HP TippingPoint Next Generation Firewall Series Guía de usuario

Busca en linea o descarga Guía de usuario para Redes HP TippingPoint Next Generation Firewall Series. HP TippingPoint Next Generation Firewall Series Command Reference Guide Manual de usuario

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 252
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente

Indice de contenidos

Pagina 1 - Interface Reference Guide

HP TippingPointNext Generation Firewall Command Line Interface Reference GuideVersion1.0.1AbstractThis reference manual describes the Next Generation

Pagina 2

2Document ConventionsThis guide uses the following document conventions.• Typefaces, page 2• Document Messages, page 2TypefacesHP TippingPoint publica

Pagina 3 - Table of Contents

92 Edit Running Configuration CommandsExampleNGFW{running-actionsets-myactionset1}packet-trace enableNGFW{running-actionsets-myactionset1}prioritySet

Pagina 4

NGFW Command Line Interface Reference 93running-addressgroups Context Commands NGFW{running-addressgroups}addressgroupCreate or enter an address group

Pagina 5 - CLI Reference Guide iii

94 Edit Running Configuration CommandsExampleNGFW{running-addressgroups-mygroup1}group mygroup2NGFW{running-addressgroups-mygroup1}ipaddressApply IPv4

Pagina 6

NGFW Command Line Interface Reference 95ExampleNGFW{running-agglink0}bind ethernet5 mode active priority 1NGFW{running-agglink0}bind ethernet6 mode ac

Pagina 7 - CLI Reference Guide v

96 Edit Running Configuration CommandsNGFW{running-agglink0}delete ip rip authentication mode md5NGFW{running-agglink0}delete ip rip authentication mo

Pagina 8

NGFW Command Line Interface Reference 97NGFW{running-agglink0}ip rip split-horizon poison-reverseNGFW{running-agglink0}ipaddressConfigure IP address.S

Pagina 9 - About This Guide

98 Edit Running Configuration CommandsSyntaxmac-address (automatic|X:X:X:X:X:X)ExampleNGFW{running-agglink0}mac-address a1:b2:c3:d4:e5:f6NGFW{running-

Pagina 10 - Document Conventions

NGFW Command Line Interface Reference 99Syntaxra-interval-transmit (enable|disable)ExampleNGFW{running-agglink0}ra-interval-transmit enableNGFW{runnin

Pagina 11 - Customer Support

100 Edit Running Configuration CommandsExampleNGFW{running-agglink0}tcp4mss automaticNGFW{running-agglink0}tcp6mssConfigure interface TCP MSS for IPv6

Pagina 12

NGFW Command Line Interface Reference 101NGFW{running-app-groups}deleteDelete application-group.Syntaxdelete application-group APPNAMEExampleNGFW{runn

Pagina 13 - 1 Command Line Interface

CLI reference guide 3IMPORTANT: Another type of note that provides clarifying information or specific instructions.TIP: Tips provide helpful hints and

Pagina 14 - Shortcut Navigation Keys

102 Edit Running Configuration CommandsExampleNGFW{running-autodv}calendarNGFW{running-autodv}deleteDelete file or configuration item.Syntaxdelete pro

Pagina 15 - Command Modes

NGFW Command Line Interface Reference 103ExampleNGFW{running-autodv}periodicNGFW{running-autodv}proxyConfigure proxy.Syntaxproxy ADDR port PORTproxy-p

Pagina 16 - Edit Configuration Mode

104 Edit Running Configuration CommandsExampleNGFW{running-autodv-calendar}time ?Valid entry at this position is: HOURS Value range is 0 - 23NGFW{r

Pagina 17 - Configuration File Versions

NGFW Command Line Interface Reference 105ExampleNGFW{running-bgp-1}help aggregate-addressConfigure BGP aggregate entriesSyntax: aggregate-address A.B.

Pagina 18 - 10 Command Line Interface

106 Edit Running Configuration Commands distance Delete administrative distances graceful-restart Delete BGP graceful restart local

Pagina 19 - 2 Global Commands

NGFW Command Line Interface Reference 107Syntax: enable enable Enable BGPNGFW{running-bgp-1}graceful-restartSet the BGP graceful restart.Syntaxgrac

Pagina 20

108 Edit Running Configuration Commandsneighbor NAME peer-groupNGFW{running-bgp-1}networkSpecify a network to announce through the BGP.Syntaxnetwork A

Pagina 21 - 3 Root Commands

NGFW Command Line Interface Reference 109running-blockedStreams Context Commands NGFW{running}blockedStreamsNGFW{running-blockedStreams}flushallstream

Pagina 22

110 Edit Running Configuration CommandsSyntaxbind PORTExampleNGFW{running-bridge0}bind ethernet5NGFW{running-bridge0}bind ethernet6NGFW{running-bridge

Pagina 23

NGFW Command Line Interface Reference 111ip ospf hello-interval VALUE [A.B.C.D]ip ospf priority VALUEip ospf retransmit-interval VALUEip ospf transmit

Pagina 25

112 Edit Running Configuration CommandsExampleNGFW{running-bridge0}mtu 1280NGFW{running-bridge0}prefixConfigure IPv6 prefix.Syntaxprefix X:X::X:X/M [v

Pagina 26

NGFW Command Line Interface Reference 113Syntaxra-lifetime (0-9000000)ExampleNGFW{running-bridge0}ra-lifetime 1800NGFW{running-bridge0}ra-mtu Modify I

Pagina 27

114 Edit Running Configuration CommandsNGFW{running-bridge0}tcp6mssConfigure interface TCP MSS for IPv6.Syntaxtcp6mss (disable|automatic|4-65535)disab

Pagina 28 - 20 Root Commands

NGFW Command Line Interface Reference 115Syntaxrule (auto|RULEID) [POSITION_VALUE]ExampleNGFW{running-captive-portal}rule autoNGFW{running-captive-por

Pagina 29

116 Edit Running Configuration CommandsNGFW{running-captive-portal-rule-20000}descriptionApply rule description.Syntaxdescription TEXTExampleNGFW{runn

Pagina 30

NGFW Command Line Interface Reference 117NGFW{running-captive-portal-rule-20000}src-zoneApply source security zone.Syntaxsrc-zone (include|exclude) ZO

Pagina 31

118 Edit Running Configuration Commands2048 2048-bit key size (default)4096 4096-bit key sizeExampleNGFW{running-certificates}cert

