HP TippingPoint Next Generation Firewall Series Uživatelská příručka

Procházejte online nebo si stáhněte Uživatelská příručka pro Sítě HP TippingPoint Next Generation Firewall Series. HP TippingPoint Next Generation Firewall Series Command Reference Guide Uživatelská příručka

  • Stažení
  • Přidat do mých příruček
  • Tisk
  • Strana
    / 252
  • Tabulka s obsahem
  • KNIHY
  • Hodnocené. / 5. Na základě hodnocení zákazníků

Shrnutí obsahu

Strany 1 - Interface Reference Guide

HP TippingPointNext Generation Firewall Command Line Interface Reference GuideVersion1.0.1AbstractThis reference manual describes the Next Generation

Strany 2

2Document ConventionsThis guide uses the following document conventions.• Typefaces, page 2• Document Messages, page 2TypefacesHP TippingPoint publica

Strany 3 - Table of Contents

92 Edit Running Configuration CommandsExampleNGFW{running-actionsets-myactionset1}packet-trace enableNGFW{running-actionsets-myactionset1}prioritySet

Strany 4

NGFW Command Line Interface Reference 93running-addressgroups Context Commands NGFW{running-addressgroups}addressgroupCreate or enter an address group

Strany 5 - CLI Reference Guide iii

94 Edit Running Configuration CommandsExampleNGFW{running-addressgroups-mygroup1}group mygroup2NGFW{running-addressgroups-mygroup1}ipaddressApply IPv4

Strany 6

NGFW Command Line Interface Reference 95ExampleNGFW{running-agglink0}bind ethernet5 mode active priority 1NGFW{running-agglink0}bind ethernet6 mode ac

Strany 7 - CLI Reference Guide v

96 Edit Running Configuration CommandsNGFW{running-agglink0}delete ip rip authentication mode md5NGFW{running-agglink0}delete ip rip authentication mo

Strany 8

NGFW Command Line Interface Reference 97NGFW{running-agglink0}ip rip split-horizon poison-reverseNGFW{running-agglink0}ipaddressConfigure IP address.S

Strany 9 - About This Guide

98 Edit Running Configuration CommandsSyntaxmac-address (automatic|X:X:X:X:X:X)ExampleNGFW{running-agglink0}mac-address a1:b2:c3:d4:e5:f6NGFW{running-

Strany 10 - Document Conventions

NGFW Command Line Interface Reference 99Syntaxra-interval-transmit (enable|disable)ExampleNGFW{running-agglink0}ra-interval-transmit enableNGFW{runnin

Strany 11 - Customer Support

100 Edit Running Configuration CommandsExampleNGFW{running-agglink0}tcp4mss automaticNGFW{running-agglink0}tcp6mssConfigure interface TCP MSS for IPv6

Strany 12

NGFW Command Line Interface Reference 101NGFW{running-app-groups}deleteDelete application-group.Syntaxdelete application-group APPNAMEExampleNGFW{runn

Strany 13 - 1 Command Line Interface

CLI reference guide 3IMPORTANT: Another type of note that provides clarifying information or specific instructions.TIP: Tips provide helpful hints and

Strany 14 - Shortcut Navigation Keys

102 Edit Running Configuration CommandsExampleNGFW{running-autodv}calendarNGFW{running-autodv}deleteDelete file or configuration item.Syntaxdelete pro

Strany 15 - Command Modes

NGFW Command Line Interface Reference 103ExampleNGFW{running-autodv}periodicNGFW{running-autodv}proxyConfigure proxy.Syntaxproxy ADDR port PORTproxy-p

Strany 16 - Edit Configuration Mode

104 Edit Running Configuration CommandsExampleNGFW{running-autodv-calendar}time ?Valid entry at this position is: HOURS Value range is 0 - 23NGFW{r

Strany 17 - Configuration File Versions

NGFW Command Line Interface Reference 105ExampleNGFW{running-bgp-1}help aggregate-addressConfigure BGP aggregate entriesSyntax: aggregate-address A.B.

Strany 18 - 10 Command Line Interface

106 Edit Running Configuration Commands distance Delete administrative distances graceful-restart Delete BGP graceful restart local

Strany 19 - 2 Global Commands

NGFW Command Line Interface Reference 107Syntax: enable enable Enable BGPNGFW{running-bgp-1}graceful-restartSet the BGP graceful restart.Syntaxgrac

Strany 20

108 Edit Running Configuration Commandsneighbor NAME peer-groupNGFW{running-bgp-1}networkSpecify a network to announce through the BGP.Syntaxnetwork A

Strany 21 - 3 Root Commands

NGFW Command Line Interface Reference 109running-blockedStreams Context Commands NGFW{running}blockedStreamsNGFW{running-blockedStreams}flushallstream

Strany 22

110 Edit Running Configuration CommandsSyntaxbind PORTExampleNGFW{running-bridge0}bind ethernet5NGFW{running-bridge0}bind ethernet6NGFW{running-bridge

Strany 23

NGFW Command Line Interface Reference 111ip ospf hello-interval VALUE [A.B.C.D]ip ospf priority VALUEip ospf retransmit-interval VALUEip ospf transmit

Strany 25

112 Edit Running Configuration CommandsExampleNGFW{running-bridge0}mtu 1280NGFW{running-bridge0}prefixConfigure IPv6 prefix.Syntaxprefix X:X::X:X/M [v

Strany 26

NGFW Command Line Interface Reference 113Syntaxra-lifetime (0-9000000)ExampleNGFW{running-bridge0}ra-lifetime 1800NGFW{running-bridge0}ra-mtu Modify I

Strany 27

114 Edit Running Configuration CommandsNGFW{running-bridge0}tcp6mssConfigure interface TCP MSS for IPv6.Syntaxtcp6mss (disable|automatic|4-65535)disab

Strany 28 - 20 Root Commands

NGFW Command Line Interface Reference 115Syntaxrule (auto|RULEID) [POSITION_VALUE]ExampleNGFW{running-captive-portal}rule autoNGFW{running-captive-por

Strany 29

116 Edit Running Configuration CommandsNGFW{running-captive-portal-rule-20000}descriptionApply rule description.Syntaxdescription TEXTExampleNGFW{runn

Strany 30

NGFW Command Line Interface Reference 117NGFW{running-captive-portal-rule-20000}src-zoneApply source security zone.Syntaxsrc-zone (include|exclude) ZO

