<?xml version="1.0" encoding="UTF-8"?>
<profile>
 <product-grade>2</product-grade>
 <rs-version>1068452504</rs-version>
 <using-cpm-profile>0</using-cpm-profile>
 <for-version>11.0</for-version>
 <xml-purpose>2</xml-purpose>
 <base-model />
 <account-list />
 <system-parameters>
  <route />
  <dns-server-list />
  <wins-server-list />
  <ldap>
   <use-ldap>0</use-ldap>
   <use-ip>0</use-ip>
   <ldap-server-name />
   <ldap-server-password />
   <ldap-server-ip>0.0.0.0</ldap-server-ip>
   <ldap-server-port>389</ldap-server-port>
  </ldap>
  <snmp-conf>
   <snmp-protocol>
    <snmp-version>2</snmp-version>
    <snmp-comm-string />
   </snmp-protocol>
   <snmp-trap>
    <snmp-trap-version>0</snmp-trap-version>
    <snmp-trap-type>1</snmp-trap-type>
   </snmp-trap>
   <mgr-station-list />
  </snmp-conf>
  <ntp-conf>
   <ntp-enabled>1</ntp-enabled>
   <ntp-server-list>
    <ntp-server-ip>0.pool.ntp.org</ntp-server-ip>
    <ntp-server-ip>1.pool.ntp.org</ntp-server-ip>
    <ntp-server-ip>2.pool.ntp.org</ntp-server-ip>
   </ntp-server-list>
  </ntp-conf>
  <dos-prevention>
   <dos-item>
    <dos-type>1</dos-type>
    <dos-enable>1</dos-enable>
    <dos-threshold>5000</dos-threshold>
   </dos-item>
   <dos-item>
    <dos-type>2</dos-type>
    <dos-enable>1</dos-enable>
    <dos-threshold>1000</dos-threshold>
   </dos-item>
   <dos-item>
    <dos-type>3</dos-type>
    <dos-enable>1</dos-enable>
    <dos-threshold>1000</dos-threshold>
   </dos-item>
   <dos-item>
    <dos-type>4</dos-type>
    <dos-enable>1</dos-enable>
    <dos-threshold>1000</dos-threshold>
   </dos-item>
   <dos-item>
    <dos-type>5</dos-type>
    <dos-enable>1</dos-enable>
    <dos-threshold>1000</dos-threshold>
   </dos-item>
   <dos-item>
    <dos-type>6</dos-type>
    <dos-enable>1</dos-enable>
    <dos-threshold>1000</dos-threshold>
   </dos-item>
   <dos-item>
    <dos-type>7</dos-type>
    <dos-enable>1</dos-enable>
    <dos-threshold>1500</dos-threshold>
   </dos-item>
   <dos-item>
    <dos-type>8</dos-type>
    <dos-enable>1</dos-enable>
    <dos-threshold>1000</dos-threshold>
   </dos-item>
   <dos-item>
    <dos-type>9</dos-type>
    <dos-enable>1</dos-enable>
    <dos-threshold>100</dos-threshold>
   </dos-item>
   <dos-item>
    <dos-type>10</dos-type>
    <dos-enable>1</dos-enable>
    <dos-threshold>100</dos-threshold>
   </dos-item>
   <dos-item>
    <dos-type>11</dos-type>
    <dos-enable>0</dos-enable>
    <dos-threshold>10</dos-threshold>
   </dos-item>
   <dos-item>
    <dos-type>12</dos-type>
    <dos-enable>1</dos-enable>
    <dos-threshold>10</dos-threshold>
   </dos-item>
   <dos-item>
    <dos-type>13</dos-type>
    <dos-enable>1</dos-enable>
    <dos-threshold>10</dos-threshold>
   </dos-item>
  </dos-prevention>
  <icmp-error-handling>
   <all-icmp-errors>0</all-icmp-errors>
   <pmtu-discovery>1</pmtu-discovery>
   <time-exceeded>1</time-exceeded>
   <network-unreachable>1</network-unreachable>
   <host-unreachable>1</host-unreachable>
   <port-unreachable>1</port-unreachable>
   <protocol-unreachable>1</protocol-unreachable>
  </icmp-error-handling>
  <mss-adjustment>
   <mss-adjustment-type>2</mss-adjustment-type>
   <mss-maximum-limit>1300</mss-maximum-limit>
  </mss-adjustment>
  <log-conf>
   <traffic-log-enable>1</traffic-log-enable>
   <config-change-log-enable>1</config-change-log-enable>
   <event-log-level>6</event-log-level>
   <ike-decryp-pkt-trace>1</ike-decryp-pkt-trace>
   <debug-level>0</debug-level>
   <local-enabled>1</local-enabled>
   <support-cache-enabled>0</support-cache-enabled>
   <remote-syslog>
    <remote-syslog-enabled>0</remote-syslog-enabled>
    <remote-syslog-server-ip>0.0.0.0</remote-syslog-server-ip>
    <remote-syslog-timestamp>0</remote-syslog-timestamp>
    <remote-syslog-serial>0</remote-syslog-serial>
    <remote-syslog-entry>
     <remote-syslog-type>1</remote-syslog-type>
     <remote-syslog-facility>16</remote-syslog-facility>
     <remote-syslog-priority>8</remote-syslog-priority>
    </remote-syslog-entry>
    <remote-syslog-entry>
     <remote-syslog-type>3</remote-syslog-type>
     <remote-syslog-facility>18</remote-syslog-facility>
     <remote-syslog-priority>8</remote-syslog-priority>
    </remote-syslog-entry>
    <remote-syslog-entry>
     <remote-syslog-type>2</remote-syslog-type>
     <remote-syslog-facility>17</remote-syslog-facility>
     <remote-syslog-priority>8</remote-syslog-priority>
    </remote-syslog-entry>
    <remote-syslog-entry>
     <remote-syslog-type>5</remote-syslog-type>
     <remote-syslog-facility>19</remote-syslog-facility>
     <remote-syslog-priority>8</remote-syslog-priority>
    </remote-syslog-entry>
    <remote-syslog-entry>
     <remote-syslog-type>6</remote-syslog-type>
     <remote-syslog-facility>20</remote-syslog-facility>
     <remote-syslog-priority>8</remote-syslog-priority>
    </remote-syslog-entry>
   </remote-syslog>
  </log-conf>
  <common-logging>
   <enabled>0</enabled>
   <encryption>1</encryption>
   <log-server>
    <host />
    <port>4115</port>
    <password />
   </log-server>
   <backup-log-server-list />
  </common-logging>
  <trace-conf>
   <trace-item>
    <trace-type>1</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>2</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>3</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>4</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>5</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>6</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>7</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>8</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>9</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>10</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>11</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>12</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>13</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>14</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>15</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>16</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>17</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>18</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>19</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>20</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>21</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>22</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>23</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>24</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>25</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>26</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>27</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>28</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>29</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>30</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>31</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>32</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>33</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>34</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
   <trace-item>
    <trace-type>35</trace-type>
    <trace-level>1</trace-level>
   </trace-item>
  </trace-conf>
  <dynamic-routing>
   <dynamic-routing-enabled>0</dynamic-routing-enabled>
   <routing-protocol-list />
  </dynamic-routing>
  <blocked-ip-list />
  <blocked-ip-exception-list />
  <dvcp-client>
   <enabled>0</enabled>
   <managed>0</managed>
   <use-template>0</use-template>
   <client-id />
   <server-port>4112</server-port>
   <primary-server>
    <ip>0.0.0.0</ip>
    <password />
   </primary-server>
   <backup-server-list />
   <lease-interval>60</lease-interval>
   <ca-cert />
   <debug>0</debug>
   <domain-name />
   <dns-server-list />
   <wins-server-list />
  </dvcp-client>
  <pptp>
   <pptp-enabled>0</pptp-enabled>
   <pptp-mppe-encryption-option>0</pptp-mppe-encryption-option>
   <pptp-ras-user-group>PPTP-Users</pptp-ras-user-group>
   <pptp-mtu>1400</pptp-mtu>
   <pptp-mru>1400</pptp-mru>
  </pptp>
  <spyware>
   <blocked-list-enabled>0</blocked-list-enabled>
  </spyware>
  <multi-wan>
   <algorithm>0</algorithm>
   <tcp-sticky-timer>0</tcp-sticky-timer>
   <udp-sticky-timer>0</udp-sticky-timer>
   <others-sticky-timer>0</others-sticky-timer>
   <failback-grace-period>0</failback-grace-period>
  </multi-wan>
  <monitord>
   <probe-list>
    <probe>
     <if-name>External</if-name>
     <probe-interval>15</probe-interval>
     <deactivate-count>3</deactivate-count>
     <reactivate-count>3</reactivate-count>
    </probe>
   </probe-list>
  </monitord>
  <web-certificate />
  <performance-log>
   <bandwidth>0</bandwidth>
  </performance-log>
  <single-sign-on>
   <enabled>0</enabled>
   <sso-agent-ip />
   <user-ip-cache-timeout>600</user-ip-cache-timeout>
   <exclude-ip-list />
  </single-sign-on>
  <device-conf>
   <for-model>X10e</for-model>
   <system-contact>system contact</system-contact>
   <location>system location</location>
   <time-zone>19</time-zone>
   <email />
   <system-name>Head_Office</system-name>
   <domain-name />
  </device-conf>
  <auth-global-setting>
   <auth-user-timeout>7200</auth-user-timeout>
   <auth-user-session-timeout>0</auth-user-session-timeout>
   <mgmt-user-idle-timeout>900</mgmt-user-idle-timeout>
   <mgmt-user-session-timeout>36000</mgmt-user-session-timeout>
   <hotspot-user-idle-timeout>7200</hotspot-user-idle-timeout>
   <hotspot-user-session-timeout>0</hotspot-user-session-timeout>
   <same-user-multi-login>1</same-user-multi-login>
   <redirect-url />
   <auto-redirect>0</auto-redirect>
  </auth-global-setting>
  <misc-global-setting>
   <syn-checking-enable>1</syn-checking-enable>
   <vlan-forward>0</vlan-forward>
   <log-in-out-broadcast>0</log-in-out-broadcast>
   <auto-blocked-duration>1200</auto-blocked-duration>
   <block-spoof-enabled>1</block-spoof-enabled>
   <auto-order-enabled>1</auto-order-enabled>
   <qos-enable>0</qos-enable>
   <external-console-enabled>0</external-console-enabled>
   <auto-reboot>
    <enabled>0</enabled>
    <day>7</day>
    <hour>0</hour>
    <minute>0</minute>
   </auto-reboot>
  </misc-global-setting>
  <vpn-global-setting>
   <ipsec-pass-through>0</ipsec-pass-through>
   <tos-tunnel-flag>0</tos-tunnel-flag>
   <auto-start-tunnel>1</auto-start-tunnel>
   <tunnel-switch-list>
    <tunnel-switch-para>
     <tunnel-switch-on-off>1</tunnel-switch-on-off>
    </tunnel-switch-para>
   </tunnel-switch-list>
   <muvpn-security-readonly>0</muvpn-security-readonly>
   <muvpn-virtual-adapter-settings>Preferred</muvpn-virtual-adapter-settings>
   <management-server-ip />
  </vpn-global-setting>
  <ddns-service-list />
  <blocked-ports>
   <blocked-port-list>
    <blocked-port>1</blocked-port>
    <blocked-port>111</blocked-port>
    <blocked-port>513</blocked-port>
    <blocked-port>514</blocked-port>
    <blocked-port>2049</blocked-port>
    <blocked-port>6000</blocked-port>
    <blocked-port>6001</blocked-port>
    <blocked-port>6002</blocked-port>
    <blocked-port>6003</blocked-port>
    <blocked-port>6004</blocked-port>
    <blocked-port>6005</blocked-port>
    <blocked-port>7100</blocked-port>
    <blocked-port>8000</blocked-port>
   </blocked-port-list>
   <log>1</log>
   <auto-blocked-enabled>0</auto-blocked-enabled>
   <alarm>Blocked Ports</alarm>
  </blocked-ports>
  <lsd>
   <enable>1</enable>
   <debug>0</debug>
   <serial>0</serial>
   <feature-key-url>https://services.watchguard.com/DeviceServices/DeviceServices.asmx/RetrieveFeatureKeyAsXml?sn=%s&amp;pv=1&amp;fv=%s&amp;mv=optional&amp;mt=5</feature-key-url>
   <rss-url>http://contentmirror.watchguard.com/WGRDWeb/rss/WSMAlerts.xml</rss-url>
   <rss-check>1</rss-check>
  </lsd>
 </system-parameters>
 <address-group-list>
  <address-group>
   <name>Any</name>
   <description>Any network address</description>
   <property>4</property>
   <addr-group-member>
    <member>
     <type>2</type>
     <ip-network-addr>0.0.0.0</ip-network-addr>
     <ip-mask>0.0.0.0</ip-mask>
    </member>
   </addr-group-member>
  </address-group>
  <address-group>
   <name>Firebox</name>
   <description>Firebox internal address</description>
   <property>4</property>
   <addr-group-member>
    <member>
     <type>1</type>
     <host-ip-addr>0.0.0.0</host-ip-addr>
    </member>
   </addr-group-member>
  </address-group>
  <address-group>
   <name>PPTP-Users_pool</name>
   <description>Created by Policy Manager</description>
   <property>0</property>
  </address-group>
  <address-group>
   <name>dnat.from.1</name>
   <description />
   <property>16</property>
   <addr-group-member>
    <member>
     <type>2</type>
     <ip-network-addr>192.168.0.0</ip-network-addr>
     <ip-mask>255.255.0.0</ip-mask>
    </member>
   </addr-group-member>
  </address-group>
  <address-group>
   <name>dnat.from.2</name>
   <description>Any network address</description>
   <property>16</property>
   <addr-group-member>
    <member>
     <type>2</type>
     <ip-network-addr>172.16.0.0</ip-network-addr>
     <ip-mask>255.240.0.0</ip-mask>
    </member>
   </addr-group-member>
  </address-group>
  <address-group>
   <name>dnat.from.3</name>
   <description>Any network address</description>
   <property>16</property>
   <addr-group-member>
    <member>
     <type>2</type>
     <ip-network-addr>10.0.0.0</ip-network-addr>
     <ip-mask>255.0.0.0</ip-mask>
    </member>
   </addr-group-member>
  </address-group>
  <address-group>
   <name>tunnel.1.tlc</name>
   <description />
   <property>16</property>
   <addr-group-member>
    <member>
     <type>2</type>
     <ip-network-addr>192.168.222.0</ip-network-addr>
     <ip-mask>255.255.255.0</ip-mask>
    </member>
   </addr-group-member>
  </address-group>
  <address-group>
   <name>tunnel.1.trm</name>
   <description />
   <property>16</property>
   <addr-group-member>
    <member>
     <type>2</type>
     <ip-network-addr>192.168.111.0</ip-network-addr>
     <ip-mask>255.255.255.0</ip-mask>
    </member>
   </addr-group-member>
  </address-group>
 </address-group-list>
 <service-list>
  <service>
   <name>Any</name>
   <description>Any service</description>
   <property>4</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>0</protocol>
     <server-port>0</server-port>
    </member>
   </service-item>
   <idle-timeout>300</idle-timeout>
  </service>
  <service>
   <name>Archie</name>
   <description>An FTP database retrieval service</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>1525</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Auth</name>
   <description>A protocol used to map a certain TCP connection to a username</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>113</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>BGP</name>
   <description>Border Gateway Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>179</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Citrix</name>
   <description>Citrix ICA protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>1494</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Clarent-Command</name>
   <description>Clarent IP telephony protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>5002</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>5001</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Clarent-Gateway</name>
   <description>Clarent IP telephony protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>5010</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>4045</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>4040</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>CU-SeeMe</name>
   <description>CU-SeeMe Videoconferencing Program</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>24032</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>7648</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>7648</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>DHCP-Client</name>
   <description>Bootstrap Protocol - Client</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>68</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>DHCP-Server</name>
   <description>Bootstrap Protocol - Server</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>67</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>DNS</name>
   <description>Domain Name Services</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>53</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>53</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>DNS-proxy</name>
   <description>Domain Name Services</description>
   <property>2</property>
   <proxy-type>DNS</proxy-type>
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>53</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>53</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Entrust</name>
   <description>Entrust Administration and Key Management Services</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>709</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>710</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Finger</name>
   <description>Finger Service</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>79</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>FTP</name>
   <description>File Transfer Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>21</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>FTP-proxy</name>
   <description>File Transfer Protocol</description>
   <property>2</property>
   <proxy-type>FTP</proxy-type>
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>21</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Gopher</name>
   <description>Gopher Search Service</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>70</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>GRE</name>
   <description>Generic Routing Encapsulation Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>47</protocol>
     <server-port>0</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>HBCI</name>
   <description>Home Banking Computer Interface</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>3000</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>HTTP</name>
   <description>Hypertext Transfer Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>80</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>HTTP-proxy</name>
   <description>Hypertext Transfer Protocol</description>
   <property>2</property>
   <proxy-type>HTTP</proxy-type>
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>80</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>HTTPS</name>
   <description>Secure HTTP</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>443</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>IDENT</name>
   <description>Identification (ident) Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>113</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>IGMP</name>
   <description>Internet Group Management Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>2</protocol>
     <server-port>0</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>IKE</name>
   <description>Internet Key Exchange Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>500</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>4500</server-port>
    </member>
   </service-item>
   <idle-timeout>900</idle-timeout>
  </service>
  <service>
   <name>IMAP</name>
   <description>Internet Message Access Protocol version 4</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>143</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Intel-Video-Phone</name>
   <description>An H.323 Application</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>1720</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>522</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>IPSec</name>
   <description>IPSec is a VPN tunnelling protocol with encryption</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>4500</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>50</protocol>
     <server-port>0</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>51</protocol>
     <server-port>0</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>500</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>IRC</name>
   <description>Internet Relay Chat</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>6667</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Kerberos-V4</name>
   <description>Network Authentication Protocol v.4</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>750</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Kerberos-V5</name>
   <description>Network Authentication Protocol v.5</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>88</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>88</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>LDAP</name>
   <description>Lightweight Directory Access Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>389</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>LDAP-SSL</name>
   <description>Lightweight Directory Access Protocol over TLS/SSL</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>636</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Lotus-Notes</name>
   <description>IBM Lotus Notes</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>1352</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>1352</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>L2TP</name>
   <description>Layer 2 Tunneling Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>1701</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>MS-SQL-Monitor</name>
   <description>Microsoft SQL Administrator tool</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>1434</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>1434</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>MS-SQL-Server</name>
   <description>Microsoft SQL Server</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>1433</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>1433</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>MS-Win-Media</name>
   <description>MS-Streaming</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>1755</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>80</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>NetMeeting</name>
   <description>Microsoft Netmeeting</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>1720</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>389</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>NFS</name>
   <description>Network File System Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>2049</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>2049</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>NNTP</name>
   <description>Network News Transfer Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>119</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>NTP</name>
   <description>Network Time Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>123</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>123</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>OSPF</name>
   <description>Open Shortest Path First - Interior Gateway Routing Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>89</protocol>
     <server-port>0</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>pcAnywhere</name>
   <description>Symantec Remote Control</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>5631</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>5632</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>65301</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>22</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Ping</name>
   <description>ICMP Message - Echo Request and Echo Reply</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>1</protocol>
     <icmp-type>8</icmp-type>
     <icmp-code>255</icmp-code>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>POP2</name>
   <description>Post Office Protocol V2</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>109</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>POP3</name>
