {2:>0 (read_only)} // Initiator Ports
  1386.                   {4:4444 (read_only)} // Responder Ports
  1387.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1388.                   {18:Blaster worm probe (read_only)} // Comment
  1389.                   {10000 (read_only)} // Class
  1390.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1391.                }
  1392.                {
  1393.                   {16:Malware - Dabber (read_only)} // Unique Name
  1394.                   {6 (read_only)} // Protocol
  1395.                   {2:>0 (read_only)} // Initiator Ports
  1396.                   {4:9898 (read_only)} // Responder Ports
  1397.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1398.                   {17:Dabber worm probe (read_only)} // Comment
  1399.                   {10000 (read_only)} // Class
  1400.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1401.                }
  1402.                {
  1403.                   {23:Malware - DeepThroat(1) (read_only)} // Unique Name
  1404.                   {17 (read_only)} // Protocol
  1405.                   {7:0-65535 (read_only)} // Initiator Ports
  1406.                   {9:2140,3150 (read_only)} // Responder Ports
  1407.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1408.                   {24:DeepThroat - Trojan(UDP) (read_only)} // Comment
  1409.                   {10000 (read_only)} // Class
  1410.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1411.                }
  1412.                {
  1413.                   {23:Malware - DeepThroat(2) (read_only)} // Unique Name
  1414.                   {6 (read_only)} // Protocol
  1415.                   {7:0-65535 (read_only)} // Initiator Ports
  1416.                   {22:41,999,6670,6671,60000 (read_only)} // Responder Ports
  1417.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1418.                   {24:DeepThroat - Trojan(TCP) (read_only)} // Comment
  1419.                   {10000 (read_only)} // Class
  1420.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1421.                }
  1422.                {
  1423.                   {22:Malware - Delta Source (read_only)} // Unique Name
  1424.                   {17 (read_only)} // Protocol
  1425.                   {7:0-65535 (read_only)} // Initiator Ports
  1426.                   {11:26274,47262 (read_only)} // Responder Ports
  1427.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1428.                   {21:Delta Source - Trojan (read_only)} // Comment
  1429.                   {10000 (read_only)} // Class
  1430.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1431.                }
  1432.                {
  1433.                   {17:Malware - Devil   (read_only)} // Unique Name
  1434.                   {6 (read_only)} // Protocol
  1435.                   {7:0-65535 (read_only)} // Initiator Ports
  1436.                   {5:65000 (read_only)} // Responder Ports
  1437.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1438.                   {14:Devil - Trojan (read_only)} // Comment
  1439.                   {10000 (read_only)} // Class
  1440.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1441.                }
  1442.                {
  1443.                   {14:Malware - Doly (read_only)} // Unique Name
  1444.                   {6 (read_only)} // Protocol
  1445.                   {7:0-65535 (read_only)} // Initiator Ports
  1446.                   {19:1011,1015,1016,1035 (read_only)} // Responder Ports
  1447.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1448.                   {13:Doly - Trojan (read_only)} // Comment
  1449.                   {10000 (read_only)} // Class
  1450.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1451.                }
  1452.                {
  1453.                   {14:Malware - GIBE (read_only)} // Unique Name
  1454.                   {6 (read_only)} // Protocol
  1455.                   {7:0-65535 (read_only)} // Initiator Ports
  1456.                   {5:12378 (read_only)} // Responder Ports
  1457.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1458.                   {13:GIBE - Trojan (read_only)} // Comment
  1459.                   {10000 (read_only)} // Class
  1460.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1461.                }
  1462.                {
  1463.                   {20:Malware - Girlfriend (read_only)} // Unique Name
  1464.                   {6 (read_only)} // Protocol
  1465.                   {7:0-65535 (read_only)} // Initiator Ports
  1466.                   {5:21544 (read_only)} // Responder Ports
  1467.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1468.                   {19:GirlFriend - Trojan (read_only)} // Comment
  1469.                   {10000 (read_only)} // Class
  1470.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1471.                }
  1472.                {
  1473.                   {26:Malware - Hack_a_tack(1)   (read_only)} // Unique Name
  1474.                   {17 (read_only)} // Protocol
  1475.                   {7:0-65535 (read_only)} // Initiator Ports
  1476.                   {11:31789,31791 (read_only)} // Responder Ports
  1477.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1478.                   {25:Hack a tack - Trojan(UDP) (read_only)} // Comment
  1479.                   {10000 (read_only)} // Class
  1480.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1481.                }
  1482.                {
  1483.                   {26:Malware - Hack_a_tack(2)   (read_only)} // Unique Name
  1484.                   {6 (read_only)} // Protocol
  1485.                   {7:0-65535 (read_only)} // Initiator Ports
  1486.                   {11:31785,31787 (read_only)} // Responder Ports
  1487.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1488.                   {25:Hack a tack - Trojan(TCP) (read_only)} // Comment
  1489.                   {10000 (read_only)} // Class
  1490.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1491.                }
  1492.                {
  1493.                   {16:Malware - Kuang2 (read_only)} // Unique Name
  1494.                   {6 (read_only)} // Protocol
  1495.                   {2:>0 (read_only)} // Initiator Ports
  1496.                   {5:17300 (read_only)} // Responder Ports
  1497.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1498.                   {19:Kuang2 trojan probe (read_only)} // Comment
  1499.                   {10000 (read_only)} // Class
  1500.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1501.                }
  1502.                {
  1503.                   {17:Malware - Masters (read_only)} // Unique Name
  1504.                   {6 (read_only)} // Protocol
  1505.                   {7:0-65535 (read_only)} // Initiator Ports
  1506.                   {28:3129,40421,40422,40423,40426 (read_only)} // Responder Ports
  1507.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1508.                   {25:Masters paradise - Trojan (read_only)} // Comment
  1509.                   {10000 (read_only)} // Class
  1510.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1511.                }
  1512.                {
  1513.                   {13:Malware - MTX (read_only)} // Unique Name
  1514.                   {6 (read_only)} // Protocol
  1515.                   {7:0-65535 (read_only)} // Initiator Ports
  1516.                   {4:1137 (read_only)} // Responder Ports
  1517.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1518.                   {12:MTX - Trojan (read_only)} // Comment
  1519.                   {10000 (read_only)} // Class
  1520.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1521.                }
  1522.                {
  1523.                   {16:Malware - MyDoom (read_only)} // Unique Name
  1524.                   {6 (read_only)} // Protocol
  1525.                   {2:>0 (read_only)} // Initiator Ports
  1526.                   {4:3128 (read_only)} // Responder Ports
  1527.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1528.                   {38:Mydoom Worm probe or Squid Proxy probe (read_only)} // Comment
  1529.                   {10000 (read_only)} // Class
  1530.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1531.                }
  1532.                {
  1533.                   {18:Malware - MyDoom.B (read_only)} // Unique Name
  1534.                   {6 (read_only)} // Protocol
  1535.                   {2:>0 (read_only)} // Initiator Ports
  1536.                   {5:10080 (read_only)} // Responder Ports
  1537.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1538.                   {47:MyDoom.B worm probe or AMANDA disk backup probe (read_only)} // Comment
  1539.                   {10000 (read_only)} // Class
  1540.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1541.                }
  1542.                {
  1543.                   {16:Malware - NetBus (read_only)} // Unique Name
  1544.                   {6 (read_only)} // Protocol
  1545.                   {7:0-65535 (read_only)} // Initiator Ports
  1546.                   {17:12345-12346,20034 (read_only)} // Responder Ports
  1547.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1548.                   {10:NetBus RAT (read_only)} // Comment
  1549.                   {10000 (read_only)} // Class
  1550.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1551.                }
  1552.                {
  1553.                   {19:Malware - NetSphere (read_only)} // Unique Name
  1554.                   {6 (read_only)} // Protocol
  1555.                   {7:0-65535 (read_only)} // Initiator Ports
  1556.                   {17:30100,30101,30102 (read_only)} // Responder Ports
  1557.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1558.                   {18:NetSphere - Trojan (read_only)} // Comment
  1559.                   {10000 (read_only)} // Class
  1560.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1561.                }
  1562.                {
  1563.                   {17:MalWare - PhatBot (read_only)} // Unique Name
  1564.                   {6 (read_only)} // Protocol
  1565.                   {2:>0 (read_only)} // Initiator Ports
  1566.                   {5:65506 (read_only)} // Responder Ports
  1567.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1568.                   {20:PhatBot trojan probe (read_only)} // Comment
  1569.                   {10000 (read_only)} // Class
  1570.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1571.                }
  1572.                {
  1573.                   {23:Malware - Sasser server (read_only)} // Unique Name
  1574.                   {6 (read_only)} // Protocol
  1575.                   {2:>0 (read_only)} // Initiator Ports
  1576.                   {4:5554 (read_only)} // Responder Ports