Pagina 32

NGFW Command Line Interface Reference 119NQ9TR7THyOy9dwftwoKSXEmSMA0GCSqGSIb3DQEBBAUAA4GBAIzxQr3OK9Jzq+whZfKLLd0S7PbNZH7BfO7voEGtuC5fSPqbziwmOt9FYAg+U

Pagina 33

120 Edit Running Configuration CommandszR6PBzoFwaWk3nX2lYsk/gFpf07z-----END CERTIFICATE----- # CERTIFICATE REQUESTS cert-request myrequest k

Pagina 34 - Examples

NGFW Command Line Interface Reference 121ExampleNGFW{running-certificates-crl}help addValid commands are: # Enter context addressgroups # Other com

Pagina 35

NGFW Command Line Interface Reference 51 Command Line InterfaceIn addition to the Local System Manager (LSM) and the Centralized Management Capability

Pagina 36

122 Edit Running Configuration CommandsExampleNGFW{running-cluster}check config enableNGFW{running-cluster}cluster-nameApply cluster name.Syntaxcluste

Pagina 37

NGFW Command Line Interface Reference 123ExampleNGFW{running-cluster}member-id ?Valid entry at this position is: ID Member IDNGFW{running-cluster}m

Pagina 38

124 Edit Running Configuration CommandsNGFW{running-cluster-tct}encryptionApply encryption hash.Syntaxencryption (enable|disable)encryption hash (none

Pagina 39

NGFW Command Line Interface Reference 125NGFW{running-cluster-tct}mtuApply MTU.Syntaxmtu (68-9216)ExampleNGFW{running-cluster-tct}mtu 1500NGFW{running

Pagina 40

126 Edit Running Configuration CommandsExampleNGFW{running-cluster-tct}retry 3NGFW{running-cluster-tct}timeoutApply timeout.Syntaxtimeout NN Apply tim

Pagina 41

NGFW Command Line Interface Reference 127SyntaxdisableExampleNGFW{running-dhcp-relay}help disableDisable DHCP relaySyntax: disable disable Disable

Pagina 42

128 Edit Running Configuration CommandsNGFW{running-dhcp-server}disableDisable server.SyntaxdisableExampleNGFW{running-dhcp-server}disableNGFW{running

Pagina 43

NGFW Command Line Interface Reference 129ExampleNGFW{running-dhcp-server-myscope}help address-rangeConfigure IP address rangeSyntax: address-range A.B

Pagina 44

130 Edit Running Configuration CommandsExampleNGFW{running-dhcp-server-myscope}help dns-serverConfigure DNS serverSyntax: dns-server A.B.C.D primary|s

Pagina 45

NGFW Command Line Interface Reference 131Configure DHCPv4 leaseSyntax: lease <0-1073741824><0-1073741824> Lease value in seconds (0-1073

Pagina 46

6 Command Line InterfaceShortcut Navigation KeysThe CLI has the ability to store typed commands in a circular memory. Typed commands can be recalled w

Pagina 47

132 Edit Running Configuration CommandsSyntaxdelete rule (all|DSTNATRULEID)ExampleNGFW{running-dnat}delete rule 123NGFW{running-dnat}renameRename dest

Pagina 48

NGFW Command Line Interface Reference 133NGFW{running-dnat-rule-dnat1}descriptionApply rule description.Syntaxdescription TEXTExampleNGFW{running-dnat

Pagina 49

134 Edit Running Configuration CommandsSyntaxsrc-zone (include|exclude) ZONENAMEExampleNGFW{running-dnat-rule-dnat1}src-zone include myzone1NGFW{runni

Pagina 50

NGFW Command Line Interface Reference 135ExampleNGFW{running-dns}delete proxy cache ?Valid entries at this position are: cleaning Delete cleaning

Pagina 51

136 Edit Running Configuration CommandsSyntaxproxy (enable|disable)proxy cache cleaning interval cache cleaning interval in minutesproxy cache forward

Pagina 52

NGFW Command Line Interface Reference 137delete ipaddress (all|A.B.C.D/M|X:X::X:X/M)delete ipaddress dhcpv4delete ipaddress dhcpv6delete ipv6 mlddelet

Pagina 53

138 Edit Running Configuration CommandsNGFW{running-ethernet1}ipConfigure IP settings.Syntaxip igmpip igmp version (1|2|3)ip ospf area (A.B.C.D|(0-429

Pagina 54

NGFW Command Line Interface Reference 139 delete Delete file or configuration item dhcp Configure DHCPv4 cli

Pagina 55

140 Edit Running Configuration Commands ipv6 Configure IPv6 settings ripng Configure RIPng over the interface split-horizon

Pagina 56

NGFW Command Line Interface Reference 141ExampleNGFW{running-ethernet1}ra-autoconf-level fullNGFW{running-ethernet1}ra-intervalModify IPv6 Router Adve

Pagina 57

NGFW Command Line Interface Reference 7HelpThe help command provides a list of commands within the current context and the command line usage. The hel

Pagina 58

142 Edit Running Configuration Commandssmart Router Advert message is sent if a prefix is definedExampleNGFW{running-ethernet1}ra-transmi

Pagina 59 - Related commands

NGFW Command Line Interface Reference 143running-firewall Context Commands NGFW{running}firewallNGFW{running-firewall}default-block-rule Apply action

Pagina 60 - 52 Root Commands

144 Edit Running Configuration CommandsExampleNGFW{running-firewall-rule-myrule1}action "Permit + Notify + Trace"NGFW{running-firewall-rule-

Pagina 61 - 4 Log Configure Commands

NGFW Command Line Interface Reference 145delete dst-zone (exclude all|ZONENAME)delete user (include all|USERNAME)delete user (exclude all|USERNAME)del

Pagina 62

146 Edit Running Configuration CommandsNGFW{running-firewall-rule-myrule1}dst-address include range 192.168.1.100 192.168.1.200NGFW{running-firewall-r

Pagina 63 - Sets log rotation parameters

NGFW Command Line Interface Reference 147Syntaxschedule (include|exclude) SCHEDULENAMEExampleNGFW{running-firewall-rule-myrule1}schedule include myhou

Pagina 64

148 Edit Running Configuration CommandsNGFW{running-firewall-rule-myrule1}userApply user name.Syntaxuser (include|exclude) USER_NAMEExampleNGFW{runnin

Pagina 65 - Monitor/System

NGFW Command Line Interface Reference 149NGFW{running-gen}delete host myhostNGFW{running-gen}delete ndp 100::1 ethernet5NGFW{running-gen}delete arp al