   <description>Post Office Protocol V3</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>110</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>POP3-proxy</name>
   <description>Post Office Protocol V3</description>
   <property>2</property>
   <proxy-type>POP3</proxy-type>
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>110</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>PPTP</name>
   <description>Point-to-Point Tunneling Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>1723</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>47</protocol>
     <server-port>0</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>RADIUS</name>
   <description>Remote Authentication Dial-In User Services</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>1645</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>RADIUS-Accounting</name>
   <description>Remote Authentication Dial-In User Accounting Services</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>1646</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>RADIUS-RFC</name>
   <description>RFC Remote Authentication Dial-In User Services</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>1812</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>RADIUS-Acct-RFC</name>
   <description>RFC Remote Authentication Dial-In User Accounting Services</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>1813</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>RealPlayerG2</name>
   <description>RealPlayer G2, v7, v8 Media Streaming Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>554</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>80</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>RDP</name>
   <description>Remote Desktop Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>3389</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Rlogin</name>
   <description>Remote Login</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>513</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>RIP</name>
   <description>Routing Information Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>520</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>RSH</name>
   <description>Remote Shell (rsh)</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>514</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>SecurID</name>
   <description>RSA SecurID two-factor authentication</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>5510</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>5500</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>SMB</name>
   <description>Server Message Block Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>445</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>445</server-port>
    </member>
    <member>
     <type>2</type>
     <protocol>17</protocol>
     <start-server-port>137</start-server-port>
     <end-server-port>138</end-server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>139</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>SMTP</name>
   <description>Simple Mail Transfer Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>25</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>SMTP-proxy</name>
   <description>Simple Mail Transfer Protocol</description>
   <property>2</property>
   <proxy-type>SMTP</proxy-type>
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>25</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>SNMP</name>
   <description>Simple Network Management Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>161</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>SNMP-Trap</name>
   <description>Simple Network Management Protocol-Trap</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>162</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>SQL*Net</name>
   <description>Oracle SQL*Net</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>1521</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>1526</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>SQL-Server</name>
   <description>a Access to Sybase Central and SQL Advantage software</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>10000</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>SSH</name>
   <description>Secure Shell (Secure Remote Login Protocol)</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>22</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>SSL-VPN</name>
   <description>Built-in policy template for SSL VPN.</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>443</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>SunRPC</name>
   <description>Sun Remote Procedure Call</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>111</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>111</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Syslog</name>
   <description>System Logging Utilities</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>514</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>TACACS</name>
   <description>Terminal Access Controller Access Control System</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>49</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>TACACS+</name>
   <description>Terminal Access Controller Access Control System</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>49</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>TCP</name>
   <description>TCP Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>0</server-port>
    </member>
   </service-item>
   <idle-timeout>43205</idle-timeout>
  </service>
  <service>
   <name>TCP-UDP-proxy</name>
   <description>TCP/UDP Protocol</description>
   <property>2</property>
   <proxy-type>TCP-UDP</proxy-type>
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>0</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>0</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>TCP-UDP</name>
   <description>TCP Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>0</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>0</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Telnet</name>
   <description>Remote Login</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>23</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Time</name>
   <description>Time Server</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>37</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>37</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Timbuktu</name>
   <description>Remote Control and File Transfer Software</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>1417</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>407</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>Traceroute</name>
   <description>Traceroute Service</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>2</type>
     <protocol>17</protocol>
     <start-server-port>33401</start-server-port>
     <end-server-port>65535</end-server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>UDP</name>
   <description>Any Udp Service</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>0</server-port>
    </member>
   </service-item>
   <idle-timeout>15</idle-timeout>
  </service>
  <service>
   <name>UUCP</name>
   <description>Unix-to-Unix Copy Program</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>540</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>WAIS</name>
   <description>Wide Area Information Service</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>210</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>WG-Firebox-Mgmt</name>
   <description>WatchGuard Configuration and Monitoring</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>4105</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>4117</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>4118</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>WG-Fireware-XTM-WebUI</name>
   <description>WatchGuard Configuration and Monitoring using Fireware XTM Web UI</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>8080</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>WG-Auth</name>
   <description>WatchGuard Authentication Service</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>4100</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>WG-Mgmt-Server</name>
   <description>WatchGuard Management Server</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>4110</server-port>
    </member>
    <member>
     <type>2</type>
     <protocol>6</protocol>
     <start-server-port>4112</start-server-port>
     <end-server-port>4113</end-server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>WG-Logging</name>
   <description>WatchGuard Logging</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>4107</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>4115</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>WG-SmallOffice-Mgmt</name>
   <description>Secure Access to Soho boxes via a Web Browser</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>4109</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>WG-WebBlocker</name>
   <description>WebBlocker Server</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>5003</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>5003</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>WHOIS</name>
   <description>whois</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>43</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>WinFrame</name>
   <description>Citrix ICA</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>1494</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>X11</name>
   <description>X Windows System Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>2</type>
     <protocol>6</protocol>
     <start-server-port>6000</start-server-port>
     <end-server-port>6063</end-server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>TFTP</name>
   <description>Trivial File Transfer Protocol</description>
   <property>2</property>
   <proxy-type />
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>69</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>H323-ALG</name>
   <description>H323 protocol</description>
   <property>2</property>
   <proxy-type>H323</proxy-type>
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>1719</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>1720</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>SIP-ALG</name>
   <description>Session Initiation Protocol</description>
   <property>2</property>
   <proxy-type>SIP</proxy-type>
   <service-item>
    <member>
     <type>1</type>
     <protocol>17</protocol>
     <server-port>5060</server-port>
    </member>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>5060</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
  <service>
   <name>HTTPS-proxy</name>
   <description>HTTP over SSL</description>
   <property>2</property>
   <proxy-type>HTTPS</proxy-type>
   <service-item>
    <member>
     <type>1</type>
     <protocol>6</protocol>
     <server-port>443</server-port>
    </member>
   </service-item>
   <idle-timeout>0</idle-timeout>
  </service>
 </service-list>
 <traffic-mgmt-list />
 <nat-list>
  <nat>
   <name>Dynamic-NAT</name>
   <description>Network Address Translation</description>
   <property>4</property>
   <type>3</type>
   <algorithm>0</algorithm>
   <proxy-arp>0</proxy-arp>
  </nat>
 </nat-list>
 <ipsec-proposal-list>
  <ipsec-proposal>
   <name>ESP-AES-SHA1</name>
   <description />
   <property>2</property>
   <anti-replay-window>0</anti-replay-window>
   <type>1</type>
   <esp-transform>
    <member>
     <encryp-algm>12</encryp-algm>
     <auth-algm>2</auth-algm>
     <time-unit>1</time-unit>
     <lifetime>8</lifetime>
     <life-length>128000</life-length>
     <auth-key-length>0</auth-key-length>
     <encryp-key-length>32</encryp-key-length>
    </member>
   </esp-transform>
  </ipsec-proposal>
  <ipsec-proposal>
   <name>ESP-AES-MD5</name>
   <description />
   <property>2</property>
   <anti-replay-window>0</anti-replay-window>
   <type>1</type>
   <esp-transform>
    <member>
     <encryp-algm>12</encryp-algm>
     <auth-algm>1</auth-algm>
     <time-unit>1</time-unit>
     <lifetime>8</lifetime>
     <life-length>128000</life-length>
     <auth-key-length>0</auth-key-length>
     <encryp-key-length>32</encryp-key-length>
    </member>
   </esp-transform>
  </ipsec-proposal>
  <ipsec-proposal>
   <name>ESP-3DES-SHA1</name>
   <description />
   <property>2</property>
   <anti-replay-window>0</anti-replay-window>
   <type>1</type>
   <esp-transform>
    <member>
     <encryp-algm>3</encryp-algm>
     <auth-algm>2</auth-algm>
     <time-unit>1</time-unit>
     <lifetime>8</lifetime>
     <life-length>128000</life-length>
     <auth-key-length>0</auth-key-length>
     <encryp-key-length>0</encryp-key-length>
    </member>
   </esp-transform>
  </ipsec-proposal>
  <ipsec-proposal>
   <name>ESP-3DES-MD5</name>
   <description />
   <property>2</property>
   <anti-replay-window>0</anti-replay-window>
   <type>1</type>
   <esp-transform>
    <member>
     <encryp-algm>3</encryp-algm>
     <auth-algm>1</auth-algm>
     <time-unit>1</time-unit>
     <lifetime>8</lifetime>
     <life-length>128000</life-length>
     <auth-key-length>0</auth-key-length>
     <encryp-key-length>0</encryp-key-length>
    </member>
   </esp-transform>
  </ipsec-proposal>
  <ipsec-proposal>
   <name>ESP-DES-SHA1</name>
   <description />
   <property>2</property>
   <anti-replay-window>0</anti-replay-window>
   <type>1</type>
   <esp-transform>
    <member>
     <encryp-algm>2</encryp-algm>
     <auth-algm>2</auth-algm>
     <time-unit>1</time-unit>
     <lifetime>8</lifetime>
     <life-length>128000</life-length>
     <auth-key-length>0</auth-key-length>
     <encryp-key-length>0</encryp-key-length>
    </member>
   </esp-transform>
  </ipsec-proposal>
  <ipsec-proposal>
   <name>ESP-DES-MD5</name>
   <description />
   <property>2</property>
   <anti-replay-window>0</anti-replay-window>
   <type>1</type>
   <esp-transform>
    <member>
     <encryp-algm>2</encryp-algm>
     <auth-algm>1</auth-algm>
     <time-unit>1</time-unit>
     <lifetime>8</lifetime>
     <life-length>128000</life-length>
     <auth-key-length>0</auth-key-length>
     <encryp-key-length>0</encryp-key-length>
    </member>
   </esp-transform>
  </ipsec-proposal>
  <ipsec-proposal>
   <name>phase2_proposal.1</name>
   <description />
   <property>0</property>
   <anti-replay-window>0</anti-replay-window>
   <type>1</type>
   <esp-transform>
    <member>
     <encryp-algm>12</encryp-algm>
     <auth-algm>2</auth-algm>
     <time-unit>1</time-unit>
     <lifetime>12</lifetime>
     <life-length>0</life-length>
     <auth-key-length>0</auth-key-length>
     <encryp-key-length>32</encryp-key-length>
    </member>
   </esp-transform>
  </ipsec-proposal>
 </ipsec-proposal-list>
 <ipsec-action-list>
  <ipsec-action>
   <name>tunnel.1</name>
   <description>Created by Policy Manager</description>
   <property>0</property>
   <mode>1</mode>
   <key-mode>2</key-mode>
   <vpn-tunnel-sharing>
    <use-any-for-service>1</use-any-for-service>
    <use-any-for-address>0</use-any-for-address>
    <sharing-across-policy>1</sharing-across-policy>
   </vpn-tunnel-sharing>
   <use-local-remote-pair>1</use-local-remote-pair>
   <local-remote-pair-list>
    <local-remote-pair>
     <local-addr>tunnel.1.tlc</local-addr>
     <remote-addr>tunnel.1.trm</remote-addr>
     <direction>0</direction>
     <nat />
    </local-remote-pair>
   </local-remote-pair-list>
   <ike-policy-group>gateway.1</ike-policy-group>
   <pfs>1</pfs>
   <dh-group>2</dh-group>
   <ipsec-proposal>
    <member>ESP-AES-SHA1</member>
   </ipsec-proposal>
  </ipsec-action>
 </ipsec-action-list>
 <ike-action-list>
  <ike-action>
   <name>gateway.1_bo</name>
   <description>Created by Policy Manager</description>
   <property>0</property>
   <mode>4</mode>
   <nat-t-config>
    <nat-t-enabled>0</nat-t-enabled>
    <nat-t-keep-alive>20</nat-t-keep-alive>
    <nat-t-from-port>4500</nat-t-from-port>
    <nat-t-to-port>4500</nat-t-to-port>
    <nat-t-udp-checksum-enabled>0</nat-t-udp-checksum-enabled>
   </nat-t-config>
   <pfs>0</pfs>
   <xauth>1</xauth>
   <ras-user-group-name />
   <ike-transform>
    <member>
     <description />
     <auth-method>1</auth-method>
     <dh-group>2</dh-group>
     <encryp-algm>5</encryp-algm>
     <auth-algm>2</auth-algm>
     <time-unit>1</time-unit>
     <lifetime>8</lifetime>
     <life-length>0</life-length>
    </member>
   </ike-transform>
  </ike-action>
 </ike-action-list>
 <ike-policy-list>
  <ike-policy>
   <name>gateway.1</name>
   <description />
   <property>0</property>
   <peer-addr>Any</peer-addr>
   <ike-action>gateway.1_bo</ike-action>
   <keep-alive-interval>30</keep-alive-interval>
   <keep-alive-max>5</keep-alive-max>
   <dpd-enabled>1</dpd-enabled>
   <dpd-max-failure>5</dpd-max-failure>
   <dpd-worry-metric>20</dpd-worry-metric>
   <vpn-type>1</vpn-type>
   <auto-start>1</auto-start>
   <peer-auth>
    <peer-auth-mask>8</peer-auth-mask>
    <user-domain-name>BranchOffice1@imn</user-domain-name>
   </peer-auth>
   <local-cert>
    <rsa-cert />
    <rsa-id-type>0</rsa-id-type>
    <dsa-cert />
    <dsa-id-type>0</dsa-id-type>
    <psk>+AF310335D96DE307D3C46C8268E8A457ABD0E08232BD4882</psk>
    <psk-hex>0</psk-hex>
    <local-id-type>1</local-id-type>
    <local-id-data>1.1.100.1</local-id-data>
    <local-if>External</local-if>
   </local-cert>
  </ike-policy>
 </ike-policy-list>
 <ike-policy-group-list>
  <ike-policy-group>
   <name>gateway.1</name>
   <description>Created by Policy Manager</description>
   <property>0</property>
   <member-list>
    <member>
     <ike-policy>gateway.1</ike-policy>
    </member>
   </member-list>
  </ike-policy-group>
 </ike-policy-group-list>
 <schedule-list>
  <schedule>
   <name>Always On</name>
   <description />
   <type>0</type>
   <property>4</property>
   <on-off>1</on-off>
   <schedule>
    <member>
     <day-of-week>0</day-of-week>
     <period>
      <member>
       <on-flag>1</on-flag>
       <from-hour>0</from-hour>
       <from-min>0</from-min>
       <to-hour>24</to-hour>
       <to-min>0</to-min>
      </member>
     </period>
    </member>
   </schedule>
  </schedule>
  <schedule>
   <name>MF 0700-1900</name>
   <description>Monday through Friday 7AM to 7PM</description>
   <type>2</type>
   <property>4</property>
   <on-off>1</on-off>
   <schedule>
    <member>
     <day-of-week>1</day-of-week>
     <period>
      <member>
       <on-flag>1</on-flag>
       <from-hour>7</from-hour>
       <from-min>0</from-min>
       <to-hour>19</to-hour>
       <to-min>0</to-min>
      </member>
     </period>
    </member>
    <member>
     <day-of-week>2</day-of-week>
     <period>
      <member>
       <on-flag>1</on-flag>
       <from-hour>7</from-hour>
       <from-min>0</from-min>
       <to-hour>19</to-hour>
       <to-min>0</to-min>
      </member>
     </period>
    </member>
    <member>
     <day-of-week>3</day-of-week>
     <period>
      <member>
       <on-flag>1</on-flag>
       <from-hour>7</from-hour>
       <from-min>0</from-min>
       <to-hour>19</to-hour>
       <to-min>0</to-min>
      </member>
     </period>
    </member>
    <member>
     <day-of-week>4</day-of-week>
     <period>
      <member>
       <on-flag>1</on-flag>
       <from-hour>7</from-hour>
       <from-min>0</from-min>
       <to-hour>19</to-hour>
       <to-min>0</to-min>
      </member>
     </period>
    </member>
    <member>
     <day-of-week>5</day-of-week>
     <period>
      <member>
       <on-flag>1</on-flag>
       <from-hour>7</from-hour>
       <from-min>0</from-min>
       <to-hour>19</to-hour>
       <to-min>0</to-min>
      </member>
     </period>
    </member>
   </schedule>
  </schedule>
 </schedule-list>
 <policy-list>
  <policy>
   <name>Allow-IKE-to-Firebox</name>
   <description />
   <property>32</property>
   <service>IKE</service>
   <firewall>1</firewall>
   <reject-action>1</reject-action>
   <from-alias-list>
    <alias>Any</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>Firebox</alias>
   </to-alias-list>
   <proxy />
   <traffic-mgmt />
   <qos-marking>
    <marking-field>0</marking-field>
    <marking-method>
     <marking-type>0</marking-type>
    </marking-method>
    <priority-method>0</priority-method>
   </qos-marking>
   <nat />
   <schedule />
   <connection-rate>0</connection-rate>
   <connection-rate-alarm />
   <log>0</log>
   <enable>1</enable>
   <idle-timeout>0</idle-timeout>
   <user-firewall>0</user-firewall>
   <ips-monitor-enabled>0</ips-monitor-enabled>
   <alarm />
   <send-tcp-reset>1</send-tcp-reset>
   <policy-routing />
   <using-global-sticky-setting>0</using-global-sticky-setting>
   <policy-sticky-timer>0</policy-sticky-timer>
   <global-1to1-nat>0</global-1to1-nat>
   <global-dnat>0</global-dnat>
  </policy>
  <policy>
   <name>Any From Firebox-00</name>
   <description>Policy added on 10/03/03 14:59.</description>
   <property>32</property>
   <service>Any</service>
   <firewall>1</firewall>
   <reject-action>1</reject-action>
   <from-alias-list>
    <alias>Any From Firebox.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>Any From Firebox.1.to</alias>
   </to-alias-list>
   <proxy />
   <traffic-mgmt />
   <qos-marking>
    <marking-field>0</marking-field>
    <marking-method>
     <marking-type>0</marking-type>
    </marking-method>
    <priority-method>0</priority-method>
   </qos-marking>
   <nat />
   <schedule>Always On</schedule>
   <connection-rate>0</connection-rate>
   <connection-rate-alarm />
   <log>0</log>
   <enable>1</enable>
   <idle-timeout>0</idle-timeout>
   <user-firewall>0</user-firewall>
   <ips-monitor-enabled>0</ips-monitor-enabled>
   <alarm />
   <send-tcp-reset>1</send-tcp-reset>
   <policy-routing />
   <using-global-sticky-setting>1</using-global-sticky-setting>
   <policy-sticky-timer>0</policy-sticky-timer>
   <global-1to1-nat>0</global-1to1-nat>
   <global-dnat>0</global-dnat>
  </policy>
  <policy>
   <name>FTP-00</name>
   <description>Policy added on 10/03/03 14:59.</description>
   <property>0</property>
   <service>FTP</service>
   <firewall>1</firewall>
   <reject-action>1</reject-action>
   <from-alias-list>
    <alias>FTP.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>FTP.1.to</alias>
   </to-alias-list>
   <proxy />
   <traffic-mgmt />
   <qos-marking>
    <marking-field>0</marking-field>
    <marking-method>
     <marking-type>0</marking-type>
    </marking-method>
    <priority-method>0</priority-method>
   </qos-marking>
   <nat />
   <schedule>Always On</schedule>
   <connection-rate>0</connection-rate>
   <connection-rate-alarm />
   <log>0</log>
   <enable>1</enable>
   <idle-timeout>0</idle-timeout>
   <user-firewall>0</user-firewall>
   <ips-monitor-enabled>0</ips-monitor-enabled>
   <alarm />
   <send-tcp-reset>1</send-tcp-reset>
   <policy-routing />
   <using-global-sticky-setting>1</using-global-sticky-setting>
   <policy-sticky-timer>0</policy-sticky-timer>
   <global-1to1-nat>1</global-1to1-nat>
   <global-dnat>1</global-dnat>
  </policy>
  <policy>
   <name>WatchGuard Web UI-00</name>
   <description>Policy added on 10/03/03 14:59.</description>
   <property>0</property>
   <service>WG-Fireware-XTM-WebUI</service>
   <firewall>1</firewall>
   <reject-action>1</reject-action>
   <from-alias-list>
    <alias>WatchGuard Web UI.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>WatchGuard Web UI.1.to</alias>
   </to-alias-list>
   <proxy />
   <traffic-mgmt />
   <qos-marking>
    <marking-field>0</marking-field>
    <marking-method>
     <marking-type>0</marking-type>
    </marking-method>
    <priority-method>0</priority-method>
   </qos-marking>
   <nat />
   <schedule>Always On</schedule>
   <connection-rate>0</connection-rate>
   <connection-rate-alarm />
   <log>0</log>
   <enable>1</enable>
   <idle-timeout>0</idle-timeout>
   <user-firewall>0</user-firewall>
   <ips-monitor-enabled>0</ips-monitor-enabled>
   <alarm />
   <send-tcp-reset>1</send-tcp-reset>