Strany 31

118 Edit Running Configuration Commands2048 2048-bit key size (default)4096 4096-bit key sizeExampleNGFW{running-certificates}cert

Strany 32

NGFW Command Line Interface Reference 119NQ9TR7THyOy9dwftwoKSXEmSMA0GCSqGSIb3DQEBBAUAA4GBAIzxQr3OK9Jzq+whZfKLLd0S7PbNZH7BfO7voEGtuC5fSPqbziwmOt9FYAg+U

Strany 33

120 Edit Running Configuration CommandszR6PBzoFwaWk3nX2lYsk/gFpf07z-----END CERTIFICATE----- # CERTIFICATE REQUESTS cert-request myrequest k

Strany 34 - Examples

NGFW Command Line Interface Reference 121ExampleNGFW{running-certificates-crl}help addValid commands are: # Enter context addressgroups # Other com

Strany 35

NGFW Command Line Interface Reference 51 Command Line InterfaceIn addition to the Local System Manager (LSM) and the Centralized Management Capability

Strany 36

122 Edit Running Configuration CommandsExampleNGFW{running-cluster}check config enableNGFW{running-cluster}cluster-nameApply cluster name.Syntaxcluste

Strany 37

NGFW Command Line Interface Reference 123ExampleNGFW{running-cluster}member-id ?Valid entry at this position is: ID Member IDNGFW{running-cluster}m

Strany 38

124 Edit Running Configuration CommandsNGFW{running-cluster-tct}encryptionApply encryption hash.Syntaxencryption (enable|disable)encryption hash (none

Strany 39

NGFW Command Line Interface Reference 125NGFW{running-cluster-tct}mtuApply MTU.Syntaxmtu (68-9216)ExampleNGFW{running-cluster-tct}mtu 1500NGFW{running

Strany 40

126 Edit Running Configuration CommandsExampleNGFW{running-cluster-tct}retry 3NGFW{running-cluster-tct}timeoutApply timeout.Syntaxtimeout NN Apply tim

Strany 41

NGFW Command Line Interface Reference 127SyntaxdisableExampleNGFW{running-dhcp-relay}help disableDisable DHCP relaySyntax: disable disable Disable

Strany 42

128 Edit Running Configuration CommandsNGFW{running-dhcp-server}disableDisable server.SyntaxdisableExampleNGFW{running-dhcp-server}disableNGFW{running

Strany 43

NGFW Command Line Interface Reference 129ExampleNGFW{running-dhcp-server-myscope}help address-rangeConfigure IP address rangeSyntax: address-range A.B

Strany 44

130 Edit Running Configuration CommandsExampleNGFW{running-dhcp-server-myscope}help dns-serverConfigure DNS serverSyntax: dns-server A.B.C.D primary|s

Strany 45

NGFW Command Line Interface Reference 131Configure DHCPv4 leaseSyntax: lease <0-1073741824><0-1073741824> Lease value in seconds (0-1073

Strany 46

6 Command Line InterfaceShortcut Navigation KeysThe CLI has the ability to store typed commands in a circular memory. Typed commands can be recalled w

Strany 47

132 Edit Running Configuration CommandsSyntaxdelete rule (all|DSTNATRULEID)ExampleNGFW{running-dnat}delete rule 123NGFW{running-dnat}renameRename dest

Strany 48

NGFW Command Line Interface Reference 133NGFW{running-dnat-rule-dnat1}descriptionApply rule description.Syntaxdescription TEXTExampleNGFW{running-dnat

Strany 49

134 Edit Running Configuration CommandsSyntaxsrc-zone (include|exclude) ZONENAMEExampleNGFW{running-dnat-rule-dnat1}src-zone include myzone1NGFW{runni

Strany 50

NGFW Command Line Interface Reference 135ExampleNGFW{running-dns}delete proxy cache ?Valid entries at this position are: cleaning Delete cleaning

Strany 51

136 Edit Running Configuration CommandsSyntaxproxy (enable|disable)proxy cache cleaning interval cache cleaning interval in minutesproxy cache forward

Strany 52

NGFW Command Line Interface Reference 137delete ipaddress (all|A.B.C.D/M|X:X::X:X/M)delete ipaddress dhcpv4delete ipaddress dhcpv6delete ipv6 mlddelet

Strany 53

138 Edit Running Configuration CommandsNGFW{running-ethernet1}ipConfigure IP settings.Syntaxip igmpip igmp version (1|2|3)ip ospf area (A.B.C.D|(0-429

Strany 54

NGFW Command Line Interface Reference 139 delete Delete file or configuration item dhcp Configure DHCPv4 cli

Strany 55

140 Edit Running Configuration Commands ipv6 Configure IPv6 settings ripng Configure RIPng over the interface split-horizon

Strany 56

NGFW Command Line Interface Reference 141ExampleNGFW{running-ethernet1}ra-autoconf-level fullNGFW{running-ethernet1}ra-intervalModify IPv6 Router Adve

Strany 57

NGFW Command Line Interface Reference 7HelpThe help command provides a list of commands within the current context and the command line usage. The hel

Strany 58

142 Edit Running Configuration Commandssmart Router Advert message is sent if a prefix is definedExampleNGFW{running-ethernet1}ra-transmi

Strany 59 - Related commands

NGFW Command Line Interface Reference 143running-firewall Context Commands NGFW{running}firewallNGFW{running-firewall}default-block-rule Apply action

Strany 60 - 52 Root Commands

144 Edit Running Configuration CommandsExampleNGFW{running-firewall-rule-myrule1}action "Permit + Notify + Trace"NGFW{running-firewall-rule-

Strany 61 - 4 Log Configure Commands

NGFW Command Line Interface Reference 145delete dst-zone (exclude all|ZONENAME)delete user (include all|USERNAME)delete user (exclude all|USERNAME)del

Strany 62

146 Edit Running Configuration CommandsNGFW{running-firewall-rule-myrule1}dst-address include range 192.168.1.100 192.168.1.200NGFW{running-firewall-r

Strany 63 - Sets log rotation parameters

NGFW Command Line Interface Reference 147Syntaxschedule (include|exclude) SCHEDULENAMEExampleNGFW{running-firewall-rule-myrule1}schedule include myhou

Strany 64

148 Edit Running Configuration CommandsNGFW{running-firewall-rule-myrule1}userApply user name.Syntaxuser (include|exclude) USER_NAMEExampleNGFW{runnin

