Chapter 17 SSL VPN
ZyWALL (ZLD) CLI Reference Guide
148
The following sections list the SSL VPN commands.
17.2.1 SSL VPN Commands
This table lists the commands for SSL VPN. You must use the
configure terminal
command to enter the configuration mode before you can use these commands.
user_name
The name of a user (group). You may use 1-31 alphanumeric characters,
underscores(
_
), or dashes (-), but the first character cannot be a number.
This value is case-sensitive.
eps_profile_name
The name of an endpoint security object.
Table 74
Input Values for SSL VPN Commands (continued)
LABEL
DESCRIPTION
Table 75
SSL VPN Commands
COMMAND
DESCRIPTION
show sslvpn policy [
profile_name
]
Displays the settings of the specified SSL VPN access policy.
show ssl-vpn network-extension
local-ip
Displays the IP address that the ZyWALL uses in setting up the SSL
VPN.
show sslvpn monitor
Displays a list of the users who are currently logged into the VPN
SSL client portal.
sslvpn network-extension local-ip
ip
Sets the IP address that the ZyWALL uses in setting up the SSL
VPN.
sslvpn policy {
profile_name
|
profile_name
append |
profile_name
insert <1..16>}
Enters the SSL VPN sub-command mode to add or edit an SSL VPN
access policy.
[no] activate
Turns the SSL VPN access policy on or off.
[no] application
application_object
Adds the SSL application object to the SSL VPN access policy.
[no] cache-clean activate
Cleans the cookie, history, and temporary Internet files in the user’s
browser’s cache when the user logs out. The ZyWALL returns them
to the values present before the user logged in. The
no
command
disables this setting.
[no] description
description
Adds information about the SSL VPN access policy. Use up to 60
characters (“0-9”, “a-z”, “A-Z”, “-” and “_”).
[no] eps <1..8>
eps_profile_name
Sets endpoint security objects to be used for the SSL VPN access
policy. The ZyWALL checks authenticated users’ computers against
the policy’s selected endpoint security objects in the order from 1 to 8
you specified. When a user’s computer meets an endpoint security
object’s requirements the ZyWALL grants access and stops
checking.
To make the endpoint security check as efficient as possible, arrange
the endpoint security objects in order with the one that the most
users should match first and the one that the least users should
match last.
[no] eps activate
Sets to have the ZyWALL check that users’ computers meet the
Operating System (OS) and security requirements of one of the SSL
access policy’s selected endpoint security objects before granting
access. The
no
command disables this setting.
eps insert <1..8>
eps_profile_name
Inserts the specified endpoint security object to the specified position
for the endpoint security objects checking order.
Содержание ZyWall
Страница 2: ......
Страница 6: ...Document Conventions ZyWALL ZLD CLI Reference Guide 6 ...
Страница 10: ...10 ...
Страница 26: ...Chapter 1 Command Line Interface ZyWALL ZLD CLI Reference Guide 26 ...
Страница 46: ...46 ...
Страница 84: ...Chapter 6 Interfaces ZyWALL ZLD CLI Reference Guide 84 ...
Страница 98: ...Chapter 8 Route ZyWALL ZLD CLI Reference Guide 98 ...
Страница 106: ...Chapter 10 Zones ZyWALL ZLD CLI Reference Guide 106 ...
Страница 110: ...Chapter 11 DDNS ZyWALL ZLD CLI Reference Guide 110 ...
Страница 116: ...Chapter 12 Virtual Servers ZyWALL ZLD CLI Reference Guide 116 ...
Страница 120: ...Chapter 13 HTTP Redirect ZyWALL ZLD CLI Reference Guide 120 ...
Страница 124: ...Chapter 14 ALG ZyWALL ZLD CLI Reference Guide 124 ...
Страница 125: ...125 PART III Firewall Firewall 127 ...
Страница 126: ...126 ...
Страница 134: ...Chapter 15 Firewall ZyWALL ZLD CLI Reference Guide 134 ...
Страница 135: ...135 PART IV VPN IPSec VPN 137 SSL VPN 147 L2TP VPN 153 ...
Страница 136: ...136 ...
Страница 146: ...Chapter 16 IPSec VPN ZyWALL ZLD CLI Reference Guide 146 ...
Страница 152: ...Chapter 17 SSL VPN ZyWALL ZLD CLI Reference Guide 152 ...
Страница 160: ...Chapter 18 L2TP VPN ZyWALL ZLD CLI Reference Guide 160 ...
Страница 161: ...161 PART V Application Patrol Application Patrol 163 ...
Страница 162: ...162 ...
Страница 174: ...Chapter 19 Application Patrol ZyWALL ZLD CLI Reference Guide 174 ...
Страница 175: ...175 PART VI Anti X Anti Virus 177 IDP Commands 185 Content Filtering 203 Anti Spam 215 ...
Страница 176: ...176 ...
Страница 202: ...Chapter 21 IDP Commands ZyWALL ZLD CLI Reference Guide 202 ...
Страница 214: ...Chapter 22 Content Filtering ZyWALL ZLD CLI Reference Guide 214 ...
Страница 224: ...Chapter 23 Anti Spam ZyWALL ZLD CLI Reference Guide 224 ...
Страница 225: ...225 PART VII Device HA Device HA 227 ...
Страница 226: ...226 ...
Страница 236: ...236 ...
Страница 248: ...Chapter 26 Addresses ZyWALL ZLD CLI Reference Guide 248 ...
Страница 252: ...Chapter 27 Services ZyWALL ZLD CLI Reference Guide 252 ...
Страница 262: ...Chapter 29 AAA Server ZyWALL ZLD CLI Reference Guide 262 ...
Страница 266: ...Chapter 30 Authentication Objects ZyWALL ZLD CLI Reference Guide 266 ...
Страница 272: ...Chapter 31 Certificates ZyWALL ZLD CLI Reference Guide 272 ...
Страница 276: ...Chapter 32 ISP Accounts ZyWALL ZLD CLI Reference Guide 276 ...
Страница 280: ...Chapter 33 SSL Application ZyWALL ZLD CLI Reference Guide 280 ...
Страница 288: ...Chapter 34 Endpoint Security ZyWALL ZLD CLI Reference Guide 288 ...
Страница 289: ...289 PART IX System System 291 System Remote Management 299 ...
Страница 290: ...290 ...
Страница 298: ...Chapter 35 System ZyWALL ZLD CLI Reference Guide 298 ...
Страница 314: ...314 ...
Страница 332: ...Chapter 37 File Manager ZyWALL ZLD CLI Reference Guide 332 Figure 55 Startup Complete ...
Страница 344: ...Chapter 39 Reports and Reboot ZyWALL ZLD CLI Reference Guide 344 ...
Страница 346: ...Chapter 40 Session Timeout ZyWALL ZLD CLI Reference Guide 346 ...
Страница 348: ...Chapter 41 Diagnostics ZyWALL ZLD CLI Reference Guide 348 ...
Страница 362: ...Chapter 44 Watchdog Timer ZyWALL ZLD CLI Reference Guide 362 ...
Страница 363: ...363 PART XI Command List List of Commands Alphabetical 365 ...
Страница 364: ...364 ...
Страница 394: ...List of Commands Alphabetical ZyWALL ZLD CLI Reference Guide 394 ...