Here is my working running config for the ISP Freedom (simular to KPN)
set interfaces ethernet eth0 hw-id 'xx:xx:xx:xx:xx:36'
set interfaces ethernet eth0 vif 10 address 'xxx.xxx.178.1/29'
set interfaces ethernet eth0 vif 80 address 'xxx.xxx.178.9/29'
set interfaces ethernet eth1 description 'WAN'
set interfaces ethernet eth1 hw-id 'xx:xx:xx:xx:xx:ae'
set interfaces ethernet eth1 mtu '1512'
set interfaces ethernet eth1 vif 4 address 'dhcp'
set interfaces ethernet eth1 vif 4 dhcp-options default-route-distance '254'
set interfaces ethernet eth1 vif 4 dhcp-options no-default-route
set interfaces ethernet eth1 vif 4 dhcp-options user-class '121'
set interfaces ethernet eth1 vif 4 dhcp-options vendor-class-id 'IPTV_RG'
set interfaces ethernet eth1 vif 4 ip source-validation 'loose'
set interfaces ethernet eth1 vif 6 mtu '1500'
set interfaces loopback lo
set interfaces pppoe pppoe1 authentication password xxxxxx
set interfaces pppoe pppoe1 authentication username xxxxxx
set interfaces pppoe pppoe1 ip adjust-mss 'clamp-mss-to-pmtu'
set interfaces pppoe pppoe1 mtu '1492'
set interfaces pppoe pppoe1 source-interface 'eth1.6'
set nat source rule 10 log
set nat source rule 10 outbound-interface name 'pppoe1'
set nat source rule 10 translation address 'masquerade'
set nat source rule 80 outbound-interface name 'eth1.4'
set nat source rule 80 source address 'xxx.xxx.178.8/29'
set nat source rule 80 translation address 'masquerade'
set protocols igmp-proxy interface eth0.80 role 'downstream'
set protocols igmp-proxy interface eth0.80 threshold '1'
set protocols igmp-proxy interface eth1.4 alt-subnet 'xxx.xxx.0.0/0'
set protocols igmp-proxy interface eth1.4 role 'upstream'
set protocols igmp-proxy interface eth1.4 threshold '1'
set protocols static route xxx.xxx.176.0/20 next-hop xxx.xxx.178.2
set service dhcp-server hostfile-update
set service dhcp-server shared-network-name xxxxxx subnet xxx.xxx.178.8/29 lease '86400'
set service dhcp-server shared-network-name xxxxxx subnet xxx.xxx.178.8/29 option default-router 'xxx.xxx.178.9'
set service dhcp-server shared-network-name xxxxxx subnet xxx.xxx.178.8/29 option domain-name xxxxxx
set service dhcp-server shared-network-name xxxxxx subnet xxx.xxx.178.8/29 option name-server 'xxx.xxx.178.1'
set service dhcp-server shared-network-name xxxxxx subnet xxx.xxx.178.8/29 range 0 start 'xxx.xxx.178.10'
set service dhcp-server shared-network-name xxxxxx subnet xxx.xxx.178.8/29 range 0 stop 'xxx.xxx.178.14'
set service dhcp-server shared-network-name xxxxxx subnet xxx.xxx.178.8/29 subnet-id '80'
set service dns forwarding allow-from 'xxx.xxx.0.0/0'
set service dns forwarding listen-address 'xxx.xxx.178.1'
set service dns forwarding listen-address 'xxx.xxx.0.1'
set service dns forwarding listen-address '::1'
set service dns forwarding system
set service ntp allow-client xxxxxx 'xxx.xxx.0.0/8'
set service ntp allow-client xxxxxx 'xxx.xxx.0.0/16'
set service ntp allow-client xxxxxx 'xxx.xxx.0.0/8'
set service ntp allow-client xxxxxx 'xxx.xxx.0.0/12'
set service ntp allow-client xxxxxx 'xxx.xxx.0.0/16'
set service ntp allow-client xxxxxx '::1/128'
set service ntp allow-client xxxxxx 'fe80::/10'
set service ntp allow-client xxxxxx 'fc00::/7'
set service ntp listen-address 'xxx.xxx.178.1'
set service ntp server xxxxx.tld
set service ntp server xxxxx.tld
set service ntp server xxxxx.tld
set service ssh listen-address 'xxx.xxx.178.1'
set system config-management commit-revisions '100'
set system conntrack modules ftp
set system conntrack modules h323
set system conntrack modules nfs
set system conntrack modules pptp
set system conntrack modules rtsp
set system conntrack modules sip
set system conntrack modules sqlnet
set system conntrack modules tftp
set system console device ttyS0 speed '115200'
set system domain-name xxxxxx
set system host-name xxxxxx
set system login user xxxxxx authentication encrypted-password xxxxxx
set system login user xxxxxx authentication plaintext-password xxxxxx
set system login user xxxxxx authentication public-keys [email protected] key xxxxxx
set system login user xxxxxx authentication public-keys [email protected] type 'ecdsa-sha2-nistp256'
set system syslog global facility all level 'info'
set system syslog global facility local7 level 'debug'
set system time-zone 'Europe/Amsterdam'