Strany 65 - Monitor/System

NGFW Command Line Interface Reference 149NGFW{running-gen}delete host myhostNGFW{running-gen}delete ndp 100::1 ethernet5NGFW{running-gen}delete arp al

Strany 66

150 Edit Running Configuration CommandsExampleNGFW{running-gen}https enableNGFW{running-gen}inband-management Inband Management.Syntaxinband-managemen

Strany 67 - Edit Context Commands

NGFW Command Line Interface Reference 151ExampleNGFW{running-gen}ndp 100:0:0:0:0:0:0:1 ethernet5 a1:b2:c3:d4:e5:f6NGFW{running-gen}sshEnable or disabl

Strany 68

8 Command Line InterfaceNGFW{}editNGFW{running}interface mgmtNGFW{running-mgmt}help host (displays valid entries for configuring management port host

Strany 69

152 Edit Running Configuration Commandsrunning-greX Context Commands NGFW{running}interface gre0NGFW{running-gre0}autoconfv6Enable or disable IPv6 aut

Strany 70

NGFW Command Line Interface Reference 153delete ip rip send version VERSIONdelete ip rip split-horizondelete ipaddress A.B.C.Ddelete ipaddress X:X::X:

Strany 71

154 Edit Running Configuration CommandsExampleNGFW{running-gre0}description "GRE tunnel 0"NGFW{running-gre0}ipConfigure IP settings.Syntaxip

Strany 72

NGFW Command Line Interface Reference 155NGFW{running-gre0}ipv6Configure IPv6 settings.Syntaxipv6 mldipv6 mld version (1|2)ipv6 ospfv3 area (A.B.C.D|(

Strany 73

156 Edit Running Configuration CommandsSyntaxshutdownExampleNGFW{running-gre0}shutdownNGFW{running-gre0}tcp4mssConfigure interface TCP MSS for IPv4.Sy

Strany 74

NGFW Command Line Interface Reference 157ExampleNGFW{running-high-availability}disableNGFW{running-high-availability}enable Enable high-availability.S

Strany 75

158 Edit Running Configuration Commands automatic Automatic AFC mode manual Manual AFC modeNGFW{running-ips}afc-severityConfigures AFC severi

Strany 76 - Enters general context mode

NGFW Command Line Interface Reference 159Aggressive "Offers a more aggressive security posture that may require tuning based upon specific a

Strany 77

160 Edit Running Configuration CommandsExampleNGFW{running-ips}quarantine-duration 60NGFW{running-ips}renameRenames a profile.Syntaxrename profile PRO

Strany 78

NGFW Command Line Interface Reference 161ExampleNGFW{running-ips-1}delete filter 9NGFW{running-ips-1}deploymentChange deployment.Syntaxdeployment (Agg

Strany 79 - IP configuration mode

NGFW Command Line Interface Reference 9NOTE: As you move through the context menu hierarchies, the command prompt changes accordingly. The help or dis

Strany 80

162 Edit Running Configuration Commandspre-shared-keys Delete pre-shared-keysretransmit-timeout Delete Dead Peer Detection retransmit-timeoutre

Strany 81

NGFW Command Line Interface Reference 163ExampleNGFW{running-ipsec}phase1 1 proposal propnameNGFW{running-phase1-proposal-propname}helpNGFW{running-ph

Strany 82

164 Edit Running Configuration CommandsEnter pre-shared key:**************NGFW{running-ipsec}retransmit-timeoutConfigures IKEv2 Dead Peer Detection re

Strany 83

NGFW Command Line Interface Reference 165NGFW{running-ipsec-vpn-myvpn}?running-ipsec-policy-X Context Commands and their UsageNGFW{running}vpn ipsecNG

Strany 84 - Enters NTP context mode

166 Edit Running Configuration Commandsrunning-ipsec-vpn-X Context Commands and their UsageNGFW{running}vpn ipsecNGFW{running-ipsec}vpn myvpnNGFW{runn

Strany 85

NGFW Command Line Interface Reference 167Syntaxexchange-mode (main|aggressive)ExampleNGFW{running-ipsec-vpn-myvpn}exchange-mode aggressiveNGFW{running

Strany 86

168 Edit Running Configuration CommandsExampleNGFW{running-ipsec-vpn-myvpn}nat-traversal enableNGFW{running-ipsec-vpn-myvpn}peerConfigure local and re

Strany 87

NGFW Command Line Interface Reference 169running-l2tp-serverX Context Commands NGFW{running}l2tp-server0NGFW{running-l2tp-server0}authAuthenticated co

Strany 88

170 Edit Running Configuration CommandsNGFW{running-l2tp-server0}sequencingEnables or disables sequence configuration.Syntaxsequencing (enable|disable

Strany 89

NGFW Command Line Interface Reference 171ExampleNGFW{running-l2tp0}bind 192.168.2.1 192.168.200.1NGFW{running-l2tp0}bind noneNGFW{running-l2tp0}delete

Strany 90

10 Command Line InterfaceShowThe show command is most efficient in providing critical information, such as traffic usage, router platform type, operat

Strany 91 - Contexts and Related Commands

172 Edit Running Configuration CommandsNGFW{running-l2tp0}ipConfigure IP settings.Syntaxip igmpip igmp version (1|2|3)ExampleNGFW{running-l2tp0}ip igm

Strany 92 - NGFW{running-aaa}radius-group

NGFW Command Line Interface Reference 173NGFW{running-l2tp0}log-optionAdd service log option.Syntaxlog-option ppp alllog-option ppp (PPP-LOG-OPTION)PP

Strany 93 - NGFW{running-aaa}user-group

174 Edit Running Configuration CommandsSyntaxprefix X:X::X:X/M [valid-lifetime (1-4294967295)] [preferred-lifetime (1-4294967295)]ExampleNGFW{running-

Strany 94

NGFW Command Line Interface Reference 175NGFW{running-l2tp0}ra-mtuModify IPv6 Router Advertisement MTU value.Syntaxra-mtu (none|(68-9216))none Not

Strany 95

176 Edit Running Configuration CommandsValid entries:disable Disable serviceautomatic Automatically select TCP MSS based on interface MTUVALUE

Strany 96

NGFW Command Line Interface Reference 177NGFW{running-log}delete log-option fib events recvNGFW{running-log}delete log audit mycontactname ALLNGFW{run

Strany 97

178 Edit Running Configuration Commandspptp3 PPTP packet dumpslcp LCP events and negotiationphys Physical layer eventsradius Radius auth