  1577.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1578.                   {28:Sasser worm FTP server probe (read_only)} // Comment
  1579.                   {10000 (read_only)} // Class
  1580.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1581.                }
  1582.                {
  1583.                   {30:Malware - Senna Spy FTP server (read_only)} // Unique Name
  1584.                   {6 (read_only)} // Protocol
  1585.                   {7:0-65535 (read_only)} // Initiator Ports
  1586.                   {5:19000 (read_only)} // Responder Ports
  1587.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1588.                   {27:Senna Spy FTP server Trojan (read_only)} // Comment
  1589.                   {10000 (read_only)} // Class
  1590.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1591.                }
  1592.                {
  1593.                   {27:Malware - Sockets des Troie (read_only)} // Unique Name
  1594.                   {17 (read_only)} // Protocol
  1595.                   {7:0-65535 (read_only)} // Initiator Ports
  1596.                   {9:5000,5001 (read_only)} // Responder Ports
  1597.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1598.                   {24:Sockets des Troie Trojan (read_only)} // Comment
  1599.                   {10000 (read_only)} // Class
  1600.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1601.                }
  1602.                {
  1603.                   {22:Malware - Stacheldraht (read_only)} // Unique Name
  1604.                   {6 (read_only)} // Protocol
  1605.                   {7:0-65535 (read_only)} // Initiator Ports
  1606.                   {17:16600,16660,65000 (read_only)} // Responder Ports
  1607.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1608.                   {22:Stacheldraht DDoS-tool (read_only)} // Comment
  1609.                   {10000 (read_only)} // Class
  1610.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1611.                }
  1612.                {
  1613.                   {18:Malware - SubSeven (read_only)} // Unique Name
  1614.                   {6 (read_only)} // Protocol
  1615.                   {7:0-65535 (read_only)} // Initiator Ports
  1616.                   {78:1243,1999,2773,2774,6667,6711,6712,6713,6776,7000,7215,16959,27374,27573,54283 (read_only)} // Responder Ports
  1617.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1618.                   {29:SubSeven Trojan, all variants (read_only)} // Comment
  1619.                   {10000 (read_only)} // Class
  1620.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1621.                }
  1622.                {
  1623.                   {21:Malware - TCP port 21 (read_only)} // Unique Name
  1624.                   {6 (read_only)} // Protocol
  1625.                   {7:0-65535 (read_only)} // Initiator Ports
  1626.                   {2:21 (read_only)} // Responder Ports
  1627.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1628.                   {180:Back Construction, Blade Runner, Doly Trojan, Fore, Invisible FTP, Juggernaut 42 , Larva, MotIv FTP, Net Administrator, Senna Spy FTP server, Traitor 21, WebEx, or WinCrash Trojans (read_only)} // Comment
  1629.                   {10000 (read_only)} // Class
  1630.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1631.                }
  1632.                {
  1633.                   {16:Malware - Trin00 (read_only)} // Unique Name
  1634.                   {17 (read_only)} // Protocol
  1635.                   {7:0-65535 (read_only)} // Initiator Ports
  1636.                   {11:34555,35555 (read_only)} // Responder Ports
  1637.                   {1 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1638.                   {16:Trin00 DDoS-tool (read_only)} // Comment
  1639.                   {10000 (read_only)} // Class
  1640.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1641.                }
  1642.                {
  1643.                   {18:Malware - WinCrash (read_only)} // Unique Name
  1644.                   {6 (read_only)} // Protocol
  1645.                   {7:0-65535 (read_only)} // Initiator Ports
  1646.                   {29:2583,3024,4092,5714,5741,5742 (read_only)} // Responder Ports
  1647.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1648.                   {20:WinCrash Trojan(TCP) (read_only)} // Comment
  1649.                   {10000 (read_only)} // Class
  1650.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1651.                }
  1652.                {
  1653.                   {5:MSSQL (read_only)} // Unique Name
  1654.                   {6 (read_only)} // Protocol
  1655.                   {5:>1023 (read_only)} // Initiator Ports
  1656.                   {4:1433 (read_only)} // Responder Ports
  1657.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1658.                   {20:Microsoft SQL server (read_only)} // Comment
  1659.                   {2000 (read_only)} // Class
  1660.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1661.                }
  1662.                {
  1663.                   {4:NNTP (read_only)} // Unique Name
  1664.                   {6 (read_only)} // Protocol
  1665.                   {5:>1023 (read_only)} // Initiator Ports
  1666.                   {3:119 (read_only)} // Responder Ports
  1667.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1668.                   {37:NNTP / Network News Transfer Protocol (read_only)} // Comment
  1669.                   {2000 (read_only)} // Class
  1670.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1671.                }
  1672.                {
  1673.                   {9:NNTP(SSL) (read_only)} // Unique Name
  1674.                   {6 (read_only)} // Protocol
  1675.                   {5:>1023 (read_only)} // Initiator Ports
  1676.                   {3:563 (read_only)} // Responder Ports
  1677.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1678.                   {59:NNTP (SSL) / Network News Transfer Protocol, SSL encryption (read_only)} // Comment
  1679.                   {1000 (read_only)} // Class
  1680.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1681.                }
  1682.                {
  1683.                   {16:Novell NCP (TCP) (read_only)} // Unique Name
  1684.                   {6 (read_only)} // Protocol
  1685.                   {9:524,>1023 (read_only)} // Initiator Ports
  1686.                   {3:524 (read_only)} // Responder Ports
  1687.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1688.                   {34:Novell NetWare Core Protocol (TCP) (read_only)} // Comment
  1689.                   {6000 (read_only)} // Class
  1690.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1691.                }
  1692.                {
  1693.                   {16:Novell NCP (UDP) (read_only)} // Unique Name
  1694.                   {17 (read_only)} // Protocol
  1695.                   {9:524,>1023 (read_only)} // Initiator Ports
  1696.                   {3:524 (read_only)} // Responder Ports
  1697.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1698.                   {34:Novell NetWare Core Protocol (UDP) (read_only)} // Comment
  1699.                   {7000 (read_only)} // Class
  1700.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1701.                }
  1702.                {
  1703.                   {10:Novell SLP (read_only)} // Unique Name
  1704.                   {17 (read_only)} // Protocol
  1705.                   {3:427 (read_only)} // Initiator Ports
  1706.                   {13:427,1024-3500 (read_only)} // Responder Ports
  1707.                   {1 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1708.                   {31:Novell Service Locator Protocol (read_only)} // Comment
  1709.                   {7000 (read_only)} // Class
  1710.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1711.                }
  1712.                {
  1713.                   {4:NTDS (read_only)} // Unique Name
  1714.                   {6 (read_only)} // Protocol
  1715.                   {5:>1023 (read_only)} // Initiator Ports
  1716.                   {9:1025-1029 (read_only)} // Responder Ports
  1717.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1718.                   {46:Windows Active Directory logon and replication (read_only)} // Comment
  1719.                   {6000 (read_only)} // Class
  1720.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1721.                }
  1722.                {
  1723.                   {3:NTP (read_only)} // Unique Name
  1724.                   {17 (read_only)} // Protocol
  1725.                   {9:123,>1023 (read_only)} // Initiator Ports
  1726.                   {3:123 (read_only)} // Responder Ports
  1727.                   {1 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1728.                   {51:NTP / Network Time Protocol service (includes SNTP) (read_only)} // Comment
  1729.                   {7000 (read_only)} // Class
  1730.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1731.                }
  1732.                {
  1733.                   {3:PIM (read_only)} // Unique Name
  1734.                   {103 (read_only)} // Protocol
  1735.                   { (read_only)} // Initiator Ports
  1736.                   { (read_only)} // Responder Ports
  1737.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1738.                   {36:PIM / Protocol Independent Multicast (read_only)} // Comment
  1739.                   {0 (read_only)} // Class
  1740.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1741.                }
  1742.                {
  1743.                   {4:Ping (read_only)} // Unique Name
  1744.                   {1 (read_only)} // Protocol
  1745.                   {1:8 (read_only)} // Initiator Ports
  1746.                   { (read_only)} // Responder Ports
  1747.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1748.                   {34:Ping / ICMP Echo request and reply (read_only)} // Comment
  1749.                   {3000 (read_only)} // Class
  1750.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1751.                }
  1752.                {
  1753.                   {4:POP3 (read_only)} // Unique Name
  1754.                   {6 (read_only)} // Protocol
  1755.                   {5:>1023 (read_only)} // Initiator Ports
  1756.                   {3:110 (read_only)} // Responder Ports
  1757.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1758.                   {40:POP3 / Post Office Protocol v.3 (e-mail) (read_only)} // Comment
  1759.                   {2000 (read_only)} // Class
  1760.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1761.                }
  1762.                {
  1763.                   {9:POP3(SSL) (read_only)} // Unique Name
  1764.                   {6 (read_only)} // Protocol
  1765.                   {5:>1023 (read_only)} // Initiator Ports