Pagina 66

150 Edit Running Configuration CommandsExampleNGFW{running-gen}https enableNGFW{running-gen}inband-management Inband Management.Syntaxinband-managemen

Pagina 67 - Edit Context Commands

NGFW Command Line Interface Reference 151ExampleNGFW{running-gen}ndp 100:0:0:0:0:0:0:1 ethernet5 a1:b2:c3:d4:e5:f6NGFW{running-gen}sshEnable or disabl

Pagina 68

8 Command Line InterfaceNGFW{}editNGFW{running}interface mgmtNGFW{running-mgmt}help host (displays valid entries for configuring management port host

Pagina 69

152 Edit Running Configuration Commandsrunning-greX Context Commands NGFW{running}interface gre0NGFW{running-gre0}autoconfv6Enable or disable IPv6 aut

Pagina 70

NGFW Command Line Interface Reference 153delete ip rip send version VERSIONdelete ip rip split-horizondelete ipaddress A.B.C.Ddelete ipaddress X:X::X:

Pagina 71

154 Edit Running Configuration CommandsExampleNGFW{running-gre0}description "GRE tunnel 0"NGFW{running-gre0}ipConfigure IP settings.Syntaxip

Pagina 72

NGFW Command Line Interface Reference 155NGFW{running-gre0}ipv6Configure IPv6 settings.Syntaxipv6 mldipv6 mld version (1|2)ipv6 ospfv3 area (A.B.C.D|(

Pagina 73

156 Edit Running Configuration CommandsSyntaxshutdownExampleNGFW{running-gre0}shutdownNGFW{running-gre0}tcp4mssConfigure interface TCP MSS for IPv4.Sy

Pagina 74

NGFW Command Line Interface Reference 157ExampleNGFW{running-high-availability}disableNGFW{running-high-availability}enable Enable high-availability.S

Pagina 75

158 Edit Running Configuration Commands automatic Automatic AFC mode manual Manual AFC modeNGFW{running-ips}afc-severityConfigures AFC severi

Pagina 76 - Enters general context mode

NGFW Command Line Interface Reference 159Aggressive "Offers a more aggressive security posture that may require tuning based upon specific a

Pagina 77

160 Edit Running Configuration CommandsExampleNGFW{running-ips}quarantine-duration 60NGFW{running-ips}renameRenames a profile.Syntaxrename profile PRO

Pagina 78

NGFW Command Line Interface Reference 161ExampleNGFW{running-ips-1}delete filter 9NGFW{running-ips-1}deploymentChange deployment.Syntaxdeployment (Agg

Pagina 79 - IP configuration mode

NGFW Command Line Interface Reference 9NOTE: As you move through the context menu hierarchies, the command prompt changes accordingly. The help or dis

Pagina 80

162 Edit Running Configuration Commandspre-shared-keys Delete pre-shared-keysretransmit-timeout Delete Dead Peer Detection retransmit-timeoutre

Pagina 81

NGFW Command Line Interface Reference 163ExampleNGFW{running-ipsec}phase1 1 proposal propnameNGFW{running-phase1-proposal-propname}helpNGFW{running-ph

Pagina 82

164 Edit Running Configuration CommandsEnter pre-shared key:**************NGFW{running-ipsec}retransmit-timeoutConfigures IKEv2 Dead Peer Detection re

Pagina 83

NGFW Command Line Interface Reference 165NGFW{running-ipsec-vpn-myvpn}?running-ipsec-policy-X Context Commands and their UsageNGFW{running}vpn ipsecNG

Pagina 84 - Enters NTP context mode

166 Edit Running Configuration Commandsrunning-ipsec-vpn-X Context Commands and their UsageNGFW{running}vpn ipsecNGFW{running-ipsec}vpn myvpnNGFW{runn

Pagina 85

NGFW Command Line Interface Reference 167Syntaxexchange-mode (main|aggressive)ExampleNGFW{running-ipsec-vpn-myvpn}exchange-mode aggressiveNGFW{running

Pagina 86

168 Edit Running Configuration CommandsExampleNGFW{running-ipsec-vpn-myvpn}nat-traversal enableNGFW{running-ipsec-vpn-myvpn}peerConfigure local and re

Pagina 87

NGFW Command Line Interface Reference 169running-l2tp-serverX Context Commands NGFW{running}l2tp-server0NGFW{running-l2tp-server0}authAuthenticated co

Pagina 88

170 Edit Running Configuration CommandsNGFW{running-l2tp-server0}sequencingEnables or disables sequence configuration.Syntaxsequencing (enable|disable

Pagina 89

NGFW Command Line Interface Reference 171ExampleNGFW{running-l2tp0}bind 192.168.2.1 192.168.200.1NGFW{running-l2tp0}bind noneNGFW{running-l2tp0}delete

Pagina 90

10 Command Line InterfaceShowThe show command is most efficient in providing critical information, such as traffic usage, router platform type, operat

Pagina 91 - Contexts and Related Commands

172 Edit Running Configuration CommandsNGFW{running-l2tp0}ipConfigure IP settings.Syntaxip igmpip igmp version (1|2|3)ExampleNGFW{running-l2tp0}ip igm

Pagina 92 - NGFW{running-aaa}radius-group

NGFW Command Line Interface Reference 173NGFW{running-l2tp0}log-optionAdd service log option.Syntaxlog-option ppp alllog-option ppp (PPP-LOG-OPTION)PP

Pagina 93 - NGFW{running-aaa}user-group

174 Edit Running Configuration CommandsSyntaxprefix X:X::X:X/M [valid-lifetime (1-4294967295)] [preferred-lifetime (1-4294967295)]ExampleNGFW{running-

Pagina 94

NGFW Command Line Interface Reference 175NGFW{running-l2tp0}ra-mtuModify IPv6 Router Advertisement MTU value.Syntaxra-mtu (none|(68-9216))none Not

Pagina 95

176 Edit Running Configuration CommandsValid entries:disable Disable serviceautomatic Automatically select TCP MSS based on interface MTUVALUE

Pagina 96

NGFW Command Line Interface Reference 177NGFW{running-log}delete log-option fib events recvNGFW{running-log}delete log audit mycontactname ALLNGFW{run

Pagina 97

178 Edit Running Configuration Commandspptp3 PPTP packet dumpslcp LCP events and negotiationphys Physical layer eventsradius Radius auth

Pagina 98

NGFW Command Line Interface Reference 179osi Enable logging osipdh Enable logging pdhpim4sm Enable logging pim4smpim6sm