   <policy-routing />
   <using-global-sticky-setting>1</using-global-sticky-setting>
   <policy-sticky-timer>0</policy-sticky-timer>
   <global-1to1-nat>1</global-1to1-nat>
   <global-dnat>1</global-dnat>
  </policy>
  <policy>
   <name>Ping-00</name>
   <description>Policy added on 10/03/03 14:59.</description>
   <property>0</property>
   <service>Ping</service>
   <firewall>1</firewall>
   <reject-action>1</reject-action>
   <from-alias-list>
    <alias>Ping.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>Ping.1.to</alias>
   </to-alias-list>
   <proxy />
   <traffic-mgmt />
   <qos-marking>
    <marking-field>0</marking-field>
    <marking-method>
     <marking-type>0</marking-type>
    </marking-method>
    <priority-method>0</priority-method>
   </qos-marking>
   <nat />
   <schedule>Always On</schedule>
   <connection-rate>0</connection-rate>
   <connection-rate-alarm />
   <log>0</log>
   <enable>1</enable>
   <idle-timeout>0</idle-timeout>
   <user-firewall>0</user-firewall>
   <ips-monitor-enabled>0</ips-monitor-enabled>
   <alarm />
   <send-tcp-reset>1</send-tcp-reset>
   <policy-routing />
   <using-global-sticky-setting>1</using-global-sticky-setting>
   <policy-sticky-timer>0</policy-sticky-timer>
   <global-1to1-nat>1</global-1to1-nat>
   <global-dnat>1</global-dnat>
  </policy>
  <policy>
   <name>WatchGuard-00</name>
   <description>Policy added on 10/03/03 14:59.</description>
   <property>0</property>
   <service>WG-Firebox-Mgmt</service>
   <firewall>1</firewall>
   <reject-action>1</reject-action>
   <from-alias-list>
    <alias>WatchGuard.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>WatchGuard.1.to</alias>
   </to-alias-list>
   <proxy />
   <traffic-mgmt />
   <qos-marking>
    <marking-field>0</marking-field>
    <marking-method>
     <marking-type>0</marking-type>
    </marking-method>
    <priority-method>0</priority-method>
   </qos-marking>
   <nat />
   <schedule>Always On</schedule>
   <connection-rate>0</connection-rate>
   <connection-rate-alarm />
   <log>0</log>
   <enable>1</enable>
   <idle-timeout>0</idle-timeout>
   <user-firewall>0</user-firewall>
   <ips-monitor-enabled>0</ips-monitor-enabled>
   <alarm />
   <send-tcp-reset>1</send-tcp-reset>
   <policy-routing />
   <using-global-sticky-setting>1</using-global-sticky-setting>
   <policy-sticky-timer>0</policy-sticky-timer>
   <global-1to1-nat>1</global-1to1-nat>
   <global-dnat>1</global-dnat>
  </policy>
  <policy>
   <name>Outgoing-00</name>
   <description>Policy added on 10/03/03 14:59.</description>
   <property>0</property>
   <service>TCP-UDP</service>
   <firewall>1</firewall>
   <reject-action>1</reject-action>
   <from-alias-list>
    <alias>Outgoing.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>Outgoing.1.to</alias>
   </to-alias-list>
   <proxy />
   <traffic-mgmt />
   <qos-marking>
    <marking-field>0</marking-field>
    <marking-method>
     <marking-type>0</marking-type>
    </marking-method>
    <priority-method>0</priority-method>
   </qos-marking>
   <nat />
   <schedule>Always On</schedule>
   <connection-rate>0</connection-rate>
   <connection-rate-alarm />
   <log>0</log>
   <enable>1</enable>
   <idle-timeout>0</idle-timeout>
   <user-firewall>0</user-firewall>
   <ips-monitor-enabled>0</ips-monitor-enabled>
   <alarm />
   <send-tcp-reset>1</send-tcp-reset>
   <policy-routing />
   <using-global-sticky-setting>1</using-global-sticky-setting>
   <policy-sticky-timer>0</policy-sticky-timer>
   <global-1to1-nat>1</global-1to1-nat>
   <global-dnat>1</global-dnat>
  </policy>
  <policy>
   <name>BOVPN-Allow.out-00</name>
   <description>Policy added on 10/03/15 11:10.</description>
   <property>0</property>
   <service>Any</service>
   <firewall>1</firewall>
   <reject-action>1</reject-action>
   <from-alias-list>
    <alias>BOVPN-Allow.out.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>BOVPN-Allow.out.1.to</alias>
   </to-alias-list>
   <proxy />
   <traffic-mgmt />
   <qos-marking>
    <marking-field>0</marking-field>
    <marking-method>
     <marking-type>0</marking-type>
    </marking-method>
    <priority-method>0</priority-method>
   </qos-marking>
   <nat />
   <schedule>Always On</schedule>
   <connection-rate>0</connection-rate>
   <connection-rate-alarm />
   <log>0</log>
   <enable>1</enable>
   <idle-timeout>0</idle-timeout>
   <user-firewall>0</user-firewall>
   <ips-monitor-enabled>0</ips-monitor-enabled>
   <alarm />
   <send-tcp-reset>1</send-tcp-reset>
   <policy-routing />
   <using-global-sticky-setting>1</using-global-sticky-setting>
   <policy-sticky-timer>0</policy-sticky-timer>
   <global-1to1-nat>1</global-1to1-nat>
   <global-dnat>1</global-dnat>
  </policy>
  <policy>
   <name>BOVPN-Allow.in-00</name>
   <description>Policy added on 10/03/15 11:10.</description>
   <property>0</property>
   <service>Any</service>
   <firewall>1</firewall>
   <reject-action>1</reject-action>
   <from-alias-list>
    <alias>BOVPN-Allow.in.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>BOVPN-Allow.in.1.to</alias>
   </to-alias-list>
   <proxy />
   <traffic-mgmt />
   <qos-marking>
    <marking-field>0</marking-field>
    <marking-method>
     <marking-type>0</marking-type>
    </marking-method>
    <priority-method>0</priority-method>
   </qos-marking>
   <nat />
   <schedule>Always On</schedule>
   <connection-rate>0</connection-rate>
   <connection-rate-alarm />
   <log>0</log>
   <enable>1</enable>
   <idle-timeout>0</idle-timeout>
   <user-firewall>0</user-firewall>
   <ips-monitor-enabled>0</ips-monitor-enabled>
   <alarm />
   <send-tcp-reset>1</send-tcp-reset>
   <policy-routing />
   <using-global-sticky-setting>1</using-global-sticky-setting>
   <policy-sticky-timer>0</policy-sticky-timer>
   <global-1to1-nat>1</global-1to1-nat>
   <global-dnat>1</global-dnat>
  </policy>
  <policy>
   <name>Unhandled Internal Packet-00</name>
   <description>Policy added on 10/03/03 14:59.</description>
   <property>32</property>
   <service>Any</service>
   <firewall>2</firewall>
   <reject-action>1</reject-action>
   <from-alias-list>
    <alias>Unhandled Internal Packet.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>Unhandled Internal Packet.1.to</alias>
   </to-alias-list>
   <proxy />
   <traffic-mgmt />
   <qos-marking>
    <marking-field>0</marking-field>
    <marking-method>
     <marking-type>0</marking-type>
    </marking-method>
    <priority-method>0</priority-method>
   </qos-marking>
   <nat />
   <schedule>Always On</schedule>
   <connection-rate>0</connection-rate>
   <connection-rate-alarm />
   <log>1</log>
   <enable>1</enable>
   <idle-timeout>0</idle-timeout>
   <user-firewall>0</user-firewall>
   <ips-monitor-enabled>0</ips-monitor-enabled>
   <alarm />
   <send-tcp-reset>1</send-tcp-reset>
   <policy-routing />
   <using-global-sticky-setting>1</using-global-sticky-setting>
   <policy-sticky-timer>0</policy-sticky-timer>
   <global-1to1-nat>1</global-1to1-nat>
   <global-dnat>1</global-dnat>
  </policy>
  <policy>
   <name>Unhandled External Packet-00</name>
   <description>Policy added on 10/03/03 14:59.</description>
   <property>32</property>
   <service>Any</service>
   <firewall>2</firewall>
   <reject-action>1</reject-action>
   <from-alias-list>
    <alias>Unhandled External Packet.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>Unhandled External Packet.1.to</alias>
   </to-alias-list>
   <proxy />
   <traffic-mgmt />
   <qos-marking>
    <marking-field>0</marking-field>
    <marking-method>
     <marking-type>0</marking-type>
    </marking-method>
    <priority-method>0</priority-method>
   </qos-marking>
   <nat />
   <schedule>Always On</schedule>
   <connection-rate>0</connection-rate>
   <connection-rate-alarm />
   <log>1</log>
   <enable>1</enable>
   <idle-timeout>0</idle-timeout>
   <user-firewall>0</user-firewall>
   <ips-monitor-enabled>0</ips-monitor-enabled>
   <alarm />
   <send-tcp-reset>1</send-tcp-reset>
   <policy-routing />
   <using-global-sticky-setting>1</using-global-sticky-setting>
   <policy-sticky-timer>0</policy-sticky-timer>
   <global-1to1-nat>1</global-1to1-nat>
   <global-dnat>1</global-dnat>
  </policy>
 </policy-list>
 <ras-user-group-list>
  <ras-user-group>
   <name>PPTP-Users</name>
   <description />
   <property>2</property>
   <addr-mgmt>1</addr-mgmt>
   <auth-domain>Firebox-DB</auth-domain>
   <dns-ip>0.0.0.0</dns-ip>
   <expiry>720</expiry>
   <addr-grp-name>PPTP-Users_pool</addr-grp-name>
   <global-idle-timeout>15</global-idle-timeout>
   <max-concurrent-logins>1</max-concurrent-logins>
   <wins-ip>0.0.0.0</wins-ip>
  </ras-user-group>
 </ras-user-group-list>
 <radius-conf-list>
  <radius-conf>
   <name>Primary</name>
   <password />
   <ip>0.0.0.0</ip>
   <port>1645</port>
  </radius-conf>
  <radius-conf>
   <name>Backup</name>
   <password />
   <ip>0.0.0.0</ip>
   <port>1645</port>
  </radius-conf>
 </radius-conf-list>
 <ras-user-list />
 <ras-domain-item-list />
 <ras-server-group-list />
 <proxy-action-list>
  <proxy-action>
   <proxy-name>HTTP-Client</proxy-name>
   <proxy-description>Default configuration for HTTP client</proxy-description>
   <property>4</property>
   <proxy-type>1</proxy-type>
   <proxy-type-attr>client</proxy-type-attr>
   <proxy-referenced>false</proxy-referenced>
   <http>
    <apps-block-profile />
    <ips>
     <enabled>false</enabled>
     <protection-type>client</protection-type>
     <error>
      <allow />
      <log>true</log>
     </error>
     <spyware>true</spyware>
    </ips>
    <deny-message>Content-type: text/html; charset="iso-8859-1"%CRLF%%CRLF%&lt;html&gt;%CRLF%&lt;body&gt;%CRLF%&lt;h3&gt; %(transaction)% denied by WatchGuard HTTP proxy. &lt;/h3&gt;%CRLF%&lt;b&gt; Reason: &lt;/b&gt; %(reason)% &lt;br&gt;%CRLF%&lt;hr size="1" noshade&gt;%CRLF%&lt;b&gt; Method: &lt;/b&gt; %(method)% &lt;br&gt;%CRLF%&lt;b&gt; Host: &lt;/b&gt; %(url-host)% &lt;br&gt;%CRLF%&lt;b&gt; Path: &lt;/b&gt; %(url-path)% &lt;br&gt;%CRLF%&lt;hr size="1" noshade&gt;%CRLF%&lt;/body&gt;%CRLF%&lt;/html&gt;%CRLF%</deny-message>
    <trusted-hosts>
     <rule>
      <name>*.windowsupdate.com</name>
      <pattern>*.windowsupdate.com</pattern>
      <allow />
      <log>false</log>
     </rule>
     <rule>
      <name>*update.microsoft.com</name>
      <pattern>*update.microsoft.com</pattern>
      <allow />
      <log>false</log>
     </rule>
     <fallthrough>
      <allow />
      <log>false</log>
     </fallthrough>
    </trusted-hosts>
    <request>
     <timeout>
      <value>600</value>
      <action>
       <deny />
       <log>true</log>
      </action>
     </timeout>
     <log>
      <enable>false</enable>
      <uri>
       <max-length>256</max-length>
      </uri>
     </log>
     <range>
      <enabled>false</enabled>
      <log>false</log>
     </range>
     <protocol>
      <version>
       <rules>
        <rule>
         <name>HTTP/0.9</name>
         <string />
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>HTTP/1.0</name>
         <string>HTTP/1.0</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>HTTP/1.1</name>
         <string>HTTP/1.1</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>RTSP/1.0</name>
         <string>RTSP/1.0</string>
         <allow />
         <log>true</log>
        </rule>
        <fallthrough>
         <deny />
         <log>true</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </version>
      <pipelining>
       <backlog>
        <value>4</value>
        <action>
         <deny />
         <log>true</log>
        </action>
       </backlog>
      </pipelining>
     </protocol>
     <method>
      <webdav-mech>2</webdav-mech>
      <rules>
       <rule>
        <name>HEAD</name>
        <string>HEAD</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>GET</name>
        <string>GET</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>POST</name>
        <string>POST</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>OPTIONS</name>
        <string>OPTIONS</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>PUT</name>
        <string>PUT</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>DELETE</name>
        <string>DELETE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>COPY</name>
        <string>COPY</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>LOCK</name>
        <string>LOCK</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>MKCOL</name>
        <string>MKCOL</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>MOVE</name>
        <string>MOVE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>PROPFIND</name>
        <string>PROPFIND</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>PROPPATCH</name>
        <string>PROPPATCH</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>UNLOCK</name>
        <string>UNLOCK</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>BCOPY</name>
        <string>BCOPY</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>BDELETE</name>
        <string>BDELETE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>BMOVE</name>
        <string>BMOVE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>BPROPFIND</name>
        <string>BPROPFIND</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>BPROPPATCH</name>
        <string>BPROPPATCH</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>NOTIFY</name>
        <string>NOTIFY</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>POLL</name>
        <string>POLL</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>SEARCH</name>
        <string>SEARCH</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>SUBSCRIBE</name>
        <string>SUBSCRIBE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>UNSUBSCRIBE</name>
        <string>UNSUBSCRIBE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>CCM_POST</name>
        <string>CCM_POST</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>MKACTIVITY</name>
        <string>MKACTIVITY</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>CHECKOUT</name>
        <string>CHECKOUT</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>MERGE</name>
        <string>MERGE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>REPORT</name>
        <string>REPORT</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>CHECKIN</name>
        <string>CHECKIN</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>UNCHECKOUT</name>
        <string>UNCHECKOUT</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>UPDATE</name>
        <string>UPDATE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>LABEL</name>
        <string>LABEL</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>VERSION-CONTROL</name>
        <string>VERSION-CONTROL</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>BASELINE_CONTROL</name>
        <string>BASELINE_CONTROL</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>MKWORKSPACE</name>
        <string>MKWORKSPACE</string>
        <allow />
        <log>false</log>
       </rule>
       <fallthrough>
        <deny />
        <log>true</log>
       </fallthrough>
       <match-length>0</match-length>
      </rules>
     </method>
     <uri>
      <max-length>
       <value>2048</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </max-length>
      <path>
       <rules>
        <fallthrough>
         <allow />
         <log>false</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </path>
      <filter>
       <helper-name />
       <bypass />
      </filter>
     </uri>
     <header>
      <max-total-length>
       <value>0</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </max-total-length>
      <max-line-length>
       <value>16384</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </max-line-length>
      <anonymize>
       <rules>
        <rule>
         <name>From:*</name>
         <pattern>From:*</pattern>
         <strip />
         <log>false</log>
        </rule>
        <rule>
         <name>Via:*</name>
         <pattern>Via:*</pattern>
         <strip />
         <log>false</log>
        </rule>
        <rule>
         <enabled>false</enabled>
         <name>Referer:*</name>
         <pattern>Referer:*</pattern>
         <strip />
         <log>false</log>
        </rule>
        <fallthrough>
         <allow />
         <log>false</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </anonymize>
      <authorization>
       <rules>
        <rule>
         <name>Basic</name>
         <string>Basic</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Digest</name>
         <string>Digest</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>NTLM</name>
         <string>NTLM</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Passport1.4</name>
         <string>Passport1.4</string>
         <allow />
         <log>false</log>
        </rule>
        <fallthrough>
         <strip />
         <log>true</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </authorization>
     </header>
    </request>
    <response>
     <timeout>
      <value>600</value>
      <action>
       <deny />
       <log>true</log>
      </action>
     </timeout>
     <header>
      <max-total-length>
       <value>0</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </max-total-length>
      <max-line-length>
       <value>4096</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </max-line-length>
      <known>
       <rules>
        <rule>
         <name>Accept-Ranges:*</name>
         <pattern>Accept-Ranges:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Age:*</name>
         <pattern>Age:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Allow:*</name>
         <pattern>Allow:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Alternates:*</name>
         <pattern>Alternates:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>AuthData:*</name>
         <pattern>AuthData:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Authentication-Info:*</name>
         <pattern>Authentication-Info:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Authorization:*</name>
         <pattern>Authorization:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Cache-Control:*</name>
         <pattern>Cache-Control:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Connection:*</name>
         <pattern>Connection:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Content-Base:*</name>
         <pattern>Content-Base:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Content-Disposition:*</name>
         <pattern>Content-Disposition:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Content-Encoding:*</name>
         <pattern>Content-Encoding:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Content-Language:*</name>
         <pattern>Content-Language:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Content-Length:*</name>
         <pattern>Content-Length:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Content-Location:*</name>
         <pattern>Content-Location:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Content-MD5:*</name>
         <pattern>Content-MD5:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Content-Range:*</name>
         <pattern>Content-Range:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Content-Type:*</name>
         <pattern>Content-Type:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Content-Version:*</name>
         <pattern>Content-Version:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Date:*</name>
         <pattern>Date:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Derived-From:*</name>
         <pattern>Derived-From:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>ETag:*</name>
         <pattern>ETag:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Expires:*</name>
         <pattern>Expires:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Keep-Alive:*</name>
         <pattern>Keep-Alive:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Last-Modified:*</name>
         <pattern>Last-Modified:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Link:*</name>
         <pattern>Link:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Location:*</name>
         <pattern>Location:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>MIME-Version:*</name>
         <pattern>MIME-Version:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>P3P:*</name>
         <pattern>P3P:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Pragma:*</name>
         <pattern>Pragma:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Proxy-Authenticate:*</name>
         <pattern>Proxy-Authenticate:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Proxy-Connection:*</name>
         <pattern>Proxy-Connection:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Public:*</name>
         <pattern>Public:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Range:*</name>
         <pattern>Range:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Refresh:*</name>
         <pattern>Refresh:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Retry-After:*</name>
         <pattern>Retry-After:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Server:*</name>
         <pattern>Server:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Set-Cookie:*</name>
         <pattern>Set-Cookie:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Set-Cookie2:*</name>
         <pattern>Set-Cookie2:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Trailer:*</name>
         <pattern>Trailer:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Transfer-Encoding:*</name>
         <pattern>Transfer-Encoding:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Upgrade:*</name>
         <pattern>Upgrade:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>URI:*</name>
         <pattern>URI:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Vary:*</name>
         <pattern>Vary:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Via:*</name>
         <pattern>Via:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Warning:*</name>
         <pattern>Warning:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>WWW-Authenticate:*</name>
         <pattern>WWW-Authenticate:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>X-Dig-XMLPipe-Status:*</name>
         <pattern>X-Dig-XMLPipe-Status:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>X-Pad:*</name>
         <pattern>X-Pad:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>X-Powered-By:*</name>
         <pattern>X-Powered-By:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>x-server-ip-address:*</name>
         <pattern>x-server-ips-address:*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>icy-*</name>
         <pattern>icy-*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <fallthrough>
         <strip />
         <log>true</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </known>
      <transfer-encoding>
       <rules>
        <rule>
         <name>chunked</name>
         <string>chunked</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>text</name>
         <string>text</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>identity</name>
         <string>identity</string>
         <allow />
         <log>false</log>
        </rule>
        <fallthrough>
         <strip />
         <log>true</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </transfer-encoding>
      <content-type>
       <rules>
        <rule>
         <name>text/*</name>
         <pattern>text/*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>image/*</name>
         <pattern>image/*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>audio/*</name>
         <pattern>audio/*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>application/pdf</name>
         <string>application/pdf</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>application/x-javascript</name>
         <string>application/x-javascript</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>application/x-shockwave-flash</name>