  1766.                   {3:995 (read_only)} // Responder Ports
  1767.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1768.                   {54:POP3 (SSL) / Post Office Protocol v. 3, SSL encryption (read_only)} // Comment
  1769.                   {1000 (read_only)} // Class
  1770.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1771.                }
  1772.                {
  1773.                   {4:PPTP (read_only)} // Unique Name
  1774.                   {6 (read_only)} // Protocol
  1775.                   {5:>1023 (read_only)} // Initiator Ports
  1776.                   {4:5678 (read_only)} // Responder Ports
  1777.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1778.                   {60:PPTP / Point to Point Tunneling Protocol (requires also GRE) (read_only)} // Comment
  1779.                   {2000 (read_only)} // Class
  1780.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1781.                }
  1782.                {
  1783.                   {3:PUP (read_only)} // Unique Name
  1784.                   {12 (read_only)} // Protocol
  1785.                   { (read_only)} // Initiator Ports
  1786.                   { (read_only)} // Responder Ports
  1787.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1788.                   {26:Xerox PUP routing protocol (read_only)} // Comment
  1789.                   {4000 (read_only)} // Class
  1790.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1791.                }
  1792.                {
  1793.                   {6:Radius (read_only)} // Unique Name
  1794.                   {17 (read_only)} // Protocol
  1795.                   {5:>1023 (read_only)} // Initiator Ports
  1796.                   {4:1812 (read_only)} // Responder Ports
  1797.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1798.                   {6:Radius (read_only)} // Comment
  1799.                   {1000 (read_only)} // Class
  1800.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1801.                }
  1802.                {
  1803.                   {3:RAW (read_only)} // Unique Name
  1804.                   {255 (read_only)} // Protocol
  1805.                   { (read_only)} // Initiator Ports
  1806.                   { (read_only)} // Responder Ports
  1807.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1808.                   {14:Raw IP packets (read_only)} // Comment
  1809.                   {0 (read_only)} // Class
  1810.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1811.                }
  1812.                {
  1813.                   {17:RDP (MS Terminal) (read_only)} // Unique Name
  1814.                   {6 (read_only)} // Protocol
  1815.                   {5:>1023 (read_only)} // Initiator Ports
  1816.                   {4:3389 (read_only)} // Responder Ports
  1817.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1818.                   {57:RDP / Remote Desktop Protocol (Microsoft Terminal Server) (read_only)} // Comment
  1819.                   {6000 (read_only)} // Class
  1820.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1821.                }
  1822.                {
  1823.                   {10:RealPlayer (read_only)} // Unique Name
  1824.                   {6 (read_only)} // Protocol
  1825.                   {5:>1023 (read_only)} // Initiator Ports
  1826.                   {13:554,7070-7071 (read_only)} // Responder Ports
  1827.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1828.                   {20:RealMedia (TCP only) (read_only)} // Comment
  1829.                   {6000 (read_only)} // Class
  1830.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1831.                }
  1832.                {
  1833.                   {15:Roger Wilco (1) (read_only)} // Unique Name
  1834.                   {6 (read_only)} // Protocol
  1835.                   {5:>1023 (read_only)} // Initiator Ports
  1836.                   {4:3782 (read_only)} // Responder Ports
  1837.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1838.                   {43:Roger Wilco voice chat (channel management) (read_only)} // Comment
  1839.                   {6000 (read_only)} // Class
  1840.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1841.                }
  1842.                {
  1843.                   {15:Roger Wilco (2) (read_only)} // Unique Name
  1844.                   {17 (read_only)} // Protocol
  1845.                   {9:3782-3783 (read_only)} // Initiator Ports
  1846.                   {9:3782-3783 (read_only)} // Responder Ports
  1847.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1848.                   {35:Roger Wilco voice chat (audio data) (read_only)} // Comment
  1849.                   {7000 (read_only)} // Class
  1850.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1851.                }
  1852.                {
  1853.                   {4:RSVP (read_only)} // Unique Name
  1854.                   {46 (read_only)} // Protocol
  1855.                   { (read_only)} // Initiator Ports
  1856.                   { (read_only)} // Responder Ports
  1857.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1858.                   {36:RSVP / Resource Reservation Protocol (read_only)} // Comment
  1859.                   {0 (read_only)} // Class
  1860.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1861.                }
  1862.                {
  1863.                   {9:SMB (TCP) (read_only)} // Unique Name
  1864.                   {6 (read_only)} // Protocol
  1865.                   {5:>1023 (read_only)} // Initiator Ports
  1866.                   {3:445 (read_only)} // Responder Ports
  1867.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1868.                   {21:SMB over TCP/IP (TCP) (read_only)} // Comment
  1869.                   {6000 (read_only)} // Class
  1870.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1871.                }
  1872.                {
  1873.                   {9:SMB (UDP) (read_only)} // Unique Name
  1874.                   {17 (read_only)} // Protocol
  1875.                   {9:445,>1023 (read_only)} // Initiator Ports
  1876.                   {3:445 (read_only)} // Responder Ports
  1877.                   {2 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1878.                   {21:SMB over TCP/IP (UDP) (read_only)} // Comment
  1879.                   {7000 (read_only)} // Class
  1880.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1881.                }
  1882.                {
  1883.                   {18:SMS Remote control (read_only)} // Unique Name
  1884.                   {6 (read_only)} // Protocol
  1885.                   {5:>1023 (read_only)} // Initiator Ports
  1886.                   {9:1761-1764 (read_only)} // Responder Ports
  1887.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1888.                   {35:Microsoft System Management Service (read_only)} // Comment
  1889.                   {6000 (read_only)} // Class
  1890.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1891.                }
  1892.                {
  1893.                   {4:SMTP (read_only)} // Unique Name
  1894.                   {6 (read_only)} // Protocol
  1895.                   {5:>1023 (read_only)} // Initiator Ports
  1896.                   {2:25 (read_only)} // Responder Ports
  1897.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1898.                   {45:SMTP / Simple Mail Transfer Protocol (e-mail) (read_only)} // Comment
  1899.                   {6000 (read_only)} // Class
  1900.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1901.                }
  1902.                {
  1903.                   {4:SNMP (read_only)} // Unique Name
  1904.                   {17 (read_only)} // Protocol
  1905.                   {5:>1023 (read_only)} // Initiator Ports
  1906.                   {7:161-162 (read_only)} // Responder Ports
  1907.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1908.                   {41:SNMP / Simple Network Management Protocol (read_only)} // Comment
  1909.                   {5000 (read_only)} // Class
  1910.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1911.                }
  1912.                {
  1913.                   {3:SSH (read_only)} // Unique Name
  1914.                   {6 (read_only)} // Protocol
  1915.                   {5:>1023 (read_only)} // Initiator Ports
  1916.                   {2:22 (read_only)} // Responder Ports
  1917.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1918.                   {18:SSH / Secure Shell (read_only)} // Comment
  1919.                   {1000 (read_only)} // Class
  1920.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1921.                }
  1922.                {
  1923.                   {3:TCP (read_only)} // Unique Name
  1924.                   {6 (read_only)} // Protocol
  1925.                   {2:>0 (read_only)} // Initiator Ports
  1926.                   {2:>0 (read_only)} // Responder Ports
  1927.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1928.                   {35:TCP / Transmission Control Protocol (read_only)} // Comment
  1929.                   {6000 (read_only)} // Class
  1930.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1931.                }
  1932.                {
  1933.                   {14:TCP High ports (read_only)} // Unique Name
  1934.                   {6 (read_only)} // Protocol
  1935.                   {2:>0 (read_only)} // Initiator Ports
  1936.                   {5:>1023 (read_only)} // Responder Ports
  1937.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1938.                   {46:TCP / Transmission Control Protocol high ports (read_only)} // Comment
  1939.                   {6000 (read_only)} // Class
  1940.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1941.                }
  1942.                {
  1943.                   {6:Telnet (read_only)} // Unique Name
  1944.                   {6 (read_only)} // Protocol
  1945.                   {5:>1023 (read_only)} // Initiator Ports
  1946.                   {2:23 (read_only)} // Responder Ports
  1947.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1948.                   {21:TELNET / Remote login (read_only)} // Comment
  1949.                   {6000 (read_only)} // Class
  1950.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1951.                }
  1952.                {
  1953.                   {3:UDP (read_only)} // Unique Name
  1954.                   {17 (read_only)} // Protocol
  1955.                   {7:0-65535 (read_only)} // Initiator Ports
  1956.                   {2:>0 (read_only)} // Responder Ports
  1957.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1958.                   {28:UDP / User Datagram Protocol (read_only)} // Comment
  1959.                   {7000 (read_only)} // Class
  1960.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1961.                }
