User manual | D-Link DSR 500AC, DSR 1000AC router CLI Reference Guide

Add to My manuals
217 Pages

The DSR-500AC and DSR-1000AC are Unified Services Routers, this guide will outline all the available CLI commands to configure these models. The guide is arranged by branch, going through the network settings, security settings, admin settings, wireless settings, VPN settings and RADIUS settings.

advertisement

DSR-500AC, DSR-1000AC CLI Reference Guide | Manualzz
CLI Reference Guide
Unified Services Router
D-Link Corporation
Copyright © 2015.
http://www.dlink.com
CLI Reference Guide
DSR-500AC/1000AC
Unified Services Router
Version 1.00
Copyright © 2015
Copyright Notice
This publication, including all photographs, illustrations and software, is protected under
international copyright laws, with all rights reserved. Neither this manual, nor any of the
material contained herein, may be reproduced without written consent of the author.
Disclaimer
The information in this document is subject to change without notice. The manufacturer
makes no representations or warranties with respect to the contents hereof and
specifically disclaim any implied warranties of merchantability or fitness for any particular
purpose. The manufacturer reserves the right to revise this publication and to make
changes from time to time in the content hereof without obligation of the manufacturer to
notify any person of such revision or changes.
Limitations of Liability
UNDER NO CIRCUMSTANCES SHALL D-LINK OR ITS SUPPLIERS BE LIABLE FOR
DAMAGES OF ANY CHARACTER (E.G. DAMAGES FOR LOSS OF PROFIT, SOFTWARE
RESTORATION, WORK STOPPAGE, LOSS OF SAVED DATA OR ANY OTHER
COMMERCIAL DAMAGES OR LOSSES) RESULTING FROM THE APPLICATION OR
IMPROPER USE OF THE D-LINK PRODUCT OR FAILURE OF THE PRODUCT, EVEN
IF D-LINK IS INFORMED OF THE POSSIBILITY OF SUCH DAMAGES. FURTHERMORE,
D-LINK W ILL NOT BE LIABLE FOR THIRD-PARTY CLAIMS AGAINST CUSTOMER FOR
LOSSES OR DAMAGES. D-LINK WILL IN NO EVENT BE LIABLE FOR ANY DAMAGES
IN EXCESS OF THE AMOUNT D-LINK RECEIVED FROM THE END-USER FOR THE
PRODUCT.
2
Table of Contents
Chapter 1. Introduction ........................................................................................................................... 10
1.1
Accessing the CLI ................................................................................................... 10
Chapter 2. Basic commands available on the CLI ............................................................................. 11
2.1
Context Sensitive Help ........................................................................................... 11
2.2
Auto-Completion ..................................................................................................... 11
2.3
Movement Keys....................................................................................................... 11
2.4
Deletion Keys .......................................................................................................... 11
2.5
Escape Sequences ................................................................................................. 12
Chapter 3. Command Hierarchy in CLI ................................................................................................ 13
3.1
CLI Commands ....................................................................................................... 13
3.2
Router Configuration .............................................................................................. 13
Chapter 4. Global commands used in CLI ........................................................................................... 14
Chapter 5. Show commands used in CLI ............................................................................................ 15
Chapter 6. Configuration commands under branch VPN .................................................................. 46
6.1
vpn gre_tunnel add ................................................................................................. 46
6.2
vpn gre_tunnel edit <row_id> ................................................................................ 47
6.3
vpn gre_tunnel delete <row_id> ........................................................................... 47
6.4
vpn l2tp client configure ......................................................................................... 48
6.5
vpn l2tp client_action <action>.............................................................................. 48
6.6
vpn l2tp server configure ....................................................................................... 48
6.7
vpn openvpn config................................................................................................. 50
6.8
vpn openvpn remote_network add ....................................................................... 52
6.9
vpn openvpn remote_network edit <row_id> ...................................................... 52
6.10 vpn openvpn remote_network delete <row_id> ................................................. 53
6.11 vpn openvpn local_network add ........................................................................... 53
6.12 vpn openvpn local_network edit <row_id> .......................................................... 53
6.13 vpn openvpn local_network delete <row_id>...................................................... 54
6.14 vpn openvpn cert_upload ca <fileName> <ipAddr> .......................................... 54
6.15 vpn openvpn cert_upload server_client_cert <fileName> <ipAddr> ............... 54
6.16 vpn openvpn cert_upload client_key <fileName> <ipAddr> ............................. 54
6.17 vpn openvpn cert_upload dh_Key <fileName> <ipAddr> ................................. 55
6.18 vpn openvpn cert_upload tls_Authkey <fileName> <ipAddr> .......................... 55
6.19 vpn openvpn cert_upload crl_cert <fileName> <ipAddr> .................................. 55
6.20 vpn openvpn cert_upload config <fileName> <ipAddr> .................................... 55
6.21 vpn pptp client configure ........................................................................................ 56
6.22 vpn pptp client_action <action> ............................................................................ 56
6.23 vpn pptp server configure ...................................................................................... 56
6.24 vpn sslvpn portal-layouts add................................................................................ 58
3
6.25
6.26
6.27
6.28
6.29
6.30
6.31
6.32
6.33
6.34
6.35
6.36
6.37
6.38
6.39
6.40
6.41
6.42
6.43
6.44
6.45
6.46
6.47
vpn sslvpn portal-layouts edit <row_id> .............................................................. 59
vpn sslvpn portal-layouts delete <row_id> .......................................................... 60
vpn sslvpn portforwarding appconfig add ............................................................ 60
vpn sslvpn portforwarding appconfig delete <row_id> ...................................... 60
vpn sslvpn portforwarding hostconfig add ........................................................... 60
vpn sslvpn portforwarding hostconfig delete <row_id> ..................................... 61
vpn sslvpn resource add ........................................................................................ 61
vpn sslvpn resource configure add <resource_name> ..................................... 61
vpn sslvpn resource configure delete <row_id> ................................................. 62
vpn sslvpn resource delete <row_id> .................................................................. 62
vpn sslvpn policy add ............................................................................................. 62
vpn sslvpn policy edit <row_id> ............................................................................ 63
vpn sslvpn policy delete <row_id> ........................................................................ 64
vpn sslvpn client ...................................................................................................... 64
vpn sslvpn route add .............................................................................................. 64
vpn sslvpn route delete <row_id> ......................................................................... 65
vpn ipsec policy configure <name> ...................................................................... 65
vpn ipsec dhcp configure ....................................................................................... 74
vpn ipsec policy enable <name> .......................................................................... 74
vpn ipsec policy disable <name>.......................................................................... 74
vpn ipsec policy delete <name> ........................................................................... 74
vpn ipsec policy connect <name> ........................................................................ 75
vpn ipsec policy drop <name> .............................................................................. 75
Chapter 7. Configuration commands under branch DOT11 ............................................................. 76
7.1
dot11 profile add <profile_name> ......................................................................... 76
7.2
dot11 profile edit <profile_name> ......................................................................... 76
7.3
dot11 wmm edit <profile_name> .......................................................................... 77
7.4
dot11 radius configure ............................................................................................ 79
7.5
dot11 profile delete <profile_name>..................................................................... 80
7.6
dot11 accesspoint add <ap_name> ..................................................................... 81
7.7
dot11 accesspoint edit <ap_name> ..................................................................... 81
7.8
dot11 accesspoint delete <ap_name> ................................................................. 82
7.9
dot11 wds enable <radio_no> ............................................................................... 82
7.10 dot11 wds disable <radio_no> .............................................................................. 82
7.11 dot11 wds add_peer <radio_no> <mac_addr> .................................................. 83
7.12 dot11 wds delete_peer <radio_no> <mac_addr> .............................................. 83
7.13 dot11 accesspoint disable <ap_name> ............................................................... 83
7.14 dot11 accesspoint enable <ap_name> ................................................................ 83
7.15 dot11 radio configure <radio_no> ........................................................................ 83
7.16 dot11 radio advanced configure <radio_no> ...................................................... 84
7.17 dot11 accesspoint wps configure ......................................................................... 85
7.18 dot11 accesspoint ACL configure <ap_name> .................................................. 85
7.19 dot11 accesspoint acl delete_mac_address <rowid> ........................................ 86
4
Chapter 8. Configuration commands under branch SYSTEM .......................................................... 87
8.1
System NT-Domain-Settings ................................................................................. 87
8.2
system Active-Directory-Settings .......................................................................... 88
8.3
system LDAP_Settings .......................................................................................... 89
8.4
system POP3_Settings POP3_Server_Configuration ....................................... 90
8.5
system POP3_Settings POP3_Trusted_CA ....................................................... 91
8.6
system logging ipv4 configure ............................................................................... 91
8.7
system logging facility configure <facility> .......................................................... 93
8.8
system logging remote configure .......................................................................... 93
8.9
system logging ipv6 configure ............................................................................... 97
8.10 system Radius-Settings ......................................................................................... 97
8.11 system remote_management https configure .................................................... 98
8.12 system remote_management telnet configure ................................................... 99
8.13 system sessionSettings admin configure .......................................................... 100
8.14 system sessionSettings guest configure ........................................................... 100
8.15 system snmp trap configure <agent_ip> ........................................................... 100
8.16 system snmp trap delete <agent_ip> ................................................................. 101
8.17 system snmp users configure <user> ................................................................ 101
8.18 system snmp sys configure ................................................................................. 102
8.19 system snmp access add .................................................................................... 102
8.20 system snmp access edit <rowid> ..................................................................... 103
8.21 system snmp access delete <rowid> ................................................................. 104
8.22 system switch_settings power_saving configure ............................................. 104
8.23 system switch_settings jumbo_frame configure ............................................... 104
8.24 system admin_setting configure ......................................................................... 105
8.25 system time configure .......................................................................................... 105
8.26 system traffic_meter configure ............................................................................ 106
8.27 system usb usb1 configure .................................................................................. 106
8.28 system usb usb2 configure .................................................................................. 107
8.29 system usb shareport_vlan configure <row_id> ............................................... 107
8.30 system group add ................................................................................................. 108
8.31 system group edit <row_id> ................................................................................ 108
8.32 system group delete <row_id> ............................................................................ 109
8.33 system users add .................................................................................................. 109
8.34 system users edit <row_id> ................................................................................. 110
8.35 system users delete <row_id> ............................................................................ 110
8.36 system group groupaccesscontrol configure <group_id> ............................... 110
8.37 system group access_control_browser add...................................................... 111
8.38 system group access_control_browser delete <row_id> ................................ 111
8.39 system group access_control_ip add................................................................. 111
8.40 system group access_control_ip delete <row_id> ........................................... 112
Chapter 9. Configuration commands under branch UTIL ............................................................... 113
9.1
util system_check ping <ip_address> ................................................................ 113
5
9.2
9.3
9.4
9.5
9.6
9.7
9.8
9.9
9.10
9.11
util system_check dns_lookup <dns> ................................................................ 113
util system_check traceroute <ip_address> ..................................................... 113
util system_check capturePackets start <interface> ....................................... 113
util system_check capturePackets download <fileName> <ipAddr>............. 113
util dbglog_download <fileName> <ipAddr> ..................................................... 113
util usb_test <ipAddr> <fileName> ..................................................................... 114
util firmware_upgrade <IpAddr> <FileName> ................................................... 114
util enable_auto_backup <status> ...................................................................... 114
util enable_config_encryp <status> .................................................................... 114
util watchdog_disable <status> ........................................................................... 114
Chapter 10. Configuration commands under branch LICENSE ....................................................... 115
10.1 license list ............................................................................................................... 115
10.2 license activate <activationKey> ........................................................................ 115
Chapter 11. Configuration commands under branch NET ................................................................ 116
11.1 net ipv6_tunnel six_to_four configure ................................................................ 116
11.2 net bandwidth profile enable <enable> .............................................................. 116
11.3 net bandwidth profile add ..................................................................................... 116
11.4 net bandwidth profile edit <row_id> ................................................................... 117
11.5 net bandwidth profile delete <row_id> ............................................................... 118
11.6 net bandwidth traffic_selector add ...................................................................... 118
11.7 net bandwidth traffic_selector edit <row_id> .................................................... 119
11.8 net bandwidth traffic_selector delete <row_id> ................................................ 119
11.9 net ddns wan1 configure ...................................................................................... 120
11.10 net ddns wan2 configure ...................................................................................... 120
11.11 net lan dhcp reserved_ip configure <mac_address> ...................................... 121
11.12 net lan dhcp reserved_ip delete <mac_address> ............................................ 121
11.13 net dmz dhcp reserved_ip configure <mac_address> .................................... 122
11.14 net dmz dhcp reserved_ip delete <mac_address> .......................................... 122
11.15 net ethernet configure <interface_name> ......................................................... 122
11.16 net lan ipv4 configure ........................................................................................... 123
11.17 net lan ipv6 configure ........................................................................................... 125