Pagina 99

180 Edit Running Configuration Commandsrunning-loopbackX Context Commands NGFW{running}interface loopback0NGFW{running-loopback0}deleteDelete file or

Pagina 100

NGFW Command Line Interface Reference 181NGFW{running-loopback0}delete ipv6 ospfv3 dead-intervalNGFW{running-loopback0}delete ipv6 ospfv3 hello-interv

Pagina 101

NGFW Command Line Interface Reference 112 Global CommandsGlobal commands can be used in any context.commitInitiates all pending configuration changes

Pagina 102 - NGFW{running-agglink0}bind

182 Edit Running Configuration CommandsNGFW{running-loopback0}ipaddressConfigure IP address.Syntaxipaddress (A.B.C.D/M|X:X::X:X/M) [primary]ipaddress

Pagina 103 - NGFW{running-agglink0}delete

NGFW Command Line Interface Reference 183delete sa esp ((A.B.C.D|X:X::X:X) SPI)Valid entries:sa Configure Security Associationesp

Pagina 104 - NGFW{running-agglink0}ip

184 Edit Running Configuration Commandsrunning-mgmt Context Commands NGFW{running}interface mgmtNGFW{running-mgmt}deleteDelete file or configuration i

Pagina 105 - NGFW{running-agglink0}ipv6

NGFW Command Line Interface Reference 185ip-filter (allow|deny) ip (A.B.C.D/M|X:X::X:X/M|A.B.C.D|X:X::X:X)Valid entries:allow Allow IPv4/IPv6 r

Pagina 106 - NGFW{running-agglink0}mtu

186 Edit Running Configuration CommandsNGFW{running-mgmt}routeAdd IPv4/IPv6 static route.Syntaxroute A.B.C.D/M A.B.C.D [DISTANCE]route X:X::X:X/M X:X:

Pagina 107 - NGFW{running-agglink0}tcp4mss

NGFW Command Line Interface Reference 187Syntaxcontact CONTACTNAMEcontact NEWNAME emailcontact NEWNAME snmp COMMUNITY IP [PORT]Example NGFW{running-no

Pagina 108 - NGFW{running-agglink0}tcp6mss

188 Edit Running Configuration CommandsSyntaxemail-threshold THRESHOLDExample NGFW{running-notifycontacts}email-threshold 1NGFW{running-notifycontacts

Pagina 109 - NGFW{running-autodv}calendar

NGFW Command Line Interface Reference 189Syntaxperiod PERIODExample NGFW{running-notifycontacts-mycontact1}period 1NGFW{running-notifycontacts-myconta

Pagina 110 - NGFW{running-autodv}periodic

190 Edit Running Configuration CommandsNGFW{running-ntp}ntpEnable or disable NTP service.Syntaxntp (enable|disable)Example NGFW{running-ntp}ntp enable

Pagina 111 - NGFW{running-autodv}update

NGFW Command Line Interface Reference 191ExampleNGFW{running-phase1-proposal-myphase1}auth local pre-shared-key remote pre-shared-keyNGFW{running-phas

Pagina 112

Legal and notice information© Copyright 2013 Hewlett-Packard Development Company, L.P.Hewlett-Packard Company makes no warranty of any kind with regar

Pagina 113 - NGFW{running-bgp-1}delete

12 Global CommandsmoreSet session to display output page by page.Syntaxmore (enable|disable)ExampleNGFW{running}more enabledisplayDisplays the current

Pagina 114 - NGFW{running-bgp-1}enable

192 Edit Running Configuration CommandsSyntaxauth2 (hmac-md5|hmac-sha1) [hmac-sha1|hmac-md5]ExampleNGFW{running-phase2-proposal-myphase2}auth2 hmac-sh

Pagina 115 - NGFW{running-bgp-1}neighbor

NGFW Command Line Interface Reference 193area (A.B.C.D|(0-4294967295)) virtual-link A.B.C.D authentication simple SIMPLE-PASSWORDarea (A.B.C.D|(0-4294

Pagina 116 - NGFW{running-bgp-1}timers

194 Edit Running Configuration CommandsNGFW{running-ospf}disableDisable Open Shortest Path First (OSPF).SyntaxdisableExample NGFW{running-ospf}disable

Pagina 117

NGFW Command Line Interface Reference 195rip Routing Information Protocol (RIP)bgp Border Gateway Protocol (BGP)metric-type OSPF

Pagina 118 - NGFW{running-bridge0}ip

196 Edit Running Configuration CommandsValid entries at this position are: nssa Configure a not-so-stubby area (NSSA) range Summa

Pagina 119 - NGFW{running-bridge0}mtu

NGFW Command Line Interface Reference 197NGFW{running-ospfv3}nsfOSPFv3 non-stop forwarding.Syntaxnsf (enable|disable)enable Enable Graceful Restart

Pagina 120 - NGFW{running-bridge0}prefix

198 Edit Running Configuration Commandsrunning-pim-smv4 Context Commands NGFW{running}router pim-smv4 NGFW{running-pim-smv4}bsr-candidateToggle bootst

Pagina 121 - NGFW{running-bridge0}tcp4mss

NGFW Command Line Interface Reference 199Example NGFW{running-pim-smv4}dr-priority 2NGFW{running-pim-smv4}enableEnable PIM-SM IPv4 on the device.Synta

Pagina 122 - NGFW{running-bridge0}tcp6mss

200 Edit Running Configuration Commandsrunning-pim-smv6 Context Commands NGFW{running}router pim-smv6NGFW{running-pim-smv6}bsr-candidateToggle bootstr

Pagina 123

NGFW Command Line Interface Reference 201Syntaxdr-priority (0-4294967295)(0-4294967295) The priority used to elect the DR.Example NGFW{running-pim-smv

Pagina 124

NGFW Command Line Interface Reference 133 Root CommandsThe top level root command line mode displays the NGFW{} prompt. Commands at this level are use

Pagina 125

202 Edit Running Configuration CommandsRATE The rate for shortest path tree switching (1-4294967295 bytes/s). Default: 1000 bytes/sExample NGFW

Pagina 126 - Add device certificate

NGFW Command Line Interface Reference 203delete ipv6 mld versiondelete log-option ppp alldelete log-option ppp PPP-LOG-OPTIONdelete prefix (all|X:X::X

Pagina 127 - NGFW{running-certificates}crl

204 Edit Running Configuration CommandsNGFW{running-pppoe0}ipcpEnable or disable IPCP for IPv4.Syntaxipcp (enable|disable)Example NGFW{running-pppoe0}