Strany 98

NGFW Command Line Interface Reference 179osi Enable logging osipdh Enable logging pdhpim4sm Enable logging pim4smpim6sm

Strany 99

180 Edit Running Configuration Commandsrunning-loopbackX Context Commands NGFW{running}interface loopback0NGFW{running-loopback0}deleteDelete file or

Strany 100

NGFW Command Line Interface Reference 181NGFW{running-loopback0}delete ipv6 ospfv3 dead-intervalNGFW{running-loopback0}delete ipv6 ospfv3 hello-interv

Strany 101

NGFW Command Line Interface Reference 112 Global CommandsGlobal commands can be used in any context.commitInitiates all pending configuration changes

Strany 102 - NGFW{running-agglink0}bind

182 Edit Running Configuration CommandsNGFW{running-loopback0}ipaddressConfigure IP address.Syntaxipaddress (A.B.C.D/M|X:X::X:X/M) [primary]ipaddress

Strany 103 - NGFW{running-agglink0}delete

NGFW Command Line Interface Reference 183delete sa esp ((A.B.C.D|X:X::X:X) SPI)Valid entries:sa Configure Security Associationesp

Strany 104 - NGFW{running-agglink0}ip

184 Edit Running Configuration Commandsrunning-mgmt Context Commands NGFW{running}interface mgmtNGFW{running-mgmt}deleteDelete file or configuration i

Strany 105 - NGFW{running-agglink0}ipv6

NGFW Command Line Interface Reference 185ip-filter (allow|deny) ip (A.B.C.D/M|X:X::X:X/M|A.B.C.D|X:X::X:X)Valid entries:allow Allow IPv4/IPv6 r

Strany 106 - NGFW{running-agglink0}mtu

186 Edit Running Configuration CommandsNGFW{running-mgmt}routeAdd IPv4/IPv6 static route.Syntaxroute A.B.C.D/M A.B.C.D [DISTANCE]route X:X::X:X/M X:X:

Strany 107 - NGFW{running-agglink0}tcp4mss

NGFW Command Line Interface Reference 187Syntaxcontact CONTACTNAMEcontact NEWNAME emailcontact NEWNAME snmp COMMUNITY IP [PORT]Example NGFW{running-no

Strany 108 - NGFW{running-agglink0}tcp6mss

188 Edit Running Configuration CommandsSyntaxemail-threshold THRESHOLDExample NGFW{running-notifycontacts}email-threshold 1NGFW{running-notifycontacts

Strany 109 - NGFW{running-autodv}calendar

NGFW Command Line Interface Reference 189Syntaxperiod PERIODExample NGFW{running-notifycontacts-mycontact1}period 1NGFW{running-notifycontacts-myconta

Strany 110 - NGFW{running-autodv}periodic

190 Edit Running Configuration CommandsNGFW{running-ntp}ntpEnable or disable NTP service.Syntaxntp (enable|disable)Example NGFW{running-ntp}ntp enable

Strany 111 - NGFW{running-autodv}update

NGFW Command Line Interface Reference 191ExampleNGFW{running-phase1-proposal-myphase1}auth local pre-shared-key remote pre-shared-keyNGFW{running-phas

Strany 112

Legal and notice information© Copyright 2013 Hewlett-Packard Development Company, L.P.Hewlett-Packard Company makes no warranty of any kind with regar

Strany 113 - NGFW{running-bgp-1}delete

12 Global CommandsmoreSet session to display output page by page.Syntaxmore (enable|disable)ExampleNGFW{running}more enabledisplayDisplays the current

Strany 114 - NGFW{running-bgp-1}enable

192 Edit Running Configuration CommandsSyntaxauth2 (hmac-md5|hmac-sha1) [hmac-sha1|hmac-md5]ExampleNGFW{running-phase2-proposal-myphase2}auth2 hmac-sh

Strany 115 - NGFW{running-bgp-1}neighbor

NGFW Command Line Interface Reference 193area (A.B.C.D|(0-4294967295)) virtual-link A.B.C.D authentication simple SIMPLE-PASSWORDarea (A.B.C.D|(0-4294

Strany 116 - NGFW{running-bgp-1}timers

194 Edit Running Configuration CommandsNGFW{running-ospf}disableDisable Open Shortest Path First (OSPF).SyntaxdisableExample NGFW{running-ospf}disable

Strany 117

NGFW Command Line Interface Reference 195rip Routing Information Protocol (RIP)bgp Border Gateway Protocol (BGP)metric-type OSPF

Strany 118 - NGFW{running-bridge0}ip

196 Edit Running Configuration CommandsValid entries at this position are: nssa Configure a not-so-stubby area (NSSA) range Summa

Strany 119 - NGFW{running-bridge0}mtu

NGFW Command Line Interface Reference 197NGFW{running-ospfv3}nsfOSPFv3 non-stop forwarding.Syntaxnsf (enable|disable)enable Enable Graceful Restart

Strany 120 - NGFW{running-bridge0}prefix

198 Edit Running Configuration Commandsrunning-pim-smv4 Context Commands NGFW{running}router pim-smv4 NGFW{running-pim-smv4}bsr-candidateToggle bootst

Strany 121 - NGFW{running-bridge0}tcp4mss

NGFW Command Line Interface Reference 199Example NGFW{running-pim-smv4}dr-priority 2NGFW{running-pim-smv4}enableEnable PIM-SM IPv4 on the device.Synta

Strany 122 - NGFW{running-bridge0}tcp6mss

200 Edit Running Configuration Commandsrunning-pim-smv6 Context Commands NGFW{running}router pim-smv6NGFW{running-pim-smv6}bsr-candidateToggle bootstr

Strany 123

NGFW Command Line Interface Reference 201Syntaxdr-priority (0-4294967295)(0-4294967295) The priority used to elect the DR.Example NGFW{running-pim-smv

Strany 124

NGFW Command Line Interface Reference 133 Root CommandsThe top level root command line mode displays the NGFW{} prompt. Commands at this level are use

Strany 125

202 Edit Running Configuration CommandsRATE The rate for shortest path tree switching (1-4294967295 bytes/s). Default: 1000 bytes/sExample NGFW

Strany 126 - Add device certificate

NGFW Command Line Interface Reference 203delete ipv6 mld versiondelete log-option ppp alldelete log-option ppp PPP-LOG-OPTIONdelete prefix (all|X:X::X