11.18 net lan ipv6 pool configure <ipv6PoolStartAddr> ............................................. 126
11.19 net lan ipv6 pool delete <ipv6PoolStartAddr> .................................................. 127
11.20 net igmp configure ................................................................................................ 127
11.21 net intel_Amt server configure ............................................................................ 127
11.22 net intel_Amt_Reflector configure ...................................................................... 128
11.23 net ip_Aliasing server add ................................................................................... 129
11.24 net ip_Aliasing server edit <row_id> .................................................................. 129
11.25 net ip_Aliasing server delete <row_id> .............................................................. 130
11.26 net mode configure ............................................................................................... 130
11.27 net ipv6_tunnel isatap add ................................................................................... 131
11.28 net ipv6_tunnel isatap edit <row_id> ................................................................. 131
6
11.29
11.30
11.31
11.32
11.33
11.34
11.35
11.36
11.37
11.38
11.39
11.40
11.41
11.42
11.43
11.44
11.45
11.46
11.47
11.48
11.49
11.50
11.51
11.52
11.53
11.54
11.55
11.56
11.57
11.58
11.59
11.60
11.61
11.62
11.63
11.64
11.65
11.66
11.67
11.68
11.69
11.70
11.71
11.72
net ipv6_tunnel isatap delete <row_id> ............................................................. 132
net routing mode configure .................................................................................. 132
net wan wan1 ipv4 configure ............................................................................... 133
net wan wan2 ipv4 configure ............................................................................... 145
net wan wan3 threeG configure .......................................................................... 158
net wan mode configure....................................................................................... 159
net wan port_setup configure .............................................................................. 162
net wan vlan_setup configure ............................................................................. 162
net wan vlan_setup vlanId_Add .......................................................................... 162
net wan vlan_setup vlanId_Delete ..................................................................... 163
net wan configurable_port configure .................................................................. 163
net wan wan1 ipv6 configure ............................................................................... 163
net wan wan2 ipv6 configure ............................................................................... 165
net routing ospfv2 configure <interface> ........................................................... 166
net routing ospfv3 configure <interface> ........................................................... 168
16.44 net routing protocol_binding add ............................................................. 169
net routing protocol_binding edit <row_id> ....................................................... 169
net routing protocol_binding enable <row_id>.................................................. 170
net routing protocol_binding disable <row_id> ................................................. 171
net routing protocol_binding delete <row_id> ................................................... 171
net radvd configure ............................................................................................... 172
net radvd pool add ................................................................................................ 173
net radvd pool edit <row_id> ............................................................................... 174
net radvd pool delete <row_id> .......................................................................... 175
net routing dynamic configure ............................................................................. 175
net routing static ipv4 configure <name> .......................................................... 177
net routing static ipv6 configure <name> .......................................................... 178
net routing static ipv4 delete <name> ................................................................ 179
net routing static ipv6 delete <name> ................................................................ 179
net tahi add-default-route <ip_address> ........................................................... 179
net tahi add-route <ip_address> <gw> .............................................................. 179
net tahi del-route <ip_address> <gw> ............................................................... 179
net tahi ipv6-Alias-Add(LAN) <ip6_address>.................................................... 180
net tahi ipv6-Alias-Del(LAN) <ip6_address> ..................................................... 180
net tahi ipv6-Alias-Add(WAN) <ip6_address> .................................................. 180
net tahi ipv6-Alias-Del(WAN) <ip6_address> ................................................... 180
net tahi reachable-time <time> ........................................................................... 181
net tahi ping6 <ip> <size> ................................................................................... 181
net tahi mping6 <mip> .......................................................................................... 181
net tahi bping6 <bip> <psize> ............................................................................. 181
net tahi pmtu-route-add <ipAdd> ........................................................................ 181
net tahi interface-down <interface> .................................................................... 182
net tahi interface-up <interface> ......................................................................... 182
net tahi start-RA-custom <fileName> <ipAddr>................................................ 182
7
11.73
11.74
11.75
11.76
11.77
11.78
11.79
11.80
11.81
11.82
11.83
11.84
net tahi RA-Start .................................................................................................... 182
net ipv6_tunnel teredo configure ........................................................................ 183
net upnp configure ................................................................................................ 184
net port-vlan lan_edit <portnamew>................................................................... 184
net port-vlan wlan_edit <ssidName> .................................................................. 184
net vlan-membership lan_edit <portw> ............................................................. 185
net vlan-membership wlan_edit <ssidName> ................................................... 185
net multiVlan subnet edit <vlanID>..................................................................... 186
net vlan config add <vlan_id> ............................................................................. 187
net vlan config edit <vlan_Id> ............................................................................. 188
net vlan config delete <VlanId> .......................................................................... 188
net dmz configure ................................................................................................. 188
Chapter 12. Configuration commands under branch SECURITY .................................................... 190
12.1 security advanced_network attack_checks configure ..................................... 190
12.2 security advanced_network ips setup ................................................................ 191
12.3 security application_rules add ............................................................................. 191
12.4 security application_rules edit <row_id> ........................................................... 192
12.5 security application_rules delete <row_id> ....................................................... 193
12.6 security firewall custom_service add ................................................................. 193
12.7 security firewall custom_service edit <row_id> ................................................ 194
12.8 security firewall custom_service delete <row_id> ............................................ 194
12.9 security firewall ipv4 configure ............................................................................ 195
12.10 security firewall ipv4 default_outbound_policy <default_outbound_policy>. 196
12.11 security firewall ipv4 edit <row_id>..................................................................... 197
12.12 security firewall ipv4 enable <row_id> ............................................................... 198
12.13 security firewall ipv4 disable <row_id> .............................................................. 199
12.14 security firewall ipv4 delete <row_id> ................................................................ 199
12.15 security firewall ipv4 move <row_id> ................................................................. 199
12.16 security firewall algs ............................................................................................. 199
12.17 security firewall ipv6 configure ............................................................................ 200
12.18 security firewall ipv6 edit <row_id>..................................................................... 201
12.19 security firewall ipv6 enable <row_id> ............................................................... 202
12.20 security firewall ipv6 disable <row_id> .............................................................. 202
12.21 security firewall ipv6 delete <row_id> ................................................................ 202
12.22 security firewall ipv6 move <row_id> ................................................................. 202
12.23 security firewall ipv6 default_outbound_policy <default_outbound_policy>. 203
12.24 security ids configure ............................................................................................ 203
12.25 security session_settings configure ................................................................... 203
12.26 security schedules add......................................................................................... 204
12.27 security schedules edit <row_id> ....................................................................... 205
12.28 security schedules delete <row_id> ................................................................... 207
12.29 security firewall smtpAlg configure ..................................................................... 207
12.30 security firewall smtpAlg approvedMailId add .................................................. 207
8
12.31
12.32
12.33
12.34
12.35
12.36
12.37
12.38
12.39
12.40
12.41
12.42
12.43
12.44
12.45
12.46
12.47
12.48
12.49
12.50
12.51
12.52
12.53
12.54
12.55
12.56
12.57
12.58
12.59
security firewall smtpAlg approvedMailId edit <row_id> ................................. 208
security firewall smtpAlg approvedMailId delete <row_id> ............................. 208
security firewall smtpAlg blockedMailId add ..................................................... 208
security firewall smtpAlg blockedMailId edit <row_id> .................................... 209
security firewall smtpAlg blockedMailId delete <row_id> ................................ 209
security firewall smtpAlg subjectList add ........................................................... 209
security firewall smtpAlg subjectList edit <row_id> .......................................... 210
security firewall smtpAlg subjectList delete <row_id> ..................................... 210
security mac_filter configure................................................................................ 210
security mac_filter source add ............................................................................ 211
security mac_filter source edit <row_id> ........................................................... 211
security mac_filter source delete <row_id> ....................................................... 211
security ip_or_mac_binding add ......................................................................... 212
security ip_or_mac_binding edit <row_id> ........................................................ 212
security ip_or_mac_binding delete <row_id> ................................................... 213
security firewall vpn_passthrough configure ..................................................... 213
security webAccess status <status> .................................................................. 213
security webAccess add ...................................................................................... 213
security webAccess edit <row_id> ..................................................................... 214
security webAccess delete <row_id> ................................................................. 214
security website_filter content_filtering configure ............................................ 215
security website_filter approved_urls add ......................................................... 215
security website_filter approved_urls edit <row_id> ........................................ 215
security website_filter approved_urls delete <row_id> ................................... 216
security website_filter blocked_keywords add.................................................. 216
security website_filter blocked_keywords edit <row_id> ................................ 216
security website_filter blocked_keywords delete <row_id> ............................ 217
security website_filter blocked_keywords enable <row_id> ........................... 217
security website_filter blocked_keywords disable <row_id> .......................... 217
9
Chapter 1. Introduction
This document describes the Command Line Interface (CLI) for managing D-Link's
DSR-500AC/1000AC router.
The CLI user requires advanced knowledge about the configuration of the system,
and it should be used only by those users who are familiar with CLI-based
configuration.
Note that the following features in the DSR Unified Services Router cannot be
managed by the CLI:
•
Firmware Upgrade
•
Configuration Backup/Restore
•
Certificate Generate/Upload
•
Power Savings mode configuration
•
System Dashboard/Resource Utilization
Please access the web browser based UI of the DSR router for managing these
features.
1.1 Accessing the CLI
The CLI can be accessed by logging in with the same user credentials used to
access the web browser based UI.
*****************************************************
Welcome to the DSR Command Line Interface
****************************************************
D-Link DSR>
Note: D-Link DSR> is the CLI prompt.
10
Chapter 2. Basic commands available
on the CLI
2.1 Context Sensitive Help
[?] - Displays context sensitive help. This is either a list of possible command
completions with summaries, or the full syntax of the current command. A
subsequent repeat of this key, when a command has been resolved, will display
a detailed reference.
2.2 Auto-Completion
The following keys both perform auto-completion for the current command line. If
the command prefix is not unique a subsequent repeat of the key will display
possible completions.
• [enter] - Auto-completes, syntax-checks then executes a command. If there
is a syntax error then offending part of the command line will be highlighted
and explained.
•
[space] - Auto-completes, or if the command is already resolved, inserts a
space.
2.3 Movement Keys
•
[CTRL-A] - Moves to the start of the line.
•
[CTRL-E] - Moves to the end of the line.
•
[up] - Moves to the previous command line held in history.
•
[down] - Moves to the next command line held in history.
•
[left] - Moves the insertion point left one character.
•
[right] - Moves the insertion point right one character.
2.4 Deletion Keys
•
[CTRL-C] - Deletes the whole line.
•
[CTRL-D] - Deletes the character to the right on the insertion point.
•
[CTRL-K] - Deletes all the characters to the right of the insertion point.
•
[Backspace] - Deletes the character to the left of the insertion point.
11
2.5 Escape Sequences
•
!! - Substitutes the last command line.
•
!N - Substitutes the Nth command line (absolute as per 'history' command).
•
!-N - Substitutes the command line entered N lines before (relative).
12
Chapter 3. Command Hierarchy in CLI
3.1 CLI Commands
The CLI commands are divided into 4 categories:
•
Global commands
•
Show commands
•
Utility commands
•
Configuration commands
3.2 Router Configuration
The router configuration is divided into 5 branches:
•
Net: Network Settings
•
Security: Security Settings
•
System: Admin Settings
•
Dot11: Wireless Settings
•
Vpn: VPN Settings
•
Radius: RADIUS Settings
13
Chapter 4. Global commands used in
CLI
The global commands that are used in CLI are given below:
•
.exit: Exit this session
•
.help: Displays an overview of the CLI syntax
•
.top: Returns to the default mode
•
.reboot: Reboots the system.
•
.history: Displays the current session's command line history. Number
of commands in history list can be controlled by setting limit argument;
by default it is unbounded.
14
Chapter 5. Show commands used in
CLI
The show commands for all the above mentioned branches are outlined in this
section.
The command show activeDirectory-serverCheck? at the CLI prompt would give the
description of all the show commands in the branch activeDirectory-serverCheck, which
is as follows:
1
show activeDirectoryserverCheck
Displays status of Active Directory servers.
The command show NT-Domain-Settings? at the CLI prompt would give the description
of all the show commands in the branch NT-Domain-Settings, which is as follows:
1
show NT-Domain-Settings
Displays NT Domain configuration.
The command show vpn? at the CLI prompt would give the description of all the show
commands in the branch vpn, which is as follows:
1
2
3
show vpn gre_tunnels
show vpn l2tp client
show vpn l2tp client setup
gre tunnels display mode.
Shows l2tp client details.
Displays l2tp client setup.
4
show vpn l2tp client status
Displays l2tp client status.
5
6
7
show vpn l2tp
show vpn l2tp server
show vpn l2tp server setup
show vpn l2tp server
connections
show vpn openvpn
show vpn openvpn config
show vpn openvpn
remote_network_all
show vpn openvpn
local_network_all
show vpn openvpn
cert_upload_status
show vpn pptp client
show vpn pptp client setup
show vpn pptp client_status
show vpn pptp client_status
setup
Shows l2tp server details.
Shows l2tp server details.
Displays l2tp server setup.
8
9
10
11
12
13
14
15
16
17
Displays l2tp server stats.
Displays openvpn commands.
Displays openvpn configuration.
Displays all openvpn remote network on
system.
Displays all openvpn local network on system.
Displays openvpn certificate status.
Shows pptp client details.
Displays pptp client setup.
Shows pptp client status details.
Displays pptp client status setup.