  1962.                {
  1963.                   {4:UPnP (read_only)} // Unique Name
  1964.                   {6 (read_only)} // Protocol
  1965.                   {5:>1023 (read_only)} // Initiator Ports
  1966.                   {4:5000 (read_only)} // Responder Ports
  1967.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1968.                   {23:Universal Plug and Play (read_only)} // Comment
  1969.                   {6000 (read_only)} // Class
  1970.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1971.                }
  1972.                {
  1973.                   {25:Windows Messenger Service (read_only)} // Unique Name
  1974.                   {17 (read_only)} // Protocol
  1975.                   {2:>0 (read_only)} // Initiator Ports
  1976.                   {3:135 (read_only)} // Responder Ports
  1977.                   {1 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1978.                   {25:Windows Messenger Service (read_only)} // Comment
  1979.                   {7000 (read_only)} // Class
  1980.                   {0 (choice:0:1,read_only)} // Extra Filtering
  1981.                }
  1982.                {
  1983.                   {22:Windows Networking (1) (read_only)} // Unique Name
  1984.                   {17 (read_only)} // Protocol
  1985.                   {7:137-138 (read_only)} // Initiator Ports
  1986.                   {7:137-138 (read_only)} // Responder Ports
  1987.                   {1 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1988.                   {24:Windows network browsing (read_only)} // Comment
  1989.                   {7000 (read_only)} // Class
  1990.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  1991.                }
  1992.                {
  1993.                   {22:Windows Networking (2) (read_only)} // Unique Name
  1994.                   {6 (read_only)} // Protocol
  1995.                   {5:>1023 (read_only)} // Initiator Ports
  1996.                   {3:139 (read_only)} // Responder Ports
  1997.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  1998.                   {41:Windows file sharing and network printers (read_only)} // Comment
  1999.                   {6000 (read_only)} // Class
  2000.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  2001.                }
  2002.                {
  2003.                   {7:WINS(1) (read_only)} // Unique Name
  2004.                   {17 (read_only)} // Protocol
  2005.                   {2:42 (read_only)} // Initiator Ports
  2006.                   {2:42 (read_only)} // Responder Ports
  2007.                   {1 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  2008.                   {42:WINS / Windows Internet Name Service (UDP) (read_only)} // Comment
  2009.                   {7000 (read_only)} // Class
  2010.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  2011.                }
  2012.                {
  2013.                   {7:WINS(2) (read_only)} // Unique Name
  2014.                   {6 (read_only)} // Protocol
  2015.                   {5:>1023 (read_only)} // Initiator Ports
  2016.                   {2:42 (read_only)} // Responder Ports
  2017.                   {0 (choice:0:1,read_only)} // Allow Non-unicast Packets
  2018.                   {42:WINS / Windows Internet Name Service (TCP) (read_only)} // Comment
  2019.                   {6000 (read_only)} // Class
  2020.                   {0 (choice:0:1:2,read_only)} // Extra Filtering
  2021.                }
  2022.                {
  2023.                   {32:ZENworks Remote Management (TCP) (read_only)} // Unique Name
  2024.                   {6 (read_only)} // Protocol
  2025.                   {9:517,>1023 (read_only)} // Initiator Ports
  2026.                   {18:517,1761,1762,1763 (read_only)} // Responder Ports
  2027.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  2028.                   {39:Novell ZENworks Remote Management (TCP) (read_only)} // Comment
  2029.                   {6000 (read_only)} // Class
  2030.                   {0 (choice:0:1,read_only)} // Extra Filtering
  2031.                }
  2032.                {
  2033.                   {32:ZENworks Remote Management (UDP) (read_only)} // Unique Name
  2034.                   {17 (read_only)} // Protocol
  2035.                   {9:517,>1023 (read_only)} // Initiator Ports
  2036.                   {18:517,1761,1762,1763 (read_only)} // Responder Ports
  2037.                   {0 (choice:0:1:2:3,read_only)} // Allow Non-unicast Packets
  2038.                   {39:Novell ZENworks Remote Management (UDP) (read_only)} // Comment
  2039.                   {7000 (read_only)} // Class
  2040.                   {0 (choice:0:1,read_only)} // Extra Filtering
  2041.                }
  2042.             }
  2043.             {30 // Security Level
  2044.                {10:Table(iDisplayString,String,String,Integer,Integer,Integer,Integer,Integer) =  // Security Levels
  2045.                   {
  2046.                      {7:10block (read_only)} // ID
  2047.                      {9:Block All (read_only)} // Name
  2048.                      { (read_only)} // Description
  2049.                      {0 (choice:0:1,read_only)} // Service Checking
  2050.                      {0 (choice:0:1,read_only)} // Address Checking
  2051.                      {2 (choice:0:1:2,read_only)} // Filtering Mode
  2052.                      {0 (choice:0:1,read_only)} // Application Mode
  2053.                      {1 (choice:1:0,read_only)} // Enabled
  2054.                   }
  2055.                   {
  2056.                      {8:20mobile (read_only)} // ID
  2057.                      {6:Mobile (read_only)} // Name
  2058.                      { (read_only)} // Description
  2059.                      {0 (choice:0:1,read_only)} // Service Checking
  2060.                      {0 (choice:0:1,read_only)} // Address Checking
  2061.                      {0 (choice:0:1:2,read_only)} // Filtering Mode
  2062.                      {0 (choice:0:1,read_only)} // Application Mode
  2063.                      {0 (choice:1:0,read_only)} // Enabled
  2064.                   }
  2065.                   {
  2066.                      {6:30home (read_only)} // ID
  2067.                      {4:Home (read_only)} // Name
  2068.                      { (read_only)} // Description
  2069.                      {0 (choice:0:1,read_only)} // Service Checking
  2070.                      {0 (choice:0:1,read_only)} // Address Checking
  2071.                      {0 (choice:0:1:2,read_only)} // Filtering Mode
  2072.                      {0 (choice:0:1,read_only)} // Application Mode
  2073.                      {0 (choice:1:0,read_only)} // Enabled
  2074.                   }
  2075.                   {
  2076.                      {8:40office (read_only)} // ID
  2077.                      {6:Office (read_only)} // Name
  2078.                      { (read_only)} // Description
  2079.                      {0 (choice:0:1,read_only)} // Service Checking
  2080.                      {0 (choice:0:1,read_only)} // Address Checking
  2081.                      {0 (choice:0:1:2,read_only)} // Filtering Mode
  2082.                      {0 (choice:0:1,read_only)} // Application Mode
  2083.                      {1 (choice:1:0,read_only)} // Enabled
  2084.                   }
  2085.                   {
  2086.                      {8:45strict (read_only)} // ID
  2087.                      {6:Strict (read_only)} // Name
  2088.                      { (read_only)} // Description
  2089.                      {0 (choice:0:1:2:3,read_only)} // Service Checking
  2090.                      {0 (choice:0:1,read_only)} // Address Checking
  2091.                      {0 (choice:0:1:2,read_only)} // Filtering Mode
  2092.                      {0 (choice:0:1,read_only)} // Application Mode
  2093.                      {1 (choice:0:1,read_only)} // Enabled
  2094.                   }
  2095.                   {
  2096.                      {8:50normal (read_only)} // ID
  2097.                      {6:Normal (read_only)} // Name
  2098.                      { (read_only)} // Description
  2099.                      {0 (choice:0:1,read_only)} // Service Checking
  2100.                      {0 (choice:0:1,read_only)} // Address Checking
  2101.                      {0 (choice:0:1:2,read_only)} // Filtering Mode
  2102.                      {0 (choice:0:1,read_only)} // Application Mode
  2103.                      {1 (choice:1:0,read_only)} // Enabled
  2104.                   }
  2105.                   {
  2106.                      {8:55custom (read_only)} // ID
  2107.                      {6:Custom (read_only)} // Name
  2108.                      { (read_only)} // Description
  2109.                      {0 (choice:0:1:2:3,read_only)} // Service Checking
  2110.                      {0 (choice:0:1,read_only)} // Address Checking
  2111.                      {0 (choice:0:1:2,read_only)} // Filtering Mode
  2112.                      {0 (choice:0:1,read_only)} // Application Mode
  2113.                      {1 (choice:0:1,read_only)} // Enabled
  2114.                   }
  2115.                   {
  2116.                      {8:60bypass (read_only)} // ID
  2117.                      {8:Disabled (read_only)} // Name
  2118.                      { (read_only)} // Description
  2119.                      {0 (choice:0:1,read_only)} // Service Checking
  2120.                      {0 (choice:0:1,read_only)} // Address Checking
  2121.                      {1 (choice:0:1:2,read_only)} // Filtering Mode
  2122.                      {0 (choice:0:1,read_only)} // Application Mode
  2123.                      {1 (choice:1:0,read_only)} // Enabled
  2124.                   }
  2125.                   {
  2126.                      {7:9999ina (read_only)} // ID
  2127.                      {18:Network Quarantine (read_only)} // Name
  2128.                      {220:Network access is restricted because your virus definitions are old or Real-time Scanning is disabled. To access the network again, do one of the following: 1) Update your virus definitions. 2) Enable Real-time Scanning. (read_only)} // Description
  2129.                      {0 (choice:0:1:2:3,read_only)} // Service Checking
  2130.                      {0 (choice:0:1,read_only)} // Address Checking
  2131.                      {0 (choice:0:1:2,read_only)} // Filtering Mode
  2132.                      {0 (choice:0:1,read_only)} // Application Mode
  2133.                      {0 (choice:0:1,read_only)} // Enabled
  2134.                   }
  2135.                }
  2136.                {20:DisplayString = 8:50normal (read_only)} // Default Security Level
  2137.                {30:DisplayString = 8:50normal (read_only)} // Active Security Level