         <string>application/x-shockwave-flash</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>application/*xml*</name>
         <pattern>application/*xml*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>application/x-httpd-*</name>
         <pattern>application/x-httpd-*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>httpd/*</name>
         <pattern>httpd/*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>application/x-rtsp-tunnelled</name>
         <pattern>application/x-rtsp-tunnelled</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>application/*</name>
         <pattern>application/*</pattern>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <enabled>false</enabled>
         <name>(none)</name>
         <string />
         <allow />
         <log>false</log>
        </rule>
        <fallthrough>
         <deny />
         <log>true</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </content-type>
      <cookies>
       <domains>
        <rules>
         <fallthrough>
          <allow />
          <log>false</log>
         </fallthrough>
         <match-length>0</match-length>
        </rules>
       </domains>
      </cookies>
     </header>
     <body>
      <content-type>
       <rules>
        <rule>
         <name>Java bytecode</name>
         <pattern>%0xcafebabe%*</pattern>
         <deny />
         <log>true</log>
        </rule>
        <rule>
         <name>ZIP archive</name>
         <pattern>%0x504b0304%*</pattern>
         <deny />
         <log>true</log>
        </rule>
        <rule>
         <name>Windows EXE/DLL</name>
         <pattern>%0x4d5a90000300000004000000ffff0000%*</pattern>
         <deny />
         <log>true</log>
        </rule>
        <rule>
         <name>Windows CAB archive</name>
         <pattern>%0x4d53434600000000%*</pattern>
         <deny />
         <log>true</log>
        </rule>
        <fallthrough>
         <allow />
         <log>false</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </content-type>
     </body>
    </response>
    <anti-virus>
     <enabled>false</enabled>
     <virus-found>
      <drop />
      <log>true</log>
     </virus-found>
     <error>
      <allow />
      <log>true</log>
     </error>
     <scan-limit>256000</scan-limit>
     <buffer-size>102400</buffer-size>
    </anti-virus>
    <redirect>
     <enabled>false</enabled>
     <address>0.0.0.0</address>
     <port>0</port>
    </redirect>
   </http>
  </proxy-action>
  <proxy-action>
   <proxy-name>HTTP-Server</proxy-name>
   <proxy-description>Default configuration for HTTP server</proxy-description>
   <property>4</property>
   <proxy-type>1</proxy-type>
   <proxy-type-attr>server</proxy-type-attr>
   <proxy-referenced>false</proxy-referenced>
   <http>
    <apps-block-profile />
    <ips>
     <enabled>false</enabled>
     <protection-type>server</protection-type>
     <error>
      <allow />
      <log>true</log>
     </error>
     <spyware>false</spyware>
    </ips>
    <deny-message>Content-type: text/html; charset="iso-8859-1"%CRLF%%CRLF%&lt;html&gt;%CRLF%&lt;body&gt;%CRLF%&lt;h3&gt; %(transaction)% denied by WatchGuard HTTP proxy. &lt;/h3&gt;%CRLF%&lt;b&gt; Reason: &lt;/b&gt; %(reason)% &lt;br&gt;%CRLF%&lt;hr size="1" noshade&gt;%CRLF%&lt;b&gt; Method: &lt;/b&gt; %(method)% &lt;br&gt;%CRLF%&lt;b&gt; Host: &lt;/b&gt; %(url-host)% &lt;br&gt;%CRLF%&lt;b&gt; Path: &lt;/b&gt; %(url-path)% &lt;br&gt;%CRLF%&lt;hr size="1" noshade&gt;%CRLF%&lt;/body&gt;%CRLF%&lt;/html&gt;%CRLF%</deny-message>
    <trusted-hosts>
     <fallthrough>
      <allow />
      <log>false</log>
     </fallthrough>
    </trusted-hosts>
    <request>
     <timeout>
      <value>600</value>
      <action>
       <deny />
       <log>true</log>
      </action>
     </timeout>
     <log>
      <enable>false</enable>
      <uri>
       <max-length>256</max-length>
      </uri>
     </log>
     <range>
      <enabled>false</enabled>
      <log>false</log>
     </range>
     <protocol>
      <version>
       <rules>
        <rule>
         <name>HTTP/0.9</name>
         <string />
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>HTTP/1.0</name>
         <string>HTTP/1.0</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>HTTP/1.1</name>
         <string>HTTP/1.1</string>
         <allow />
         <log>false</log>
        </rule>
        <fallthrough>
         <deny />
         <log>true</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </version>
      <pipelining>
       <backlog>
        <value>4</value>
        <action>
         <deny />
         <log>true</log>
        </action>
       </backlog>
      </pipelining>
     </protocol>
     <method>
      <webdav-mech>2</webdav-mech>
      <rules>
       <rule>
        <name>HEAD</name>
        <string>HEAD</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>GET</name>
        <string>GET</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>POST</name>
        <string>POST</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <enabled>false</enabled>
        <name>OPTIONS</name>
        <string>OPTIONS</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <enabled>false</enabled>
        <name>PUT</name>
        <string>PUT</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <enabled>false</enabled>
        <name>DELETE</name>
        <string>DELETE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>COPY</name>
        <string>COPY</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>LOCK</name>
        <string>LOCK</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>MKCOL</name>
        <string>MKCOL</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>MOVE</name>
        <string>MOVE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>PROPFIND</name>
        <string>PROPFIND</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>PROPPATCH</name>
        <string>PROPPATCH</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>UNLOCK</name>
        <string>UNLOCK</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>BCOPY</name>
        <string>BCOPY</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>BDELETE</name>
        <string>BDELETE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>BMOVE</name>
        <string>BMOVE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>BPROPFIND</name>
        <string>BPROPFIND</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>BPROPPATCH</name>
        <string>BPROPPATCH</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>NOTIFY</name>
        <string>NOTIFY</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>POLL</name>
        <string>POLL</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>SEARCH</name>
        <string>SEARCH</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>SUBSCRIBE</name>
        <string>SUBSCRIBE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>UNSUBSCRIBE</name>
        <string>UNSUBSCRIBE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>CCM_POST</name>
        <string>CCM_POST</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>MKACTIVITY</name>
        <string>MKACTIVITY</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>CHECKOUT</name>
        <string>CHECKOUT</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>MERGE</name>
        <string>MERGE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>REPORT</name>
        <string>REPORT</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>CHECKIN</name>
        <string>CHECKIN</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>UNCHECKOUT</name>
        <string>UNCHECKOUT</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>UPDATE</name>
        <string>UPDATE</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>LABEL</name>
        <string>LABEL</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>VERSION-CONTROL</name>
        <string>VERSION-CONTROL</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>BASELINE_CONTROL</name>
        <string>BASELINE_CONTROL</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>MKWORKSPACE</name>
        <string>MKWORKSPACE</string>
        <allow />
        <log>false</log>
       </rule>
       <fallthrough>
        <deny />
        <log>true</log>
       </fallthrough>
       <match-length>0</match-length>
      </rules>
     </method>
     <uri>
      <max-length>
       <value>2048</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </max-length>
      <path>
       <rules>
        <fallthrough>
         <allow />
         <log>false</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </path>
      <filter>
       <helper-name />
       <bypass />
      </filter>
     </uri>
     <header>
      <max-total-length>
       <value>0</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </max-total-length>
      <max-line-length>
       <value>16384</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </max-line-length>
      <anonymize>
       <rules>
        <fallthrough>
         <allow />
         <log>false</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </anonymize>
      <authorization>
       <rules>
        <rule>
         <name>Basic</name>
         <string>Basic</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Digest</name>
         <string>Digest</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>NTLM</name>
         <string>NTLM</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>Passport1.4</name>
         <string>Passport1.4</string>
         <allow />
         <log>false</log>
        </rule>
        <fallthrough>
         <strip />
         <log>true</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </authorization>
     </header>
    </request>
    <response>
     <timeout>
      <value>600</value>
      <action>
       <deny />
       <log>true</log>
      </action>
     </timeout>
     <header>
      <max-total-length>
       <value>0</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </max-total-length>
      <max-line-length>
       <value>0</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </max-line-length>
      <known>
       <rules>
        <fallthrough>
         <allow />
         <log>false</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </known>
      <transfer-encoding>
       <rules>
        <rule>
         <name>chunked</name>
         <string>chunked</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>text</name>
         <string>text</string>
         <allow />
         <log>false</log>
        </rule>
        <rule>
         <name>identity</name>
         <string>identity</string>
         <allow />
         <log>false</log>
        </rule>
        <fallthrough>
         <deny />
         <log>true</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </transfer-encoding>
      <content-type>
       <rules>
        <fallthrough>
         <allow />
         <log>true</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </content-type>
      <cookies>
       <domains>
        <rules>
         <fallthrough>
          <allow />
          <log>false</log>
         </fallthrough>
         <match-length>0</match-length>
        </rules>
       </domains>
      </cookies>
     </header>
     <body>
      <content-type>
       <rules>
        <fallthrough>
         <allow />
         <log>false</log>
        </fallthrough>
        <match-length>0</match-length>
       </rules>
      </content-type>
     </body>
    </response>
    <anti-virus>
     <enabled>false</enabled>
     <virus-found>
      <drop />
      <log>true</log>
     </virus-found>
     <error>
      <allow />
      <log>true</log>
     </error>
     <scan-limit>256000</scan-limit>
     <buffer-size>102400</buffer-size>
    </anti-virus>
   </http>
  </proxy-action>
  <proxy-action>
   <proxy-name>SMTP-Incoming</proxy-name>
   <proxy-description>Default configuration for incoming SMTP</proxy-description>
   <property>4</property>
   <proxy-type>2</proxy-type>
   <proxy-type-attr>incoming</proxy-type-attr>
   <proxy-referenced>false</proxy-referenced>
   <smtp>
    <debug>false</debug>
    <timeout>600</timeout>
    <ips>
     <enabled>false</enabled>
     <protection-type>server</protection-type>
     <error>
      <allow />
      <log>true</log>
     </error>
    </ips>
    <masquerading>
     <message-id>false</message-id>
     <server-replies>true</server-replies>
     <helo-name />
     <banner-name />
    </masquerading>
    <envelope>
     <pad>
      <action>
       <block />
       <log>false</log>
      </action>
     </pad>
     <greeting>
      <rule>
       <name>Non-allowed characters</name>
       <regexp>[^-.0-9a-zA-Z_\[\]]</regexp>
       <deny />
       <log>true</log>
      </rule>
      <rule>
       <name>Maximum length</name>
       <regexp>^.{513,}$</regexp>
       <deny />
       <log>true</log>
      </rule>
      <fallthrough>
       <allow />
       <log>false</log>
      </fallthrough>
     </greeting>
     <esmtp-options>
      <enabled>true</enabled>
      <auth>
       <rule>
        <name>DIGEST-MD5</name>
        <string>DIGEST-MD5</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>CRAM-MD5</name>
        <string>CRAM-MD5</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>PLAIN</name>
        <string>PLAIN</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>LOGIN</name>
        <string>LOGIN</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>LOGIN (old-style)</name>
        <string>=LOGIN</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>NTLM</name>
        <string>NTLM</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>GSSAPI</name>
        <string>GSSAPI</string>
        <allow />
        <log>false</log>
       </rule>
       <fallthrough>
        <deny />
        <log>true</log>
       </fallthrough>
      </auth>
      <chunking>false</chunking>
      <binarymime>false</binarymime>
      <etrn>true</etrn>
      <eightbitmime>true</eightbitmime>
      <unknown-options>
       <strip />
       <log>false</log>
      </unknown-options>
     </esmtp-options>
     <addresses>
      <from>
       <rule>
        <name>Source-routed addresses</name>
        <regexp>[!%]</regexp>
        <deny />
        <log>true</log>
       </rule>
       <rule>
        <name>Non-allowed characters</name>
        <regexp>[^-_.+=%*/~!&amp;@?0-9a-zA-Z]</regexp>
        <deny />
        <log>true</log>
       </rule>
       <rule>
        <name>*</name>
        <pattern>*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <fallthrough>
        <deny />
        <log>true</log>
       </fallthrough>
      </from>
      <to>
       <rule>
        <name>Source-routed addresses</name>
        <pattern>*!*@*</pattern>
        <deny />
        <log>true</log>
       </rule>
       <rule>
        <name>Non-allowed characters</name>
        <regexp>[^-_.+=%*/~!&amp;@?0-9a-zA-Z]</regexp>
        <deny />
        <log>true</log>
       </rule>
       <rule>
        <name>*</name>
        <pattern>*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <fallthrough>
        <deny />
        <log>true</log>
       </fallthrough>
      </to>
      <maximum-to>99</maximum-to>
      <maximum-length>0</maximum-length>
     </addresses>
    </envelope>
    <message>
     <headers>
      <rule>
       <name>From:*</name>
       <pattern>From:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>To:*</name>
       <pattern>To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Cc:*</name>
       <pattern>Cc:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Bcc:*</name>
       <pattern>Bcc:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-To:*</name>
       <pattern>Resent-To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Received:*</name>
       <pattern>Received:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-Cc:*</name>
       <pattern>Resent-Cc:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-Bcc:*</name>
       <pattern>Resent-Bcc:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-Message-ID:*</name>
       <pattern>Resent-Message-ID:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-Reply-To:*</name>
       <pattern>Resent-Reply-To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-From:*</name>
       <pattern>Resent-From:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-Date:*</name>
       <pattern>Resent-Date:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Message-ID:*</name>
       <pattern>Message-ID:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>In-Reply-To:*</name>
       <pattern>In-Reply-To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>References:*</name>
       <pattern>References:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Keywords:*</name>
       <pattern>Keywords:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Subject:*</name>
       <pattern>Subject:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Comments:*</name>
       <pattern>Comments:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Encrypted:*</name>
       <pattern>Encrypted:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Date:*</name>
       <pattern>Date:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Reply-To:*</name>
       <pattern>Reply-To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>MIME-Version:*</name>
       <pattern>MIME-Version:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Type:*</name>
       <pattern>Content-Type:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Language:*</name>
       <pattern>Content-Language:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Length:*</name>
       <pattern>Content-Length:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Disposition:*</name>
       <pattern>Content-Disposition:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Transfer-Encoding:*</name>
       <pattern>Content-Transfer-Encoding:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-ID:*</name>
       <pattern>Content-ID:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Description:*</name>
       <pattern>Content-Description:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-MD5:*</name>
       <pattern>Content-MD5:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Encoding:*</name>
       <pattern>Encoding:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Precedence:*</name>
       <pattern>Precedence:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Approved-By:*</name>
       <pattern>Approved-By:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Status:*</name>
       <pattern>Status:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Priority:*</name>
       <pattern>Priority:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>return-receipt-to:*</name>
       <pattern>return-receipt-to:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Spam-ID:*</name>
       <pattern>X-WatchGuard-Spam-ID:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Mail-From:*</name>
       <pattern>X-WatchGuard-Mail-From:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <enabled>false</enabled>
       <name>X-WatchGuard-Mail-Recipients:*</name>
       <pattern>X-WatchGuard-Mail-Recipients:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Mail-Exception:*</name>
       <pattern>X-WatchGuard-Mail-Exception:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Spam-Score:*</name>
       <pattern>X-WatchGuard-Spam-Score:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Mail-Client-IP:*</name>
       <pattern>X-WatchGuard-Mail-Client-IP:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-Mailer:*</name>
       <pattern>X-Mailer:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <fallthrough>
       <strip />
       <log>false</log>
      </fallthrough>
     </headers>
     <content-checking>
      <messages>
       <deny>The WatchGuard Firebox that protects your network has detected a message that may not be safe.%CRLF%%CRLF%Cause : %(reason)%%CRLF%Content type : %(type)%%CRLF%File name    : %(filename)%%CRLF%Virus status : %(virus)%%CRLF%Action       : The Firebox %(action)% %(filename)%.%CRLF%%CRLF%Your network administrator %(recovery)% this attachment.%CRLF%%CRLF%</deny>
      </messages>
      <uuencode>false</uuencode>
      <binhex>false</binhex>
      <autodetect>true</autodetect>
      <content-types>
       <rule>
        <name>text/*</name>
        <pattern>text/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>image/*</name>
        <pattern>image/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>multipart/*</name>
        <pattern>multipart/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>message/*</name>
        <pattern>message/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>application/*</name>
        <pattern>application/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>(none)</name>
        <string />
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <enabled>false</enabled>
        <name>application/x-watchguard-locked</name>
        <string>application/x-watchguard-locked</string>
        <allow />
        <log>false</log>
       </rule>
       <fallthrough>
        <strip />
        <log>true</log>
       </fallthrough>
      </content-types>
      <file-patterns>
       <rule>
        <name>*.ade</name>
        <pattern>*.ade</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.asx</name>
        <pattern>*.asx</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.bat</name>
        <pattern>*.bat</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.chm</name>
        <pattern>*.chm</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.cmd</name>
        <pattern>*.cmd</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.com</name>
        <pattern>*.com</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.cpl</name>
        <pattern>*.cpl</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.crt</name>
        <pattern>*.crt</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.exe</name>
        <pattern>*.exe</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.hlp</name>
        <pattern>*.hlp</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.hta</name>
        <pattern>*.hta</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.inf</name>
        <pattern>*.inf</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.ins</name>
        <pattern>*.ins</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.isp</name>
        <pattern>*.isp</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.js</name>
        <pattern>*.js</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.jse</name>
        <pattern>*.jse</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.lnk</name>
        <pattern>*.lnk</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.mdb</name>
        <pattern>*.mdb</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.msi</name>
        <pattern>*.msi</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.msp</name>
        <pattern>*.msp</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.nsc</name>
        <pattern>*.nsc</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.pcd</name>
        <pattern>*.pcd</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.pif</name>
        <pattern>*.pif</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.reg</name>
        <pattern>*.reg</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.scr</name>
        <pattern>*.scr</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.sct</name>
        <pattern>*.sct</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.shs</name>
        <pattern>*.shs</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.vb</name>
        <pattern>*.vb</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.vb?</name>
        <pattern>*.vb?</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.wsc</name>
        <pattern>*.wsc</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.wsf</name>
        <pattern>*.wsf</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.wsh</name>
        <pattern>*.wsh</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.{*}</name>