15
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
show vpn pptp
Shows pptp server details.
show vpn pptp server
Shows pptp server details.
show vpn pptp server setup Displays pptp server setup.
show vpn pptp server
Displays pptp server stats.
connections
show vpn sslvpn
Shows sslvpn settings.
show vpn sslvpn
Shows sslvpn active connections.
connections
show vpn sslvpn client
Shows sslvpn client settings.
show vpn sslvpn route
Shows route settings.
show vpn sslvpn policy
Shows sslvpn policy settings.
show vpn sslvpn portalShows sslvpn portal-layouts settings.
layouts
show vpn sslvpn
Shows sslvpn portforwarding settings.
portforwarding
show vpn sslvpn
Shows sslvpn portforwarding appconfig
portforwarding appconfig
settings.
show vpn sslvpn
Shows sslvpn portforwarding hostconfig
portforwarding hostconfig
settings.
show vpn sslvpn resource Shows sslvpn resource settings.
show vpn sslvpn resourceShows sslvpn resource object settings.
object <resource_name>
show vpn ipsec
Shows vpn policy.
show vpn ipsec policy
Shows vpn policy.
show vpn ipsec policy setup Shows vpn policy.
show vpn ipsec policy status Shows vpn status.
show vpn ipsec policy
Shows a list of backup policies.
backup_policies
show vpn ipsec dhcp
Shows vpn ipsec dhcp setup.
show vpn ipsec dhcp setup Shows vpn ipsec dhcp setup.
The command show LDAP-Settings? at the CLI prompt would give the description of all
the show commands in the branch LDAP-Settings, which is as follows:
1
show LDAP-Settings
Displays LDAP configuration.
The command show dot11? at the CLI prompt would give the description of all the show
commands in the branch dot11, which is as follows:
1
show dot11
2
show dot11
accesspoint<ap_name>
Displays 802.11 configuration
Displays Access Point configuration. This
command displays the list of configured Access
Points for the device. From this summary list,
status and parameters of each AP are available
for display.
16
ap_name: This is an AP identifier which
uniquely identifies an AP in the list of configured
APs. Enabled: An AP can be disabled if not in
use and enabled as needed. The AP is disabled
if this field has the value 'N' and it is enabled if it
has the value 'Y'. Disabling an AP does not
delete the configuration, but stops the AP.
Enabling the AP creates a wireless network
where computers and other devices can join and
communicate with the devices connected to the
access point or the devices on the Local Area
Network (LAN). SSID: The name or Service Set
Identifier (SSID) is the name of the wireless
network serviced by this AP. Note that since a
given wireless profile can be common to multiple
APs, the SSID is not unique to an AP. In order
for computers or devices to communicate via
this wireless network serviced by this AP, all
devices must select the same SSID from the list
of wireless networks in the area.Broadcast:
The field indicates whether SSID is broadcasted
or not in the beacon frames transmitted by the
AP. If SSID is not broadcasted, the wireless
devices will not be able to see the network name
(SSID). If this field has the value 'Y', it indicates
that the AP's SSID is broadcasted to the public.
If it is 'N' it indicates the SSID is not to be
broadcasted and a device would have to specify
the SSID exactly to connect to this AP.
Profile: This field has a brief description of the
security,
encryption
and
authentication
combination assigned to the AP. A Profile is not
necessarily unique to an AP, rather this
grouping of wireless settings can be used on
more than one AP at the same time.
Radio: The physical radio(s) on which this AP is
running on. An AP can run on multiple radios at
the same time for load-balancing and better
throughput.
VLAN: The AP can be a part of a logical network
defined by the VLAN id. This allows devices
connected to the VLAN through this AP to
exchange data with one another as in a LAN. If
the optional argument ap_name is specified, the
following configuration information is displayed
for the access point.
Beacon Interval: The amount of time in
milliseconds between beacon transmissions.
DTIM Interval: Interval for delivery of traffic
17
3
indication message. It is related to beacon
interval.
RTS Threshold: The Request to Send (RTS)
threshold is the value the AP checks against its
transmitting frames to determine if the
RTS/Clear To Send (CTS) handshake is
required with the receiving client. Using a small
value causes RTS packets to be sent more
often, consuming more of the available
bandwidth, therefore reducing the apparent
throughput of the network packet. The default is
2346, which effectively disables RTS. Frag
Threshold: This is the maximum length of the
frame, beyond which packets must be broken up
(fragmented) into two or more frames. Collisions
occur more often for long frames because
sending them occupies the channel for a longer
time. The default is 2346, which effectively
disables Fragmentation. Preamble Mode:
802.11b requires that a preamble be prepended
to every frame before it is transmitted to the air.
The preamble may be either the traditional long
preamble, which requires 192 micro second for
transmission, or it may be an optional short
preamble that requires only 96 micro second.
Long preamble is needed for the compatibility
with legacy 802.11 systems operating at 1 and
2 Mbps. The default is 'long'. RTS/CTS
Protection: If selected the AP always performs
RTS/CTS handshake before transmitting a
packet. It is generally used to minimize collisions
among hidden stations Transmit Power Gain:
Defines the relative amplification (gain) in dbm
for transmitted packets which is added to the TX
power configured on the physical radio. Retry
Limit: The number of retries the AP will use
when a frame transmission fails. It is used for
both long and short frames, of size less than or
equal to the RTS threshold. Supported Rate:
The rate or rates (in Mbps) which the AP will
advertise in the beacon frames.
Displays Profile configuration. If no profile name
is specified, this command will display a
summary of the details of all the profiles
show dot11
configured in the system. If a profile name is
profile<profile_name><displ
specified, this command will display a detailed
ay_qos>
configuration of the profile. If the argument
'DisplayQosInfo' is set to 'Y', the profile details
will include the QoS details as well.
18
4
5
6
7
8
9
10
11
12
Displays access point and radio statistics. This
table shows a cumulative total of relevant
wireless statistics for the APs and radios; the
counter is reset when the device is rebooted.
Radio Statistics: This table displays
transmit/receive data for each radio. It has the
following fields: Pkt(Tx/Rx): The number of
transmitted/received
wireless
packets.
Byte(Tx/Rx):
The
number
of
transmitted/received bytes of information.
Err(TRx/Rx):
The
number
of
transmitted/received packet errors reported to
the radio. Drop(Tx/Rx): The number of
transmitted/received packet drops between the
radio and client. Mcast: The number of multicast
packets sent over this radio. Coll: The number
show dot11 statistics
of packet collisions reported to the radio. AP
Statistics: This table displays transmit/receive
data for each AP. An AP can have multiple
entries if it is running on multiple radios. It has
the following fields: Pkt(Tx/Rx): The number of
transmitted/received
wireless
packets
Byte(Tx/Rx):
The
number
of
transmitted/received bytes of information
Err(TRx/Rx):
The
number
of
transmitted/received packet errors reported to
the AP. Drop(Tx/Rx): The number of
transmitted/received packet dropped by the AP.
Mcast: The number of multicast packets sent
over this AP. Coll: The number of packet
collisions reported to the AP
Displays access control list information for the
show dot11 acl<ap_name>
specified access point.
show dot11 accesspoint
Displays wireless stats.
status<ap_name>
show dot11
Displays wireless stats.
wmm<profile_name>
show dot11 radius
Displays radius Information.
show dot11 wps
Displays WPS Information.
show dot11 wds<radio_no> Displays WDS Information.
show dot11
Displays wireless_statistics Information.
wireless_statistics
Displays Radio configuration. Available Radios
This table shows the list of available radios that
an AP may use. It has the following fields:
show dot11 radio<radio_no>
Radio: The radio number. Card: This field
indicates which card the radio is using. Path:
This field indicates which path the radio is
19
mapped to. RogueAP Enabled: If this field has
value 'Y' it indicates that RogueAP detection is
enabled on this radio. If it is 'N' it indicates that
RogueAP detection is disabled on this radio. If
the optional argument radioNum is given, the
following cofiguration information is displayed
for the given radio. Radio Settings Radio: The
radio number. Card Name: This field indicates
which card the radio is using. Path: This field
indicates which path the radio is mapped to.
Current Channel: The channel used by the
radio. RogueAP Enabled: If this field has the
value 'Yes', it indicates that RogueAP detection
is enabled on this radio. TX Power: Value in
dBm is the default transmitted power level for all
APs that use this radio. RX Diversity: Enable
receive diversity (use multiple antennas to
receive packets) List of Access Points for Radio
This table shows all the APs that are configured
for a particular radio. AP Name: This is the
name of the AP. BSSID: The BSSID of the AP
SSID: The SSID serviced by AP Profile: This
field has a brief description of the security,
encryption and authentication combination
assigned to the AP.
The command show POP3-Settings? at the CLI prompt would give the description of all
the show commands in the branch POP3-Settings, which is as follows:
1
show POP3-Settings
Displays POP3 configuration.
The command show POP3-Trusted-CA? at the CLI prompt would give the description of
all the show commands in the branch POP3-Trusted-CA, which is as follows:
1
show POP3-Trusted-CA
Displays POP3 Trusted Certificates.
The command show system? at the CLI prompt would give the description of all the show
commands in the branch system, which is as follows:
1
2
3
4
5
6
show system logging
.
show system logging remote .
show system logging remote
Displays remote logging configuration
setup
show system logging facility .
show system logging facility
Displays logging facility configuration
setup <facility>
show system logging ipv4 .
20
7
8
9
show system logging ipv4
setup
show system logging ipv6
show system logging ipv6
setup
10
show system log
11
show system log all
12
show system log page
20
show system
remote_management
show system
remote_management setup
show system
sessionSettings
show system
snmp <agentIP>
show system switch_setting
show system switch_setting
power_mode
show system switch_setting
jumbo_frame
show system status
21
show system dashboard
22
23
24
show system time
show system time setup
show system traffic_meter
show system traffic_meter
setup
show system usb-status
show system users
show system group
show system group
specific<row_id>
show system group all
show system users all
show system users
specific<row_id>
13
14
15
16
17
18
19
25
26
27
28
29
30
31
32
Displays logging configuration
.
Displays ipv6 logs configuration
Displays captured log messages of the router
activities
Displays all the captured log messages of the
router activities from Event Log. The logs
displayed on this event viewer can be defined in
the Log Configuration commands
Displays Page Wise, captured log messages of
the router activities from Event Log. The logs
displayed on this event viewer can be defined in
the Log Configuration commands
.
Displays remote
configuration
management
over
https
Displays sessionSettings Configuration
Displays SNMP configuration
.
Displays power mode configuration
Displays jumbo frame configuration
Displays system status
Displays the resources being used in the system
currently
.
Displays Timezone and NTP configuration
.
Displays traffic meter configuration
Displays USB Status
System group display mode
System user display mode
Displays information for given group
Displays all groups on system
Displays all users on system
Displays information for given user
21
33
34
35
36
show system group
Displays Group Access Control configuration for
groupaccesscontrol <group_
the selected group
id>
show system group
Displays Access Control browsers Policies
access_control_browser
show system group
Displays Access Control ips Policies
access_control_ip
show system
Displays the firmware Version.
firmwareVersion
The command show ntDomain-serverCheck? at the CLI prompt would give the description
of all the show commands in the branch ntDomain-serverCheck, which is as follows:
1
show ntDomainserverCheck
Displays status of NT Domain servers.
The command show Active-Directory-Settings? at the CLI prompt would give the
description of all the show commands in the branch Active-Directory-Settings, which is as
follows:
1
show Active-DirectorySettings
Displays Active Directory configuration.
The command show pop3-serverCheck? at the CLI prompt would give the description of
all the show commands in the branch pop3-serverCheck, which is as follows:
1
show pop3-serverCheck
Displays status of Pop3 servers.
The command show Radius-serverCheck? at the CLI prompt would give the description
of all the show commands in the branch Radius-serverCheck, which is as follows:
1
show Radius-serverCheck
Displays status of Radius servers.
The command show Radius-Settings? at the CLI prompt would give the description of all
the show commands in the branch Radius-Settings, which is as follows:
1
show Radius-Settings
Displays RADIUS configuration.
A RADIUS server maintains a database of user
accounts used in larger environments. If a
RADIUS server already exists, it can be used for
authenticating users that want to connect to the
wireless network provided by this device. When
multiple RADIUS servers are configured, they
are accessed in the same order as in the table.
If first RADIUS server is not accessible, then
system tries to contact to the next RADIUS
server. Configured Radius Servers This table
22
displays the list of all configured RADIUS
servers. If the optional argument ServerIP is
specified, detailed configuration of the RADIUS
server is displayed. Server IP: IP address of
RADIUS authentication server Accounting
Server IP: IP address of RADIUS accounting
server Server Port: RADIUS authentication
server port to send the RADIUS messages.
Timeout: The time (in seconds) the device waits
for a response from the RADIUS server Retries:
The number of tries the router will make to the
RADIUS server before giving up. Secret:
RADIUS server secret. This field is only
displayed if the argument ServerIP is specified.
The command show net? At the CLI prompt would give the description of all the show
commands in the branch net, which is as follows:
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
show net ipv6_tunnel status
show net bandwidth
show net bandwidth profile
show net bandwidth profile
setup
show net bandwidth
traffic_selector
show net bandwidth
traffic_selector setup
show net bandwidth profile
interface_list
show net bandwidth
traffic_selector services
show net ddns
show net ddns setup
show net lan dhcp
show net lan dhcp
reserved_ip
show net lan dhcp
reserved_ip setup
show net lan dhcp
leased_clients
show net lan dhcp
leased_clients list
show net dmz
show net dmz setup
show net dmz dhcp
Displays ipv6 tunnels status
.
