aboutsummaryrefslogtreecommitdiffstats
path: root/global-config.rsc
diff options
context:
space:
mode:
Diffstat (limited to 'global-config.rsc')
-rw-r--r--global-config.rsc10
1 files changed, 7 insertions, 3 deletions
diff --git a/global-config.rsc b/global-config.rsc
index 6a37c0c..734b51e 100644
--- a/global-config.rsc
+++ b/global-config.rsc
@@ -85,22 +85,26 @@
:global BackupUploadUrl "sftp://example.com/backup/";
:global BackupUploadUser "mikrotik";
:global BackupUploadPass "v3ry-s3cr3t";
+# Copy the RouterOS installation to backup partition before feature update.
+:global BackupPartitionCopyBeforeFeatureUpdate false;
# This defines the settings for firewall address-lists (fw-addr-lists).
:global FwAddrLists {
# "allow"={
# { url="https://git.eworm.de/cgit/routeros-scripts/plain/fw-addr-lists.d/allow";
-# cert="E1"; timeout=1w };
+# cert="ISRG Root X2"; timeout=1w };
# };
"block"={
# { url="https://git.eworm.de/cgit/routeros-scripts/plain/fw-addr-lists.d/block";
-# cert="E1" };
+# cert="ISRG Root X2" };
{ url="https://feodotracker.abuse.ch/downloads/ipblocklist_recommended.txt";
cert="GlobalSign Atlas R3 DV TLS CA 2022 Q3" };
{ url="https://sslbl.abuse.ch/blacklist/sslipblacklist.txt";
cert="GlobalSign Atlas R3 DV TLS CA 2022 Q3" };
{ url="https://www.dshield.org/block.txt"; cidr="/24";
cert="R3" };
+ { url="https://lists.blocklist.de/lists/strongips.txt";
+ cert="Certum Domain Validation CA SHA2" };
# { url="https://www.spamhaus.org/drop/drop.txt";
# cert="Cloudflare Inc ECC CA-3" };
# { url="https://www.spamhaus.org/drop/edrop.txt";
@@ -108,7 +112,7 @@
};
# "mikrotik"={
# { url="https://git.eworm.de/cgit/routeros-scripts/plain/fw-addr-lists.d/mikrotik";
-# cert="E1"; timeout=1w };
+# cert="ISRG Root X2"; timeout=1w };
# };
};
:global FwAddrListTimeOut 1d;