  2138.                {40:Table(iInteger,DisplayString,Integer,DisplayString,Integer,DisplayString) =  // Autoselect
  2139.                }
  2140.                {50:Integer = 0 (choice:0:1:2,read_only)} // Autoselect Mode
  2141.             }
  2142.             {40 // Application Control
  2143.                {10:Table(String,iDisplayString,Integer,Integer,String,Integer,String,Integer,String,String) =  // Application Control Rules
  2144.                }
  2145.                {20:Table(iDisplayString,DisplayString,DisplayString,Integer,Integer,Integer,Integer,Integer) =  // White List
  2146.                   {
  2147.                      {4:0001 (read_only)} // ID
  2148.                      {6:System (read_only)} // Directory
  2149.                      {12:kernel32.dll (read_only)} // Program
  2150.                      {1 (choice:0:1:2:3:4:5,read_only)} // Platform
  2151.                      {1 (choice:0:1,read_only)} // Enabled
  2152.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2153.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2154.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2155.                   }
  2156.                   {
  2157.                      {4:0002 (read_only)} // ID
  2158.                      {6:System (read_only)} // Directory
  2159.                      {12:msgsrv32.exe (read_only)} // Program
  2160.                      {1 (choice:0:1:2:3:4:5,read_only)} // Platform
  2161.                      {1 (choice:0:1,read_only)} // Enabled
  2162.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2163.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2164.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2165.                   }
  2166.                   {
  2167.                      {4:0003 (read_only)} // ID
  2168.                      {6:System (read_only)} // Directory
  2169.                      {10:mprexe.exe (read_only)} // Program
  2170.                      {1 (choice:0:1:2:3:4:5,read_only)} // Platform
  2171.                      {1 (choice:0:1,read_only)} // Enabled
  2172.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2173.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2174.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2175.                   }
  2176.                   {
  2177.                      {4:0004 (read_only)} // ID
  2178.                      {6:System (read_only)} // Directory
  2179.                      {11:ssdpsrv.exe (read_only)} // Program
  2180.                      {2 (choice:0:1:2:3:4:5,read_only)} // Platform
  2181.                      {1 (choice:0:1,read_only)} // Enabled
  2182.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2183.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2184.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2185.                   }
  2186.                   {
  2187.                      {4:0005 (read_only)} // ID
  2188.                      { (read_only)} // Directory
  2189.                      {12:explorer.exe (read_only)} // Program
  2190.                      {2 (choice:0:1:2:3:4:5,read_only)} // Platform
  2191.                      {1 (choice:0:1,read_only)} // Enabled
  2192.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2193.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2194.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2195.                   }
  2196.                   {
  2197.                      {4:0006 (read_only)} // ID
  2198.                      {8:System32 (read_only)} // Directory
  2199.                      {9:lsass.exe (read_only)} // Program
  2200.                      {3 (choice:0:1:2:3:4:5,read_only)} // Platform
  2201.                      {1 (choice:0:1,read_only)} // Enabled
  2202.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2203.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2204.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2205.                   }
  2206.                   {
  2207.                      {4:0007 (read_only)} // ID
  2208.                      {8:System32 (read_only)} // Directory
  2209.                      {12:services.exe (read_only)} // Program
  2210.                      {3 (choice:0:1:2:3:4:5,read_only)} // Platform
  2211.                      {1 (choice:0:1,read_only)} // Enabled
  2212.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2213.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2214.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2215.                   }
  2216.                   {
  2217.                      {4:0008 (read_only)} // ID
  2218.                      {8:System32 (read_only)} // Directory
  2219.                      {12:winlogon.exe (read_only)} // Program
  2220.                      {3 (choice:0:1:2:3:4:5,read_only)} // Platform
  2221.                      {1 (choice:0:1,read_only)} // Enabled
  2222.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2223.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2224.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2225.                   }
  2226.                   {
  2227.                      {4:0009 (read_only)} // ID
  2228.                      {8:System32 (read_only)} // Directory
  2229.                      {9:prcss.exe (read_only)} // Program
  2230.                      {3 (choice:0:1:2:3:4:5,read_only)} // Platform
  2231.                      {1 (choice:0:1,read_only)} // Enabled
  2232.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2233.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2234.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2235.                   }
  2236.                   {
  2237.                      {4:0010 (read_only)} // ID
  2238.                      {8:System32 (read_only)} // Directory
  2239.                      {10:mstask.exe (read_only)} // Program
  2240.                      {3 (choice:0:1:2:3:4:5,read_only)} // Platform
  2241.                      {1 (choice:0:1,read_only)} // Enabled
  2242.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2243.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2244.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2245.                   }
  2246.                   {
  2247.                      {4:0011 (read_only)} // ID
  2248.                      { (read_only)} // Directory
  2249.                      {12:explorer.exe (read_only)} // Program
  2250.                      {3 (choice:0:1:2:3:4:5,read_only)} // Platform
  2251.                      {1 (choice:0:1,read_only)} // Enabled
  2252.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2253.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2254.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2255.                   }
  2256.                   {
  2257.                      {4:0012 (read_only)} // ID
  2258.                      {8:System32 (read_only)} // Directory
  2259.                      {9:lsass.exe (read_only)} // Program
  2260.                      {4 (choice:0:1:2:3:4:5,read_only)} // Platform
  2261.                      {1 (choice:0:1,read_only)} // Enabled
  2262.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2263.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2264.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2265.                   }
  2266.                   {
  2267.                      {4:0013 (read_only)} // ID
  2268.                      {8:System32 (read_only)} // Directory
  2269.                      {12:services.exe (read_only)} // Program
  2270.                      {4 (choice:0:1:2:3:4:5,read_only)} // Platform
  2271.                      {1 (choice:0:1,read_only)} // Enabled
  2272.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2273.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2274.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2275.                   }
  2276.                   {
  2277.                      {4:0014 (read_only)} // ID
  2278.                      {8:System32 (read_only)} // Directory
  2279.                      {11:svchost.exe (read_only)} // Program
  2280.                      {4 (choice:0:1:2:3:4:5,read_only)} // Platform
  2281.                      {1 (choice:0:1,read_only)} // Enabled
  2282.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2283.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2284.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2285.                   }
  2286.                   {
  2287.                      {4:0015 (read_only)} // ID
  2288.                      {8:System32 (read_only)} // Directory
  2289.                      {12:winlogon.exe (read_only)} // Program
  2290.                      {4 (choice:0:1:2:3:4:5,read_only)} // Platform
  2291.                      {1 (choice:0:1,read_only)} // Enabled
  2292.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2293.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2294.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2295.                   }
  2296.                   {
  2297.                      {4:0016 (read_only)} // ID
  2298.                      {8:System32 (read_only)} // Directory
  2299.                      {11:spoolsv.exe (read_only)} // Program
  2300.                      {4 (choice:0:1:2:3:4:5,read_only)} // Platform
  2301.                      {1 (choice:0:1,read_only)} // Enabled
  2302.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2303.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2304.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2305.                   }
  2306.                   {
  2307.                      {4:0017 (read_only)} // ID
  2308.                      { (read_only)} // Directory
  2309.                      {12:explorer.exe (read_only)} // Program
  2310.                      {4 (choice:0:1:2:3:4:5,read_only)} // Platform
  2311.                      {1 (choice:0:1,read_only)} // Enabled
  2312.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2313.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2314.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2315.                   }
  2316.                   {
  2317.                      {4:0018 (read_only)} // ID
  2318.                      {8:system32 (read_only)} // Directory
  2319.                      {9:lsass.exe (read_only)} // Program
  2320.                      {5 (choice:0:1:2:3:4:5,read_only)} // Platform
  2321.                      {1 (choice:0:1,read_only)} // Enabled
  2322.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2323.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2324.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2325.                   }
  2326.                   {
  2327.                      {4:0019 (read_only)} // ID
  2328.                      {8:system32 (read_only)} // Directory
  2329.                      {11:svchost.exe (read_only)} // Program
  2330.                      {5 (choice:0:1:2:3:4:5,read_only)} // Platform