.
Displays list of Available Bandwidth Profile(s).
.
Shows the list of Available Traffic Selector(s).
Displays the list of interface for Inbound
Bandwidth Profile. It includes Available VLANs
Displays a list of available services
.
Show Dynamic DNS Configuration.
.
.
Shows a list of DHCP Reserved Addresses.
.
Shows a list of Available DHCP Leased Clients.
.
Shows DMZ Configuration.
.
23
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
show net dmz dhcp
reserved_ip
show net dmz dhcp
reserved_ip setup
show net dmz dhcp
leased_clients
show net dmz dhcp
leased_clients list
show net ethernet
show net lan
show net lan ipv4
show net lan ipv4 setup
show net lan ipv6
show net lan ipv6 setup
show net
statistics <interface>
show net igmp
show net intel_Amt
show net intel_Amt server
show net intel_Amt
Reflector
show net intel_Amt server
setup
show net intel_Amt
Reflector setup
show net Ip_Alias
show net Ip_Alias server
show net Ip_Alias server
setup
show net mode
show net mode setup
show net ipv6_tunnel
show net ipv6_tunnel setup
show net routing mode
show net routing mode
setup
show net wan wan1
show net wan wan1 ipv4
show net wan wan1 ipv4
status
show net wan wan1 ipv4
setup
show net wan wan2
show net wan wan2 ipv4
.
Displays a list of DMZ DHCP Reserved
Addresses.
.
Shows a list of Available DMZ DHCP Leased
Clients.
Displays Ethernet interfaces
.
.
Displays LAN Configuration.
.
Shows IPv6 LAN Configuration.
Shows Interface Statistics
Displays igmp configuration
Shows IntelAmt details
Shows IntelAmt Server Configuration
show IntelAmt Reflector Configuration
Displays Intel_Amt server configuration.
Displays Intel_Amt Reflector setup.
Shows Ip Alias configuration details.
Shows Ip Alias configuration details.
Displays net Intel_Amt server setup.
.
Displays IP MODE configuration
.
Displays ipv6 tunnels configuration
.
Routing Mode between WAN and LAN
.
.
Displays ipv4 wan1 Information.
Displays Wan1 Setup Information.
.
.
24
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
show net wan wan2 ipv4
status
show net wan wan2 ipv4
setup
show net wan wan3
show net wan wan3 threeG
show net wan wan3 threeG
setup
show net wan wan3 threeG
status
show net wan
show net wan mode
show net wan port_setup
show net wan vlan_setup
show net wan
configurable_port
show net wan wan1 ipv6
show net wan wan1 ipv6
status
show net wan wan1 ipv6
setup
show net wan wan2 ipv6
show net wan wan2 ipv6
status
show net wan wan2 ipv6
setup
show net routing ospfv2
show net routing ospfv3
show net routing ospfv2
setup
show net routing ospfv3
setup
show net routing
protocol_binding
show net routing
protocol_binding setup
show net radvd
show net radvd setup
show net routing dynamic
show net routing dynamic
setup
show net routing
show net routing static
show net routing static ipv4
Displays ipv4 wan2 Information.
Displays wan2 Setup Information.
Displays the wan3 configuration
Shows ThreeG information.
Displays ThreeG Configuration.
Displays wan3 ThreeG status.
.
Displays wan mode Setup.
Displays wan port Setup.
Displays vlan port Information for wan.
Displays configurable port Information.
.
Displays ipv6 wan1 Information.
Displays Wan1 Setup Information.
.
Displays ipv6 wan2 Information.
Displays Wan2 Setup Information.
Shows OSPFv2 Configuration
Shows OSPFv3 Configuration
Displays OSPFv2 Configuration
Displays OSPFv3 Configuration
Shows protocol_binding rules
Displays protocol Binding Rules
.
Displays RADVD configuration
Shows dynamic routing setup
Shows dynamic routing Setup.
Displays routing setup
Displays Static Routes Info
Displays IPv4 Static Routes Info
25
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
show net routing static ipv4
setup
show net routing static
interface_list
show net routing static ipv6
show net routing static ipv6
setup
show net upnp
show net upnp portmap
show net upnp setup
show net vlan
show net vlan configuration
show net multivlan
show net multivlan subnet
show net multivlan subnet
status
show net port-vlan
show net port-vlan status
show net wireless_vlan
show net wireless_vlan
status
Shows all the configured IPV4 routes.
Shows all the interfaces on which static route
can be configured
Displays IPv6 Static Routes Info
Shows all the configured IPV6 Static routes.
Displays UPnP Information
Displays UPnP portmap Table Information.
Displays UPnP Setup Information.
Displays VLAN Confgiuration.
Shows vlan server status
Shows vlan server status
Displays multi vlan Subnet List.
Shows Port vlan status
Displays Port vlan status.
Shows Port vlan status
Displays Port vlan status.
The command show ldap-serverCheck? at the CLI prompt would give the description of
all the show commands in the branch ldap-serverCheck, which is as follows:
1
show ldap-serverCheck
Displays status of Ldap servers.
The command show security? at the CLI prompt would give the description of all the show
commands in the branch security, which is as follows:
1
2
3
4
5
6
7
show security
advanced_network
show security
advanced_network
attack_checks
show security
advanced_network ips
show security
application_rules
show security
application_rules setup
show security
application_rules status
show security firewall
custom_service
Shows advanced firewall attack checks
Displays Security Checks configuration
Displays ips configuration
.
Displays application rules configuration
Displays application rules status
.
26
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
show security firewall
custom_service setup
show security firewall
show security firewall ipv4
show security firewall ipv4
setup
show security firewall algs
show security firewall ipv6
show security firewall ipv6
setup
show security ids
show security ids setup
show security
session_settings
show security schedules
show security schedules
setup
show security firewall
smtpAlg
show security firewall
smtpAlg configure
show security firewall
smtpAlg configure setup
show security firewall
smtpAlg approvedMailId
show security firewall
smtpAlg approvedMailId
setup
show security firewall
smtpAlg blockedMailId
show security firewall
smtpAlg blockedMailId
setup
show security firewall
smtpAlg subjectList
show security firewall
smtpAlg subjectList setup
show security mac_filter
show security mac_filter
setup
show security
ip_or_mac_binding
show security
ip_or_mac_binding setup
Displays a list of available Custom Service
configuration
Displays Firewall Rules
Displays IPv4 Firewall Rules
Displays IPv4 Firewall Rules
Displays ALGs protocals status
Displays IPv6 Firewall Rules
Displays IPv6 Firewall Rules
.
Displays IDS configuration
Displays Session Settings configuration
.
Displays Schedules configuration
.
.
Shows SmtpAlg Status.
.
Shows a List of Approved Mail_Id.
.
Shows a List of Blocked Mail_Id.
.
Shows a List of Subject, corresponding Mail_Id
and Action.
.
Displays Source Mac Filter configuration
.
Displays IP/MAC Binding configuration
27
33
34
35
36
37
38
39
40
show security firewall
vpn_passthrough
show security firewall
vpn_passthrough setup
show security webAccess
.
Displays VPN passthrough Configuration
.
Displays security webAccess configuration and
show security webAccess rules
Displays a list of Allowed IpAdrr/Network Web
setup
Access
show security website_filter .
show security website_filter
Displays content filtering configuration
content_filtering
show security website_filter Displays trusted domains configuration
approved_urls
Displays a list of available Approved URLs
show security website_filter
Displays blocked keywords configuration
blocked_keywords
The command vpn? at the CLI prompt would give the description of all the configuration
commands in the branch vpn, which is as follows:
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
vpn gre_tunnel
vpn gre_tunnel add
vpn gre_tunnel
edit <row_id>
vpn gre_tunnel
delete <row_id>
vpn l2tp client
vpn l2tp client configure
vpn l2tp
client_action <action>
vpn l2tp
vpn l2tp server
vpn l2tp server configure
vpn openvpn
vpn openvpn config
vpn openvpn
remote_network
vpn openvpn
remote_network add
vpn openvpn
remote_network
edit <row_id>
vpn openvpn
remote_network
delete <row_id>
GRE Tunnel.
GRE Tunnel add mode
GRE Tunnel edit mode
GRE Tunnel delete mode
Vpn policy mode.
l2tp client configuration mode
Vpn l2tp client action set.
Vpn policy mode.
Vpn policy mode.
l2tp server configuration mode
Displays openvpn configure commands
openvpn configuration mode
Opens vpn remote networks configuration
commands.
Adds a new remote network
Remote network edit mode.
Openvpn remote network delete mode.
28
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
vpn openvpn local_network
Opens vpn
commands.
local
networks
configuration
vpn openvpn local_network
Adds a new local network.
add
vpn openvpn local_network
Local network edit mode.
edit <row_id>
vpn openvpn local_network
Openvpn local network delete mode.
delete <row_id>
vpn openvpn cert_upload
Openvpn local network display mode.
vpn openvpn cert_upload
Uploads the pem formatted CA Certificate.
ca <fileName> <ipAddr>
vpn openvpn cert_upload
Uploads the pem formatted Server / Client
server_client_cert <fileNam
Certificate.
e> <ipAddr>
vpn openvpn cert_upload
client_key <fileName> <ipA Uploads the pem formatted Server/Client key.
ddr>
vpn openvpn cert_upload
dh_Key <fileName> <ipAddr Uploads the pem formatted Diffie Hellman key.
>
vpn openvpn cert_upload
Uploads the pem formatted Tls Authentication
tls_Authkey <fileName> <ip
Key.
Addr>
vpn openvpn cert_upload
crl_cert <fileName> <ipAddr Uploads the pem formatted CRL Certificate.
>
vpn openvpn cert_upload
Uploads the pem formatted config file.
config <fileName> <ipAddr>
vpn pptp client
Vpn policy mode.
vpn pptp client configure
PPTP client configuration mode.
vpn pptp
Vpn pptp client action set.
client_action <action>
vpn pptp
Vpn policy mode.
vpn pptp server
Vpn policy mode.
vpn pptp server configure
pptp server configuration mode
vpn sslvpn
sslvpn configuration commands
vpn sslvpn portal-layouts
sslvpn portal layout configuration commands
vpn sslvpn portal-layouts
Adds sslvpn portal layout.
add
vpn sslvpn portal-layouts
Edits sslvpn portal layout.
edit <row_id>
vpn sslvpn portal-layouts
Deletes sslvpn portal layout.
delete <row_id>
vpn sslvpn portforwarding
Sslvpn portforwarding configuration commands.
29
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
vpn sslvpn portforwarding
appconfig
vpn sslvpn portforwarding
appconfig add
vpn sslvpn portforwarding
appconfig delete <row_id>
vpn sslvpn portforwarding
hostconfig
vpn sslvpn portforwarding
hostconfig add
vpn sslvpn portforwarding
hostconfig delete <row_id>
vpn sslvpn resource
vpn sslvpn resource add
vpn sslvpn resource
configure
vpn sslvpn resource
configure
add <resource_name>
vpn sslvpn resource
configure delete <row_id>
vpn sslvpn resource
delete <row_id>
vpn sslvpn policy
vpn sslvpn policy add
vpn sslvpn policy
edit <row_id>
vpn sslvpn policy
delete <row_id>
vpn sslvpn client
vpn sslvpn route
vpn sslvpn route add
vpn sslvpn route
delete <row_id>
vpn ipsec
vpn ipsec policy
vpn ipsec policy
configure <name>
vpn ipsec dhcp
vpn ipsec dhcp configure
vpn ipsec policy
enable <name>
vpn ipsec policy
disable <name>
Sslvpn portforwarding application configuration
commands.
Adds an application configuration rule.
Deletes an application configuration rule.
Sslvpn portforwarding
commands.
host
configuration
Adds a host configuration rule.
Deletes a host configuration rule.
Sslvpn resource configuration commands.
Adds an sslvpn resource.
Configures an sslvpn resource.
Adds an sslvpn resource object.
Deletes an sslvpn resource object.
Deletes an sslvpn resource.
Sslvpn policy configuration commands.
Adds an sslvpn policy.
Edits an sslvpn policy.
Deletes an sslvpn policy.
Sslvpn client configuration commands.
Sslvpn route configuration commands.
Adds sslvpn client route.
Deletes sslvpn client route.
Vpn policy mode.
Vpn policy mode.
Vpn policy configuration mode.
Vpn ipsec over dhcp mode.
vpn dhcp over ipsec policy configuration mode
Enables a vpn policy.
Disables a vpn policy.
30
68
69
70
vpn ipsec policy
delete <name>
vpn ipsec policy
connect <name>
vpn ipsec policy
drop <name>
Deletes a vpn policy.
Connects a vpn tunnel.
Drops a vpn tunnel.