Strany 127 - NGFW{running-certificates}crl

204 Edit Running Configuration CommandsNGFW{running-pppoe0}ipcpEnable or disable IPCP for IPv4.Syntaxipcp (enable|disable)Example NGFW{running-pppoe0}

Strany 128

NGFW Command Line Interface Reference 205l2tp L2TP high level eventsl2tp2 L2TP more detailed eventsl2tp3 L2TP packet dumpspptp PPTP high

Strany 129 - NGFW{running-cluster}check

206 Edit Running Configuration CommandsExampleNGFW{running-pppoe0}prefix 100:0:0:0:0:0:0:0/64 valid-lifetime 2592000 preferred-lifetime 604800NGFW{run

Strany 130 - NGFW{running-cluster}enable

NGFW Command Line Interface Reference 207Syntaxra-mtu (none|(68-9216))none Not configuredMTU MTU value advertised (0 if none)ExampleNGFW{runn

Strany 131 - NGFW{running-cluster}tct

208 Edit Running Configuration CommandsExampleNGFW{running-pppoe0}tcp4mss automaticNGFW{running-pppoe0}tcp6mssConfigure interface TCP MSS for IPv6.Syn

Strany 132

NGFW Command Line Interface Reference 209NGFW{running-pptp0}bindConfigure binding addresses of the pptp tunnel.Syntaxbind (none|(A.B.C.D A.B.C.D))Exam

Strany 133

210 Edit Running Configuration CommandsNGFW{running-pptp0}dns-requestConfigure IP DNS server address request.Syntaxdns-request (enable|disable)Example

Strany 134

NGFW Command Line Interface Reference 211NGFW{running-pptp0}keep-aliveLCP keep alive period in seconds.Syntaxkeep-alive ppp disablekeep-alive ppp (def

Strany 135

14 Root Commandsclear np softlinxclear np tier-statsclear counter policyclear rate-limit streamsclear users all [locked|ip-locked]clear users (NAME|A.

Strany 136

212 Edit Running Configuration CommandsSyntaxmtu (default|(68-9216))ExampleNGFW{running-pptp0}mtu 1500NGFW{running-pptp0}prefixConfigure IPv6 prefix.S

Strany 137

NGFW Command Line Interface Reference 213NGFW{running-pptp0}ra-lifetimeModify IPv6 Router Advertisement prefix lifetime in seconds.Syntaxra-lifetime (

Strany 138

214 Edit Running Configuration CommandsNGFW{running-pptp0}tcp6mssConfigure interface TCP MSS for IPv6.Syntaxtcp6mss (disable|automatic|(4-65535)Exampl

Strany 139 - NGFW{running-dnat}delete

NGFW Command Line Interface Reference 215 delete domain DOMAINNAME delete ip SOURCEIP description DESCRIPTION display domain NEWDOMAINNAME help

Strany 140 - NGFW{running-dnat}rule

216 Edit Running Configuration CommandsValid entries:domain Domain nameip IP address IPv4/IPv6/CIDRExample NGFW{running-rep-1}delete domain ex

Strany 141

NGFW Command Line Interface Reference 217NGFW{running-rep-abc}check-source-addressEnables or disables check source address.Syntaxcheck-source-address

Strany 142 - NGFW{running-dns}delete

218 Edit Running Configuration CommandsValid entries:enable Enable filter ruleTHRESHOLD Set threshold (0-100)ACTIONSET Apply action set namedisable Di

Strany 143 - NGFW{running-dns}proxy

NGFW Command Line Interface Reference 219triggered-updates Disable triggered-updatesversion Reset RIP version to defaultExample NGFW{run

Strany 144 - NGFW{running-ethernet1}delete

220 Edit Running Configuration CommandsSyntaxequal-cost (2-255)ExampleNGFW{running-rip}equal-cost 2NGFW{running-rip}passive-interfaceSuppress RIP rout

Strany 145

NGFW Command Line Interface Reference 221NGFW{running-rip}triggered-updatesEnable RIP triggered-updates.Syntaxtriggered-updatesExampleNGFW{running-rip

Strany 146 - NGFW{running-ethernet1}ip

NGFW Command Line Interface Reference 15flush bgp ip A.B.C.D [ipv4 (unicast|multicast) (in prefix-filter)|in|out|(soft [in|out])]flush bgp ip A.B.C.D

Strany 147 - NGFW{running-ethernet1}ipv6

222 Edit Running Configuration CommandsExampleNGFW{running-ripng}delete triggered-updatesNGFW{running-ripng}disableDisable Routing Information Protoco

Strany 148 - NGFW{running-ethernet1}prefix

NGFW Command Line Interface Reference 223Syntaxequal-cost EQUAL-COSTEQUAL-COST (2-255)ExampleNGFW{running-ripng}equal-cost 2NGFW{running-ripng}passive

Strany 149 - NGFW{running-ethernet1}ra-mtu

224 Edit Running Configuration CommandsNGFW{running-ripng}triggered-updatesEnable RIPng triggered-updates.Syntaxtriggered-updatesExampleNGFW{running-r

Strany 150

NGFW Command Line Interface Reference 225set community ((AA:NN)|internet|local-as|no-advertise|no-export)set ip next-hop A.B.C.Dset local-preference (

Strany 151 - NGFW{running-firewall}rule

226 Edit Running Configuration CommandsNGFW{running-schedule-myhours1}descriptionEnter description for the segment.Syntaxdescription TEXTExample NGFW

Strany 152

NGFW Command Line Interface Reference 227Syntaxdescription TEXTExampleNGFW{running-segment0}description “My Segment”NGFW{running-segment0}high-availab

Strany 153

228 Edit Running Configuration CommandsExampleNGFW{running-services}delete service myservice2NGFW{running-services}delete service allNGFW{running-serv

Strany 154

NGFW Command Line Interface Reference 229NGFW{running-services-myservice1}descriptionApply service description.Syntaxdescription TEXTExampleNGFW{runni

Strany 155

230 Edit Running Configuration CommandsNGFW{running-services-myservice1}protocolApply protocol number.Syntaxprotocol IPPROTOCOLIPPROTOCOL Apply packet

Strany 156 - NGFW{running-gen}delete

NGFW Command Line Interface Reference 231ExampleNGFW{running-smr}dscp xmit 0x0NGFW{running-smr}monitorDefine monitoring parameters for a route.Syntaxm

Strany 157 - NGFW{running-gen}https

16 Root CommandsSyntaxlog-configureExampleNGFW{}log-configureNGFW{log-configure}helpNGFW{log-configure}show log-file summaryRelated CommandsLog Config