  2331.                      {1 (choice:0:1,read_only)} // Enabled
  2332.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2333.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2334.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2335.                   }
  2336.                   {
  2337.                      {4:0020 (read_only)} // ID
  2338.                      { (read_only)} // Directory
  2339.                      {12:explorer.exe (read_only)} // Program
  2340.                      {5 (choice:0:1:2:3:4:5,read_only)} // Platform
  2341.                      {1 (choice:0:1,read_only)} // Enabled
  2342.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2343.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2344.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2345.                   }
  2346.                   {
  2347.                      {4:0021 (read_only)} // ID
  2348.                      {8:system32 (read_only)} // Directory
  2349.                      {11:spoolsv.exe (read_only)} // Program
  2350.                      {5 (choice:0:1:2:3:4:5,read_only)} // Platform
  2351.                      {1 (choice:0:1,read_only)} // Enabled
  2352.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2353.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2354.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2355.                   }
  2356.                   {
  2357.                      {4:0022 (read_only)} // ID
  2358.                      {8:system32 (read_only)} // Directory
  2359.                      {12:userinit.exe (read_only)} // Program
  2360.                      {0 (choice:0:1:2:3:4:5,read_only)} // Platform
  2361.                      {1 (choice:0:1,read_only)} // Enabled
  2362.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2363.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2364.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2365.                   }
  2366.                   {
  2367.                      {4:0023 (read_only)} // ID
  2368.                      {8:system32 (read_only)} // Directory
  2369.                      {12:ipconfig.exe (read_only)} // Program
  2370.                      {0 (choice:0:1:2:3:4:5,read_only)} // Platform
  2371.                      {1 (choice:0:1,read_only)} // Enabled
  2372.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2373.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2374.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2375.                   }
  2376.                   {
  2377.                      {4:0024 (read_only)} // ID
  2378.                      { (read_only)} // Directory
  2379.                      {12:winipcfg.exe (read_only)} // Program
  2380.                      {0 (choice:0:1:2:3:4:5,read_only)} // Platform
  2381.                      {1 (choice:0:1,read_only)} // Enabled
  2382.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2383.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2384.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2385.                   }
  2386.                   {
  2387.                      {4:0025 (read_only)} // ID
  2388.                      { (read_only)} // Directory
  2389.                      {12:ipconfig.exe (read_only)} // Program
  2390.                      {0 (choice:0:1:2:3:4:5,read_only)} // Platform
  2391.                      {1 (choice:0:1,read_only)} // Enabled
  2392.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2393.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2394.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2395.                   }
  2396.                   {
  2397.                      {4:0026 (read_only)} // ID
  2398.                      { (read_only)} // Directory
  2399.                      {11:PSTORES.EXE (read_only)} // Program
  2400.                      {1 (choice:0:1:2:3:4:5,read_only)} // Platform
  2401.                      {1 (choice:0:1,read_only)} // Enabled
  2402.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2403.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2404.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2405.                   }
  2406.                   {
  2407.                      {4:0027 (read_only)} // ID
  2408.                      {8:system32 (read_only)} // Directory
  2409.                      {7:alg.exe (read_only)} // Program
  2410.                      {5 (choice:0:1:2:3:4:5,read_only)} // Platform
  2411.                      {1 (choice:0:1,read_only)} // Enabled
  2412.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2413.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2414.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2415.                   }
  2416.                   {
  2417.                      {4:0028 (read_only)} // ID
  2418.                      {8:system32 (read_only)} // Directory
  2419.                      {12:winlogon.exe (read_only)} // Program
  2420.                      {5 (choice:0:1:2:3:4:5,read_only)} // Platform
  2421.                      {1 (choice:0:1,read_only)} // Enabled
  2422.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2423.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2424.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2425.                   }
  2426.                   {
  2427.                      {4:0029 (read_only)} // ID
  2428.                      {8:system32 (read_only)} // Directory
  2429.                      {9:csrss.exe (read_only)} // Program
  2430.                      {5 (choice:0:1:2:3:4:5,read_only)} // Platform
  2431.                      {1 (choice:0:1,read_only)} // Enabled
  2432.                      {0 (choice:0:1:2:3,read_only)} // Rights
  2433.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2434.                      {0 (choice:0:1,read_only)} // Create Process Rights
  2435.                   }
  2436.                   {
  2437.                      {4:0030 (read_only)} // ID
  2438.                      {8:system32 (read_only)} // Directory
  2439.                      {12:services.exe (read_only)} // Program
  2440.                      {5 (choice:0:1:2:3:4:5,read_only)} // Platform
  2441.                      {1 (choice:0:1,read_only)} // Enabled
  2442.                      {0 (choice:0:1:2:3,read_only)} // Rights
  2443.                      {0 (choice:0:1,read_only)} // Memory Write Rights
  2444.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2445.                   }
  2446.                   {
  2447.                      {4:0031 (read_only)} // ID
  2448.                      {8:system32 (read_only)} // Directory
  2449.                      {7:cmd.exe (read_only)} // Program
  2450.                      {5 (choice:0:1:2:3:4:5,read_only)} // Platform
  2451.                      {1 (choice:0:1,read_only)} // Enabled
  2452.                      {0 (choice:0:1:2:3,read_only)} // Rights
  2453.                      {0 (choice:0:1,read_only)} // Memory Write Rights
  2454.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2455.                   }
  2456.                   {
  2457.                      {4:0032 (read_only)} // ID
  2458.                      {8:system32 (read_only)} // Directory
  2459.                      {7:cmd.exe (read_only)} // Program
  2460.                      {4 (choice:0:1:2:3:4:5,read_only)} // Platform
  2461.                      {1 (choice:0:1,read_only)} // Enabled
  2462.                      {0 (choice:0:1:2:3,read_only)} // Rights
  2463.                      {0 (choice:0:1,read_only)} // Memory Write Rights
  2464.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2465.                   }
  2466.                   {
  2467.                      {4:0033 (read_only)} // ID
  2468.                      {8:system32 (read_only)} // Directory
  2469.                      {9:csrss.exe (read_only)} // Program
  2470.                      {4 (choice:0:1:2:3:4:5,read_only)} // Platform
  2471.                      {1 (choice:0:1,read_only)} // Enabled
  2472.                      {0 (choice:0:1:2:3,read_only)} // Rights
  2473.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2474.                      {0 (choice:0:1,read_only)} // Create Process Rights
  2475.                   }
  2476.                   {
  2477.                      {4:0034 (read_only)} // ID
  2478.                      {8:system32 (read_only)} // Directory
  2479.                      {9:dwwin.exe (read_only)} // Program
  2480.                      {5 (choice:0:1:2:3:4:5,read_only)} // Platform
  2481.                      {1 (choice:0:1,read_only)} // Enabled
  2482.                      {0 (choice:0:1:2:3,read_only)} // Rights
  2483.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2484.                      {0 (choice:0:1,read_only)} // Create Process Rights
  2485.                   }
  2486.                   {
  2487.                      {4:0035 (read_only)} // ID
  2488.                      {8:system32 (read_only)} // Directory
  2489.                      {12:drwtsn32.exe (read_only)} // Program
  2490.                      {4 (choice:0:1:2:3:4:5,read_only)} // Platform
  2491.                      {1 (choice:0:1,read_only)} // Enabled
  2492.                      {0 (choice:0:1:2:3,read_only)} // Rights
  2493.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2494.                      {0 (choice:0:1,read_only)} // Create Process Rights
  2495.                   }
  2496.                   {
  2497.                      {4:0036 (read_only)} // ID
  2498.                      {8:system32 (read_only)} // Directory
  2499.                      {12:rundll32.exe (read_only)} // Program
  2500.                      {0 (choice:0:1:2:3:4:5,read_only)} // Platform
  2501.                      {1 (choice:0:1,read_only)} // Enabled
  2502.                      {0 (choice:0:1:2:3,read_only)} // Rights
  2503.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2504.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2505.                   }
  2506.                   {
  2507.                      {4:0037 (read_only)} // ID
  2508.                      {8:system32 (read_only)} // Directory
  2509.                      {12:shmgrate.exe (read_only)} // Program
  2510.                      {5 (choice:0:1:2:3:4:5,read_only)} // Platform
  2511.                      {1 (choice:0:1,read_only)} // Enabled
  2512.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2513.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2514.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2515.                   }
  2516.                   {
  2517.                      {4:0038 (read_only)} // ID
  2518.                      {8:system32 (read_only)} // Directory
  2519.                      {12:regsvr32.exe (read_only)} // Program
  2520.                      {5 (choice:0:1:2:3:4:5,read_only)} // Platform
  2521.                      {1 (choice:0:1,read_only)} // Enabled