The command dot11? at the CLI prompt would give the description of all the configuration
commands in the branch dot11, which is as follows:
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
dot11 profile
dot11 accesspoint
dot11 radio
dot11 wds
dot11 wmm
dot11 radius
dot11 profile
add <profile_name>
dot11 profile
edit <profile_name>
dot11 wmm
edit <profile_name>
dot11 radius configure
dot11 profile
delete <profile_name>
dot11 accesspoint
add <ap_name>
dot11 accesspoint
edit <ap_name>
dot11 accesspoint
delete <ap_name>
dot11 wds
enable <radio_no>
dot11 wds
disable <radio_no>
dot11 wds
add_peer <radio_no> <mac
_addr>
dot11 wds
delete_peer <radio_no> <m
ac_addr>
dot11 accesspoint
disable <ap_name>
dot11 accesspoint
enable <ap_name>
802.11 profile configuration commands.
802.11 access point configuration commands.
802.11 radio configuration commands.
802.11 wds configuration commands.
802.11 wmm configuration.
802.11 radius configuration mode.
802.11 profile configuration mode.
802.11 profile configuration mode.
802.11 wmm configuration mode.
802.11 radius configuration mode.
Deletes an 802.11 profile.
802.11 access point configuration mode
802.11 access point configuration mode
Deletes an 802.11 access point.
Enables wds.
Disables wds.
Adds peer mac address wds.
Deletes peer mac address wds.
Disables an 802.11 access point.
Enables an 802.11 access point.
31
21
22
23
24
25
26
27
28
dot11 radio
802.11 radio configuration mode.
configure <radio_no>
dot11 radio advanced
Advanced radio configure
dot11 radio advanced
802.11 AP advanced configuration mode.
configure <radio_no>
dot11 accesspoint wps
Advanced AP configure
dot11 accesspoint wps
802.11 AP wps configuration mode.
configure
dot11 accesspoint acl
Accesspoint ACL configure commands
dot11 accesspoint ACL
802.11 AP ACL configuration mode.
configure <ap_name>
dot11 accesspoint acl
delete_mac_address <rowid Deletes acl mac address entry.
>
The command system? at the CLI prompt would give the description of all the configuration
commands in the branch system, which is as follows:
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
system POP3_Settings
System POP3 configuration commands.
system NT-Domain-Settings Configures NT-Domain Settings
system Active-DirectoryConfigures Active-Directory Settings
Settings
system LDAP_Settings
Configures LDAP Settings
system POP3_Settings
Configures POP3 Server
POP3_Server_Configuration
system POP3_Settings
Uploads POP3 trusted Certificates
POP3_Trusted_CA
system logging
.
system logging ipv4
System logging ipv4 configuration.
system logging facility
System log Facility configuration.
system logging facility
System log Facility Options configuration.
Options
system logging remote
System remote Logging configuration.
system logging ipv6
System ipv6 logs configuration.
system logging ipv4
System logging configuration mode.
configure
system logging facility
System logging facility configuration mode.
configure <facility>
system logging remote
System remote Logging configuration mode.
configure
system logging ipv6
System ipv6 logs configuration mode.
configure
system Radius-Settings
Configures Radius-Settings.
system
Remote Mgmt Setup.
remote_management
32
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
system
remote_management https
system
remote_management https
configure
system
remote_management telnet
configure
system sessionSettings
system sessionSettings
admin
system sessionSettings
admin configure
system sessionSettings
guest
system sessionSettings
guest configure
system snmp
system snmp trap
system snmp sys
system snmp access
system snmp users
system snmp trap
configure <agent_ip>
system snmp trap
delete <agent_ip>
system snmp users
configure <user>
system snmp sys configure
system snmp access add
system snmp access
edit <rowid>
system snmp access
delete <rowid>
system switch_settings
system switch_settings
power_saving
system switch_settings
jumbo_frame
system switch_settings
power_saving configure
system switch_settings
jumbo_frame configure
system admin_setting
Remote Mgmt Setup for https.
Configures remote management support for
https.
Configures remote management support for
telnet.
Session Settings Configuration.
Session Settings Configuration.
Admin Session Settings Configuration.
Session Settings Configuration.
Guest Session Settings Configuration.
System SNMP configuration
System SNMP trap configuration.
System SNMP system configuration.
System SNMP Access Configuration.
System SNMP v3 User Configuration.
SNMP trap configuration mode.
Deletes a SNMP trap configuration.
SNMP v3 User list configuration settings
SNMP system configuration mode
SNMP access configuration mode
SNMP configuration mode
SNMP access configuration mode
Switch setting setup.
Power saving setup.
Jumbo frame setup.
Power saving configuration mode.
Jumbo frame configuration mode.
System configuration.
33
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
system admin_setting
configure
system time
system time configure
system traffic_meter
system traffic_meter
configure
system usb
system usb usb1
system usb usb1 configure
system usb
safelyRemoveUsb
system usb
SafelyRemoveUSB usb1
system usb
SafelyRemoveUSB usb2
system usb usb2
system usb usb2 configure
system usb shareport_vlan
system usb shareport_vlan
configure <row_id>
system usb shareport_vlan
show
system users
system group
system group add
system group edit <row_id>
system group
delete <row_id>
system users add
system users edit <row_id>
system users
delete <row_id>
system group
groupaccesscontrol
system group
groupaccesscontrol
configure <group_id>
system group
access_control_browser
system group
access_control_browser
add
System configuration mode.
System time configuration mode
System time configuration mode
Traffic meter Configuration setup.
Traffic meter configuration mode.
USB Configuration.
USB1 Configuration.
USB1 Configuration.
Safely removing the USB.
To unmount usb1
To unmount usb2
USB2 Configuration.
USB2 Configuration.
USB SharePort settings.
SharePort on vlan configuration.
Displays SharePort on vlan configuration.
System user configuration commands.
System group configuration commands.
System groups add mode.
System groups edit mode.
System groups delete mode.
System users add mode.
System users edit mode.
System users delete mode.
Group access control.
Group access control configuration.
List of browsers for which login policies can be
applied.
Adds a browser to Access Control browsers list
34
73
74
75
76
system group
access_control_browser
delete <row_id>
system group
access_control_ip
system group
access_control_ip add
system group
access_control_ip
delete <row_id>
Deletes a browser
browsers list.
from
Access
Control
List of ip for which login policies can be applied
Adds an ip to Access Control ip list.
Deletes an ip from Access Control ip list.
The command util ? at the CLI prompt would give the description of all the configuration
commands in the branch util , which is as follows:
1
2
3
4
5
6
7
8
9
10
11
12
13
14
util restore-factory-defaults Revert to factory default settings.
util system_check
System check options
util system_check
Pings an Internet Address.
ping <ip_address>
util system_check
To retrieve the IP address of a Web, FTP, Mail
dns_lookup <dns>
or any other Server on the Internet
util system_check
Displays all the routers present between the
traceroute <ip_address>
destination IP address and this router
util system_check
Displays IPV4 Routing Table
display_IPV4_routingtable
util system_check
Displays IPV6 Routing Table
display_IPV6_routingtable
util system_check
Allows you to capture all packets that pass
capturePackets
through the selected interface
util system_check
capturePackets
Starts the packet capture
start <interface>
util system_check
capturePackets
Displays available interfaces for packet capture
avail_interfaces
util system_check
Stops the packet capture
capturePackets stop
util system_check
capturePackets
Downloads the packet capture to the host
download <fileName><ipAd machine
dr>
util
dbglog_download <fileName Downloads Dbglogs to the host machine
> <ipAddr>
util reboot
Reboots the system.
35
15
16
17
18
19
util
usb_test <ipAddr> <fileNam
e>
util
firmware_upgrade <IpAddr>
<FileName>
util
enable_auto_backup <statu
s>
util
enable_config_encryp <stat
us>
util
watchdog_disable <status>
To test the USB.
To upgrade the firmware.
Enables/Disables Auto Backup support.
Enables/Disables
support.
Configuration
encryption
Disables/Enables watchdog timer.
The command license? at the CLI prompt would give the description of all the configuration
commands in the branch license, which is as follows:
1
2
license list
license
activate <activationKey>
List license on the device.
Activates a license on the device.
The command net? at the CLI prompt would give the description of all the configuration
commands in the branch net, which is as follows:
1
2
4
net ipv6_tunnel
net ipv6_tunnel six_to_four
net ipv6_tunnel six_to_four
configure
net bandwidth
5
net bandwidth profile
3
6
7
8
9
10
11
12
net bandwidth profile
enable <enable>
net bandwidth profile add
net bandwidth profile
edit <row_id>
net bandwidth profile
delete <row_id>
net bandwidth
traffic_selector
net bandwidth
traffic_selector add
net bandwidth
traffic_selector
edit <row_id>
Ipv6 tunnel configuration setup.
Six to four tunnel configuration setup.
Six To Four Tunnel configuration mode.
.
It gives options to add/edit/delete a bandwidth
profile.
It allows to enable/disable bandwidth profiles.
It allows to add a bandwidth profile.
It allows to edit a bandwidth profile.
It allows to delete a bandwidth profile.
It gives options to add/edit/delete a traffic
selector for a bandwidth profile.
It allows to add a traffic selector for a bandwidth
profile.
It allows to edit a traffic selector for a bandwidth
profile.
36
37
net bandwidth
traffic_selector
delete <row_id>
net ddns
net ddns wan1
net ddns wan2
net ddns wan1 configure
net ddns wan2 configure
net lan dhcp
net lan dhcp reserved_ip
net lan dhcp reserved_ip
configure <mac_address>
net lan dhcp reserved_ip
delete <mac_address>
net dmz dhcp
net dmz dhcp reserved_ip
net dmz dhcp reserved_ip
configure <mac_address>
net dmz dhcp reserved_ip
delete <mac_address>
net ethernet
net ethernet
configure <interface_name>
net lan
net lan ipv4
net lan ipv4 configure
net lan ipv6
net lan ipv6 configure
net lan ipv6 pool
net lan ipv6 pool
configure <ipv6PoolStartAd
dr>
net lan ipv6 pool
delete <ipv6PoolStartAddr>
net igmp
38
net igmp configure
39
40
net intel_Amt
net intel_Amt server
net intel_Amt server
configure
net intel_Amt_Reflector
net intel_Amt_Reflector
configure
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
41
42
43
It allows to delete a traffic selector for a
bandwidth profile.
DDNS setup.
DDNS setup.
DDNS setup.
DDNS configuration mode.
DDNS configuration mode.
DHCP setup.
DHCP Reserved IPs setup.
DHCP Reserved IPs add/edit mode.
Deletes a specific reserved ip entry.
DHCP setup.
DHCP Reserved IPs setup.
DHCP Reserved IPs add/edit mode.
Deletes a specific reserved ip entry.
Ethernet configuration.
Ethernet configuration mode.
LAN setup.
.
IPv4 LAN configuration mode.
.
IPv6 LAN configuration mode.
.
IPv6 LAN configuration add/edit mode.
IPv6 LAN configuration delete mode.
Igmp configuration commands.
Specifies igmp proxy should be enable or
disable
Net policy mode.
Net policy mode.
Intel Amt server configuration mode
Net policy mode.
Intel Amt Reflector configuration mode
37
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
net ip_Aliasing
net ip_Aliasing server
net ip_Aliasing server add
net ip_Aliasing server
edit <row_id>
net ip_Aliasing server
delete <row_id>
net mode
net mode configure
net ipv6_tunnel isatap
net ipv6_tunnel isatap add
net ipv6_tunnel isatap
edit <row_id>
net ipv6_tunnel isatap
delete <row_id>
net routing mode
Net policy mode.
Net policy mode.
Adding Ip Aliasing server configuration
Editing Ip Aliasing server configuration.
Deleting Ip Aliasing configuration
IP Mode Setup
IP Mode configuration mode.
Isatap tunnel configuration commands.
Isatap tunnel configuration add mode.
Isatap Tunnel configuration edit mode.
Isatap tunnel configuration delete mode.
Routing Mode between WAN and LAN setup.
