Easy to handle firewall rules


#1

The firewall rule handling is the main drawback of VyOS for me.
Otherwise a terrific OS :slight_smile:

  1. To create a rule several lines have to be written.
    It would be much more intuitive if you could create rules in one line. (At least simple rules)

    • For example:
      set firewall name test-1 rule 100 accept tcp 6.6.6.6 7.7.7.7 5555
    • Instead of:
      set firewall name test-1 rule 100 action ‘accept’
      set firewall name test-1 rule 100 destination address ‘7.7.7.7’
      set firewall name test-1 rule 100 destination port ‘5555’
      set firewall name test-1 rule 100 protocol ‘tcp’
      set firewall name test-1 rule 100 source address ‘6.6.6.6’
  2. A more readable view of the rules (“show firewall”) would be very helpful.
    One line per rule would be optimal (maybe “show firewall compact”).
    Update: Ok, there are more readable views in operational mode, my fault.