Strany 158 - NGFW{running-gen}ndp

232 Edit Running Configuration CommandsSyntaxdelete rule (all|SRCNATRULEID)Example NGFW{running-snat}delete rule 123NGFW{running-snat}renameRename sou

Strany 159 - NGFW{running-gen}timezone

NGFW Command Line Interface Reference 233NGFW{running-snat-rule-snat1}delete src-address exclude ipaddress 192.168.1.1NGFW{running-snat-rule-snat1}des

Strany 160 - NGFW{running-gre0}delete

234 Edit Running Configuration CommandsNGFW{running-snat-rule-snat1}move before snat1NGFW{running-snat-rule-snat1}move to position 1NGFW{running-snat-

Strany 161 - NGFW{running-gre0}description

NGFW Command Line Interface Reference 235COMMUNITY Text to identify SNMP system communitySOURCE IP (A.B.C.D|X:X::X:X), subnet (A.B.C.D/M|X:X::X

Strany 162 - NGFW{running-gre0}ipaddress

236 Edit Running Configuration Commandstrapsession (A.B.C.D|X:X::X:X|FQDN) [port PORT] ver 3 USERNAME level authNoPriv authtype (MD5|SHA) AUTHPASS [in

Strany 163 - NGFW{running-gre0}shutdown

NGFW Command Line Interface Reference 237AUTHPASS Authentication passphrase - must be at least 8 charactersauthPriv Authentication and pri

Strany 164 - NGFW{running-gre0}tcp6mss

238 Edit Running Configuration CommandsSyntaxdelete binddelete ip igmpdelete ip igmp versiondelete ip ospf areadelete ip ospf authentication mode md5

Strany 165 - NGFW{running-ips}afc-mode

NGFW Command Line Interface Reference 239Syntaxdescription TEXTExample NGFW{running-vlan0}description "My interface description"NGFW{running

Strany 166 - NGFW{running-ips}delete

240 Edit Running Configuration Commandsipv6 mld version (1|2)ipv6 ospfv3 area (A.B.C.D|<0-4294967295>)ipv6 ospfv3 cost COSTipv6 ospfv3 dead-inte

Strany 167 - NGFW{running-ips}profile

NGFW Command Line Interface Reference 241valid-lifetime Configure valid lifetime(1-4294967295) Valid lifetime in seconds (default is 2592000)pre

Strany 168 - NGFW{running-ips}rename

NGFW Command Line Interface Reference 17ping Test connectivity with ICMP traffic. The mgmt option uses the management interface.Syntaxping (A.B.C.D|HO

Strany 169 - NGFW{running-ipsec}delete

242 Edit Running Configuration CommandsNGFW{running-vlan0}ra-lifetimeModify IPv6 Router Advertisement prefix lifetime in seconds.Syntaxra-lifetime (0-

Strany 170 - NGFW{running-ipsec}manual

NGFW Command Line Interface Reference 243automatic Automatically select TCP MSS based on interface MTUVALUE TCP MSS value for IPv4 (4-65535)Ex

Strany 171 - NGFW{running-ipsec}policy

244 Edit Running Configuration CommandsSyntaxzone ZONENAMEExample NGFW{running-zones}zone myzone1running-zones-X Context Commands NGFW{running-zones}z

Strany 172 - NGFW{running-ipsec}vpn

18 Root CommandsReportsConfigure data collection for on-box reports.Syntaxreports (reset|enable|disable) [all|cpu|disk|fan|memory|network|rate-limiter

Strany 173

NGFW Command Line Interface Reference 19setSyntaxset cli filtering rule (auto-comment|no-auto-comment|(last-auto-comment-value INT))ExampleNGFW{}set c

Strany 174

20 Root Commandsshow ipv6 pim-sm Show ipv6 Protocol Independent Multicast - Sparse Mode (PIM-SM) routing informationshow ipv6 ripng Show RIPng routing

Strany 175

NGFW Command Line Interface Reference 21show aaaSyntaxshow aaa capabilities USERExampleshow aaa capabilities fredNGFW{}show aaa capabilities fredID

Strany 176

CLI Reference Guide iTable of ContentsAbout This Guide . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Strany 177

22 Root Commands40 CAPTIVEPORTAL full41 GENERAL full42 X509CERT full43 VPN

Strany 178 - NGFW{running-l2tp0}bind

NGFW Command Line Interface Reference 23ExampleNGFW{}show agglink#AGGLINK TABLESService ETHGRP is inactiveshow arpSyntaxshow arp ExampleNGFW{}show arp

Strany 179 - NGFW{running-l2tp0}delete

24 Root Commandsno datashow clusterSyntax show clusterExamplecluster.3-device23{} show clusterCluster Status--------------Name: clusterIdentifie

Strany 180 - NGFW{running-l2tp0}keep-alive

NGFW Command Line Interface Reference 25IP Address Mac Address Start date & time End date & timeshow dhcpv6Syntaxshow dhcpv6Examp

Strany 181 - NGFW{running-l2tp0}prefix

26 Root Commands ------------------------ Name: firewall State: enabled Synchronization State: Not initialized Reason: Unable to determine synchr

Strany 182

NGFW Command Line Interface Reference 27show ip bgp Syntaxshow ip bgpshow ip bgp debugshow ip bgp A.B.C.D/Mshow ip bgp summaryshow ip bgp neighborssho

Strany 183 - NGFW{running-l2tp0}tcp4mss

28 Root Commandsshow ip mrouteShows the multicast routes.Syntaxshow ip mrouteExampleNGFW{}show ip mrouteSource Group In-interface

Strany 184 - NGFW{running-log}delete

NGFW Command Line Interface Reference 29ExampleNGFW{}show ip pim-sm interfaceAddress Interface Mode Neighbor Hello DR DR Ad

Strany 185 - NGFW{running-log}log-option

30 Root CommandsExampleNGFW{}show ip route debugCodes: K - kernel route, C- connected, S - static, R - RIP, O - OSPF, B - BGP, > - selected r

Strany 186

NGFW Command Line Interface Reference 31 Startup Query Count: 2 General Query Timer Expiry: 00:01:19 Multicast groups joined:NGFW{}show ipv6 mld gr

Strany 187 - NGFW{running-log}sub-system

iishow autoconf dhcpv4 client . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 23show auto