        <pattern>*.{*}</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.mp3</name>
        <pattern>*.mp3</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.vbs</name>
        <pattern>*.vbs</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.vbe</name>
        <pattern>*.vbe</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>veryfunny*</name>
        <pattern>veryfunny*</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>love-letter*</name>
        <pattern>love-letter*</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.avi</name>
        <pattern>*.avi</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>resume1.*</name>
        <pattern>resume1.*</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>explorer.*</name>
        <pattern>explorer.*</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>normal.*</name>
        <pattern>normal.*</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>life_stages.*</name>
        <pattern>life_stages.*</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>Life*.*</name>
        <pattern>Life*.*</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>stages*.*</name>
        <pattern>stages*.*</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.asf</name>
        <pattern>*.asf</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.ws</name>
        <pattern>*.ws</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.eml</name>
        <pattern>*.eml</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.adp</name>
        <pattern>*.adp</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.bas</name>
        <pattern>*.bas</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.jsp</name>
        <pattern>*.jsp</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.mde</name>
        <pattern>*.mde</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.msc</name>
        <pattern>*.msc</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.mst</name>
        <pattern>*.mst</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.url</name>
        <pattern>*.url</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>Mmsn_offline.htm</name>
        <pattern>Mmsn_offline.htm</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>*.pi</name>
        <pattern>*.pi</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>your_details.zip</name>
        <pattern>your_details.zip</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>your_details.zi</name>
        <pattern>your_details.zi</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>movie.zip</name>
        <pattern>movie.zip</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>screensaver.zip</name>
        <pattern>screensaver.zip</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>document.zip</name>
        <pattern>document.zip</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>application.zip</name>
        <pattern>application.zip</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>message.zip</name>
        <pattern>message.zip</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>photos.zip</name>
        <pattern>photos.zip</pattern>
        <strip />
        <log>true</log>
       </rule>
       <rule>
        <name>winmail.dat</name>
        <pattern>winmail.dat</pattern>
        <strip />
        <log>true</log>
       </rule>
       <fallthrough>
        <allow />
        <log>false</log>
       </fallthrough>
      </file-patterns>
     </content-checking>
     <maximum-size>10000000</maximum-size>
     <maximum-line-length>1000</maximum-line-length>
     <limits>
      <deny />
      <log>true</log>
     </limits>
     <format>
      <strip />
      <log>true</log>
     </format>
     <spam>
      <enabled>false</enabled>
      <helper>ctspam</helper>
      <confirmed>
       <deny />
       <log>true</log>
      </confirmed>
      <bulk>
       <replace>***BULK***</replace>
       <log>true</log>
      </bulk>
      <suspect>
       <allow />
       <log>true</log>
      </suspect>
      <clean>
       <allow />
       <log>true</log>
      </clean>
      <not-scored>
       <allow />
       <log>true</log>
      </not-scored>
      <log-exception>
       <allow />
       <log>true</log>
      </log-exception>
      <exceptions>
       <rule>
        <sender>WatchGuard_LiveSecurity@tailorednews.com</sender>
        <recipient>*</recipient>
        <allow />
       </rule>
       <rule>
        <sender>watchguard@tailorednews.com</sender>
        <recipient>*</recipient>
        <allow />
       </rule>
       <rule>
        <sender>*@watchguard.com</sender>
        <recipient>*</recipient>
        <allow />
       </rule>
      </exceptions>
     </spam>
    </message>
    <anti-virus>
     <enabled>false</enabled>
     <virus-found>
      <strip />
      <log>true</log>
     </virus-found>
     <error>
      <lock />
      <log>true</log>
     </error>
     <scan-limit>256000</scan-limit>
     <buffer-size>102400</buffer-size>
    </anti-virus>
    <transaction>
     <allow />
     <log>true</log>
    </transaction>
   </smtp>
  </proxy-action>
  <proxy-action>
   <proxy-name>SMTP-Outgoing</proxy-name>
   <proxy-description>Default configuration for outgoing SMTP</proxy-description>
   <property>4</property>
   <proxy-type>2</proxy-type>
   <proxy-type-attr>outgoing</proxy-type-attr>
   <proxy-referenced>false</proxy-referenced>
   <smtp>
    <debug>false</debug>
    <timeout>600</timeout>
    <ips>
     <enabled>false</enabled>
     <protection-type>client</protection-type>
     <error>
      <allow />
      <log>true</log>
     </error>
    </ips>
    <masquerading>
     <message-id>false</message-id>
     <server-replies>true</server-replies>
     <helo-name />
     <banner-name />
    </masquerading>
    <envelope>
     <pad>
      <action>
       <block />
       <log>false</log>
      </action>
     </pad>
     <greeting>
      <fallthrough>
       <allow />
       <log>false</log>
      </fallthrough>
     </greeting>
     <esmtp-options>
      <enabled>true</enabled>
      <auth>
       <rule>
        <name>DIGEST-MD5</name>
        <string>DIGEST-MD5</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>CRAM-MD5</name>
        <string>CRAM-MD5</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>PLAIN</name>
        <string>PLAIN</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>LOGIN</name>
        <string>LOGIN</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>LOGIN (old-style)</name>
        <string>=LOGIN</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>NTLM</name>
        <string>NTLM</string>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>GSSAPI</name>
        <string>GSSAPI</string>
        <allow />
        <log>false</log>
       </rule>
       <fallthrough>
        <deny />
        <log>true</log>
       </fallthrough>
      </auth>
      <chunking>false</chunking>
      <binarymime>false</binarymime>
      <etrn>true</etrn>
      <eightbitmime>true</eightbitmime>
      <unknown-options>
       <strip />
       <log>false</log>
      </unknown-options>
     </esmtp-options>
     <addresses>
      <from>
       <rule>
        <name>*</name>
        <pattern>*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <fallthrough>
        <deny />
        <log>true</log>
       </fallthrough>
      </from>
      <to>
       <rule>
        <name>*</name>
        <pattern>*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <fallthrough>
        <deny />
        <log>true</log>
       </fallthrough>
      </to>
      <maximum-to>0</maximum-to>
      <maximum-length>0</maximum-length>
     </addresses>
    </envelope>
    <message>
     <headers>
      <rule>
       <name>From:*</name>
       <pattern>From:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>To:*</name>
       <pattern>To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Cc:*</name>
       <pattern>Cc:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Bcc:*</name>
       <pattern>Bcc:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-To:*</name>
       <pattern>Resent-To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-Cc:*</name>
       <pattern>Resent-Cc:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-Bcc:*</name>
       <pattern>Resent-Bcc:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-Message-ID:*</name>
       <pattern>Resent-Message-ID:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-Reply-To:*</name>
       <pattern>Resent-Reply-To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-From:*</name>
       <pattern>Resent-From:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-Date:*</name>
       <pattern>Resent-Date:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Message-ID:*</name>
       <pattern>Message-ID:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>In-Reply-To:*</name>
       <pattern>In-Reply-To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>References:*</name>
       <pattern>References:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Keywords:*</name>
       <pattern>Keywords:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Subject:*</name>
       <pattern>Subject:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Comments:*</name>
       <pattern>Comments:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Encrypted:*</name>
       <pattern>Encrypted:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Date:*</name>
       <pattern>Date:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Reply-To:*</name>
       <pattern>Reply-To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>MIME-Version:*</name>
       <pattern>MIME-Version:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Type:*</name>
       <pattern>Content-Type:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Language:*</name>
       <pattern>Content-Language:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Length:*</name>
       <pattern>Content-Length:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Disposition:*</name>
       <pattern>Content-Disposition:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Transfer-Encoding:*</name>
       <pattern>Content-Transfer-Encoding:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-ID:*</name>
       <pattern>Content-ID:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Description:*</name>
       <pattern>Content-Description:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-MD5:*</name>
       <pattern>Content-MD5:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Encoding:*</name>
       <pattern>Encoding:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Precedence:*</name>
       <pattern>Precedence:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Approved-By:*</name>
       <pattern>Approved-By:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Status:*</name>
       <pattern>Status:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>return-receipt-to:*</name>
       <pattern>return-receipt-to:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Spam-ID:*</name>
       <pattern>X-WatchGuard-Spam-ID:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Mail-From:*</name>
       <pattern>X-WatchGuard-Mail-From:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <enabled>false</enabled>
       <name>X-WatchGuard-Mail-Recipients:*</name>
       <pattern>X-WatchGuard-Mail-Recipients:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Mail-Exception:*</name>
       <pattern>X-WatchGuard-Mail-Exception:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Spam-Score:*</name>
       <pattern>X-WatchGuard-Spam-Score:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Mail-Client-IP:*</name>
       <pattern>X-WatchGuard-Mail-Client-IP:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <fallthrough>
       <strip />
       <log>true</log>
      </fallthrough>
     </headers>
     <content-checking>
      <messages>
       <deny>The WatchGuard Firebox that protects your network has detected a message that may not be safe.%CRLF%%CRLF%Cause : %(reason)%%CRLF%Content type : %(type)%%CRLF%File name    : %(filename)%%CRLF%Virus status : %(virus)%%CRLF%Action       : The Firebox %(action)% %(filename)%.%CRLF%%CRLF%Your network administrator %(recovery)% this attachment.%CRLF%%CRLF%</deny>
      </messages>
      <uuencode>false</uuencode>
      <binhex>false</binhex>
      <autodetect>true</autodetect>
      <content-types>
       <fallthrough>
        <allow />
        <log>false</log>
       </fallthrough>
      </content-types>
      <file-patterns>
       <fallthrough>
        <allow />
        <log>false</log>
       </fallthrough>
      </file-patterns>
     </content-checking>
     <maximum-size>10000000</maximum-size>
     <maximum-line-length>1000</maximum-line-length>
     <limits>
      <allow />
      <log>true</log>
     </limits>
     <format>
      <strip />
      <log>true</log>
     </format>
     <spam>
      <enabled>false</enabled>
      <helper>ctspam</helper>
      <confirmed>
       <deny />
       <log>true</log>
      </confirmed>
      <bulk>
       <replace>***BULK***</replace>
       <log>true</log>
      </bulk>
      <suspect>
       <allow />
       <log>true</log>
      </suspect>
      <clean>
       <allow />
       <log>true</log>
      </clean>
      <not-scored>
       <allow />
       <log>true</log>
      </not-scored>
      <log-exception>
       <allow />
       <log>true</log>
      </log-exception>
      <exceptions>
       <rule>
        <sender>WatchGuard_LiveSecurity@tailorednews.com</sender>
        <recipient>*</recipient>
        <allow />
       </rule>
       <rule>
        <sender>watchguard@tailorednews.com</sender>
        <recipient>*</recipient>
        <allow />
       </rule>
       <rule>
        <sender>*@watchguard.com</sender>
        <recipient>*</recipient>
        <allow />
       </rule>
      </exceptions>
     </spam>
    </message>
    <anti-virus>
     <enabled>false</enabled>
     <virus-found>
      <strip />
      <log>true</log>
     </virus-found>
     <error>
      <lock />
      <log>true</log>
     </error>
     <scan-limit>256000</scan-limit>
     <buffer-size>102400</buffer-size>
    </anti-virus>
    <transaction>
     <allow />
     <log>true</log>
    </transaction>
   </smtp>
  </proxy-action>
  <proxy-action>
   <proxy-name>FTP-Server</proxy-name>
   <proxy-description>Default configuration for FTP server</proxy-description>
   <property>4</property>
   <proxy-type>3</proxy-type>
   <proxy-type-attr>server</proxy-type-attr>
   <proxy-referenced>false</proxy-referenced>
   <ftp>
    <ips>
     <enabled>false</enabled>
     <protection-type>server</protection-type>
     <error>
      <allow />
      <log>true</log>
     </error>
    </ips>
    <request>
     <timeout>
      <value>900</value>
      <action>
       <drop />
       <log>true</log>
      </action>
     </timeout>
     <limits>
      <username>
       <value>64</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </username>
      <password>
       <value>32</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </password>
      <filename>
       <value>1024</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </filename>
      <line>
       <value>1030</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </line>
      <logins>
       <value>6</value>
       <action>
        <drop />
        <log>true</log>
       </action>
      </logins>
     </limits>
     <commands>
      <rule>
       <name>ABOR*</name>
       <pattern>ABOR*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>APPE *</name>
       <pattern>APPE *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>CDUP*</name>
       <pattern>CDUP*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>CWD *</name>
       <pattern>CWD *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>DELE *</name>
       <pattern>DELE *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <enabled>false</enabled>
       <name>EPRT *</name>
       <pattern>EPRT *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <enabled>false</enabled>
       <name>EPSV*</name>
       <pattern>EPSV*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>HELP*</name>
       <pattern>HELP*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>LIST*</name>
       <pattern>LIST*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>MKD *</name>
       <pattern>MKD *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>NLST*</name>
       <pattern>NLST*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>NOOP*</name>
       <pattern>NOOP*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>PASS *</name>
       <pattern>PASS *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>PASV*</name>
       <pattern>PASV*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>PORT *</name>
       <pattern>PORT *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>PWD*</name>
       <pattern>PWD*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>QUIT*</name>
       <pattern>QUIT*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>REST *</name>
       <pattern>REST *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>RETR *</name>
       <pattern>RETR *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>RMD *</name>
       <pattern>RMD *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>RNFR *</name>
       <pattern>RNFR *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>RNTO *</name>
       <pattern>RNTO *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>STAT*</name>
       <pattern>STAT*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>STOR *</name>
       <pattern>STOR *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>STOU*</name>
       <pattern>STOU*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>SYST*</name>
       <pattern>SYST*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>TYPE *</name>
       <pattern>TYPE *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>USER *</name>
       <pattern>USER *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>XCUP*</name>
       <pattern>XCUP*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>XCWD *</name>
       <pattern>XCWD *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>XMKD *</name>
       <pattern>XMKD *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>XRMD *</name>
       <pattern>XRMD *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <fallthrough>
       <deny />
       <log>true</log>
      </fallthrough>
     </commands>
     <download>
      <fallthrough>
       <allow />
       <log>false</log>
      </fallthrough>
     </download>
     <upload>
      <fallthrough>
       <deny />
       <log>true</log>
      </fallthrough>
     </upload>
    </request>
    <transaction>
     <allow />
     <log>false</log>
    </transaction>
    <anti-virus>
     <enabled>false</enabled>
     <virus-found>
      <drop />
      <log>true</log>
     </virus-found>
     <error>
      <drop />
      <log>true</log>
     </error>
     <scan-limit>256000</scan-limit>
     <buffer-size>102400</buffer-size>
    </anti-virus>
   </ftp>
  </proxy-action>
  <proxy-action>
   <proxy-name>FTP-Client</proxy-name>
   <proxy-description>Default configuration for FTP client</proxy-description>
   <property>4</property>
   <proxy-type>3</proxy-type>
   <proxy-type-attr>client</proxy-type-attr>
   <proxy-referenced>false</proxy-referenced>
   <ftp>
    <ips>
     <enabled>false</enabled>
     <protection-type>client</protection-type>
     <error>
      <allow />
      <log>true</log>
     </error>
    </ips>
    <request>
     <timeout>
      <value>900</value>
      <action>
       <drop />
       <log>true</log>
      </action>
     </timeout>
     <limits>
      <username>
       <value>64</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </username>
      <password>
       <value>32</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </password>
      <filename>
       <value>1024</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </filename>
      <line>
       <value>1030</value>
       <action>
        <deny />
        <log>true</log>
       </action>
      </line>
      <logins>
       <value>6</value>
       <action>
        <drop />
        <log>true</log>
       </action>
      </logins>
     </limits>
     <commands>
      <fallthrough>
       <allow />
       <log>false</log>
      </fallthrough>
     </commands>
     <download>
      <rule>
       <name>*.cab</name>
       <pattern>*.cab</pattern>
       <deny />
       <log>true</log>
      </rule>
      <rule>
       <name>*.com</name>
       <pattern>*.com</pattern>
       <deny />
       <log>true</log>
      </rule>
      <rule>
       <name>*.dll</name>
       <pattern>*.dll</pattern>
       <deny />
       <log>true</log>
      </rule>
      <rule>
       <name>*.exe</name>
       <pattern>*.exe</pattern>
       <deny />
       <log>true</log>
      </rule>
      <rule>
       <name>*.zip</name>
       <pattern>*.zip</pattern>
       <deny />
       <log>true</log>
      </rule>
      <fallthrough>
       <allow />
       <log>false</log>
      </fallthrough>
     </download>
     <upload>
      <fallthrough>
       <allow />
       <log>true</log>
      </fallthrough>
     </upload>
    </request>
    <transaction>
     <allow />
     <log>false</log>
    </transaction>
    <anti-virus>
     <enabled>false</enabled>
     <virus-found>
      <drop />
      <log>true</log>
     </virus-found>
     <error>
      <drop />
      <log>true</log>
     </error>
     <scan-limit>256000</scan-limit>
     <buffer-size>102400</buffer-size>
    </anti-virus>
   </ftp>
  </proxy-action>
  <proxy-action>
   <proxy-name>DNS-Incoming</proxy-name>
   <proxy-description>Default configuration for incoming DNS</proxy-description>
   <property>4</property>
   <proxy-type>4</proxy-type>
   <proxy-type-attr>incoming</proxy-type-attr>
   <proxy-referenced>false</proxy-referenced>
   <dns>
    <ips>
     <enabled>false</enabled>
     <protection-type>server</protection-type>
     <error>
      <allow />
      <log>true</log>
     </error>
    </ips>
    <request>
     <timeout>
      <value>10</value>
      <action>
       <deny />
       <log>false</log>
      </action>
     </timeout>
     <errors>
      <deny />
      <log>true</log>
     </errors>
     <non-inet-class>
      <deny />
      <log>true</log>
     </non-inet-class>
     <recursion>
      <allow />
      <log>false</log>
     </recursion>
     <opcodes>
      <rule>
       <name>Query</name>
       <value>0</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>IQuery</name>
       <value>1</value>
       <deny />
       <log>true</log>
      </rule>
      <rule>
       <name>Status</name>
       <value>2</value>
       <deny />
       <log>true</log>
      </rule>
      <rule>
       <name>Notify</name>
       <value>4</value>
       <deny />
       <log>true</log>
      </rule>
      <rule>
       <name>Update</name>
       <value>5</value>
       <deny />
       <log>true</log>
      </rule>
      <fallthrough>
       <deny />
       <log>true</log>
      </fallthrough>
     </opcodes>
     <query-types>
      <rule>
       <name>A record</name>
       <value>1</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>NS record</name>
       <value>2</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>CNAME record</name>
       <value>5</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>SOA record</name>
       <value>6</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>PTR record</name>
       <value>12</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>MX record</name>
       <value>15</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>TXT record</name>
       <value>16</value>
       <deny />
       <log>true</log>
      </rule>
      <rule>
       <name>AAAA IPv6 record</name>
       <value>28</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>SRV record</name>
       <value>33</value>
       <deny />
       <log>true</log>
      </rule>
      <rule>