Routing Mode between WAN and LAN
net routing mode configure
configuration mode.
net wan wan1
Wan configuration mode.
net wan wan1 ipv4
Ipv4 wan configuration mode.
net wan wan1 ipv4 configure Ipv4 wan wan1 configuration mode..
net wan wan2
Wan configuration mode.
net wan wan2 ipv4
Ipv4 wan configuration mode.
net wan wan2 ipv4 configure Ipv4 wan wan2 configuration mode.
net wan wan3
Wan3 configuration mode.
net wan wan3 threeG
Wan3 configuration mode.
net wan wan3 threeG
ThreeG wan wan3 configuration mode.
configure
net wan
Net wan configuration mode.
net wan mode
Net wan configuration mode.
net wan mode configure
Net wan configuration mode.
net wan port_setup
Displays net wan port configuration.
net wan port_setup
Displays wan port configuration mode.
configure
net wan vlan_setup
Displays wan vlan setup.
net wan vlan_setup
Displays wan vlan configuration mode.
configure
net wan vlan_setup
Displays wan vlan Id Add mode.
vlanId_Add
net wan vlan_setup
Displays wan vlan Id delete mode.
vlanId_Delete
net wan configurable_port Net wan configurable port setup.
net wan configurable_port
Net wan configurable port setup.
configure
38
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
net wan wan1 ipv6
Displays ipv6 wan configuration mode
net wan wan1 ipv6 configure Displays ipv6 wan1 configuration mode
net wan wan2 ipv6
Displays ipv6 wan2 configuration mode
net wan wan2 ipv6 configure Displays ipv6 wan2 configuration mode
net routing ospfv2
Displays OSPF Configuration for IPV4
net routing ospfv3
Displays OSPF Configuration for IPV6
net routing ospfv2
Displays ospfv2 configuration mode.
configure <interface>
net routing ospfv3
Displays ospfv3 configuration mode.
configure <interface>
Displays
protocol_binding
configuration
net routing protocol_binding
commands
net routing protocol_binding
Protocol_binding rules configuration add mode.
add
net routing protocol_binding
To edit the selected protocol_binding
edit <row_id>
net routing protocol_binding
Protocol_binding rules configuration mode.
enable <row_id>
net routing protocol_binding
Protocol_binding rules configuration mode.
disable <row_id>
net routing protocol_binding
Protocol_binding rules configuration mode.
delete <row_id>
net radvd
RADVD configuration setup.
net radvd pool
RADVD configuration setup.
net radvd configure
RADVD configuration mode.
net radvd pool add
RADVD Pool configuration mode.
net radvd pool edit <row_id> RADVD Pool configuration mode.
net radvd pool
RADVD pool configuration mode.
delete <row_id>
net routing dynamic
Configures the routes dynamically.
net routing dynamic
Configures the routes dynamically.
configure
Configures routing mode, static and dynamic
net routing
route(s).
net routing static
Configures the routes.
net routing static ipv4
Configures the IPv4 routes.
net routing static ipv6
Configures the IPV6 routes.
net routing static ipv4
Adds new IPv4 static routes.
configure <name>
net routing static ipv6
Adds new IPV6 static routes.
configure <name>
net routing static ipv4
Deletes a specific IPv4 route.
delete <name>
net routing static ipv6
Deletes a specific IPV6 route.
delete <name>
39
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
net routing static ipv4
Deletes all the configured IPv4 routes.
deleteAll
net routing static ipv6
Deletes all the configured IPv6 routes.
deleteAll
net tahi
Settings for tahi test suite.
net tahi add-defaultAdds ipv6 default route on lan interface.
route <ip_address>
net tahi delete-default-route Deletes ipv6 default route on lan interface.
net tahi addAdds ipv6 route on lan interface.
route <ip_address> <gw>
net tahi delAdds ipv6 route on lan interface.
route <ip_address> <gw>
net tahi stop-RA
Stop sending RA.
net tahi start-RAStarts sending RA with AdvRetransTimer as
AdvRetransTimer(1000)
1000.
net tahi start-RAStarts sending RA with AdvRetransTimer as
5000.
AdvRetransTimer(5000)
net tahi startRAStarts sending RA with AdvReachableTime as
Reachable(30000)Retrans(1
30000 and AdvRetransTimer as 1000.
000)
net tahi start-RAStarts sending RA with AdvReachableTime as
AdvReachableTime(10000) 10000.
net tahi start-RAStarts sending RA with AdvReachableTime as
AdvReachableTime(30000) 30000.
net tahi start-RA(Default)
Starts sending RA with default parameters.
Starts sending RA with minimum values of
net tahi start-RA-MinValues
parameters.
Starts sending RA with maximum values of
net tahi start-RA-MaxValues
parameters.
net tahi start-RAStarts sending RA with MaxRtrAdvInterval value
MaxRtrAdvInterval(10)
of 10.
net tahi start-RAStarts sending RA with MaxRtrAdvInterval value
MaxRtrAdvInterval(40)
of 40.
net tahi start-RAStarts sending RA with MinRtrAdvInterval value
MinRtrAdvInterval(198)
of 198.
net tahi start-RAStarts sending RA with prefix 8000::/64.
prefix(8000::)
net tahi start-RAStarts sending RA with prefix fec0::/64.
prefix(fec0::)
net tahi start-RAStarts sending RA with AdvCurHopLimit value
AdvCurHopLimit(0)
as 0.
net tahi start-RAStarts sending RA with AdvCurHopLimit value
AdvCurHopLimit(15)
as 15.
net tahi start-RA-WAN
Starts sending RA on the WAN interface.
net tahi ipv6-down
Disables the ipv6 stack on the router.
40
132
net tahi ipv6-up
133
net tahi ipv6-global-up
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
net tahi ipv6-AliasAdd(LAN) <ip6_address>
net tahi ipv6-AliasDel(LAN) <ip6_address>
net tahi ipv6-AliasAdd(WAN) <ip6_address>
net tahi ipv6-AliasDel(WAN) <ip6_address>
net tahi neigh-cache-del
net tahi reachabletime <time>
net tahi mcast-start
net tahi mcast-stop
net tahi ping6 <ip> <size>
net tahi mping6 <mip>
net tahi
bping6 <bip> <psize>
net tahi pmtu-routeadd <ipAdd>
net tahi disable-ipv6-firewall
net tahi show-LAN-ip
net tahi interfacedown <interface>
net tahi interfaceup <interface>
net tahi start-RAcustom <fileName> <ipAddr
>
net tahi RA-Start
net ipv6_tunnel teredo
net ipv6_tunnel teredo
configure
net upnp
net upnp configure
net port-vlan
net port-vlan
lan_edit <portnamew>
net port-vlan
wlan_edit <ssidName>
net vlan-membership
net vlan-membership
lan_edit <portw>
Enables the ipv6 stack on the router.
Enables the ipv6 stack on the router, and adds
global ip.
Adds ipv6 address to LAN interface.
Deletes an ipv6 address from LAN interface.
Adds ipv6 address to WAN interface.
Deletes an ipv6 address from WAN interface.
Deletes the ipv6 neighbor cache.
Sets the reachable time of neighbour cache
entries
Starts ipv6 multicast.
Stops ipv6 multicast.
Ping6 on LAN interface with count one.
Multicast ping6 on LAN.
ping6
Adds ipv6 route on lan interface.
Disables ipv6 firewall.
Shows ipv6 addresses of LAN interface.
Brings selected interface down.
Brings selected interface up.
Starts RA with configuration file obtained
through tftp.
Starts RA with custom configuration.
Teredo tunnel configuration setup.
Teredo Tunnel configuration mode.
Upnp configuration mode
Upnp configuration mode
port vlan
Vlan port name range 1-4.
SSID to be edited. Use command 'show net
wireless_vlan status 'to dislay all SSID's Name
Vlan-membership
Net vlan membership for the vlan and Wlan port.
41
161
162
163
164
165
166
167
168
169
170
171
172
173
net vlan-membership
wlan_edit <ssidName>
net multivlan
net multivlan subnet
net multiVlan subnet
edit <vlanID>
net vlan
net vlan config
net vlan config
add <vlan_id>
net vlan config
edit <vlan_Id>
net vlan config
delete <VlanId>
net vlan config enable
net vlan config disable
net dmz
net dmz configure
SSID to be edited. Use command 'show net
wireless_vlan status 'to dislay all SSID's Name
Multivlan server configure
Multivlan Server configure
Multivlan server edit mode
Displays vlan Configuration Settings.
Displays vlan configuration.
Adds a vlan.
Edits a configured vlan.
Deletes a vlan.
Enables vlan configuration.
Disables vlan configuration.
Dmz configuration mode.
Dmz configuration mode.
The command security? at the CLI prompt would give the description of all the
configuration commands in the branch security, which is as follows:
1
2
3
4
5
6
7
8
9
10
11
12
security advanced_network
security advanced_network
attack_checks
security advanced_network
attack_checks configure
security advanced_network
ips
security advanced_network
ips setup
security application_rules
security application_rules
add
security application_rules
edit <row_id>
security application_rules
delete <row_id>
security firewall
custom_service
security firewall
custom_service add
security firewall
custom_service
edit <row_id>
Security advanced setup.
Firewall Security Checks setup.
Security Checks configuration mode.
Security ips setup.
Displays ips configuration mode.
Application Rules Configuration setup.
To add an application rule.
To edit the selected application rule.
To delete the selected application rule.
Custom Services Configuration setup.
Custom services configuration add mode.
Custom services configuration edit mode.
42
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
security firewall
custom_service
delete <row_id>
security firewall
security firewall ipv4
security firewall ipv4
configure
security firewall ipv4
default_outbound_policy <d
efault_outbound_policy>
security firewall ipv4
edit <row_id>
security firewall ipv4
enable <row_id>
security firewall ipv4
disable <row_id>
security firewall ipv4
delete <row_id>
security firewall ipv4
move <row_id>
security firewall algs
security firewall ipv6
security firewall ipv6
configure
security firewall ipv6
edit <row_id>
security firewall ipv6
enable <row_id>
security firewall ipv6
disable <row_id>
security firewall ipv6
delete <row_id>
security firewall ipv6
move <row_id>
security firewall ipv6
default_outbound_policy <d
efault_outbound_policy>
security ids
security ids configure
security session_settings
security session_settings
configure
security schedules
security schedules add
Custom services configuration delete mode.
Firewall rules setup.
Firewall IPv4 rules setup.
Firewall IPV4 rules configuration mode.
Firewall Settings, Default Outbound Policy
configuration mode.
To edit the selected Firewall IPV4.
To Enable Firewall IPV4 rules configuration
mode.
To Disable Firewall IPV4 Rules configuration
mode.
To delete the selected Firewall IPV4 Rule.
Firewall IPV4 Rule reordering mode.
Firewall ALGs configuration mode.
Firewall IPv6 rules setup.
Firewall IPV6 rules configuration mode.
To edit the selected Firewall IPV6 rule.
To enable Firewall IPV6 rules configuration
mode.
To disable Firewall IPV6 Rules configuration
mode.
To delete the selected Firewall IPV6 Rule
Firewall IPV6 Rule reordering mode.
Firewall Settings, IPv6 Default Outbound Policy
configuration mode.
IDS Configuration setup.
IDS configuration mode.
Session Settings Configuration setup.
Session Settings configuration mode.
Schedules Configuration setup.
To add new Schedule.
43
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
security schedules
edit <row_id>
security schedules
delete <row_id>
security firewall smtpAlg
security firewall smtpAlg
approvedMailId
security firewall smtpAlg
blockedMailId
security firewall smtpAlg
subjectList
security firewall smtpAlg
configure
security firewall smtpAlg
approvedMailId add
security firewall smtpAlg
approvedMailId
edit <row_id>
security firewall smtpAlg
approvedMailId
delete <row_id>
security firewall smtpAlg
blockedMailId add
security firewall smtpAlg
blockedMailId edit <row_id>
security firewall smtpAlg
blockedMailId
delete <row_id>
security firewall smtpAlg
subjectList add
security firewall smtpAlg
subjectList edit <row_id>
security firewall smtpAlg
subjectList delete <row_id>
security mac_filter
security ip_or_mac_binding
security mac_filter configure
security mac_filter source
security mac_filter source
add
security mac_filter source
edit <row_id>
security mac_filter source
delete <row_id>
security ip_or_mac_binding
add
To edit the selected Schedule.
To delete the selected schedule.
SmtpAlg configuration setup.
To list the MailId approved by the user.
Lists the blockedMailIds.
To list all the subjects and Mail ids.
SmtpAlg configuration mode.
It allows Configuration of the approved MailId.
It allows to edit an approved MailId.
It allows to delete an approved MailId.
It allows to Configure a blocked MailId.
It allows to edit a blocked MailId.
It allows to delete a blocked MailId.
It allows to add subject with MailId and action.
It allows to edit subject with MailId and action.
It allows to delete the configuration.
Source mac filter configuration mode.
Ip mac binding configuration mode.
Source mac filter configuration mode.
.
To add a new mac address.
To edit the selected mac address from the list.
To delete the selected mac address.
To link to the ip/mac binding configuration
mode.
44
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
security ip_or_mac_binding To edit the selected rule in the ip/mac binding
configuration page.
edit <row_id>
security ip_or_mac_binding
To delete the selected rule/rules.
delete <row_id>
security firewall
VPN Passthrough setup.
vpn_passthrough
security firewall
VPN Passthrough configuration mode.
vpn_passthrough configure
security webAccess
Web Access Filter Configuration setup.
security webAccess
Displays security webAccess status
status <status>
security webAccess add
Security webAccess add.
security webAccess
Security webAccess edit.
edit <row_id>
security webAccess
Security webAccess delete.
delete <row_id>
security website_filter
Website filtering configuration setup.
security website_filter
Content filtering configuration setup.
content_filtering
security website_filter
Trusted domains configuration setup.
approved_urls
security website_filter
Blocked keywords configuration setup.
blocked_keywords
security website_filter
Content filtering configuration mode.
content_filtering configure
security website_filter
To add the approved URL configuration page
approved_urls add
security website_filter
To edit the selected URL configuration.
approved_urls edit <row_id>
security website_filter
approved_urls
To delete the selected URL configuration.
delete <row_id>
security website_filter
Blocked Keyword configuration mode.
blocked_keywords add
security website_filter
To edit the selected Blocked Keywords
blocked_keywords
configuration mode.
edit <row_id>
security website_filter
To delete the selected blocked Keywords
blocked_keywords
configuration mode.
delete <row_id>
security website_filter
To enable the blocked Keywords configuration
blocked_keywords
mode.
enable <row_id>
security website_filter
To disable the blocked Keywords configuration
blocked_keywords
mode.
disable <row_id>
45
Chapter 6. Configuration commands
under branch VPN
6.1 vpn gre_tunnel add
S.No Command Name Description
Type and Description
Saves system user
configuration settings.
