sysopt route dnat
Specify that when an incoming packet does a route lookup, the incoming interface is used to
determine which interface the packet should go to, and which is the next hop.
terminal
Change console terminal settings.
virtual
Access PIX Firewall virtual server.
Supported Invisible Commands, CLI-Only Commands
The clear uauth, kill, ping, reload, show, who, and write commands that also do not appear in the configuration are incorporated directly
into the PDM interface.
●
CLI only commands—PIX Firewall commands that you enter at the command line, but do not appear in the configuration are not supported
in PDM. These are the clock, configure, copy, debug, disable, enable, exit, flashfs, help, perfmon, quit, session, and setup commands.
●
Fully Supported Commands
The following table lists commands fully supported by PDM. PDM parses these commands, operates normally, and allows editing of these
commands in the configuration.
Exceptions are noted in the table and occur when PDM cannot parse certain
combinations
of command statements. For all exceptions, refer to the
Cisco PIX Device Manager Installation Guide for your respective version, "Understanding PDM Access, Handling Configuration Limitations" for
information on how to correct each problem. Commands that PDM cannot parse stay in the configuration, their values cannot be changed with
PDM, and they appear in the list of unparseable commands.
Table A-1: Commands that PDM Parses and Allows in Configuration
COMMAND
DESCRIPTION
aaa command, include option
Enable, disable, or view or RADIUS user authentication, authorization, and accounting
for the server previously designated with the aaa-server command.
aaa command, match acl_name option
Apply authentication, authorization, or accounting to an access list. Exception: PDM cannot parse
this command if an access-group command statement shares the same acl_name.
aaa-server
Specify an AAA server.
access-list and access-group
Create an access list and bind it to an interface.
Exceptions: PDM cannot parse these commands if:
Combining the access-list command with the conduit and/or outbound command.
●
Configuring access-list command statements without an associated access-group command,
unless the access-list command statement is used in conjunction with an aaa command
statement.
●
Configuring multiple access-group command statements with the same acl_name for
different interfaces.
●
Using an acl_name for multiple purposes, such as in an access-group command and in an
aaa command, or in an aaa authentication match command statement and in an aaa
authorization match command statement.
●
apply
Apply outbound command statements to an interface.
auth-prompt
Change the AAA challenge text.
conduit
Add, delete, or show conduits through the PIX Firewall for incoming connections. Exception:
PDM cannot parse this command if you combine it with the access-list command.
Содержание PIX 520 - PIX Firewall 520
Страница 45: ...Copyright 2001 Cisco Systems Inc ...
Страница 68: ...Copyright 2001 Cisco Systems Inc ...
Страница 74: ...Copyright 2001 Cisco Systems Inc ...
Страница 87: ...Copyright 2001 Cisco Systems Inc ...
Страница 92: ...Copyright 2001 Cisco Systems Inc ...
Страница 107: ...The panel has these buttons OK Exits the panel Help Provides more information Copyright 2001 Cisco Systems Inc ...
Страница 108: ......
Страница 184: ......
Страница 197: ...Copyright 2001 Cisco Systems Inc ...
Страница 200: ......
Страница 232: ...Copyright 2001 Cisco Systems Inc ...
Страница 246: ...Copyright 2001 Cisco Systems Inc ...