Pagina 128

NGFW Command Line Interface Reference 205l2tp L2TP high level eventsl2tp2 L2TP more detailed eventsl2tp3 L2TP packet dumpspptp PPTP high

Pagina 129 - NGFW{running-cluster}check

206 Edit Running Configuration CommandsExampleNGFW{running-pppoe0}prefix 100:0:0:0:0:0:0:0/64 valid-lifetime 2592000 preferred-lifetime 604800NGFW{run

Pagina 130 - NGFW{running-cluster}enable

NGFW Command Line Interface Reference 207Syntaxra-mtu (none|(68-9216))none Not configuredMTU MTU value advertised (0 if none)ExampleNGFW{runn

Pagina 131 - NGFW{running-cluster}tct

208 Edit Running Configuration CommandsExampleNGFW{running-pppoe0}tcp4mss automaticNGFW{running-pppoe0}tcp6mssConfigure interface TCP MSS for IPv6.Syn

Pagina 132

NGFW Command Line Interface Reference 209NGFW{running-pptp0}bindConfigure binding addresses of the pptp tunnel.Syntaxbind (none|(A.B.C.D A.B.C.D))Exam

Pagina 133

210 Edit Running Configuration CommandsNGFW{running-pptp0}dns-requestConfigure IP DNS server address request.Syntaxdns-request (enable|disable)Example

Pagina 134

NGFW Command Line Interface Reference 211NGFW{running-pptp0}keep-aliveLCP keep alive period in seconds.Syntaxkeep-alive ppp disablekeep-alive ppp (def

Pagina 135

14 Root Commandsclear np softlinxclear np tier-statsclear counter policyclear rate-limit streamsclear users all [locked|ip-locked]clear users (NAME|A.

Pagina 136

212 Edit Running Configuration CommandsSyntaxmtu (default|(68-9216))ExampleNGFW{running-pptp0}mtu 1500NGFW{running-pptp0}prefixConfigure IPv6 prefix.S

Pagina 137

NGFW Command Line Interface Reference 213NGFW{running-pptp0}ra-lifetimeModify IPv6 Router Advertisement prefix lifetime in seconds.Syntaxra-lifetime (

Pagina 138

214 Edit Running Configuration CommandsNGFW{running-pptp0}tcp6mssConfigure interface TCP MSS for IPv6.Syntaxtcp6mss (disable|automatic|(4-65535)Exampl

Pagina 139 - NGFW{running-dnat}delete

NGFW Command Line Interface Reference 215 delete domain DOMAINNAME delete ip SOURCEIP description DESCRIPTION display domain NEWDOMAINNAME help

Pagina 140 - NGFW{running-dnat}rule

216 Edit Running Configuration CommandsValid entries:domain Domain nameip IP address IPv4/IPv6/CIDRExample NGFW{running-rep-1}delete domain ex

Pagina 141

NGFW Command Line Interface Reference 217NGFW{running-rep-abc}check-source-addressEnables or disables check source address.Syntaxcheck-source-address

Pagina 142 - NGFW{running-dns}delete

218 Edit Running Configuration CommandsValid entries:enable Enable filter ruleTHRESHOLD Set threshold (0-100)ACTIONSET Apply action set namedisable Di

Pagina 143 - NGFW{running-dns}proxy

NGFW Command Line Interface Reference 219triggered-updates Disable triggered-updatesversion Reset RIP version to defaultExample NGFW{run

Pagina 144 - NGFW{running-ethernet1}delete

220 Edit Running Configuration CommandsSyntaxequal-cost (2-255)ExampleNGFW{running-rip}equal-cost 2NGFW{running-rip}passive-interfaceSuppress RIP rout

Pagina 145

NGFW Command Line Interface Reference 221NGFW{running-rip}triggered-updatesEnable RIP triggered-updates.Syntaxtriggered-updatesExampleNGFW{running-rip

Pagina 146 - NGFW{running-ethernet1}ip

NGFW Command Line Interface Reference 15flush bgp ip A.B.C.D [ipv4 (unicast|multicast) (in prefix-filter)|in|out|(soft [in|out])]flush bgp ip A.B.C.D

Pagina 147 - NGFW{running-ethernet1}ipv6

222 Edit Running Configuration CommandsExampleNGFW{running-ripng}delete triggered-updatesNGFW{running-ripng}disableDisable Routing Information Protoco

Pagina 148 - NGFW{running-ethernet1}prefix

NGFW Command Line Interface Reference 223Syntaxequal-cost EQUAL-COSTEQUAL-COST (2-255)ExampleNGFW{running-ripng}equal-cost 2NGFW{running-ripng}passive

Pagina 149 - NGFW{running-ethernet1}ra-mtu

224 Edit Running Configuration CommandsNGFW{running-ripng}triggered-updatesEnable RIPng triggered-updates.Syntaxtriggered-updatesExampleNGFW{running-r

Pagina 150

NGFW Command Line Interface Reference 225set community ((AA:NN)|internet|local-as|no-advertise|no-export)set ip next-hop A.B.C.Dset local-preference (

Pagina 151 - NGFW{running-firewall}rule

226 Edit Running Configuration CommandsNGFW{running-schedule-myhours1}descriptionEnter description for the segment.Syntaxdescription TEXTExample NGFW

Pagina 152

NGFW Command Line Interface Reference 227Syntaxdescription TEXTExampleNGFW{running-segment0}description “My Segment”NGFW{running-segment0}high-availab

Pagina 153

228 Edit Running Configuration CommandsExampleNGFW{running-services}delete service myservice2NGFW{running-services}delete service allNGFW{running-serv

Pagina 154

NGFW Command Line Interface Reference 229NGFW{running-services-myservice1}descriptionApply service description.Syntaxdescription TEXTExampleNGFW{runni

Pagina 155

230 Edit Running Configuration CommandsNGFW{running-services-myservice1}protocolApply protocol number.Syntaxprotocol IPPROTOCOLIPPROTOCOL Apply packet

Pagina 156 - NGFW{running-gen}delete

NGFW Command Line Interface Reference 231ExampleNGFW{running-smr}dscp xmit 0x0NGFW{running-smr}monitorDefine monitoring parameters for a route.Syntaxm

Pagina 157 - NGFW{running-gen}https

16 Root CommandsSyntaxlog-configureExampleNGFW{}log-configureNGFW{log-configure}helpNGFW{log-configure}show log-file summaryRelated CommandsLog Config