       <name>IXFR Incremental zone transfer</name>
       <value>251</value>
       <deny />
       <log>true</log>
      </rule>
      <rule>
       <name>AXFR Full zone transfer</name>
       <value>252</value>
       <deny />
       <log>true</log>
      </rule>
      <rule>
       <name>ANY record</name>
       <value>255</value>
       <allow />
       <log>false</log>
      </rule>
      <fallthrough>
       <deny />
       <log>true</log>
      </fallthrough>
     </query-types>
     <query-names>
      <rule>
       <enabled>false</enabled>
       <name>mydomain.com</name>
       <pattern>mydomain.com</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>*</name>
       <pattern>*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <fallthrough>
       <deny />
       <log>true</log>
      </fallthrough>
     </query-names>
    </request>
    <response>
     <timeout>
      <value>30</value>
      <action>
       <deny />
       <log>false</log>
      </action>
     </timeout>
    </response>
    <transaction>
     <allow />
     <log>false</log>
    </transaction>
    <zones />
   </dns>
  </proxy-action>
  <proxy-action>
   <proxy-name>DNS-Outgoing</proxy-name>
   <proxy-description>Default configuration for outgoing DNS</proxy-description>
   <property>4</property>
   <proxy-type>4</proxy-type>
   <proxy-type-attr>outgoing</proxy-type-attr>
   <proxy-referenced>false</proxy-referenced>
   <dns>
    <ips>
     <enabled>false</enabled>
     <protection-type>client</protection-type>
     <error>
      <allow />
      <log>true</log>
     </error>
    </ips>
    <request>
     <timeout>
      <value>10</value>
      <action>
       <deny />
       <log>false</log>
      </action>
     </timeout>
     <errors>
      <deny />
      <log>true</log>
     </errors>
     <non-inet-class>
      <deny />
      <log>true</log>
     </non-inet-class>
     <recursion>
      <allow />
      <log>false</log>
     </recursion>
     <opcodes>
      <rule>
       <name>Query</name>
       <value>0</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>IQuery</name>
       <value>1</value>
       <deny />
       <log>true</log>
      </rule>
      <rule>
       <name>Status</name>
       <value>2</value>
       <deny />
       <log>true</log>
      </rule>
      <rule>
       <name>Notify</name>
       <value>4</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Update</name>
       <value>5</value>
       <allow />
       <log>false</log>
      </rule>
      <fallthrough>
       <deny />
       <log>true</log>
      </fallthrough>
     </opcodes>
     <query-types>
      <rule>
       <name>A record</name>
       <value>1</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>NS record</name>
       <value>2</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>CNAME record</name>
       <value>5</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>SOA record</name>
       <value>6</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>PTR record</name>
       <value>12</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>MX record</name>
       <value>15</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>TXT record</name>
       <value>16</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>AAAA IPv6 record</name>
       <value>28</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>SRV record</name>
       <value>33</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>IXFR Incremental zone transfer</name>
       <value>251</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>AXFR Full zone transfer</name>
       <value>252</value>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>ANY record</name>
       <value>255</value>
       <allow />
       <log>false</log>
      </rule>
      <fallthrough>
       <deny />
       <log>true</log>
      </fallthrough>
     </query-types>
     <query-names>
      <rule>
       <enabled>false</enabled>
       <name>*doubleclick.*</name>
       <pattern>*doubleclick.*</pattern>
       <deny />
       <log>false</log>
      </rule>
      <rule>
       <enabled>false</enabled>
       <name>messenger.yahoo.com</name>
       <pattern>messenger.yahoo.com</pattern>
       <deny />
       <log>false</log>
      </rule>
      <fallthrough>
       <allow />
       <log>false</log>
      </fallthrough>
     </query-names>
    </request>
    <response>
     <timeout>
      <value>30</value>
      <action>
       <deny />
       <log>false</log>
      </action>
     </timeout>
    </response>
    <transaction>
     <allow />
     <log>false</log>
    </transaction>
    <zones />
   </dns>
  </proxy-action>
  <proxy-action>
   <proxy-name>TCP-UDP-Proxy</proxy-name>
   <proxy-description>Default configuration for TCP/UDP Proxy</proxy-description>
   <property>4</property>
   <proxy-type>7</proxy-type>
   <proxy-type-attr>outgoing</proxy-type-attr>
   <proxy-referenced>false</proxy-referenced>
   <outgoing>
    <apps-block-profile />
    <protocols>
     <rule>
      <name>HTTP-Client</name>
      <pattern>http</pattern>
      <replace />
      <log>true</log>
     </rule>
     <rule>
      <name>HTTPS-Client</name>
      <pattern>ssl</pattern>
      <replace />
      <log>true</log>
     </rule>
     <rule>
      <name>SIP-Client</name>
      <pattern>sip</pattern>
      <replace />
      <log>true</log>
     </rule>
     <rule>
      <name>FTP-Client</name>
      <pattern>ftp</pattern>
      <replace />
      <log>true</log>
     </rule>
     <fallthrough>
      <allow />
      <log>false</log>
     </fallthrough>
    </protocols>
    <log>true</log>
    <ips>
     <enabled>false</enabled>
     <protection-type>client</protection-type>
     <error>
      <allow />
      <log>true</log>
     </error>
     <spyware>false</spyware>
    </ips>
   </outgoing>
  </proxy-action>
  <proxy-action>
   <proxy-name>POP3-Client</proxy-name>
   <proxy-description>Default configuration for POP3 client</proxy-description>
   <property>4</property>
   <proxy-type>10</proxy-type>
   <proxy-type-attr>client</proxy-type-attr>
   <proxy-referenced>false</proxy-referenced>
   <pop3>
    <ips>
     <enabled>false</enabled>
     <protection-type>client</protection-type>
     <error>
      <allow />
      <log>true</log>
     </error>
    </ips>
    <protocol>
     <timeout>60</timeout>
     <maximum-request-length>255</maximum-request-length>
     <maximum-response-length>512</maximum-response-length>
     <password>
      <allow />
      <log>false</log>
     </password>
     <apop>
      <allow />
      <log>false</log>
     </apop>
     <capa>
      <deny />
      <log>false</log>
     </capa>
     <masquerade>
      <server-replies>true</server-replies>
     </masquerade>
     <readonly>false</readonly>
     <auth-enabled>true</auth-enabled>
     <auth>
      <rule>
       <name>DIGEST-MD5</name>
       <string>DIGEST-MD5</string>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>CRAM-MD5</name>
       <string>CRAM-MD5</string>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>PLAIN</name>
       <string>PLAIN</string>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>NTLM</name>
       <string>NTLM</string>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>LOGIN</name>
       <string>LOGIN</string>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>GSSAPI</name>
       <string>GSSAPI</string>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>KERBEROS_V4</name>
       <string>KERBEROS_V4</string>
       <allow />
       <log>false</log>
      </rule>
      <fallthrough>
       <deny />
       <log>true</log>
      </fallthrough>
     </auth>
    </protocol>
    <message>
     <maximum-line-length>1000</maximum-line-length>
     <spam>
      <enabled>false</enabled>
      <helper>ctspam</helper>
      <confirmed>
       <replace>***SPAM***</replace>
       <log>true</log>
      </confirmed>
      <bulk>
       <replace>***BULK***</replace>
       <log>true</log>
      </bulk>
      <suspect>
       <replace>***SUSPECT***</replace>
       <log>true</log>
      </suspect>
      <clean>
       <allow />
       <log>false</log>
      </clean>
      <not-scored>
       <allow />
       <log>true</log>
      </not-scored>
      <log-exception>
       <allow />
       <log>true</log>
      </log-exception>
      <exceptions />
     </spam>
     <headers>
      <rule>
       <name>From:*</name>
       <pattern>From:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>To:*</name>
       <pattern>To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Cc:*</name>
       <pattern>Cc:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Bcc:*</name>
       <pattern>Bcc:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-To:*</name>
       <pattern>Resent-To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Received:*</name>
       <pattern>Received:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-Cc:*</name>
       <pattern>Resent-Cc:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-Bcc:*</name>
       <pattern>Resent-Bcc:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-Message-ID:*</name>
       <pattern>Resent-Message-ID:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-Reply-To:*</name>
       <pattern>Resent-Reply-To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-From:*</name>
       <pattern>Resent-From:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Resent-Date:*</name>
       <pattern>Resent-Date:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Message-ID:*</name>
       <pattern>Message-ID:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>In-Reply-To:*</name>
       <pattern>In-Reply-To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>References:*</name>
       <pattern>References:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Keywords:*</name>
       <pattern>Keywords:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Subject:*</name>
       <pattern>Subject:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Comments:*</name>
       <pattern>Comments:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Encrypted:*</name>
       <pattern>Encrypted:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Date:*</name>
       <pattern>Date:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Reply-To:*</name>
       <pattern>Reply-To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>MIME-Version:*</name>
       <pattern>MIME-Version:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Type:*</name>
       <pattern>Content-Type:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Language:*</name>
       <pattern>Content-Language:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Length:*</name>
       <pattern>Content-Length:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Disposition:*</name>
       <pattern>Content-Disposition:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Transfer-Encoding:*</name>
       <pattern>Content-Transfer-Encoding:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-ID:*</name>
       <pattern>Content-ID:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Description:*</name>
       <pattern>Content-Description:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-MD5:*</name>
       <pattern>Content-MD5:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Encoding:*</name>
       <pattern>Encoding:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Precedence:*</name>
       <pattern>Precedence:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Approved-By:*</name>
       <pattern>Approved-By:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Status:*</name>
       <pattern>Status:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Priority:*</name>
       <pattern>Priority:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>return-receipt-to:*</name>
       <pattern>return-receipt-to:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Spam-ID:*</name>
       <pattern>X-WatchGuard-Spam-ID:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Mail-From:*</name>
       <pattern>X-WatchGuard-Mail-From:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <enabled>false</enabled>
       <name>X-WatchGuard-Mail-Recipients:*</name>
       <pattern>X-WatchGuard-Mail-Recipients:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Mail-Exception:*</name>
       <pattern>X-WatchGuard-Mail-Exception:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Spam-Score:*</name>
       <pattern>X-WatchGuard-Spam-Score:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Mail-Client-IP:*</name>
       <pattern>X-WatchGuard-Mail-Client-IP:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-Mailer:*</name>
       <pattern>X-Mailer:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <fallthrough>
       <strip />
       <log>false</log>
      </fallthrough>
     </headers>
     <content-checking>
      <deny-message>The WatchGuard Firebox that protects your network has detected a message that may not be safe.%CRLF%%CRLF%Cause : %(reason)%%CRLF%Content type : %(type)%%CRLF%File name    : %(filename)%%CRLF%Virus status : %(virus)%%CRLF%Action       : The Firebox %(action)% %(filename)%.%CRLF%Recovery     : %(recovery)%%CRLF%%CRLF%</deny-message>
      <uuencode>false</uuencode>
      <binhex>false</binhex>
      <autodetect>true</autodetect>
      <content-types>
       <rule>
        <name>All text types</name>
        <pattern>text/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>All image types</name>
        <pattern>image/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>All audio types</name>
        <pattern>audio/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>All video types</name>
        <pattern>video/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>All multi-part MIME types</name>
        <pattern>multipart/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>Message parts</name>
        <pattern>message/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>Missing or empty</name>
        <pattern />
        <allow />
        <log>false</log>
       </rule>
       <fallthrough>
        <strip />
        <log>true</log>
       </fallthrough>
      </content-types>
      <file-patterns>
       <rule>
        <name>Text files</name>
        <pattern>*.txt</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>Word documents</name>
        <pattern>*.doc</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>Excel spreadsheets</name>
        <pattern>*.xls</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>Missing or empty</name>
        <pattern />
        <allow />
        <log>false</log>
       </rule>
       <fallthrough>
        <strip />
        <log>true</log>
       </fallthrough>
      </file-patterns>
     </content-checking>
     <limits>
      <deny />
      <log>true</log>
     </limits>
     <format>
      <deny />
      <log>true</log>
     </format>
    </message>
    <anti-virus>
     <enabled>false</enabled>
     <virus-found>
      <strip />
      <log>true</log>
     </virus-found>
     <error>
      <strip />
      <log>true</log>
     </error>
     <scan-limit>256000</scan-limit>
     <buffer-size>102400</buffer-size>
    </anti-virus>
    <transaction>
     <allow />
     <log>true</log>
    </transaction>
   </pop3>
  </proxy-action>
  <proxy-action>
   <proxy-name>POP3-Server</proxy-name>
   <proxy-description>Default configuration for POP3 server</proxy-description>
   <property>4</property>
   <proxy-type>10</proxy-type>
   <proxy-type-attr>server</proxy-type-attr>
   <proxy-referenced>false</proxy-referenced>
   <pop3>
    <ips>
     <enabled>false</enabled>
     <protection-type>server</protection-type>
     <error>
      <allow />
      <log>true</log>
     </error>
    </ips>
    <protocol>
     <timeout>60</timeout>
     <maximum-request-length>255</maximum-request-length>
     <maximum-response-length>512</maximum-response-length>
     <password>
      <allow />
      <log>false</log>
     </password>
     <apop>
      <allow />
      <log>false</log>
     </apop>
     <capa>
      <deny />
      <log>false</log>
     </capa>
     <masquerade>
      <server-replies>true</server-replies>
     </masquerade>
     <readonly>false</readonly>
     <auth-enabled>true</auth-enabled>
     <auth>
      <rule>
       <name>DIGEST-MD5</name>
       <string>DIGEST-MD5</string>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>CRAM-MD5</name>
       <string>CRAM-MD5</string>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>PLAIN</name>
       <string>PLAIN</string>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>NTLM</name>
       <string>NTLM</string>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>LOGIN</name>
       <string>LOGIN</string>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>GSSAPI</name>
       <string>GSSAPI</string>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>KERBEROS_V4</name>
       <string>KERBEROS_V4</string>
       <allow />
       <log>false</log>
      </rule>
      <fallthrough>
       <deny />
       <log>true</log>
      </fallthrough>
     </auth>
    </protocol>
    <message>
     <maximum-line-length>1000</maximum-line-length>
     <spam>
      <enabled>false</enabled>
      <helper>ctspam</helper>
      <confirmed>
       <replace>***SPAM***</replace>
       <log>true</log>
      </confirmed>
      <bulk>
       <replace>***BULK***</replace>
       <log>true</log>
      </bulk>
      <suspect>
       <replace>***SUSPECT***</replace>
       <log>true</log>
      </suspect>
      <clean>
       <allow />
       <log>false</log>
      </clean>
      <not-scored>
       <allow />
       <log>true</log>
      </not-scored>
      <log-exception>
       <allow />
       <log>true</log>
      </log-exception>
      <exceptions />
     </spam>
     <headers>
      <rule>
       <name>From</name>
       <pattern>From: *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>To</name>
       <pattern>To:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Cc</name>
       <pattern>Cc:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Message-ID</name>
       <pattern>Message-ID:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Subject</name>
       <pattern>Subject: *</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Bcc</name>
       <pattern>Bcc:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>MIME-Version:*</name>
       <pattern>MIME-Version:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Spam-ID</name>
       <pattern>X-WatchGuard-Spam-ID:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-AntiVirus</name>
       <pattern>X-WatchGuard-AntiVirus:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-IPS</name>
       <pattern>X-WatchGuard-IPS:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>X-WatchGuard-Mail-Exception</name>
       <pattern>X-WatchGuard-Mail-Exception:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Type:*</name>
       <pattern>Content-Type:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Language:*</name>
       <pattern>Content-Language:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Length:*</name>
       <pattern>Content-Length:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Disposition:*</name>
       <pattern>Content-Disposition:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Transfer-Encoding:*</name>
       <pattern>Content-Transfer-Encoding:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-ID:*</name>
       <pattern>Content-ID:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-Description:*</name>
       <pattern>Content-Description:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <rule>
       <name>Content-MD5:*</name>
       <pattern>Content-MD5:*</pattern>
       <allow />
       <log>false</log>
      </rule>
      <fallthrough>
       <strip />
       <log>false</log>
      </fallthrough>
     </headers>
     <content-checking>
      <deny-message>The WatchGuard Firebox that protects your network has detected a message that may not be safe.%CRLF%%CRLF%Cause : %(reason)%%CRLF%Content type : %(type)%%CRLF%File name    : %(filename)%%CRLF%Virus status : %(virus)%%CRLF%Action       : The Firebox %(action)% %(filename)%.%CRLF%Recovery     : %(recovery)%%CRLF%%CRLF%</deny-message>
      <uuencode>false</uuencode>
      <binhex>false</binhex>
      <autodetect>true</autodetect>
      <content-types>
       <rule>
        <name>All text types</name>
        <pattern>text/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>All image types</name>
        <pattern>image/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>All audio types</name>
        <pattern>audio/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>All video types</name>
        <pattern>video/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>All multi-part MIME types</name>
        <pattern>multipart/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>Message parts</name>
        <pattern>message/*</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>Missing or empty</name>
        <pattern />
        <allow />
        <log>false</log>
       </rule>
       <fallthrough>
        <strip />
        <log>true</log>
       </fallthrough>
      </content-types>
      <file-patterns>
       <rule>
        <name>Text files</name>
        <pattern>*.txt</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>Word documents</name>
        <pattern>*.doc</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>Excel spreadsheets</name>
        <pattern>*.xls</pattern>
        <allow />
        <log>false</log>
       </rule>
       <rule>
        <name>Missing or empty</name>
        <pattern />
        <allow />
        <log>false</log>
       </rule>
       <fallthrough>
        <strip />
        <log>true</log>
       </fallthrough>
      </file-patterns>
     </content-checking>
     <limits>
      <deny />
      <log>true</log>
     </limits>
     <format>
      <deny />
      <log>true</log>
     </format>
    </message>
    <anti-virus>
     <enabled>false</enabled>
     <virus-found>
      <strip />
      <log>true</log>
     </virus-found>
     <error>
      <strip />
      <log>true</log>
     </error>
     <scan-limit>256000</scan-limit>
     <buffer-size>102400</buffer-size>
    </anti-virus>
    <transaction>
     <allow />
     <log>true</log>
    </transaction>
   </pop3>
  </proxy-action>
  <proxy-action>
   <proxy-name>HTTPS-Client</proxy-name>
   <proxy-description>Default configuration for HTTPS client</proxy-description>
   <property>4</property>
   <proxy-type>18</proxy-type>
   <proxy-type-attr>client</proxy-type-attr>
   <proxy-referenced>false</proxy-referenced>
   <https>
    <ocsp>
     <active>OCSP_YES</active>
     <unknown_handling>UNKNOWN_VALID</unknown_handling>
    </ocsp>
    <redirect-to />
    <sslfilter>
     <active>SSL_NO</active>
    </sslfilter>
    <timeout>600</timeout>
    <filter>
     <helper-name />
     <bypass />
    </filter>
    <domain-name>
     <rules>
      <fallthrough>
       <allow />
       <log>false</log>
      </fallthrough>
     </rules>
    </domain-name>
    <transaction>
     <allow />
     <log>false</log>
    </transaction>
   </https>
  </proxy-action>
  <proxy-action>
   <proxy-name>HTTPS-Server</proxy-name>
   <proxy-description>Default configuration for HTTPS server</proxy-description>
   <property>4</property>
   <proxy-type>18</proxy-type>
   <proxy-type-attr>server</proxy-type-attr>
   <proxy-referenced>false</proxy-referenced>
   <https>
    <ocsp>
     <active>OCSP_YES</active>
     <unknown_handling>UNKNOWN_VALID</unknown_handling>
    </ocsp>
    <redirect-to />
    <sslfilter>
     <active>SSL_NO</active>
     <resign>SSL_RESIGN_NO</resign>
    </sslfilter>
    <timeout>600</timeout>
    <filter>
     <helper-name />
     <bypass />
    </filter>
    <domain-name>
     <rules>
      <fallthrough>
       <allow />
       <log>false</log>
      </fallthrough>
     </rules>
    </domain-name>
    <transaction>
     <allow />
     <log>false</log>
    </transaction>