  2522.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2523.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2524.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2525.                   }
  2526.                   {
  2527.                      {4:0039 (read_only)} // ID
  2528.                      {8:system32 (read_only)} // Directory
  2529.                      {9:hkcmd.exe (read_only)} // Program
  2530.                      {5 (choice:0:1:2:3:4:5,read_only)} // Platform
  2531.                      {1 (choice:0:1,read_only)} // Enabled
  2532.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2533.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2534.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2535.                   }
  2536.                   {
  2537.                      {4:0040 (read_only)} // ID
  2538.                      {8:system32 (read_only)} // Directory
  2539.                      {11:logonui.exe (read_only)} // Program
  2540.                      {5 (choice:0:1:2:3:4:5,read_only)} // Platform
  2541.                      {1 (choice:0:1,read_only)} // Enabled
  2542.                      {0 (choice:0:1:2:3,read_only)} // Rights
  2543.                      {0 (choice:0:1,read_only)} // Memory Write Rights
  2544.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2545.                   }
  2546.                   {
  2547.                      {4:0041 (read_only)} // ID
  2548.                      {8:system32 (read_only)} // Directory
  2549.                      {8:smss.exe (read_only)} // Program
  2550.                      {5 (choice:0:1:2:3:4:5,read_only)} // Platform
  2551.                      {1 (choice:0:1,read_only)} // Enabled
  2552.                      {0 (choice:0:1:2:3,read_only)} // Rights
  2553.                      {0 (choice:0:1,read_only)} // Memory Write Rights
  2554.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2555.                   }
  2556.                   {
  2557.                      {4:0042 (read_only)} // ID
  2558.                      { (read_only)} // Directory
  2559.                      {11:netstat.exe (read_only)} // Program
  2560.                      {1 (choice:0:1:2:3:4:5,read_only)} // Platform
  2561.                      {1 (choice:0:1,read_only)} // Enabled
  2562.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2563.                      {0 (choice:0:1,read_only)} // Memory Write Rights
  2564.                      {0 (choice:0:1,read_only)} // Create Process Rights
  2565.                   }
  2566.                   {
  2567.                      {4:0043 (read_only)} // ID
  2568.                      {8:system32 (read_only)} // Directory
  2569.                      {10:mstask.exe (read_only)} // Program
  2570.                      {4 (choice:0:1:2:3:4:5,read_only)} // Platform
  2571.                      {1 (choice:0:1,read_only)} // Enabled
  2572.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2573.                      {0 (choice:0:1,read_only)} // Memory Write Rights
  2574.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2575.                   }
  2576.                   {
  2577.                      {4:0044 (read_only)} // ID
  2578.                      {8:system32 (read_only)} // Directory
  2579.                      {7:net.exe (read_only)} // Program
  2580.                      {0 (choice:0:1:2:3:4:5,read_only)} // Platform
  2581.                      {1 (choice:0:1,read_only)} // Enabled
  2582.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2583.                      {0 (choice:0:1,read_only)} // Memory Write Rights
  2584.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2585.                   }
  2586.                   {
  2587.                      {4:0045 (read_only)} // ID
  2588.                      {8:system32 (read_only)} // Directory
  2589.                      {11:svchost.exe (read_only)} // Program
  2590.                      {10 (choice:0:1:2:3:4:5:10,read_only)} // Platform
  2591.                      {1 (choice:0:1,read_only)} // Enabled
  2592.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2593.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2594.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2595.                   }
  2596.                   {
  2597.                      {4:0046 (read_only)} // ID
  2598.                      {16:system32\inetsrv (read_only)} // Directory
  2599.                      {12:inetinfo.exe (read_only)} // Program
  2600.                      {10 (choice:0:1:2:3:4:5:10,read_only)} // Platform
  2601.                      {1 (choice:0:1,read_only)} // Enabled
  2602.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2603.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2604.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2605.                   }
  2606.                   {
  2607.                      {4:0047 (read_only)} // ID
  2608.                      {8:system32 (read_only)} // Directory
  2609.                      {9:lsass.exe (read_only)} // Program
  2610.                      {10 (choice:0:1:2:3:4:5:10,read_only)} // Platform
  2611.                      {1 (choice:0:1,read_only)} // Enabled
  2612.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2613.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2614.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2615.                   }
  2616.                   {
  2617.                      {4:0048 (read_only)} // ID
  2618.                      {8:system32 (read_only)} // Directory
  2619.                      {12:services.exe (read_only)} // Program
  2620.                      {10 (choice:0:1:2:3:4:5:10,read_only)} // Platform
  2621.                      {1 (choice:0:1,read_only)} // Enabled
  2622.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2623.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2624.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2625.                   }
  2626.                   {
  2627.                      {4:0049 (read_only)} // ID
  2628.                      {8:system32 (read_only)} // Directory
  2629.                      {7:net.exe (read_only)} // Program
  2630.                      {10 (choice:0:1:2:3:4:5:10,read_only)} // Platform
  2631.                      {1 (choice:0:1,read_only)} // Enabled
  2632.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2633.                      {1 (choice:0:1,read_only)} // Memory Write Rights
  2634.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2635.                   }
  2636.                   {
  2637.                      {4:0100 (read_only)} // ID
  2638.                      {25:pchealth\helpctr\binaries (read_only)} // Directory
  2639.                      {12:helphost.exe (read_only)} // Program
  2640.                      {5 (choice:0:1:2:3:4:5:10,read_only)} // Platform
  2641.                      {1 (choice:0:1,read_only)} // Enabled
  2642.                      {1 (choice:0:1:2:3,read_only)} // Rights
  2643.                      {0 (choice:0:1,read_only)} // Memory Write Rights
  2644.                      {0 (choice:0:1,read_only)} // Create Process Rights
  2645.                   }
  2646.                   {
  2647.                      {4:0110 (read_only)} // ID
  2648.                      {25:pchealth\helpctr\binaries (read_only)} // Directory
  2649.                      {11:helpsvc.exe (read_only)} // Program
  2650.                      {5 (choice:0:1:2:3:4:5:10,read_only)} // Platform
  2651.                      {1 (choice:0:1,read_only)} // Enabled
  2652.                      {0 (choice:0:1:2:3,read_only)} // Rights
  2653.                      {0 (choice:0:1,read_only)} // Memory Write Rights
  2654.                      {1 (choice:0:1,read_only)} // Create Process Rights
  2655.                   }
  2656.                   {
  2657.                      {4:0120 (read_only)} // ID
  2658.                      {8:system32 (read_only)} // Directory
  2659.                      {8:ping.exe (read_only)} // Program
  2660.                      {4 (choice:0:1:2:3:4:5:10,read_only)} // Platform
  2661.                      {1 (choice:0:1,read_only)} // Enabled
  2662.                      {1 (choice:0:1:2:3,read_only)} // Rights
  2663.                      {0 (choice:0:1,read_only)} // Memory Write Rights
  2664.                      {0 (choice:0:1,read_only)} // Create Process Rights
  2665.                   }
  2666.                   {
  2667.                      {4:0121 (read_only)} // ID
  2668.                      {8:system32 (read_only)} // Directory
  2669.                      {8:ping.exe (read_only)} // Program
  2670.                      {5 (choice:0:1:2:3:4:5:10,read_only)} // Platform
  2671.                      {1 (choice:0:1,read_only)} // Enabled
  2672.                      {1 (choice:0:1:2:3,read_only)} // Rights
  2673.                      {0 (choice:0:1,read_only)} // Memory Write Rights
  2674.                      {0 (choice:0:1,read_only)} // Create Process Rights
  2675.                   }
  2676.                   {
  2677.                      {4:0130 (read_only)} // ID
  2678.                      {8:system32 (read_only)} // Directory
  2679.                      {12:nslookup.exe (read_only)} // Program
  2680.                      {4 (choice:0:1:2:3:4:5:10,read_only)} // Platform
  2681.                      {1 (choice:0:1,read_only)} // Enabled
  2682.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2683.                      {0 (choice:0:1,read_only)} // Memory Write Rights
  2684.                      {0 (choice:0:1,read_only)} // Create Process Rights
  2685.                   }
  2686.                   {
  2687.                      {4:0131 (read_only)} // ID
  2688.                      {8:system32 (read_only)} // Directory
  2689.                      {12:nslookup.exe (read_only)} // Program
  2690.                      {5 (choice:0:1:2:3:4:5:10,read_only)} // Platform
  2691.                      {1 (choice:0:1,read_only)} // Enabled
  2692.                      {3 (choice:0:1:2:3,read_only)} // Rights
  2693.                      {0 (choice:0:1,read_only)} // Memory Write Rights
  2694.                      {0 (choice:0:1,read_only)} // Create Process Rights
  2695.                   }
  2696.                }
  2697.                {30:Integer = 2 (choice:0:1:2,read_only)} // Action on Unknown Outbound Application
  2698.                {40:Integer = 2 (choice:0:1:2,read_only)} // Action on Unknown Inbound Application
  2699.                {50:Integer = 1 (choice:0:1,read_only)} // Report to Administrator
  2700.                {60:Integer = 0 (choice:0:1,read_only)} // Show Administrative Message
  2701.                {70:Integer = 1 (choice:0:1,read_only)} // Application Control Enabled
  2702.                {80 // Default Messages
  2703.                   {10:String =  (read_only)} // Unknown - Allow
