16/11/01 13:30:55.43 sINueONA.net
自分的なデフォは
ipv6 filter 100 pass * * icmp6
ipv6 filter 110 pass * * tcp,udp * domain
ipv6 filter 115 pass * * tcp,udp domain *
ipv6 filter 120 pass * * tcp * www,https
ipv6 filter 999 reject * * * * *
ipv6 filter dynamic 110 * * domain
ipv6 filter dynamic 120 * * www
ipv6 filter dynamic 121 * * https
ipv6 lan2 secure filter in 100 999
ipv6 lan2 secure filter out 100 110 120 dynamic 110 120 121
ほんとは tcpflag 見て・・ってやるべきだろうけど手を抜いてる
かなり緩いけど、ガバガバでもない