Saves system user
configuration settings and
exit current mode.
To revert to the previous
system user configuration
settings.
Enter the Tunnel Name
here.
1
save
2
exit
3
cancel
4
tunnelname
5
ipaddress
6
subnet_mask
7
interface
8
remote_ip
9
ddp_broadcast
10
route_network
11
route_netmask
Enter the subnet mask of
destination network here.
12
gateway
Enter the gateway of the
destination network here.
String
IP address
Enter the tunnel IP Address
AAA.BBB.CCC.DDD where
here.
each part is in the range 0-255
IP address
Enter the tunnel Subnet
AAA.BBB.CCC.DDD where
Mask here.
each part is in the range 0-255
Enter the Interface on
which the tunnel is
established on.
Enter the Remote IP to
which the tunnel is being
established here.
Select enable/disable DDP
packet forwarding on the
tunnel here.
Enter the destination
network of GRE tunnel
here.
46
WAN interface type
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Boolean choice
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
6.2 vpn gre_tunnel edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
4
cancel
5
tunnelname
6
ipaddress
7
subnet_mask
8
interface
9
remote_ip
10
ddp_broadcast
11
route_network
12
route_netmask
13
gateway
Type and Description
GRE Tunnel configuration
Unsigned integer
mode
Saves system user
configuration settings.
Saves system user
configuration settings and
exit current mode.
To revert to the previous
settings.
Enter the Tunnel Name
String
here.
IP address
Enter the tunnel IP Address
AAA.BBB.CCC.DDD where
here.
each part is in the range 0-255
IP address
Enter the tunnel Subnet
AAA.BBB.CCC.DDD where
Mask here.
each part is in the range 0-255
Enter the Interface on
which the tunnel is
WAN interface type
established on.
Enter the Remote IP to
IP address
which the tunnel is being AAA.BBB.CCC.DDD where
established here.
each part is in the range 0-255
Select enable/disable DDP
packet forwarding on the Boolean choice
tunnel here.
Enter the destination
IP address
network of GRE tunnel
AAA.BBB.CCC.DDD where
here.
each part is in the range 0-255
IP address
Enter the subnet mask of
AAA.BBB.CCC.DDD where
destination network here.
each part is in the range 0-255
IP address
Enter the gateway of the
AAA.BBB.CCC.DDD where
destination network here.
each part is in the range 0-255
6.3 vpn gre_tunnel delete <row_id>
S.No Command Name Description
Type and Description
1
Unsigned integer
<row_id>
GRE Tunnel delete mode
47
6.4 vpn l2tp client configure
S.No Command Name Description
1
save
2
cancel
3
exit
4
enable
5
server_address
6
remote_network
7
remote_subnet
8
username
9
password
10
11
mppe_enable
reconnect_mode
12
time_out
Type and Description
Saves l2tp client
configuration settings.
To revert to the previous
settings.
Saves l2tp client
configuration settings, and
exit current mode.
Enables/disables L2TP
Boolean choice
client.
IP address
L2TP server IP address.
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Network Address of remote IP address
network which is local to
AAA.BBB.CCC.DDD where
L2TP Server.
each part is in the range 0-255
Remote Network Subnet
number in range of 1 to 32
Mask.
Username allocated to
L2TP client to connect to String
L2TP server.
Password allocated to
String
client.
Enables mppe encryption. Boolean choice
Selects reconnect mode. Reconnect Mode type
If there is no traffic from a
user for more than the
Radius client authentication
specified time out, the
timeout Type.
connection is disconnected.
6.5 vpn l2tp client_action <action>
S.No Command Name Description
Type and Description
<action>
1
Vpn l2tp client action set. Reconnect Mode type
6.6 vpn l2tp server configure
S.No Command Name Description
1
save
Type and Description
Saves l2tp server
configuration settings.
48
S.No Command Name Description
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
Type and Description
To revert to the previous
cancel
settings.
Saves l2tp server
exit
configuration settings, and
exits current mode.
Enables/disables L2TP
enable_v4
Boolean choice
server in IPv4 mode only.
Enables/disables L2TP
enable_v6
Boolean choice
server in IPv4/IPv6 mode.
Routing_mode
Select L2TP routing mode. Select Route Mode
IP address
L2TP server starting IP
start_address
AAA.BBB.CCC.DDD where
address.
each part is in the range 0-255
IP address
L2TP server ending IP
end_address
AAA.BBB.CCC.DDD where
address.
each part is in the range 0-255
ipv6_prefix
L2TP server IPv6 Prefix.
String
L2TP server IPv6 Prefix
ipv6_prefix_length
Unsigned integer
length.
Selects the type of
Authentication type
Authentication_type
Authentication required.
Enables PAP
EnablePap
Boolean choice
authentication.
Enables CHAP
EnableChap
Boolean choice
authentication.
Enables MS-CHAP
EnableMSChap
Boolean choice
authentication.
Enables MS-CHAPv2
EnableMSChapv2
Boolean choice
authentication.
Enables/Disables support
l2tpSecretKeyEnabl for Secret Key, and enters
Boolean choice
e
Secret Key if support is
enabled.
Enter L2TP secret Key if
secretKey
String
Secret Key is enabled.
If there is no traffic from a
user for more than the
Radius client authentication
timeout
specified time out, the
timeout Type.
connection is disconnected.
49
6.7 vpn openvpn config
S.No Command Name Description
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
Type and Description
Saves openvpn
configuration settings.
To revert to previous
cancel
settings openvpn
configuration settings
Saves openvpn
exit
configuration settings, and
exit current mode.
Enables/disables openvpn
enable
Boolean choice
client/server.
OpenVPN daemon mode. It
can run in server mode,
mode
OpenVPN daemon mode.
client mode or access
server client mode
server_identifier_typ OpenVPN server identifier
OpenVPN server identifier type
e
type.
OpenVPN server IP
server_ip
address/FQDN to which the
client connect.
OpenVPN server IP
IPV4 or IPv6 address
server_ip
address to which the client depending upon protocol
ip_address
connect.
selected IPV4 or IPV6
OpenVPN server FQDN to
server_ip fqdn
String
which the client connect.
IP address
Address of the Virtual
vpn_network
AAA.BBB.CCC.DDD where
Network.
each part is in the range 0-255
IP address
Netmask of the Virtual
vpn_netmask
AAA.BBB.CCC.DDD where
Network.
each part is in the range 0-255
The port number on which
port
openvpn server (or Access Port number
Server) runs.
The protocol used to
The protocol used to
communicate with the
tunnel_protocol
communicate with the remote
remote host. E.g.TCP,
host
UDP. UDP is the default.
The cipher with which the
packets are encrypted. E.g.
The cipher with which the
encription_algorithm BF-CBC, AES-128, AESpackets are encrypted
192 and AES-256. BF-CBC
is the default
Message digest algorithm Message digest algorithm used
hash_algorithm
used to
to authenticate packets.
save
50
S.No Command Name Description
Type and Description
authenticate.packets. E.g.:
SHA1, SHA256 and
SHA512. SHA1 is the
default.
Selects Full Tunnel to
redirect all the traffic
through the tunnel. Select
Split Tunnel to redirect
traffic to only specified
type of tunnel
resources (added from
openVpnClient Routes)
through the tunnel. Full
Tunnel is the default.
16
tunnel_type
17
Enables this to allow
openvpn clients to
allow_client_to_clien
communicate with each
t
other in split tunnel case.
Disabled by default.
18
19
20
21
Enables this to select the
Set of certificates and keys
select_primaryCert the server uses. Enable
this for first time
configuration.
Enables this to select Set
select_secondaryCe
of certificates and keys
rt
newly uploaded.
Enabling this adds Tls
authentication which adds
an additional layer of
enable_tls_authkey authentication. Can be
checked only when the tls
key is uploaded. Disabled
by default.
Enabling this blocks invalid
client certificates based on
the CRL certificate
block_invalid_client_
uploaded. Can be checked
certificates
only when the CRL
certificate is uploaded.
Disabled by default.
51
Boolean choice
Boolean choice
Boolean choice
Boolean choice
Boolean choice
6.8 vpn openvpn remote_network add
S.No Command Name Description
1
save
2
cancel
3
exit
4
common_name
5
remote_network
6
remote_netmask
Type and Description
Saves Remote network
Configuration settings.
To revert to previous
settings.
Saves Remote network
configuration settings, and
exits current mode.
Common Name of the
String
OpenVPN client certificate
IP address
Network address of the
AAA.BBB.CCC.DDD where
remote resource.
each part is in the range 0-255
IP address
Netmask of the remote
AAA.BBB.CCC.DDD where
resource.
each part is in the range 0-255
6.9 vpn openvpn remote_network edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
cancel
4
exit
5
common_name
6
remote_network
7
remote_netmask
Type and Description
Remote network edit mode. Unsigned integer
Saves Remote network
Configuration settings.
To revert to previous
Remote network
Configuration settings.
Saves Remote network
configuration settings and
exit current mode.
Common Name of the
String
OpenVPN client certificate.
IP address
Network address of the
AAA.BBB.CCC.DDD where
remote resource.
each part is in the range 0-255
IP address
Netmask of the remote
AAA.BBB.CCC.DDD where
resource.
each part is in the range 0-255
52
6.10 vpn openvpn remote_network
delete <row_id>
S.No Command Name Description
Type and Description
Openvpn remote network
<row_id>
1
Unsigned integer
delete mode.
6.11 vpn openvpn local_network add
S.No Command Name Description
Type and Description
Save local network
settings.
To revert to previous local
network settings.
Save local network
configuration settings and
exit current mode.
1
save
2
cancel
3
exit
4
local_network
Network address of the
local resource.
5
local_netmask
Netmask of the local
resource.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
6.12 vpn openvpn local_network edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
cancel
4
exit
5
6
local_network
local_netmask
Type and Description
Local network edit mode. Unsigned integer
Saves local network
settings.
To revert to previous local
network settings.
Saves local network
configuration settings, and
exits current mode.
IP address
Network address of the
AAA.BBB.CCC.DDD where
local resource.
each part is in the range 0-255
IP address
Netmask of the local
AAA.BBB.CCC.DDD where
resource.
each part is in the range 0-255
53
6.13 vpn openvpn local_network
delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Deletes the selected
openvpn Local network.
Unsigned integer
6.14 vpn openvpn cert_upload
ca <fileName> <ipAddr>
S.No Command Name Description
1
Type and Description
Browse and upload the
<fileName> <ipAddr
pem formatted CA
>
Certificate.
String
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
6.15 vpn openvpn cert_upload
server_client_cert <fileName> <ipAddr>
S.No Command Name Description
1
Type and Description
Browse and upload the
<fileName> <ipAddr
pem formatted Server /
>
Client Certificate.
String
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
6.16 vpn openvpn cert_upload
client_key <fileName> <ipAddr>
S.No Command Name Description
1
Type and Description
String
<fileName> <ipAddr Uploads the pem formatted IP address
>
Server/Client key.
AAA.BBB.CCC.DDD where
each part is in the range 0-255
54
6.17 vpn openvpn cert_upload
dh_Key <fileName> <ipAddr>
S.No Command Name Description
1
Type and Description
String
<fileName> <ipAddr Uploads the pem formatted IP address
>
Diffie Hellman key.
AAA.BBB.CCC.DDD where
each part is in the range 0-255
6.18 vpn openvpn cert_upload
tls_Authkey <fileName> <ipAddr>
S.No Command Name Description
1
Type and Description
String
<fileName> <ipAddr Uploads the pem formatted IP address
>
Tls Authentication Key.
AAA.BBB.CCC.DDD where
each part is in the range 0-255
6.19 vpn openvpn cert_upload
crl_cert <fileName> <ipAddr>
S.No Command Name Description
1
Type and Description
String
<fileName> <ipAddr Uploads the pem formatted IP address
CRL Certificate.
AAA.BBB.CCC.DDD where
>
each part is in the range 0-255
6.20 vpn openvpn cert_upload
config <fileName> <ipAddr>
S.No Command Name Description
1
Type and Description
String
<fileName> <ipAddr Uploads the pem formatted IP address
AAA.BBB.CCC.DDD where
>
config file.
each part is in the range 0-255
55
6.21 vpn pptp client configure
S.No Command Name Description
1
save
2
cancel
3
exit
4
enable
5
server_address
6
remote_network
7
remote_subnet
8
username
9
password
10
mppe_enable
11
time_out
Type and Description
Saves pptp client
configuration settings.
To revert to previous PPTP
Client configuration
settings.
Saves pptp client
configuration settings, and
exits current mode.
Enables/disables PPTP
Boolean choice
client.
IP address
PPTP server IP address. AAA.BBB.CCC.DDD where
each part is in the range 0-255
Network Address of remote IP address
network which is local to
AAA.BBB.CCC.DDD where
each part is in the range 0-255
PPTP Server.
Remote Network Subnet
Number in range of 1 to 32.
Mask.
Username allocated to
client to connect to PPTP String
Server.
Password allocated to
client to connect to PPTP String
Server.
Enables mppe encryption. Boolean choice
Specified time after which
the connection is
Unsigned integer
disconnected.