Pagina 158 - NGFW{running-gen}ndp

232 Edit Running Configuration CommandsSyntaxdelete rule (all|SRCNATRULEID)Example NGFW{running-snat}delete rule 123NGFW{running-snat}renameRename sou

Pagina 159 - NGFW{running-gen}timezone

NGFW Command Line Interface Reference 233NGFW{running-snat-rule-snat1}delete src-address exclude ipaddress 192.168.1.1NGFW{running-snat-rule-snat1}des

Pagina 160 - NGFW{running-gre0}delete

234 Edit Running Configuration CommandsNGFW{running-snat-rule-snat1}move before snat1NGFW{running-snat-rule-snat1}move to position 1NGFW{running-snat-

Pagina 161 - NGFW{running-gre0}description

NGFW Command Line Interface Reference 235COMMUNITY Text to identify SNMP system communitySOURCE IP (A.B.C.D|X:X::X:X), subnet (A.B.C.D/M|X:X::X

Pagina 162 - NGFW{running-gre0}ipaddress

236 Edit Running Configuration Commandstrapsession (A.B.C.D|X:X::X:X|FQDN) [port PORT] ver 3 USERNAME level authNoPriv authtype (MD5|SHA) AUTHPASS [in

Pagina 163 - NGFW{running-gre0}shutdown

NGFW Command Line Interface Reference 237AUTHPASS Authentication passphrase - must be at least 8 charactersauthPriv Authentication and pri

Pagina 164 - NGFW{running-gre0}tcp6mss

238 Edit Running Configuration CommandsSyntaxdelete binddelete ip igmpdelete ip igmp versiondelete ip ospf areadelete ip ospf authentication mode md5

Pagina 165 - NGFW{running-ips}afc-mode

NGFW Command Line Interface Reference 239Syntaxdescription TEXTExample NGFW{running-vlan0}description "My interface description"NGFW{running

Pagina 166 - NGFW{running-ips}delete

240 Edit Running Configuration Commandsipv6 mld version (1|2)ipv6 ospfv3 area (A.B.C.D|<0-4294967295>)ipv6 ospfv3 cost COSTipv6 ospfv3 dead-inte

Pagina 167 - NGFW{running-ips}profile

NGFW Command Line Interface Reference 241valid-lifetime Configure valid lifetime(1-4294967295) Valid lifetime in seconds (default is 2592000)pre

Pagina 168 - NGFW{running-ips}rename

NGFW Command Line Interface Reference 17ping Test connectivity with ICMP traffic. The mgmt option uses the management interface.Syntaxping (A.B.C.D|HO

Pagina 169 - NGFW{running-ipsec}delete

242 Edit Running Configuration CommandsNGFW{running-vlan0}ra-lifetimeModify IPv6 Router Advertisement prefix lifetime in seconds.Syntaxra-lifetime (0-

Pagina 170 - NGFW{running-ipsec}manual

NGFW Command Line Interface Reference 243automatic Automatically select TCP MSS based on interface MTUVALUE TCP MSS value for IPv4 (4-65535)Ex

Pagina 171 - NGFW{running-ipsec}policy

244 Edit Running Configuration CommandsSyntaxzone ZONENAMEExample NGFW{running-zones}zone myzone1running-zones-X Context Commands NGFW{running-zones}z

Pagina 172 - NGFW{running-ipsec}vpn

18 Root CommandsReportsConfigure data collection for on-box reports.Syntaxreports (reset|enable|disable) [all|cpu|disk|fan|memory|network|rate-limiter

Pagina 173

NGFW Command Line Interface Reference 19setSyntaxset cli filtering rule (auto-comment|no-auto-comment|(last-auto-comment-value INT))ExampleNGFW{}set c

Pagina 174

20 Root Commandsshow ipv6 pim-sm Show ipv6 Protocol Independent Multicast - Sparse Mode (PIM-SM) routing informationshow ipv6 ripng Show RIPng routing

Pagina 175

NGFW Command Line Interface Reference 21show aaaSyntaxshow aaa capabilities USERExampleshow aaa capabilities fredNGFW{}show aaa capabilities fredID

Pagina 176

CLI Reference Guide iTable of ContentsAbout This Guide . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Pagina 177

22 Root Commands40 CAPTIVEPORTAL full41 GENERAL full42 X509CERT full43 VPN

Pagina 178 - NGFW{running-l2tp0}bind

NGFW Command Line Interface Reference 23ExampleNGFW{}show agglink#AGGLINK TABLESService ETHGRP is inactiveshow arpSyntaxshow arp ExampleNGFW{}show arp

Pagina 179 - NGFW{running-l2tp0}delete

24 Root Commandsno datashow clusterSyntax show clusterExamplecluster.3-device23{} show clusterCluster Status--------------Name: clusterIdentifie

Pagina 180 - NGFW{running-l2tp0}keep-alive

NGFW Command Line Interface Reference 25IP Address Mac Address Start date & time End date & timeshow dhcpv6Syntaxshow dhcpv6Examp

Pagina 181 - NGFW{running-l2tp0}prefix

26 Root Commands ------------------------ Name: firewall State: enabled Synchronization State: Not initialized Reason: Unable to determine synchr

Pagina 182

NGFW Command Line Interface Reference 27show ip bgp Syntaxshow ip bgpshow ip bgp debugshow ip bgp A.B.C.D/Mshow ip bgp summaryshow ip bgp neighborssho

Pagina 183 - NGFW{running-l2tp0}tcp4mss

28 Root Commandsshow ip mrouteShows the multicast routes.Syntaxshow ip mrouteExampleNGFW{}show ip mrouteSource Group In-interface

Pagina 184 - NGFW{running-log}delete

NGFW Command Line Interface Reference 29ExampleNGFW{}show ip pim-sm interfaceAddress Interface Mode Neighbor Hello DR DR Ad

Pagina 185 - NGFW{running-log}log-option

30 Root CommandsExampleNGFW{}show ip route debugCodes: K - kernel route, C- connected, S - static, R - RIP, O - OSPF, B - BGP, > - selected r

Pagina 186

NGFW Command Line Interface Reference 31 Startup Query Count: 2 General Query Timer Expiry: 00:01:19 Multicast groups joined:NGFW{}show ipv6 mld gr

Pagina 187 - NGFW{running-log}sub-system

iishow autoconf dhcpv4 client . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 23show auto