Strany 188 - NGFW{running-loopback0}delete

32 Root CommandsExampleNGFW{}show ipv6 pim-sm interfaceInterface Mode Neighbor Hello DR

Strany 189 - NGFW{running-loopback0}ip

NGFW Command Line Interface Reference 33Codes: O - ospfv3, > - selected route, * - FIB routeO>* 1:1::/64 [110/2] via fe80::20c:29ff:fee0:c919, e

Strany 190 - NGFW{running-loopback0}mtu

34 Root Commandsshow licenseSyntaxshow licenseExampleNGFW{}show licenseLicense: 1.0.0.11 (Transitional)Feature Status Permit Expiration Details

Strany 191 - NGFW{running-manual-sa}sa

NGFW Command Line Interface Reference 35show log-file summary [raw|tab|csv|rawcsv] [addUUID] [ASC|DESC|(tail [COUNT])] [seqnum] [more]show log-file sy

Strany 192 - NGFW{running-mgmt}ip-filter

36 Root Commandsshow log-file ipsAlert [raw|tab|csv|rawcsv] [addUUID] [ASC|DESC] [search COLUMN cmp PATTERN [and|or COLUMN cmp PATTERN]{1,25}] [start-

Strany 193 - NGFW{running-mgmt}ipaddress

NGFW Command Line Interface Reference 37ExampleNGFW{}show log quarantineshow log-file FILE_NAME statShows the beginning sequence number, ending sequen

Strany 194 - NGFW{running-mgmt}route

38 Root CommandsADDRCONF(NETDEV_UP): ethernet7: link is not readydevice ethernet7 entered promiscuous modeExampleTo tail the last 5 lines of the boot

Strany 195

NGFW Command Line Interface Reference 39Rx packets dropped no pcb = 0Tx packets OK = 275262516Tx packets dropped

Strany 196

40 Root Commands Other 132843 65240426Ipv6Protocol: TCP 378 265014 U

Strany 197 - NGFW{running-ntp}key

NGFW Command Line Interface Reference 41Sleuth inspected packets = 0Sleuth matched packets = 0

Strany 198 - NGFW{running-ntp}server

CLI Reference Guide iiishow tse . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Strany 199

42 Root Commandsshow quarantine-listSyntaxshow quarantine-listExampleNGFW{}show quarantine-listIP Reasonshow reportsShow the status of the data collec

Strany 200 - NGFW{running-ospf}area

NGFW Command Line Interface Reference 43Service NTP is inactiveService PPP-CtrlPlane is inactiveService ETHGRP-LACP is inactivesh

Strany 201 - NGFW{running-ospf}delete

44 Root CommandsExampleNGFW{}show system connections ipv4Active Internet connections (servers and established)vrfid Proto Recv-Q Send-Q Local Address

Strany 202 - NGFW{running-ospf}enable

NGFW Command Line Interface Reference 45show system statisticsSyntaxshow system statistics [PROTO] [non-zero]ExampleNGFW{}show system statisticsshow s

Strany 203 - NGFW{running-ospfv3}area

46 Root Commands+ Service: captive-portals + captive-portal-config: 48 Bytes Maximum amounts: 175 Bytes Calls to all

Strany 204 - NGFW{running-ospfv3}enable

NGFW Command Line Interface Reference 47NGFW{}show tse connection-table blocks Second device:NGFW{}show tse connection-table blocks The ‘TRHA’ indicat

Strany 205 - NGFW{running-ospfv3}router-id

48 Root Commands Failsafe: 1.0.0.1801 System Boot Time: Sun Sept 15 21:14:57 2013 Uptime: 05:17:01shutdownAllows you to shu

Strany 206 - NGFW{running-pim-smv4}disable

NGFW Command Line Interface Reference 49ExampleNGFW{}snapshot list Name Date OS Version DV Version Model Restore --

Strany 207 - NGFW{running-pim-smv4}enable

50 Root CommandstracerouteTraceroute shows you the path a packet of information takes from your computer to your designation. It lists all the routers

Strany 208 - NGFW{running-pim-smv6}disable

NGFW Command Line Interface Reference 51ExampleNGFW{}user-disk encryption enableWARNING: Changing the encryption status of the user disk will erase al

Strany 209 - NGFW{running-pim-smv6}enable

ivntp . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Strany 211 - NGFW{running-pppoe0}ip

NGFW Command Line Interface Reference 534 Log Configure CommandsEnter the log-configure command to access the log configuration context. Enter a quest

Strany 212 - NGFW{running-pppoe0}ipv6cp

54 Log Configure Commandsemail set queueFile QUEUEFILEemail set deadletter DEADLETTERemail delete (sleepSeconds|maxRequeue|queueFile|deadletter)Exampl

Strany 213 - NGFW{running-pppoe0}prefix

NGFW Command Line Interface Reference 55log-test (all|audit|vpn|quarantine|logID LOGID) [critical [MESSAGE]]log-test (all|audit|vpn|quarantine|logID L

Strany 214 - NGFW{running-pppoe0}ra-mtu

56 Log Configure CommandsmaxFileSize Max size a 'rotated' log fileMAXFILESIZE Max log rotation file size in MB (10 - 500

Strany 215 - NGFW{running-pppoe0}tcp4mss

NGFW Command Line Interface Reference 575 Edit Running Configuration CommandsEnter the edit command to access the configuration mode. In edit mode, yo

Strany 216 - NGFW{running-pptp0}autoconfv6

58 Edit Running Configuration CommandsPolicyrunning-dhcp-relay Context CommandsNGFW{running}dhcp relayrunning-dhcp-server Context CommandsNGFW{running

Strany 217 - NGFW{running-pptp0}delete

NGFW Command Line Interface Reference 59AuthenticationRoutingVPNEdit Context CommandsaaaEnter Authentication and Authorization and Auditing context mo

Strany 218 - NGFW{running-pptp0}ipv6cp

60 Edit Running Configuration CommandsExampleNGFW{}editNGFW{running}aaaNGFW{running-aaa}helpNGFW{running-aaa}display user fred xml<?xml version=&qu

Strany 219 - NGFW{running-pptp0}mtu

NGFW Command Line Interface Reference 61threshold Set quarantine threshold valueverbosity Set packet trace verbosityRelated commandsrunning-actionsets

Strany 220 - NGFW{running-pptp0}prefix

CLI Reference Guide vrunning-multicast-registration Context Commands. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 186r