   </https>
  </proxy-action>
  <proxy-action>
   <proxy-name>SIP-Client</proxy-name>
   <proxy-description>Default configuration for SIP client</proxy-description>
   <property>4</property>
   <proxy-type>15</proxy-type>
   <proxy-type-attr>client</proxy-type-attr>
   <proxy-referenced>false</proxy-referenced>
   <sip>
    <enable-normalization>true</enable-normalization>
    <enable-topology-hiding>true</enable-topology-hiding>
    <enable-dirharvesting>true</enable-dirharvesting>
    <max-sessions>2</max-sessions>
    <user-agent />
    <timeout>
     <value>180</value>
     <action>
      <drop />
      <log>true</log>
     </action>
    </timeout>
    <denied-codecs>
     <fallthrough>
      <allow />
      <log>false</log>
     </fallthrough>
    </denied-codecs>
    <acl>
     <enabled>false</enabled>
     <from>
      <fallthrough>
       <deny />
       <log>false</log>
      </fallthrough>
     </from>
     <to>
      <fallthrough>
       <deny />
       <log>false</log>
      </fallthrough>
     </to>
    </acl>
    <transaction>
     <allow />
     <log>true</log>
    </transaction>
   </sip>
  </proxy-action>
  <proxy-action>
   <proxy-name>H.323-Client</proxy-name>
   <proxy-description>Default configuration for H.323 Client</proxy-description>
   <property>4</property>
   <proxy-type>16</proxy-type>
   <proxy-type-attr>client</proxy-type-attr>
   <proxy-referenced>false</proxy-referenced>
   <h323>
    <enable-normalization>true</enable-normalization>
    <enable-dirharvesting>true</enable-dirharvesting>
    <max-sessions>2</max-sessions>
    <user-agent />
    <timeout>
     <value>180</value>
     <action>
      <drop />
      <log>true</log>
     </action>
    </timeout>
    <denied-codecs>
     <fallthrough>
      <allow />
      <log>false</log>
     </fallthrough>
    </denied-codecs>
    <acl>
     <enabled>false</enabled>
     <from>
      <fallthrough>
       <deny />
       <log>false</log>
      </fallthrough>
     </from>
     <to>
      <fallthrough>
       <deny />
       <log>false</log>
      </fallthrough>
     </to>
    </acl>
    <transaction>
     <allow />
     <log>true</log>
    </transaction>
   </h323>
  </proxy-action>
 </proxy-action-list>
 <proxy-helper-list>
  <proxy-helper>
   <proxy-name>WebBlocker</proxy-name>
   <proxy-description>Default configuration for WebBlocker</proxy-description>
   <property>4</property>
   <proxy-type>6</proxy-type>
   <proxy-referenced>false</proxy-referenced>
   <webblocker>
    <server-list />
    <server-timeout>5</server-timeout>
    <server-timeout-action>
     <allow />
     <log>true</log>
    </server-timeout-action>
    <server-bypass>false</server-bypass>
    <server-bypass-action>
     <allow />
     <log>true</log>
    </server-bypass-action>
    <license-bypass>false</license-bypass>
    <cache-size>100</cache-size>
    <categories>
     <rule>
      <name>Infrastructure</name>
      <value>9802</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Proxies &amp; Translators</name>
      <value>98</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Phishing &amp; Fraud</name>
      <value>9101</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Business</name>
      <value>100</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Spam URLs</name>
      <value>9805</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Intimate Apparel &amp; Swimwear</name>
      <value>95</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Spyware</name>
      <value>7505</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Tasteless &amp; Offensive</name>
      <value>9301</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Fashion &amp; Beauty</name>
      <value>9501</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Politics</name>
      <value>9806</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Real Estate</name>
      <value>3010</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Criminal Activity</name>
      <value>91</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Search Engines</name>
      <value>7503</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>News</name>
      <value>20</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Adult/Sexually Explicit</name>
      <value>90</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Health &amp; Medicine</name>
      <value>14</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Hosting Sites</name>
      <value>99</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Blogs &amp; Forums</name>
      <value>2002</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Government</name>
      <value>40</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Society &amp; Culture</name>
      <value>3003</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Finance &amp; Investment</name>
      <value>25</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Job Search &amp; Career Development</name>
      <value>60</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Alcohol &amp; Tobacco</name>
      <value>1404</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Uncategorized</name>
      <value>0</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Streaming Media</name>
      <value>7509</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Weapons</name>
      <value>94</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Peer-to-Peer</name>
      <value>9801</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Travel</name>
      <value>11</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Shopping</name>
      <value>80</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Reference</name>
      <value>7001</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Ringtones/Mobile Phone Downloads</name>
      <value>9804</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Downloads</name>
      <value>7501</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Photo Searches</name>
      <value>97</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Advertisements</name>
      <value>76</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Philanthropic &amp; Professional Orgs.</name>
      <value>9803</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Sports</name>
      <value>10</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Illegal Drugs</name>
      <value>1403</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Food &amp; Drink</name>
      <value>3004</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Hobbies &amp; Recreation</name>
      <value>12</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Computing &amp; Internet</name>
      <value>75</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Religion</name>
      <value>3006</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Motor Vehicles</name>
      <value>1101</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Entertainment</name>
      <value>51</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Kids Sites</name>
      <value>7003</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Sex Education</name>
      <value>1490</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Chat</name>
      <value>3001</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Personals &amp; Dating</name>
      <value>96</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Arts</name>
      <value>50</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Intolerance &amp; Hate</name>
      <value>92</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Games</name>
      <value>1202</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Gambling</name>
      <value>13</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Violence</name>
      <value>93</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Education</name>
      <value>70</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Hacking</name>
      <value>7504</value>
      <allow />
      <log>true</log>
     </rule>
     <rule>
      <name>Web-based Email</name>
      <value>7507</value>
      <allow />
      <log>true</log>
     </rule>
     <fallthrough>
      <deny />
      <log>true</log>
     </fallthrough>
    </categories>
    <exceptions>
     <rule>
      <name>update DB</name>
      <pattern>listsrv.surfcontrol.com/*</pattern>
      <allow />
      <log>false</log>
     </rule>
     <rule>
      <name>WatchGuard</name>
      <pattern>*.watchguard.com/*</pattern>
      <allow />
      <log>false</log>
     </rule>
     <fallthrough>
      <allow />
      <log>false</log>
     </fallthrough>
     <match-length>0</match-length>
    </exceptions>
    <override>
     <enabled>false</enabled>
     <password />
     <idle-timeout>5</idle-timeout>
    </override>
   </webblocker>
  </proxy-helper>
  <proxy-helper>
   <proxy-name>sigeng</proxy-name>
   <proxy-description>Default configuration for Signature Engine</proxy-description>
   <property>2</property>
   <proxy-type>9</proxy-type>
   <sigeng>
    <archives>false</archives>
    <depth>3</depth>
    <av>false</av>
    <ips>false</ips>
    <apps>true</apps>
   </sigeng>
  </proxy-helper>
  <proxy-helper>
   <proxy-name>ctspam</proxy-name>
   <proxy-description>Pre-defined Spam Filter configuration</proxy-description>
   <property>2</property>
   <proxy-type>12</proxy-type>
   <proxy-referenced>false</proxy-referenced>
   <ctspam>
    <connection-string>
     <server-address>resolver%d.wguard.ctmail.com</server-address>
     <URI>/SpamResolverNG/SpamResolverNG.dll?DoNewRequest</URI>
     <temp-dir>/tmp</temp-dir>
     <vod-enabled>0</vod-enabled>
     <proactive-patterns-enabled>1</proactive-patterns-enabled>
     <proxy-access>0</proxy-access>
     <proxy-server-address />
     <proxy-port>8080</proxy-port>
     <proxy-auth>NoAuth</proxy-auth>
     <proxy-user-name />
     <proxy-user-domain />
     <proxy-password />
    </connection-string>
    <connection-string-override />
    <max-threads>4</max-threads>
    <max-scan-file-size>40000</max-scan-file-size>
    <vod-activated>0</vod-activated>
    <vod-max-scan-file-size>40000</vod-max-scan-file-size>
    <cache-size>10000</cache-size>
    <spam-threshold>4</spam-threshold>
    <vod-threshold>0</vod-threshold>
   </ctspam>
  </proxy-helper>
  <proxy-helper>
   <proxy-name>QuarantineHelper</proxy-name>
   <proxy-description>Default configuration for Quarantine Helper</proxy-description>
   <property>2</property>
   <proxy-type>10</proxy-type>
   <proxy-referenced>false</proxy-referenced>
   <quarantine>
    <address />
    <port>4120</port>
   </quarantine>
  </proxy-helper>
 </proxy-helper-list>
 <apps-block-profile-list />
 <alias-list>
  <alias>
   <name>Any</name>
   <description>All traffic</description>
   <property>4</property>
   <alias-member-list>
    <alias-member>
     <type>1</type>
     <user>Any</user>
     <address>Any</address>
     <interface>Any</interface>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Firebox</name>
   <description>All local traffic associated with the Firebox</description>
   <property>4</property>
   <alias-member-list>
    <alias-member>
     <type>1</type>
     <user>Any</user>
     <address>Firebox</address>
     <interface>Firebox</interface>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Any-External</name>
   <description>All traffic associated with external interfaces</description>
   <property>4</property>
   <alias-member-list>
    <alias-member>
     <type>1</type>
     <user>Any</user>
     <address>Any</address>
     <interface>Any-External</interface>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Any-Trusted</name>
   <description>All traffic associated with trusted interfaces</description>
   <property>4</property>
   <alias-member-list>
    <alias-member>
     <type>1</type>
     <user>Any</user>
     <address>Any</address>
     <interface>Any-Trusted</interface>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Any-Optional</name>
   <description>All traffic associated with optional interfaces</description>
   <property>4</property>
   <alias-member-list>
    <alias-member>
     <type>1</type>
     <user>Any</user>
     <address>Any</address>
     <interface>Any-Optional</interface>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Any-BOVPN</name>
   <description>All traffic associated with BOVPN</description>
   <property>4</property>
   <alias-member-list>
    <alias-member>
     <type>1</type>
     <user>Any</user>
     <address>Any</address>
     <interface>Any-BOVPN</interface>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Any-MUVPN</name>
   <description>All traffic associated with MUVPN</description>
   <property>4</property>
   <alias-member-list>
    <alias-member>
     <type>1</type>
     <user>Any</user>
     <address>Any</address>
     <interface>Any-MUVPN</interface>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>PPTP</name>
   <description>Built-in alias</description>
   <property>4</property>
   <alias-member-list>
    <alias-member>
     <type>1</type>
     <user>Any</user>
     <address>Any</address>
     <interface>PPTP</interface>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>External</name>
   <description>Built-in alias</description>
   <property>2</property>
   <alias-member-list>
    <alias-member>
     <type>1</type>
     <user>Any</user>
     <address>Any</address>
     <interface>External</interface>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Trusted</name>
   <description>Built-in alias</description>
   <property>2</property>
   <alias-member-list>
    <alias-member>
     <type>1</type>
     <user>Any</user>
     <address>Any</address>
     <interface>Trusted</interface>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Any From Firebox.1.from</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Firebox</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Any From Firebox.1.to</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Any</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>BOVPN-Allow.in.1.from</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>1</type>
     <user>Any</user>
     <address>Any</address>
     <interface>tunnel.1</interface>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>BOVPN-Allow.in.1.to</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Any</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>BOVPN-Allow.out.1.from</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Any</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>BOVPN-Allow.out.1.to</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>1</type>
     <user>Any</user>
     <address>Any</address>
     <interface>tunnel.1</interface>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>FTP.1.from</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Any-Trusted</alias-name>
    </alias-member>
    <alias-member>
     <type>2</type>
     <alias-name>Any-Optional</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>FTP.1.to</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Any-External</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Outgoing.1.from</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Any-Trusted</alias-name>
    </alias-member>
    <alias-member>
     <type>2</type>
     <alias-name>Any-Optional</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Outgoing.1.to</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Any-External</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Ping.1.from</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Any-Trusted</alias-name>
    </alias-member>
    <alias-member>
     <type>2</type>
     <alias-name>Any-Optional</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Ping.1.to</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Any</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Unhandled External Packet.1.from</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Any</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Unhandled External Packet.1.to</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Any</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Unhandled Internal Packet.1.from</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Any-Trusted</alias-name>
    </alias-member>
    <alias-member>
     <type>2</type>
     <alias-name>Any-Optional</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>Unhandled Internal Packet.1.to</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Any</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>WatchGuard Web UI.1.from</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Any-Trusted</alias-name>
    </alias-member>
    <alias-member>
     <type>2</type>
     <alias-name>Any-Optional</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>WatchGuard Web UI.1.to</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Firebox</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>WatchGuard.1.from</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Any-Trusted</alias-name>
    </alias-member>
    <alias-member>
     <type>2</type>
     <alias-name>Any-Optional</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>WatchGuard.1.to</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>2</type>
     <alias-name>Firebox</alias-name>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>dnat.from.1</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>1</type>
     <user>Any</user>
     <address>dnat.from.1</address>
     <interface>Any</interface>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>dnat.from.2</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>1</type>
     <user>Any</user>
     <address>dnat.from.2</address>
     <interface>Any</interface>
    </alias-member>
   </alias-member-list>
  </alias>
  <alias>
   <name>dnat.from.3</name>
   <description />
   <property>16</property>
   <alias-member-list>
    <alias-member>
     <type>1</type>
     <user>Any</user>
     <address>dnat.from.3</address>
     <interface>Any</interface>
    </alias-member>
   </alias-member-list>
  </alias>
 </alias-list>
 <auth-group-list>
  <auth-group>
   <name>Any</name>
   <description />
   <property>4</property>
  </auth-group>
 </auth-group-list>
 <auth-domain-list>
  <auth-domain>
   <name>Firebox-DB</name>
   <description>Firebox Internal Users</description>
   <property>4</property>
   <type>0</type>
  </auth-domain>
 </auth-domain-list>
 <interface-list>
  <interface>
   <name>Any</name>
   <description>Any Interface</description>
   <property>4</property>
  </interface>
  <interface>
   <name>Any-External</name>
   <description>Any External Interface</description>
   <property>4</property>
  </interface>
  <interface>
   <name>Any-Trusted</name>
   <description>Any Trusted Interface</description>
   <property>4</property>
  </interface>
  <interface>
   <name>Any-Optional</name>
   <description>Any Optional Interface</description>
   <property>4</property>
  </interface>
  <interface>
   <name>Firebox</name>
   <description>Firebox</description>
   <property>4</property>
  </interface>
  <interface>
   <name>PPTP</name>
   <description>PPTP</description>
   <property>4</property>
  </interface>
  <interface>
   <name>Any-BOVPN</name>
   <description>Any BOVPN Tunnel</description>
   <property>4</property>
  </interface>
  <interface>
   <name>Any-MUVPN</name>
   <description>Any MUVPN Tunnel</description>
   <property>4</property>
  </interface>
  <interface>
   <name>External</name>
   <description>This is the interface with label WAN1 on the back of the Edge</description>
   <property>0</property>
   <if-item-list>
    <item>
     <item-type>1</item-type>
     <physical-if>
      <if-num>0</if-num>
      <enabled>1</enabled>
      <if-property>2</if-property>
      <ip>1.1.100.1</ip>
      <netmask>255.255.255.0</netmask>
      <mtu>1500</mtu>
      <auto-negotiation>1</auto-negotiation>
      <link-speed>100</link-speed>
      <mac-address-enable>0</mac-address-enable>
      <mac-address />
      <full-duplex>1</full-duplex>
      <default-gateway>1.1.100.100</default-gateway>
      <secondary-ip-list />
      <anti-spoof>1</anti-spoof>
      <anti-scan>1</anti-scan>
      <block-notification>0</block-notification>
      <dos-prevention>1</dos-prevention>
      <intra-inspection>1</intra-inspection>
      <external-if>
       <external-type>1</external-type>
       <ddns>0</ddns>
      </external-if>
      <vpn-min-pmtu>576</vpn-min-pmtu>
      <vpn-aging-pmtu>600</vpn-aging-pmtu>
      <vpn-df-bit>0</vpn-df-bit>
      <qos>
       <max-link-bandwidth>0</max-link-bandwidth>
       <qos-marking>
        <marking-field>2</marking-field>
        <marking-method>
         <marking-type>0</marking-type>
        </marking-method>
        <priority-method>0</priority-method>
       </qos-marking>
      </qos>
      <static-mac-ip-binds>
       <restrict-traffic>0</restrict-traffic>
      </static-mac-ip-binds>
      <static-mac-acl>
       <enable>0</enable>
      </static-mac-acl>
     </physical-if>
    </item>
   </if-item-list>
  </interface>
  <interface>
   <name>External-2</name>
   <description>This is the interface with label WAN2 on the back of the Edge</description>
   <property>0</property>
   <if-item-list>
    <item>
     <item-type>1</item-type>
     <physical-if>
      <if-num>3</if-num>
      <enabled>0</enabled>
      <if-property>2</if-property>
      <ip>0.0.0.0</ip>
      <netmask>255.255.255.0</netmask>
      <mtu>1500</mtu>
      <auto-negotiation>1</auto-negotiation>
      <link-speed>100</link-speed>
      <mac-address-enable>0</mac-address-enable>
      <mac-address />
      <full-duplex>1</full-duplex>
      <secondary-ip-list />
      <anti-spoof>1</anti-spoof>
      <anti-scan>1</anti-scan>
      <block-notification>0</block-notification>
      <dos-prevention>1</dos-prevention>
      <intra-inspection>1</intra-inspection>
      <external-if>
       <external-type>2</external-type>
       <ddns>0</ddns>
      </external-if>
      <vpn-min-pmtu>576</vpn-min-pmtu>
      <vpn-aging-pmtu>600</vpn-aging-pmtu>
      <vpn-df-bit>0</vpn-df-bit>
      <qos>
       <max-link-bandwidth>0</max-link-bandwidth>
       <qos-marking>
        <marking-field>2</marking-field>
        <marking-method>
         <marking-type>0</marking-type>
        </marking-method>
        <priority-method>0</priority-method>
       </qos-marking>
      </qos>
      <static-mac-ip-binds>
       <restrict-traffic>0</restrict-traffic>
      </static-mac-ip-binds>
      <static-mac-acl>
       <enable>0</enable>
      </static-mac-acl>
     </physical-if>
    </item>
   </if-item-list>
  </interface>
  <interface>
   <name>Optional-1</name>
   <description>This is the interface with label OPT on the back of the Edge</description>
   <property>0</property>
   <if-item-list>
    <item>
     <item-type>1</item-type>
     <physical-if>
      <if-num>2</if-num>
      <enabled>0</enabled>
      <if-property>3</if-property>
      <ip>0.0.0.0</ip>
      <netmask>255.255.255.0</netmask>
      <mtu>1500</mtu>
      <auto-negotiation>1</auto-negotiation>
      <link-speed>100</link-speed>
      <mac-address-enable>0</mac-address-enable>
      <mac-address />
      <full-duplex>1</full-duplex>
      <secondary-ip-list />
      <anti-spoof>2</anti-spoof>
      <anti-scan>0</anti-scan>
      <block-notification>0</block-notification>
      <dos-prevention>1</dos-prevention>
      <intra-inspection>0</intra-inspection>
      <vpn-df-bit>0</vpn-df-bit>
      <qos>
       <max-link-bandwidth>0</max-link-bandwidth>
       <qos-marking>
        <marking-field>2</marking-field>
        <marking-method>
         <marking-type>0</marking-type>
        </marking-method>
        <priority-method>0</priority-method>
       </qos-marking>
      </qos>
      <static-mac-ip-binds>
       <restrict-traffic>0</restrict-traffic>
      </static-mac-ip-binds>
      <static-mac-acl>
       <enable>0</enable>
      </static-mac-acl>
     </physical-if>
    </item>
   </if-item-list>
  </interface>
  <interface>
   <name>Trusted</name>
