{ "description": "Restrict all internet access", "zone": { "WAN": { "iface": "eth0" }, "VPN": { "iface": "wg0" } }, "policy": [ { "out": "VPN", "action": "accept" }, { "in": "VPN", "action": "drop" }, { "in": "WAN", "action": "drop" }, { "action": "reject" } ], "snat": [ { "out": "WAN", "src": "10.0.0.1/24" } ] }