Strany 221 - NGFW{running-pptp0}tcp4mss

62 Edit Running Configuration CommandsNOTE: Attempting to create an application group from the CLI will result in an error while parsing the CRITERIAS

Strany 222 - NGFW{running-rep}group

NGFW Command Line Interface Reference 63 display enable help [full|COMMAND] list periodic proxy ADDR port PORT proxy-password PASSWD proxy-use

Strany 223 - NGFW{running-rep}rename

64 Edit Running Configuration Commands delete rule all|RULEID help [full|COMMAND] rename rule RULEID NEWRULEID rule (auto|RULEID) [POSITION_VALUE]

Strany 224

NGFW Command Line Interface Reference 65ExampleNGFW{running}clusterNGFW{running-cluster}helpValid commands are: check CHECK_TYPE enable|disable clus

Strany 225

66 Edit Running Configuration CommandsExampleNGFW{running}delete segment78NGFW{running}delete interface agglink0NGFW{running}delete interface bridge0N

Strany 226 - NGFW{running-rip}delete

NGFW Command Line Interface Reference 67 delete proxy cache maximum negative ttl delete proxy cache maximum ttl delete proxy cache size domain-nam

Strany 227 - NGFW{running-rip}equal-cost

68 Edit Running Configuration CommandsExampleNGFW{running}firewallNGFW{running-firewall}helpValid commands are: default-block-rule DEFACTIONSET dele

Strany 228 - NGFW{running-rip}timers

NGFW Command Line Interface Reference 69arp Configure static ARP entryauto-restart Enable/disable automatic restart on detection of critical problemde

Strany 229 - NGFW{running-ripng}delete

70 Edit Running Configuration Commandsdelete failover-group nameenable|disablefailover-group base-mac X:X:X:X:X:Xfailover-group name NAMEhelp [full|CO

Strany 230 - NGFW{running-ripng}equal-cost

NGFW Command Line Interface Reference 71interface bridgeXinterface ethernetXinterface greXinterface l2tpXinterface loopbackXinterface mgmtinterface pp

Strany 232 - NGFW{running-route-map}set

72 Edit Running Configuration CommandsSyntaxip access-list NAME (permit|deny) A.B.C.D/Mip as-path access-list NAME (permit|deny) ASN_FILTERdelete ip a

Strany 233 - NGFW{running-schedules}rename

NGFW Command Line Interface Reference 73profile PROFILENAMEquarantine-duration DURATIONrename profile XPROFILENAME NEWPROFILENAMENGFW{running-ips}?Val

Strany 234 - NGFW{running-segment0}delete

74 Edit Running Configuration CommandsValid commands are:auth enable|disableauth shared-secret A.B.C.D|any secret-keybind none|any|(A.B.C.D [port])del

Strany 235 - NGFW{running-services}delete

NGFW Command Line Interface Reference 75NGFW{running-log}display# LOG SERVICES log system "Management Console" notice #log audit &

Strany 236 - NGFW{running-services}service

76 Edit Running Configuration CommandsEntering Immediate Commit Feature. Changes take effect immediately.NGFW{running-notifycontacts}helpValid command

Strany 237

NGFW Command Line Interface Reference 77server Configure remote NTP serverRelated commandsrunning-ntp Context CommandsreputationEnt

Strany 238 - NGFW{running-smr}dscp

78 Edit Running Configuration CommandsrouterEnters the specified router protocol context.Syntaxrouter bgp ASNUMBERrouter ospfrouter ospfv3router pim-s

Strany 239 - NGFW{running-snat}delete

NGFW Command Line Interface Reference 79 delete schedule all|SCHEDULENAME help [full|COMMAND] rename schedule SCHEDULENAME NEWSCHEDULENAME schedul

Strany 240 - NGFW{running-snat}rule

80 Edit Running Configuration CommandsservicesEnters services context mode.SyntaxservicesExampleNGFW{running}servicesNGFW{running-services}helpValid c

Strany 241

NGFW Command Line Interface Reference 81Valid entries at this position are: authtrap Configure SNMP authentication failure trap com

Strany 242 - NGFW{running-snmp}community

CLI reference guide 1About This GuideThe Next Generation Firewall command line interface enables you to configure and manage the NGFW Appliance from a

Strany 243 - NGFW{running-snmp}trapsession

82 Edit Running Configuration Commands delete vpn (all|NAME) help [full|COMMAND] ipsec enable|disable log vpn CONTACT-NAME [SEVERITY] manual pha

Strany 244 - NGFW{running-snmp}username

NGFW Command Line Interface Reference 83Related commandsrunning-zones Context CommandsContexts and Related Commandsrunning-aaa Context CommandsNGFW{ru

Strany 245 - NGFW{running-vlan0}delete

84 Edit Running Configuration CommandsSyntaxldap-group LDAPNAMEExampleNGFW{running-aaa}ldap-group mygroupNGFW{running-aaa}ldap-schema Configure LDAP s

Strany 246 - Example

NGFW Command Line Interface Reference 85NGFW{running-aaa}remote-login-groupConfigure LDAP or RADIUS group to use for either network or administrative

Strany 247 - NGFW{running-vlan0}ipv6

86 Edit Running Configuration CommandsSyntaxbind-dn DNExampleNGFW{running-aaa-ldap-group-mygroup1}bind-dn CN=admin,OU=People,DC=example,DC=comNGFW{run

Strany 248 - NGFW{running-vlan0}prefix

NGFW Command Line Interface Reference 87NGFW{running-aaa-ldap-group-mygroup1}serverConfigure LDAP server address.Syntaxserver (A.B.C.D|X:X::X:X) prior

Strany 249

88 Edit Running Configuration CommandsNGFW{running-aaa-radius-group-2}deleteDelete file or configuration item.Syntaxdelete server (A.B.C.D|X:X::X:X|al

Strany 250 - NGFW{running-vlan0}tcp4mss

NGFW Command Line Interface Reference 89NGFW{running-actionsets}renameRename action set oldname newname.Syntaxrename actionset ACTIONSETNAME NEWACTION

Strany 251 - NGFW{running-zones}zone

90 Edit Running Configuration CommandsNGFW{running-actionsets-myactionset1}deleteDelete file or configuration item.Syntaxdelete allow-access DESTIPdel

Strany 252

NGFW Command Line Interface Reference 91NGFW{running-actionsets-myactionset1}http-shownameSet or clear HTTP show name display option.Syntaxhttp-showna

Komentáře k této Příručce

Žádné komentáře