  2704.                   {20:String =  (read_only)} // Unknown - Deny
  2705.                   {30:String =  (read_only)} // Unknown - User Decision
  2706.                   {40:String =  (read_only)} // Known - Allow
  2707.                   {50:String =  (read_only)} // Known - Deny
  2708.                   {60:String =  (read_only)} // Known - User Decision
  2709.                }
  2710.                {90:Integer = 0 (choice:0:1,read_only)} // Memory Write Protection Enabled
  2711.                {100:Integer = 0 (choice:0:1,read_only)} // Process Creation Protection Enabled
  2712.                {110:Integer = 0 (choice:0:1:2,read_only)} // Boot-Time Default Action
  2713.                {120:Integer = 0 (choice:0:1,read_only)} // F-Secure Process Protection Enabled
  2714.                {130:Integer = 1 (choice:0:1,read_only)} // System Control Integration
  2715.             }
  2716.             {50 // Alerting
  2717.                {10:Integer = 60 (range:0:65535,read_only)} // Alert Grace Period
  2718.                {20:Integer = 1 (choice:0:1,read_only)} // Centralized Alerting
  2719.                {30:Integer = 1 (choice:0:1,read_only)} // Alert on Small Fragments
  2720.                {40:Integer = 1 (choice:0:1,read_only)} // Alert on Illegal Fragments
  2721.                {50:Integer = 0 (choice:0:1,read_only)} // Alert on Illegal Packets
  2722.             }
  2723.             {60 // Packet Logging
  2724.                {10:Integer = 0 (choice:0:1,read_only)} // Active
  2725.                {20:Integer = 1 (range:1:1000,read_only)} // Log Size
  2726.                {30:Integer = 10 (range:1:100,read_only)} // File Count
  2727.                {40:Integer = 60 (range:1:1000000,read_only)} // Duration
  2728.             }
  2729.             {70 // Firewall Engine
  2730.                {10:Integer = 128 (range:0:65535,read_only)} // Minimum Fragment Size
  2731.                {20:Integer = 1 (choice:0:1,read_only)} // Firewall Engine Enabled
  2732.                {30:Integer = 1 (choice:0:1,read_only)} // Allow Trusted Interface
  2733.                {40:Integer = 0 (choice:0:1:2,read_only)} // Unload Mode
  2734.                {50:Integer = 2 (choice:1:2,read_only)} // IPv6 Filtering Mode
  2735.             }
  2736.             {80 // Firewall Service
  2737.                {10 // HTTP
  2738.                   {10:Integer = 1 (choice:0:1:2:3,read_only)} // Mode
  2739.                   {20:DisplayString = 5:58581 (read_only)} // Port
  2740.                }
  2741.                {20:Integer = 1 (choice:0:1,read_only)} // Allow Management Communication
  2742.                {30:Integer = 1 (choice:0:1,read_only)} // Application Rules
  2743.             }
  2744.             {90 // User Interface Settings
  2745.                {10:Integer = 1 (choice:0:1,read_only)} // Pop Up Alerts
  2746.                {20:Integer = 1 (choice:0:1,read_only)} // Statistics Local Reset
  2747.                {30:DisplayString = 3:C:\ (read_only)} // Log Directory
  2748.             }
  2749.             {100 // Intrusion Prevention
  2750.                {10:Integer = 1 (choice:0:1,read_only)} // Intrusion Prevention Enabled
  2751.                {20:Integer = 1 (choice:1:2,read_only)} // Actions
  2752.                {30:Integer = 2 (choice:0:1:2:3,read_only)} // Alerting severity
  2753.                {40:Integer = 100 (choice:10:25:50:75:100,read_only)} // Sensitivity
  2754.             }
  2755.             {110 // Dialup Control
  2756.                {10:Table(iDisplayString,DisplayString,Integer,DisplayString,Integer) =  // Phone Numbers
  2757.                }
  2758.                {20:Integer = 1 (choice:0:1,read_only)} // Dialup Control
  2759.                {30:Integer = 0 (choice:0:1,read_only)} // Number Logging
  2760.             }
  2761.             {120 // Installation
  2762.                {10:Integer = 1 (choice:0:1,read_only)} // Disable Windows Firewall
  2763.             }
  2764.             {130 // Network Quarantine
  2765.                {10:Integer = 0 (choice:0:1,read_only)} // Network Quarantine Enabled
  2766.                {20 // Health Requirements
  2767.                   {10:Timeticks = 34560000 (range:0:864000000,read_only)} // Maximum Age of Virus Definitions
  2768.                   {20:Integer = 1 (choice:0:1,read_only)} // Real-Time Virus Protection Enabled
  2769.                }
  2770.             }
  2771.          }
  2772.          {2 // Statistics
  2773.             {1:String =  (read_only)} // Version
  2774.             {2 // License
  2775.                {1:String =  (read_write)} // Owner
  2776.                {2:String =  (read_write)} // Organization
  2777.                {3:DisplayString =  (read_only)} // License Number
  2778.                {4:Integer = 0 (choice:0:1:2,read_only)} // Product Type
  2779.             }
  2780.             {3:Integer =  (read_only)} // Previous Reset of Statistics
  2781.             {4:Integer = 7 (read_only)} // MIB Version
  2782.             {5:String =  (read_only)} // Installation Directory
  2783.             {7:String =  (read_only)} // Build
  2784.             {9 // Common
  2785.                {1:DisplayString = 35:F-Secure Anti-Virus Internet Shield (read_only)} // Product Name
  2786.                {10:Table(iInteger,DisplayString,DisplayString,Integer,DisplayString,DisplayString,Integer) =  // Hotfixes
  2787.                }
  2788.             }
  2789.             {10 // Packet Filter
  2790.                {10 // Filtered Datagrams
  2791.                   {10:Counter =  (read_only)} // Allowed In
  2792.                   {20:Counter =  (read_only)} // Allowed Out
  2793.                   {30:Counter =  (read_only)} // Denied In
  2794.                   {40:Counter =  (read_only)} // Denied Out
  2795.                }
  2796.                {20:Integer = 0 (choice:0:1,read_only)} // Packet Filter Status
  2797.             }
  2798.             {20 // Application Filter
  2799.                {10 // Filtered Connections
  2800.                   {10:Counter =  (read_only)} // Allowed In
  2801.                   {20:Counter =  (read_only)} // Allowed Out
  2802.                   {30:Counter =  (read_only)} // Denied In
  2803.                   {40:Counter =  (read_only)} // Denied Out
  2804.                }
  2805.             }
  2806.             {30 // Alerting
  2807.                {10 // Latest Attack
  2808.                   {10:Integer =  (read_only)} // Timestamp
  2809.                   {20:DisplayString =  (read_only)} // Service
  2810.                   {30:IpAddress =  (read_only)} // Remote Address
  2811.                }
  2812.                {20 // Recent Attacks
  2813.                   {10:Counter =  (read_only)} // Number of Attacks
  2814.                   {20:Integer =  (read_only)} // Reset Time
  2815.                }
  2816.                {30:Table(iIpAddress,Counter) =  // Top-5 Blocked Hosts
  2817.                }
  2818.                {40:Table(iDisplayString,Counter) =  // Top-5 Blocked Services
  2819.                }
  2820.             }
  2821.             {40 // User Actions
  2822.                {10:Counter =  (read_only)} // Security Level Switches
  2823.                {20:Counter =  (read_only)} // Deactivations
  2824.             }
  2825.             {50 // Security Level
  2826.                {10:DisplayString =  (read_only)} // Active Security Level
  2827.             }
  2828.             {60 // Network Quarantine
  2829.                {10:Integer = 0 (choice:0:1:2,read_only)} // Network Quarantine Status
  2830.             }
  2831.             {70 // Intrusion Prevention
  2832.                {10:DisplayString =  (read_only)} // Database Version
  2833.                {20:Integer =  (read_only)} // Database Update Time
  2834.             }
  2835.          }
  2836.          {3 // Operations
  2837.             {4 // Reset Statistics
  2838.                {1 // Reset
  2839.                   {1:DisplayString = 1:0 (final,read_only)} // Start
  2840.                   {2:DisplayString =  (read_only)} // Ack
  2841.                   {3:DisplayString = 1:0 (read_write)} // ExtStart
  2842.                   {4:DisplayString =  (read_only)} // ExtAck
  2843.                }
  2844.                {2 // Variables to Reset
  2845.                   {1:OID = 1.3.6.1.4.1.2213.999.2.10.10 (final,choice:1:1.3.6.1.4.1.2213.999.2.10.10,read_write)} // Product Statistics Example
  2846.                }
  2847.                {3:Integer = 0 (final,choice:0:1,read_only)} // External Resetting
  2848.             }
  2849.          }
  2850.          {4 // Private
  2851.             {3 // Web Club
  2852.                {1:DisplayString = 12:F-Secure.com (read_only)} // Web Site Name
  2853.                {2:DisplayString = 19:anti-virus/webclub/ (read_write)} // URL Tail
  2854.             }
  2855.             {10:Table(iDisplayString,iDisplayString,Integer,Integer,DisplayString,DisplayString,String,Integer,Integer,String,Integer,Integer,DisplayString) =  // User Rules
  2856.             }
  2857.             {20:Table(iDisplayString,Integer,DisplayString,DisplayString,Integer,String,Integer,Integer) =  // User Services
  2858.             }
  2859.             {30 // Security Level
  2860.                {10:Table(iDisplayString,Integer,Integer,Integer) =  // Security Level Settings
  2861.                }
  2862.                {30:DisplayString =  (read_only)} // Local Security Level
  2863.             }
  2864.             {40 // Application Control
  2865.                {10:Table(iString,DisplayString,DisplayString,Integer,Integer,Integer,Integer,Integer,Integer,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,Integer,Integer) =  // Applications
  2866.                }
  2867.                {11:Table(iString,DisplayString,DisplayString,Integer,Integer,Integer,Integer,Integer,Integer,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,DisplayString,Integer,Integer,Integer,Integer) =  // Applications 2
  2868.                }
  2869.                {20:Table(String,iString) =  // Reported Applications
  2870.                }
  2871.             }
  2872.             {110 // Dialup Control
  2873.                {10:Table(iDisplayString,DisplayString,Integer,DisplayString,Integer) =  // User Phone Numbers
  2874.                }
  2875.                {20:Table(iDisplayString) =  // Hangup Applications
  2876.                }
  2877.             }
  2878.             {130 // Network Quarantine
  2879.                {10:Integer = 0 (choice:0:1:2,read_only)} // Network Quarantine Status
  2880.             }
  2881.          }
  2882.       }
  2883.    }
  2884. }
  2885.  
  2886.  // -------------------------------------------------------------------
  2887.  //    End of default policy file
  2888.