Pagina 188 - NGFW{running-loopback0}delete

32 Root CommandsExampleNGFW{}show ipv6 pim-sm interfaceInterface Mode Neighbor Hello DR

Pagina 189 - NGFW{running-loopback0}ip

NGFW Command Line Interface Reference 33Codes: O - ospfv3, > - selected route, * - FIB routeO>* 1:1::/64 [110/2] via fe80::20c:29ff:fee0:c919, e

Pagina 190 - NGFW{running-loopback0}mtu

34 Root Commandsshow licenseSyntaxshow licenseExampleNGFW{}show licenseLicense: 1.0.0.11 (Transitional)Feature Status Permit Expiration Details

Pagina 191 - NGFW{running-manual-sa}sa

NGFW Command Line Interface Reference 35show log-file summary [raw|tab|csv|rawcsv] [addUUID] [ASC|DESC|(tail [COUNT])] [seqnum] [more]show log-file sy

Pagina 192 - NGFW{running-mgmt}ip-filter

36 Root Commandsshow log-file ipsAlert [raw|tab|csv|rawcsv] [addUUID] [ASC|DESC] [search COLUMN cmp PATTERN [and|or COLUMN cmp PATTERN]{1,25}] [start-

Pagina 193 - NGFW{running-mgmt}ipaddress

NGFW Command Line Interface Reference 37ExampleNGFW{}show log quarantineshow log-file FILE_NAME statShows the beginning sequence number, ending sequen

Pagina 194 - NGFW{running-mgmt}route

38 Root CommandsADDRCONF(NETDEV_UP): ethernet7: link is not readydevice ethernet7 entered promiscuous modeExampleTo tail the last 5 lines of the boot

Pagina 195

NGFW Command Line Interface Reference 39Rx packets dropped no pcb = 0Tx packets OK = 275262516Tx packets dropped

Pagina 196

40 Root Commands Other 132843 65240426Ipv6Protocol: TCP 378 265014 U

Pagina 197 - NGFW{running-ntp}key

NGFW Command Line Interface Reference 41Sleuth inspected packets = 0Sleuth matched packets = 0

Pagina 198 - NGFW{running-ntp}server

CLI Reference Guide iiishow tse . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Pagina 199

42 Root Commandsshow quarantine-listSyntaxshow quarantine-listExampleNGFW{}show quarantine-listIP Reasonshow reportsShow the status of the data collec

Pagina 200 - NGFW{running-ospf}area

NGFW Command Line Interface Reference 43Service NTP is inactiveService PPP-CtrlPlane is inactiveService ETHGRP-LACP is inactivesh

Pagina 201 - NGFW{running-ospf}delete

44 Root CommandsExampleNGFW{}show system connections ipv4Active Internet connections (servers and established)vrfid Proto Recv-Q Send-Q Local Address

Pagina 202 - NGFW{running-ospf}enable

NGFW Command Line Interface Reference 45show system statisticsSyntaxshow system statistics [PROTO] [non-zero]ExampleNGFW{}show system statisticsshow s

Pagina 203 - NGFW{running-ospfv3}area

46 Root Commands+ Service: captive-portals + captive-portal-config: 48 Bytes Maximum amounts: 175 Bytes Calls to all

Pagina 204 - NGFW{running-ospfv3}enable

NGFW Command Line Interface Reference 47NGFW{}show tse connection-table blocks Second device:NGFW{}show tse connection-table blocks The ‘TRHA’ indicat

Pagina 205 - NGFW{running-ospfv3}router-id

48 Root Commands Failsafe: 1.0.0.1801 System Boot Time: Sun Sept 15 21:14:57 2013 Uptime: 05:17:01shutdownAllows you to shu

Pagina 206 - NGFW{running-pim-smv4}disable

NGFW Command Line Interface Reference 49ExampleNGFW{}snapshot list Name Date OS Version DV Version Model Restore --

Pagina 207 - NGFW{running-pim-smv4}enable

50 Root CommandstracerouteTraceroute shows you the path a packet of information takes from your computer to your designation. It lists all the routers

Pagina 208 - NGFW{running-pim-smv6}disable

NGFW Command Line Interface Reference 51ExampleNGFW{}user-disk encryption enableWARNING: Changing the encryption status of the user disk will erase al

Pagina 209 - NGFW{running-pim-smv6}enable

ivntp . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Pagina 211 - NGFW{running-pppoe0}ip

NGFW Command Line Interface Reference 534 Log Configure CommandsEnter the log-configure command to access the log configuration context. Enter a quest

Pagina 212 - NGFW{running-pppoe0}ipv6cp

54 Log Configure Commandsemail set queueFile QUEUEFILEemail set deadletter DEADLETTERemail delete (sleepSeconds|maxRequeue|queueFile|deadletter)Exampl

Pagina 213 - NGFW{running-pppoe0}prefix

NGFW Command Line Interface Reference 55log-test (all|audit|vpn|quarantine|logID LOGID) [critical [MESSAGE]]log-test (all|audit|vpn|quarantine|logID L

Pagina 214 - NGFW{running-pppoe0}ra-mtu

56 Log Configure CommandsmaxFileSize Max size a 'rotated' log fileMAXFILESIZE Max log rotation file size in MB (10 - 500

Pagina 215 - NGFW{running-pppoe0}tcp4mss

NGFW Command Line Interface Reference 575 Edit Running Configuration CommandsEnter the edit command to access the configuration mode. In edit mode, yo

Pagina 216 - NGFW{running-pptp0}autoconfv6

58 Edit Running Configuration CommandsPolicyrunning-dhcp-relay Context CommandsNGFW{running}dhcp relayrunning-dhcp-server Context CommandsNGFW{running

Pagina 217 - NGFW{running-pptp0}delete

NGFW Command Line Interface Reference 59AuthenticationRoutingVPNEdit Context CommandsaaaEnter Authentication and Authorization and Auditing context mo

Pagina 218 - NGFW{running-pptp0}ipv6cp

60 Edit Running Configuration CommandsExampleNGFW{}editNGFW{running}aaaNGFW{running-aaa}helpNGFW{running-aaa}display user fred xml<?xml version=&qu

Pagina 219 - NGFW{running-pptp0}mtu

NGFW Command Line Interface Reference 61threshold Set quarantine threshold valueverbosity Set packet trace verbosityRelated commandsrunning-actionsets

Pagina 220 - NGFW{running-pptp0}prefix

CLI Reference Guide vrunning-multicast-registration Context Commands. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 186r

