
P312 Broadband Security Gateway
CLI Commands
M
Function
CLI Syntax
Description
config edit firewall set <set #>
default-permit <forward | block>
Edits whether a packet is dropped or allowed through, when
it does not meet a rule within the set
config edit firewall set <set #>
icmp-timeout <seconds>
Edits the time limit, in seconds, for an idle ICMP session,
before it is terminated
config edit firewall set <set #>
udp-idle-timeout <seconds>
Edits the time limit, in seconds, for an idle UDP session,
before it is terminated
config edit firewall set <set #>
connection-timeout <seconds>
Edits the wait time, in seconds, for the SYN traffic in initiating
a TCP session, before it is terminated
config edit firewall set <set #>
fin-wait-timeout <seconds>
Edits the wait time, in seconds, for the FIN traffic in
concluding a TCP session, before it is terminated
config edit firewall set <set #>
tcp-idle-timeout <seconds>
Edits the time limit, in seconds, for an idle TCP session,
before it is terminated
config edit firewall set <set #>
log <yes | no>
Switches on/off the logs for matching default permit
R
R
u
u
l
l
e
e
s
s
config edit firewall set <set #>
rule
<rule #> permit <forward | block>
Edits whether a packet is dropped or allowed through, when
it meets this rule
config edit firewall set <set #>
rule
<rule #> active <yes | no>
Edits whether a rule is enabled or not
config edit firewall set <set #>
rule
<rule #> protocol <integer
protocol value >
Edits the protocol specification number made in this rule for
ICMP currently
config edit firewall set <set #>
rule
<rule #> log <none | match | not-
match | both>
Edits whether traffic that does match the rule, doesn't match,
both or neither is logged.
config edit firewall set <set #>
rule
<rule #> alert <yes | no>
Activates or deactivates the notification function, for when a
DOS attack occurs or there is a violation of any alert settings.
In case of such instances, the function will send an e-mail to
the SMTP destination address and log an alert.
config edit firewall set <set #>
rule
<rule #> srcaddr-single <ip
address>
Selects and edits a source address of the traffic which
comply to this rule
Содержание Broadband Security Gateway P-312
Страница 1: ...Prestige 312 Broadband Security Gateway User s Guide Version 3 20 November 2000 ...
Страница 6: ...P312 Broadband Security Gateway vi CE Doc ...
Страница 22: ......
Страница 26: ......
Страница 30: ......
Страница 73: ......
Страница 95: ......
Страница 137: ......
Страница 160: ......
Страница 168: ......
Страница 180: ......
Страница 193: ...P312 Broadband Security Gateway Creating Custom Rules 16 13 Figure 16 6 Timeout Screen ...
Страница 202: ......
Страница 221: ......
Страница 225: ......
Страница 249: ......