freeGuard 100 CLI User Manual
75
get firewall service group web_Services
This example shows how to display the configuration for the
firewall service group
command.
show firewall service group
This example shows how to display the configuration for the
web_Services
service group.
show firewall service custom web_Services
Command History
Related Commands
•
policy
5.14 vip
Use this command to add, edit, or delete virtual IPs. You can add static NAT virtual IPs or port
forwarding virtual IPs.
Addresses, address groups, and virtual IPs must all have unique names to avoid confusion in firewall
policies. If aVIP is included in a policy, it cannot be deleted unless it is first removed from the policy.
Use virtual IPs to provide access to IP addresses on a destination network that are hidden from the
source network by NAT security policies. To allow connections between these networks, you must
create a mapping between an address on the source network and the real address on the destination
network. This mapping is called a virtual IP.
You can create two types of virtual IPs:
Static NAT
Used to translate an address on a source network to a hidden address on a
destination network. Static NAT translates the source address of return packets to
the address on the source network.
Port Forwarding Used to translate an address and a port number on a source network to a hidden
address and, optionally, a different port number on a destination network. Using port
forwarding you can also route packets with a specific port number and a destination
address that matches the IP address of the interface that receives the packets. This
technique is called port forwarding orport address translation (PAT). You can also
use port forwarding to change the destination port of the forwarded packets.
Note:
Virtual IPs are not available in transparent mode.
Command syntax pattern
config firewall vip
edit <name_str>
set <keyword> <variable>
end
config firewall vip
Содержание freeGuard 100
Страница 1: ...freeGuard 100 UTM Firewall CLI USER S MANUAL P N F0025000 Rev 1 1...
Страница 3: ......
Страница 7: ......
Страница 87: ...80 The config ips anomaly command has 1 subcommand config limit...
Страница 183: ...176...
Страница 309: ...302 100 from a TFTP server with the address 192 168 21 54 set vpn certificates local import branch_cert 192 168 21 54...