Pagina 221 - NGFW{running-pptp0}tcp4mss

62 Edit Running Configuration CommandsNOTE: Attempting to create an application group from the CLI will result in an error while parsing the CRITERIAS

Pagina 222 - NGFW{running-rep}group

NGFW Command Line Interface Reference 63 display enable help [full|COMMAND] list periodic proxy ADDR port PORT proxy-password PASSWD proxy-use

Pagina 223 - NGFW{running-rep}rename

64 Edit Running Configuration Commands delete rule all|RULEID help [full|COMMAND] rename rule RULEID NEWRULEID rule (auto|RULEID) [POSITION_VALUE]

Pagina 224

NGFW Command Line Interface Reference 65ExampleNGFW{running}clusterNGFW{running-cluster}helpValid commands are: check CHECK_TYPE enable|disable clus

Pagina 225

66 Edit Running Configuration CommandsExampleNGFW{running}delete segment78NGFW{running}delete interface agglink0NGFW{running}delete interface bridge0N

Pagina 226 - NGFW{running-rip}delete

NGFW Command Line Interface Reference 67 delete proxy cache maximum negative ttl delete proxy cache maximum ttl delete proxy cache size domain-nam

Pagina 227 - NGFW{running-rip}equal-cost

68 Edit Running Configuration CommandsExampleNGFW{running}firewallNGFW{running-firewall}helpValid commands are: default-block-rule DEFACTIONSET dele

Pagina 228 - NGFW{running-rip}timers

NGFW Command Line Interface Reference 69arp Configure static ARP entryauto-restart Enable/disable automatic restart on detection of critical problemde

Pagina 229 - NGFW{running-ripng}delete

70 Edit Running Configuration Commandsdelete failover-group nameenable|disablefailover-group base-mac X:X:X:X:X:Xfailover-group name NAMEhelp [full|CO

Pagina 230 - NGFW{running-ripng}equal-cost

NGFW Command Line Interface Reference 71interface bridgeXinterface ethernetXinterface greXinterface l2tpXinterface loopbackXinterface mgmtinterface pp

Pagina 232 - NGFW{running-route-map}set

72 Edit Running Configuration CommandsSyntaxip access-list NAME (permit|deny) A.B.C.D/Mip as-path access-list NAME (permit|deny) ASN_FILTERdelete ip a

Pagina 233 - NGFW{running-schedules}rename

NGFW Command Line Interface Reference 73profile PROFILENAMEquarantine-duration DURATIONrename profile XPROFILENAME NEWPROFILENAMENGFW{running-ips}?Val

Pagina 234 - NGFW{running-segment0}delete

74 Edit Running Configuration CommandsValid commands are:auth enable|disableauth shared-secret A.B.C.D|any secret-keybind none|any|(A.B.C.D [port])del

Pagina 235 - NGFW{running-services}delete

NGFW Command Line Interface Reference 75NGFW{running-log}display# LOG SERVICES log system "Management Console" notice #log audit &

Pagina 236 - NGFW{running-services}service

76 Edit Running Configuration CommandsEntering Immediate Commit Feature. Changes take effect immediately.NGFW{running-notifycontacts}helpValid command

Pagina 237

NGFW Command Line Interface Reference 77server Configure remote NTP serverRelated commandsrunning-ntp Context CommandsreputationEnt

Pagina 238 - NGFW{running-smr}dscp

78 Edit Running Configuration CommandsrouterEnters the specified router protocol context.Syntaxrouter bgp ASNUMBERrouter ospfrouter ospfv3router pim-s

Pagina 239 - NGFW{running-snat}delete

NGFW Command Line Interface Reference 79 delete schedule all|SCHEDULENAME help [full|COMMAND] rename schedule SCHEDULENAME NEWSCHEDULENAME schedul

Pagina 240 - NGFW{running-snat}rule

80 Edit Running Configuration CommandsservicesEnters services context mode.SyntaxservicesExampleNGFW{running}servicesNGFW{running-services}helpValid c

Pagina 241

NGFW Command Line Interface Reference 81Valid entries at this position are: authtrap Configure SNMP authentication failure trap com

Pagina 242 - NGFW{running-snmp}community

CLI reference guide 1About This GuideThe Next Generation Firewall command line interface enables you to configure and manage the NGFW Appliance from a

Pagina 243 - NGFW{running-snmp}trapsession

82 Edit Running Configuration Commands delete vpn (all|NAME) help [full|COMMAND] ipsec enable|disable log vpn CONTACT-NAME [SEVERITY] manual pha

Pagina 244 - NGFW{running-snmp}username

NGFW Command Line Interface Reference 83Related commandsrunning-zones Context CommandsContexts and Related Commandsrunning-aaa Context CommandsNGFW{ru

Pagina 245 - NGFW{running-vlan0}delete

84 Edit Running Configuration CommandsSyntaxldap-group LDAPNAMEExampleNGFW{running-aaa}ldap-group mygroupNGFW{running-aaa}ldap-schema Configure LDAP s

Pagina 246 - Example

NGFW Command Line Interface Reference 85NGFW{running-aaa}remote-login-groupConfigure LDAP or RADIUS group to use for either network or administrative

Pagina 247 - NGFW{running-vlan0}ipv6

86 Edit Running Configuration CommandsSyntaxbind-dn DNExampleNGFW{running-aaa-ldap-group-mygroup1}bind-dn CN=admin,OU=People,DC=example,DC=comNGFW{run

Pagina 248 - NGFW{running-vlan0}prefix

NGFW Command Line Interface Reference 87NGFW{running-aaa-ldap-group-mygroup1}serverConfigure LDAP server address.Syntaxserver (A.B.C.D|X:X::X:X) prior

Pagina 249

88 Edit Running Configuration CommandsNGFW{running-aaa-radius-group-2}deleteDelete file or configuration item.Syntaxdelete server (A.B.C.D|X:X::X:X|al

Pagina 250 - NGFW{running-vlan0}tcp4mss

NGFW Command Line Interface Reference 89NGFW{running-actionsets}renameRename action set oldname newname.Syntaxrename actionset ACTIONSETNAME NEWACTION

Pagina 251 - NGFW{running-zones}zone

90 Edit Running Configuration CommandsNGFW{running-actionsets-myactionset1}deleteDelete file or configuration item.Syntaxdelete allow-access DESTIPdel

Pagina 252

NGFW Command Line Interface Reference 91NGFW{running-actionsets-myactionset1}http-shownameSet or clear HTTP show name display option.Syntaxhttp-showna

Comentarios a estos manuales

Sin comentarios