   <description>This is the group of interfaces labeled LAN0, LAN1, and LAN2 on the back of the Edge. All three interfaces are bridged as one.</description>
   <property>0</property>
   <if-item-list>
    <item>
     <item-type>1</item-type>
     <physical-if>
      <if-num>1</if-num>
      <enabled>1</enabled>
      <if-property>1</if-property>
      <ip>192.168.222.1</ip>
      <netmask>255.255.255.0</netmask>
      <mtu>1500</mtu>
      <auto-negotiation>1</auto-negotiation>
      <link-speed>100</link-speed>
      <mac-address-enable>0</mac-address-enable>
      <mac-address />
      <full-duplex>1</full-duplex>
      <secondary-ip-list />
      <anti-spoof>2</anti-spoof>
      <anti-scan>0</anti-scan>
      <block-notification>0</block-notification>
      <dos-prevention>1</dos-prevention>
      <intra-inspection>0</intra-inspection>
      <dhcp-server>
       <server-type>0</server-type>
      </dhcp-server>
      <vpn-df-bit>0</vpn-df-bit>
      <qos>
       <max-link-bandwidth>0</max-link-bandwidth>
       <qos-marking>
        <marking-field>2</marking-field>
        <marking-method>
         <marking-type>0</marking-type>
        </marking-method>
        <priority-method>0</priority-method>
       </qos-marking>
      </qos>
      <static-mac-ip-binds>
       <restrict-traffic>0</restrict-traffic>
      </static-mac-ip-binds>
      <static-mac-acl>
       <enable>0</enable>
      </static-mac-acl>
     </physical-if>
    </item>
   </if-item-list>
  </interface>
  <interface>
   <name>tunnel.1</name>
   <description />
   <property>0</property>
   <if-item-list>
    <item>
     <item-type>4</item-type>
     <ipsec-action>tunnel.1</ipsec-action>
    </item>
   </if-item-list>
  </interface>
 </interface-list>
 <alarm-action-list>
  <alarm-action-sub-list>
   <alarm-action-type>1</alarm-action-type>
   <alarms>
    <alarm-action>
     <name>AV</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>0</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
   </alarms>
  </alarm-action-sub-list>
  <alarm-action-sub-list>
   <alarm-action-type>2</alarm-action-type>
   <alarms>
    <alarm-action>
     <name>syn_attack_dos</name>
     <property>0</property>
     <enable>1</enable>
     <event-type>1</event-type>
     <severity>7</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>udp_flood_dos</name>
     <property>0</property>
     <enable>1</enable>
     <event-type>2</event-type>
     <severity>7</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>ipsec_flood_dos</name>
     <property>0</property>
     <enable>1</enable>
     <event-type>6</event-type>
     <severity>7</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>ike_flood_dos</name>
     <property>0</property>
     <enable>1</enable>
     <event-type>7</event-type>
     <severity>7</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>icmp_flood_dos</name>
     <property>0</property>
     <enable>1</enable>
     <event-type>3</event-type>
     <severity>7</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>ping_of_death_dos</name>
     <property>0</property>
     <enable>1</enable>
     <event-type>4</event-type>
     <severity>7</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>ip_source_route_dos</name>
     <property>0</property>
     <enable>1</enable>
     <event-type>5</event-type>
     <severity>7</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>ddos_attack_src_dos</name>
     <property>0</property>
     <enable>1</enable>
     <event-type>8</event-type>
     <severity>7</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>ddos_attack_dest_dos</name>
     <property>0</property>
     <enable>1</enable>
     <event-type>9</event-type>
     <severity>7</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>port_scan_dos</name>
     <property>0</property>
     <enable>1</enable>
     <event-type>10</event-type>
     <severity>7</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>1</block-ip-enable>
     <block-ip-interval>1200</block-ip-interval>
     <block-ip-violation>1</block-ip-violation>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>ip_scan_dos</name>
     <property>0</property>
     <enable>1</enable>
     <event-type>11</event-type>
     <severity>7</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>1</block-ip-enable>
     <block-ip-interval>1200</block-ip-interval>
     <block-ip-violation>1</block-ip-violation>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>spoofing_dos</name>
     <property>0</property>
     <enable>1</enable>
     <event-type>12</event-type>
     <severity>7</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>arp_spoofing_dos</name>
     <property>0</property>
     <enable>1</enable>
     <event-type>14</event-type>
     <severity>7</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>SYN-Attack</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>1</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>UDP-Flood</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>2</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>ICMP-Flood</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>3</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>Ping-of-Death</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>4</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>Source-Route</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>5</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>IPSec-Flood</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>6</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>IKE-Flood</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>7</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>DDOS-Attack-Src</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>8</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>DDOS-Attack-Dest</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>9</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>Port-Scan</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>10</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>IP-Scan</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>11</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>IP-Spoofing</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>12</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>Tear-Drop</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>13</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>DOS</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>0</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
   </alarms>
  </alarm-action-sub-list>
  <alarm-action-sub-list>
   <alarm-action-type>3</alarm-action-type>
   <alarms>
    <alarm-action>
     <name>IPS</name>
     <property>2</property>
     <enable>1</enable>
     <protocol>0</protocol>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
   </alarms>
  </alarm-action-sub-list>
  <alarm-action-sub-list>
   <alarm-action-type>4</alarm-action-type>
   <alarms>
    <alarm-action>
     <name>Blocked Ports</name>
     <property>0</property>
     <enable>1</enable>
     <severity>7</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>Policy</name>
     <property>2</property>
     <enable>1</enable>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>1</block-ip-enable>
     <block-ip-interval>1200</block-ip-interval>
     <block-ip-violation>1</block-ip-violation>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
   </alarms>
  </alarm-action-sub-list>
  <alarm-action-sub-list>
   <alarm-action-type>5</alarm-action-type>
   <alarms>
    <alarm-action>
     <name>Link-Down</name>
     <property>0</property>
     <enable>1</enable>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <interval>60</interval>
     <op>2</op>
     <condition-list>
      <condition>
       <counter-id>1090584603</counter-id>
       <instance-name>0</instance-name>
       <condition-op>9</condition-op>
       <threshold>0.0</threshold>
      </condition>
      <condition>
       <counter-id>1090584603</counter-id>
       <instance-name>1</instance-name>
       <condition-op>9</condition-op>
       <threshold>0.0</threshold>
      </condition>
      <condition>
       <counter-id>1090584603</counter-id>
       <instance-name>2</instance-name>
       <condition-op>9</condition-op>
       <threshold>0.0</threshold>
      </condition>
      <condition>
       <counter-id>1090584603</counter-id>
       <instance-name>3</instance-name>
       <condition-op>9</condition-op>
       <threshold>0.0</threshold>
      </condition>
      <condition>
       <counter-id>1090584603</counter-id>
       <instance-name>4</instance-name>
       <condition-op>9</condition-op>
       <threshold>0.0</threshold>
      </condition>
      <condition>
       <counter-id>1090584603</counter-id>
       <instance-name>5</instance-name>
       <condition-op>9</condition-op>
       <threshold>0.0</threshold>
      </condition>
     </condition-list>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>Log-Full</name>
     <property>0</property>
     <enable>0</enable>
     <severity>4</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <interval>60</interval>
     <op>2</op>
     <condition-list>
      <condition>
       <counter-id>16842774</counter-id>
       <instance-name />
       <condition-op>7</condition-op>
       <threshold>15000.0</threshold>
      </condition>
      <condition>
       <counter-id>16842775</counter-id>
       <instance-name />
       <condition-op>7</condition-op>
       <threshold>150000.0</threshold>
      </condition>
      <condition>
       <counter-id>16842776</counter-id>
       <instance-name />
       <condition-op>7</condition-op>
       <threshold>15000.0</threshold>
      </condition>
      <condition>
       <counter-id>16842822</counter-id>
       <instance-name />
       <condition-op>7</condition-op>
       <threshold>15000.0</threshold>
      </condition>
      <condition>
       <counter-id>16842823</counter-id>
       <instance-name />
       <condition-op>7</condition-op>
       <threshold>15000.0</threshold>
      </condition>
      <condition>
       <counter-id>16842824</counter-id>
       <instance-name />
       <condition-op>7</condition-op>
       <threshold>15000.0</threshold>
      </condition>
      <condition>
       <counter-id>16842832</counter-id>
       <instance-name />
       <condition-op>7</condition-op>
       <threshold>15000.0</threshold>
      </condition>
      <condition>
       <counter-id>16842833</counter-id>
       <instance-name />
       <condition-op>7</condition-op>
       <threshold>15000.0</threshold>
      </condition>
     </condition-list>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
   </alarms>
  </alarm-action-sub-list>
  <alarm-action-sub-list>
   <alarm-action-type>6</alarm-action-type>
   <alarms>
    <alarm-action>
     <name>Proxy</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>0</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
   </alarms>
  </alarm-action-sub-list>
  <alarm-action-sub-list>
   <alarm-action-type>7</alarm-action-type>
   <alarms>
    <alarm-action>
     <name>multi-wan event</name>
     <property>0</property>
     <enable>1</enable>
     <event-type>1</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>ha event</name>
     <property>0</property>
     <enable>1</enable>
     <event-type>2</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>System</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>0</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
   </alarms>
  </alarm-action-sub-list>
  <alarm-action-sub-list>
   <alarm-action-type>8</alarm-action-type>
   <alarms>
    <alarm-action>
     <name>ESP-Auth-Error</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>1</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>AH-Auth-Error</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>2</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>ESP-Replay-Error</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>3</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>AH-Replay-Error</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>4</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>Invalid-SPI</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>5</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>Other-Policy-Error</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>6</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>Block-Site-Notif</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>7</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
    <alarm-action>
     <name>Traffic</name>
     <property>2</property>
     <enable>1</enable>
     <event-type>0</event-type>
     <severity>1</severity>
     <trap-enable>0</trap-enable>
     <email-enable>0</email-enable>
     <email-addr />
     <email-subject />
     <email-from />
     <block-ip-enable>0</block-ip-enable>
     <remote-enable>0</remote-enable>
     <remote-action>
      <action-type>1</action-type>
     </remote-action>
     <launch-interval>900</launch-interval>
     <repeat-count>10</repeat-count>
    </alarm-action>
   </alarms>
  </alarm-action-sub-list>
 </alarm-action-list>
 <signature-update>
  <auto-interval>60</auto-interval>
  <server-url>https://services.watchguard.com</server-url>
  <services>
   <IPS>0</IPS>
   <GAV>0</GAV>
   <Engine>0</Engine>
  </services>
  <proxy-access>0</proxy-access>
  <proxy-server-address />
  <proxy-port>8080</proxy-port>
  <proxy-auth>NoAuth</proxy-auth>
  <proxy-user-name />
  <proxy-user-domain />
  <proxy-password />
 </signature-update>
 <probe-list />
 <user-group-list />
 <one-to-one-nat-list />
 <dnat-list>
  <dnat>
   <from-alias>dnat.from.1</from-alias>
   <to-alias>Any-External</to-alias>
  </dnat>
  <dnat>
   <from-alias>dnat.from.2</from-alias>
   <to-alias>Any-External</to-alias>
  </dnat>
  <dnat>
   <from-alias>dnat.from.3</from-alias>
   <to-alias>Any-External</to-alias>
  </dnat>
 </dnat-list>
 <abs-policy-list>
  <abs-policy>
   <name>Any From Firebox</name>
   <property>32</property>
   <service>Any</service>
   <description>Policy added on 10/03/03 14:59.</description>
   <type>Firewall</type>
   <traffic-type>0</traffic-type>
   <enabled>true</enabled>
   <firewall>Allow</firewall>
   <reject-action>TCP_RST</reject-action>
   <from-alias-list>
    <alias>Any From Firebox.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>Any From Firebox.1.to</alias>
   </to-alias-list>
   <policy-nat />
   <settings>
    <proxy />
    <apply-one-to-one-nat-rules>false</apply-one-to-one-nat-rules>
    <apply-dnat-global>false</apply-dnat-global>
    <apply-dnat-all-traffic>false</apply-dnat-all-traffic>
    <dnat-src-ip>0.0.0.0</dnat-src-ip>
    <traffic-mgmt />
    <connection-rate>0</connection-rate>
    <connection-rate-alarm />
    <qos-marking>
     <marking-field>0</marking-field>
     <marking-method>
      <marking-type>0</marking-type>
     </marking-method>
     <priority-method>0</priority-method>
    </qos-marking>
    <schedule>Always On</schedule>
    <auto-block-enabled>false</auto-block-enabled>
    <log-enabled>false</log-enabled>
    <snmp-enabled>false</snmp-enabled>
    <notification-enabled>false</notification-enabled>
    <policy-routing />
    <ips-monitor-enabled>false</ips-monitor-enabled>
    <idle-timeout>0</idle-timeout>
    <using-global-sticky-setting>1</using-global-sticky-setting>
    <policy-sticky-timer>0</policy-sticky-timer>
   </settings>
   <policy-list>
    <policy>Any From Firebox-00</policy>
   </policy-list>
  </abs-policy>
  <abs-policy>
   <name>FTP</name>
   <property>0</property>
   <service>FTP</service>
   <description>Policy added on 10/03/03 14:59.</description>
   <type>Firewall</type>
   <traffic-type>1</traffic-type>
   <enabled>true</enabled>
   <firewall>Allow</firewall>
   <reject-action>TCP_RST</reject-action>
   <from-alias-list>
    <alias>FTP.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>FTP.1.to</alias>
   </to-alias-list>
   <policy-nat />
   <settings>
    <proxy />
    <apply-one-to-one-nat-rules>true</apply-one-to-one-nat-rules>
    <apply-dnat-global>true</apply-dnat-global>
    <apply-dnat-all-traffic>false</apply-dnat-all-traffic>
    <dnat-src-ip>0.0.0.0</dnat-src-ip>
    <traffic-mgmt />
    <connection-rate>0</connection-rate>
    <connection-rate-alarm />
    <qos-marking>
     <marking-field>0</marking-field>
     <marking-method>
      <marking-type>0</marking-type>
     </marking-method>
     <priority-method>0</priority-method>
    </qos-marking>
    <schedule>Always On</schedule>
    <auto-block-enabled>false</auto-block-enabled>
    <log-enabled>false</log-enabled>
    <snmp-enabled>false</snmp-enabled>
    <notification-enabled>false</notification-enabled>
    <policy-routing />
    <ips-monitor-enabled>false</ips-monitor-enabled>
    <idle-timeout>0</idle-timeout>
    <using-global-sticky-setting>1</using-global-sticky-setting>
    <policy-sticky-timer>0</policy-sticky-timer>
   </settings>
   <policy-list>
    <policy>FTP-00</policy>
   </policy-list>
  </abs-policy>
  <abs-policy>
   <name>WatchGuard Web UI</name>
   <property>0</property>
   <service>WG-Fireware-XTM-WebUI</service>
   <description>Policy added on 10/03/03 14:59.</description>
   <type>Firewall</type>
   <traffic-type>1</traffic-type>
   <enabled>true</enabled>
   <firewall>Allow</firewall>
   <reject-action>TCP_RST</reject-action>
   <from-alias-list>
    <alias>WatchGuard Web UI.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>WatchGuard Web UI.1.to</alias>
   </to-alias-list>
   <policy-nat />
   <settings>
    <proxy />
    <apply-one-to-one-nat-rules>true</apply-one-to-one-nat-rules>
    <apply-dnat-global>true</apply-dnat-global>
    <apply-dnat-all-traffic>false</apply-dnat-all-traffic>
    <dnat-src-ip>0.0.0.0</dnat-src-ip>
    <traffic-mgmt />
    <connection-rate>0</connection-rate>
    <connection-rate-alarm />
    <qos-marking>
     <marking-field>0</marking-field>
     <marking-method>
      <marking-type>0</marking-type>
     </marking-method>
     <priority-method>0</priority-method>
    </qos-marking>
    <schedule>Always On</schedule>
    <auto-block-enabled>false</auto-block-enabled>
    <log-enabled>false</log-enabled>
    <snmp-enabled>false</snmp-enabled>
    <notification-enabled>false</notification-enabled>
    <policy-routing />
    <ips-monitor-enabled>false</ips-monitor-enabled>
    <idle-timeout>0</idle-timeout>
    <using-global-sticky-setting>1</using-global-sticky-setting>
    <policy-sticky-timer>0</policy-sticky-timer>
   </settings>
   <policy-list>
    <policy>WatchGuard Web UI-00</policy>
   </policy-list>
  </abs-policy>
  <abs-policy>
   <name>Ping</name>
   <property>0</property>
   <service>Ping</service>
   <description>Policy added on 10/03/03 14:59.</description>
   <type>Firewall</type>
   <traffic-type>3</traffic-type>
   <enabled>true</enabled>
   <firewall>Allow</firewall>
   <reject-action>TCP_RST</reject-action>
   <from-alias-list>
    <alias>Ping.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>Ping.1.to</alias>
   </to-alias-list>
   <policy-nat />
   <settings>
    <proxy />
    <apply-one-to-one-nat-rules>true</apply-one-to-one-nat-rules>
    <apply-dnat-global>true</apply-dnat-global>
    <apply-dnat-all-traffic>false</apply-dnat-all-traffic>
    <dnat-src-ip>0.0.0.0</dnat-src-ip>
    <traffic-mgmt />
    <connection-rate>0</connection-rate>
    <connection-rate-alarm />
    <qos-marking>
     <marking-field>0</marking-field>
     <marking-method>
      <marking-type>0</marking-type>
     </marking-method>
     <priority-method>0</priority-method>
    </qos-marking>
    <schedule>Always On</schedule>
    <auto-block-enabled>false</auto-block-enabled>
    <log-enabled>false</log-enabled>
    <snmp-enabled>false</snmp-enabled>
    <notification-enabled>false</notification-enabled>
    <policy-routing />
    <ips-monitor-enabled>false</ips-monitor-enabled>
    <idle-timeout>0</idle-timeout>
    <using-global-sticky-setting>1</using-global-sticky-setting>
    <policy-sticky-timer>0</policy-sticky-timer>
   </settings>
   <policy-list>
    <policy>Ping-00</policy>
   </policy-list>
  </abs-policy>
  <abs-policy>
   <name>WatchGuard</name>
   <property>0</property>
   <service>WG-Firebox-Mgmt</service>
   <description>Policy added on 10/03/03 14:59.</description>
   <type>Firewall</type>
   <traffic-type>1</traffic-type>
   <enabled>true</enabled>
   <firewall>Allow</firewall>
   <reject-action>TCP_RST</reject-action>
   <from-alias-list>
    <alias>WatchGuard.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>WatchGuard.1.to</alias>
   </to-alias-list>
   <policy-nat />
   <settings>
    <proxy />
    <apply-one-to-one-nat-rules>true</apply-one-to-one-nat-rules>
    <apply-dnat-global>true</apply-dnat-global>
    <apply-dnat-all-traffic>false</apply-dnat-all-traffic>
    <dnat-src-ip>0.0.0.0</dnat-src-ip>
    <traffic-mgmt />
    <connection-rate>0</connection-rate>
    <connection-rate-alarm />
    <qos-marking>
     <marking-field>0</marking-field>
     <marking-method>
      <marking-type>0</marking-type>
     </marking-method>
     <priority-method>0</priority-method>
    </qos-marking>
    <schedule>Always On</schedule>
    <auto-block-enabled>false</auto-block-enabled>
    <log-enabled>false</log-enabled>
    <snmp-enabled>false</snmp-enabled>
    <notification-enabled>false</notification-enabled>
    <policy-routing />
    <ips-monitor-enabled>false</ips-monitor-enabled>
    <idle-timeout>0</idle-timeout>
    <using-global-sticky-setting>1</using-global-sticky-setting>
    <policy-sticky-timer>0</policy-sticky-timer>
   </settings>
   <policy-list>
    <policy>WatchGuard-00</policy>
   </policy-list>
  </abs-policy>
  <abs-policy>
   <name>Outgoing</name>
   <property>0</property>
   <service>TCP-UDP</service>
   <description>Policy added on 10/03/03 14:59.</description>
   <type>Firewall</type>
   <traffic-type>1</traffic-type>
   <enabled>true</enabled>
   <firewall>Allow</firewall>
   <reject-action>TCP_RST</reject-action>
   <from-alias-list>
    <alias>Outgoing.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>Outgoing.1.to</alias>
   </to-alias-list>
   <policy-nat />
   <settings>
    <proxy />
    <apply-one-to-one-nat-rules>true</apply-one-to-one-nat-rules>
    <apply-dnat-global>true</apply-dnat-global>
    <apply-dnat-all-traffic>false</apply-dnat-all-traffic>
    <dnat-src-ip>0.0.0.0</dnat-src-ip>
    <traffic-mgmt />
    <connection-rate>0</connection-rate>
    <connection-rate-alarm />
    <qos-marking>
     <marking-field>0</marking-field>
     <marking-method>
      <marking-type>0</marking-type>
     </marking-method>
     <priority-method>0</priority-method>
    </qos-marking>
    <schedule>Always On</schedule>
    <auto-block-enabled>false</auto-block-enabled>
    <log-enabled>false</log-enabled>
    <snmp-enabled>false</snmp-enabled>
    <notification-enabled>false</notification-enabled>
    <policy-routing />
    <ips-monitor-enabled>false</ips-monitor-enabled>
    <idle-timeout>0</idle-timeout>
    <using-global-sticky-setting>1</using-global-sticky-setting>
    <policy-sticky-timer>0</policy-sticky-timer>
   </settings>
   <policy-list>
    <policy>Outgoing-00</policy>
   </policy-list>
  </abs-policy>
  <abs-policy>
   <name>BOVPN-Allow.out</name>
   <property>0</property>
   <service>Any</service>
   <description>Policy added on 10/03/15 11:10.</description>
   <type>Firewall</type>
   <traffic-type>2</traffic-type>
   <enabled>true</enabled>
   <firewall>Allow</firewall>
   <reject-action>TCP_RST</reject-action>
   <from-alias-list>
    <alias>BOVPN-Allow.out.1.from</alias>
   </from-alias-list>
   <to-alias-list>
    <alias>BOVPN-Allow.out.1.to</alias>
   </to-alias-list>
   <policy-nat />
   <settings>
    <proxy />
    <apply-one-to-one-nat-rules>true</apply-one-to-one-nat-rules>
    <apply-dnat-global>true</apply-dnat-global>
    <apply-dnat-all-traffic>false</apply-dnat-all-traffic>
    <dnat-src-ip>0.0.0.0</dnat-src-ip>
    <traffic-m