6.22 vpn pptp client_action <action>
S.No Command Name Description
Type and Description
1
Boolean choice
<action>
vpn pptp client action set.
6.23 vpn pptp server configure
S.No Command Name Description
1
save
2
cancel
Type and Description
Saves pptp server
configuration settings.
To revert to the previous
pptp server configuration
settings.
56
S.No Command Name Description
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
Type and Description
Saves pptp server
exit
configuration settings, and
exits current mode.
Enables/disables PPTP
enable_v4
Boolean choice
server in IPv4 mode only.
Enables/disables PPTP
enable_v6
Boolean choice
server in IPv4/IPv6 mode.
Routing_Mode
Selects Routing mode.
Select Route Mode
IP address
PPTP server starting IP
start_address
AAA.BBB.CCC.DDD where
address.
each part is in the range 0-255
IP address
PPTP server ending IP
end_address
AAA.BBB.CCC.DDD where
address.
each part is in the range 0-255
ipv6_prefix
PPTP server IPv6 Prefix. String
PPTP server IPv6 Prefix
ipv6_prefix_length
Unsigned integer
length.
Selects the type of
Authentication_type
Authentication type
authentication required.
Enables support for PAP
pap_enable
Boolean choice
authentication method.
Enables support for CHAP
chap_enable
Boolean choice
authentication method.
Enables support for MSmschap_enable
CHAP authentication
Boolean choice
method.
Enables support for MSmschapv2_enable CHAPv2 authentication
Boolean choice
method.
Enables Mppe 40 bit
Mppe40Enable
Boolean choice
encryption
Enables Mppe 128 bit
Mppe128Enable
Boolean choice
encryption
Enables Stateful Mppe
MppeStatefulEnable
Boolean choice
encryption
The specified time after
Radius client authentication
UserTimeOut
which the connection is
timeout Type.
disconnected.
Enables/Disables the
Enable_Netbios
Boolean choice
Netbios functionality.
IP address
Primary_Wins_Serv Enter primary Windows
AAA.BBB.CCC.DDD where
er
server ip Address here.
each part is in the range 0-255.
57
S.No Command Name Description
22
Type and Description
IP address
Secondary_Wins_S Enter Secondary Windows
AAA.BBB.CCC.DDD where
erver
server ip address.
each part is in the range 0-255.
6.24 vpn sslvpn portal-layouts add
S.No Command Name Description
1
save
2
exit
3
cancel
4
5
6
7
8
9
10
11
12
13
14
15
Type and Description
Saves portal settings.
Saves portal settings, and
exits current mode.
To revert to previous portal
settings.
String, Max 32 characters and
no ' or empty space or "
String, Max of 32 alpha
profile_name
Specifies the profile name
numeric characters
Specifies the web browser String, Max 64 characters and
portal_title
window title for the portal. no ' or empty space or "
Specifies the banner title to
String, MAX 64 characters, ' is
banner_title
Displays to users before
not supported;
logging into the portal.
Specifies the banner
message that would be
String, 'character is not
banner_message
displaysed along with the supported;
banner title.
Specifies whether the
banner message and
display_banner
Boolean choice
banner title should be
displayed.
Specifies whether the http
enable_httpmetatag
meta tags should be
Boolean choice
s
enabled.
Specifies whether the
enable_activexwebc
activex web cache cleaner Boolean choice
achecleaner
should be enabled.
Specifies whether the vpn
enable_vpntunnel
Boolean choice
tunnel should be enabled
Specifies whether the port
enable_portforwardi
forwarding should be
Boolean choice
ng
enabled.
Selects the authentication
sslAuthType
Supported authentication type
type for the portal.
Selects a group name for
String, Max 32 characters and
SSL_GROUP
the portal (only for local
no ' or empty space or "
authentication).
portal_name
Specifies the portal name
58
6.25 vpn sslvpn portal-layouts edit <row_id>
S.No Command Name Description
Type and Description
1
2
<row_id>
save
Unsigned integer
3
exit
4
cancel
5
profile_name
Specifies the profile name
6
portal_title
Specifies the portal title
7
8
9
10
11
12
13
14
Edits sslvpn portal layout
Saves portal settings
Saves portal settings and
exit current mode
To revert to previous
settingsTo revert to the
previous settings
Specifies the banner title to
Displays to users before
logging into the portal.
Specifies the banner
message that would be
banner_message
displayed along with the
banner title.
Specifies whether the
banner message and
display_banner
banner title should be
displayed.
Specifies whether the http
enable_httpmetatag
meta tags should be
s
enabled.
Specifies whether the
enable_activexwebc
activex web cache cleaner
achecleaner
should be enabled.
Specifies whether the vpn
enable_vpntunnel
tunnel should be enabled
Specifies whether the port
enable_portforwardi
forwarding should be
ng
enabled.
Selects a group name for
SSL_GROUP
the portal (only for local
authentication).
banner_title
59
String, Max 32 characters and
no ' or empty space or "
String, Max 64 characters and
no ' or empty space or "
String, MAX 64 characters, ' is
not supported;
String, ' character is not
supported;
Boolean choice
Boolean choice
Boolean choice
Boolean choice
Boolean choice
String, Max 32 characters and
no ' or empty space or "
6.26 vpn sslvpn portal-layouts delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Deletes sslvpn portal
layout.
Unsigned integer
6.27 vpn sslvpn portforwarding appconfig add
S.No Command Name Description
Type and Description
Saves portforwarding Apps
settings
Saves portforwarding Apps
settings and exit current
mode
To revert to the previous
portforwarding Apps
settings.
1
save
2
exit
3
cancel
4
serverip
Server ip address
5
port
Server port
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Port number
6.28 vpn sslvpn portforwarding appconfig
delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Deletes an application
configuration rule
Unsigned integer
6.29 vpn sslvpn portforwarding hostconfig add
S.No Command Name Description
1
save
2
exit
3
cancel
Type and Description
Saves portforwarding Host
settings
Saves portforwarding Host
settings and exit current
mode
To revert to the previous
portforwarding Host
settings.
60
S.No Command Name Description
Type and Description
4
serverip
server ip address
5
domain_name
domain name
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
String, Max 128 characters and
no ' or empty space or "
6.30 vpn sslvpn portforwarding hostconfig
delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Deletes a host
configuration rule.
Unsigned integer
6.31 vpn sslvpn resource add
S.No Command Name Description
Type and Description
Saves sslvpn resource
settings
Saves sslvpn resource
settings and exit current
mode
To revert to previous sslvpn
resource settings.
1
save
2
exit
3
cancel
4
resource_name
resource name
5
service_type
service type
String, MAX 128 characters, '
is not supported;
Sslvpn resource.
6.32 vpn sslvpn resource configure
add <resource_name>
S.No Command Name Description
1
<resource_name>
2
save
3
exit
4
cancel
Type and Description
Adds an sslvpn resource String, MAX 128 characters, '
object.
is not supported;
Saves sslvpn resource
object settings
Saves sslvpn resource
settings, and exit current
mode.
To revert to previous sslvpn
resource settings.
61
S.No Command Name Description
Type and Description
5
object_type
object type
Sslvpn resource object type.
6
object_address
The object address of the
resource object.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
7
mask_length
8
9
start_port
end_port
10
icmp
The mask length of the
network.
start port
end port
Enables this option to
include ICMP traffic.
number in range of 1 to 32
Port number
Port number
Source address type for users’
ip policy.
6.33 vpn sslvpn resource configure
delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Deletes an sslvpn resource
Unsigned integer.
object
6.34 vpn sslvpn resource delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Deletes an sslvpn resource Unsigned integer
6.35 vpn sslvpn policy add
S.No Command Name Description
Type and Description
Saves sslvpn policy
settings
Saves sslvpn policy
settings and exit current
mode
To revert to previous sslvpn
policy settings.
Shows policy type.
Sslvpn policy type.
Shows policy owner
String
1
save
2
exit
3
cancel
4
5
policy_type
policy_owner
destination_objectty
destination object type
pe
6
7
policy_name
Sslvpn policy destination type.
String, character is not
supported;
policy name
62
S.No Command Name Description
Type and Description
8
policy_address
policy address
9
10
11
12
policy_masklength
start_port
end_port
service_type
policy masklength
start port
end port
service type
13
resource_name
resource name
14
policy_permission
15
icmp
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
number in range of 1 to 32
Port number
Port number
sslvpn resource
String, MAX 128 characters, '
is not supported;
This can be either Permit or
sslvpn policy type
Deny.
Enables this option to
source address type for users
include ICMP traffic.
ip policy
6.36 vpn sslvpn policy edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
4
cancel
5
policy_address
6
policy_masklength
7
8
start_port
end_port
9
resource_name
10
policy_permission
11
icmp
Type and Description
Edits an sslvpn policy
Unsigned integer
Saves sslvpn policy
settings
Saves sslvpn policy
settings, and exit current
mode
To revert to previous sslvpn
policy settings.
Enter the IP Address to
IP address
which the SSL VPN Policy AAA.BBB.CCC.DDD where
needs to be applied.
each part is in the range 0-255
Enter the subnet mask for
number in range of 1 to 32
the above IP address.
Start port.
Port number
End port.
Port number
String, MAX 128 characters, '
resource name
is not supported.
Chooses either Permit or
Sslvpn policy type.
Deny for this policy.
Enables this option to
Source address type for users
include ICMP traffic.
ip policy.
63
6.37 vpn sslvpn policy delete <row_id>
S.No Command Name Description
Type and Description
1
Unsigned integer.
<row_id>
Deletes an sslvpn policy
6.38 vpn sslvpn client
S.No Command Name Description
1
2
3
4
5
6
7
8
9
10
Type and Description
save
Saves sslvpn client settings
Saves sslvpn client settings
exit
and exit current mode
To revert to previous sslvpn
cancel
client settings.
enable_fulltunnel
Enables full tunnel.
Boolean choice
Sets the DNS Suffix for this
dns_suffix
String
client.
IP address
Sets the primary DNS
primary_dns
AAA.BBB.CCC.DDD where
Server for this client.
each part is in the range 0-255.
IP address
Sets the secondary DNS
secondary_dns
AAA.BBB.CCC.DDD where
Server for this client.
each part is in the range 0-255
IP address
Sets the first IP address of
begin_clientaddress
AAA.BBB.CCC.DDD where
the IP address range.
each part is in the range 0-255.
IP address
Sets the last IP address of
end_clientaddress
AAA.BBB.CCC.DDD where
the IP address range.
each part is in the range 0-255.
This setting is to determine
the wait time for a SSL
lcp_timeout
Unsigned integer
VPN tunnel negotiation
attempts.
6.39 vpn sslvpn route add
S.No Command Name Description
1
save
2
exit
3
cancel
Type and Description
Saves sslvpn route settings
Saves sslvpn route
settings, and exits current
mode.
To revert to previous sslvpn
route settings.
64
S.No Command Name Description
Type and Description
4
destination_network destination network
5
subnet_mask
subnet mask
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
6.40 vpn sslvpn route delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Deletes sslvpn client route Unsigned integer
6.41 vpn ipsec policy configure <name>
S.No Command Name Description
1
2
3
4
5
6
7
8
9
10
11
Type and Description
vpn policy configuration
String
mode
Saves vpn policy
save
configuration settings.
To revert to previous vpn
cancel
policy configuration
settings.
Saves vpn policy
exit
configuration settings, and
exits current mode.
Setting policy manual or
general_policy_type
Vpn policy type.
auto.
Setting version ikev1 or
general_ike_version
IPsec VPN IKE Version.
ikev2.
general_ip_protocol Setting protocol version
Vpn protocol version.
_version
ipv4 or ipv6
general_select_local Setting local gateway for
VPN gateway.
_gateway
the vpn policy.
Sets mode to IP address or
general_remote_end Internet Name/FQDN of the
Vpn remote end point type.
_point_type
remote gateway or client
PC.
The IP address or Internet
general_remote_end
Name/FQDN of the remote
_point
gateway or client PC.
The IP address of the
IPV4 or IPv6 address
general_remote_end
remote gateway or client
depending upon protocol
_point ip_address
PC.
selected IPV4 or IPV6.
<name>
65
S.No Command Name Description
12
13
14
15
16
17
18
19
20
21
22
23
24
25
Type and Description
The IP address or Internet
general_remote_end
Name/FQDN of the remote String.
_point fqdn
gateway or client PC.
Enables/disables mode
config which is similar to
general_enable_mo
DHCP and is used to
Boolean choice.
de_config
assign IP addresses to
remote VPN clients.
Enables/disables this to
general_enable_net allow NetBIOS broadcasts
Boolean choice.
bios
to travel over the VPN
tunnel.
Enables this to allow the
VPN to rollover when WAN
general_enable_roll
Mode is set to Auto
Boolean choice
over
Rollover on the WAN Mode
page.
general_protocol
Setting protocol esp or ah. IPsec VPN Protocol
general_enable_dhc
Enables/disables dhcp.
Boolean choice
p
general_redundant_ Enables/disables
Boolean choice
vpn_gateway
Redundant vpn gateway.
general_backup_poli
Backup policy name.
String
cy_name
general_failback_tim Failback time to switch
Unsigned integer
e
from back-up to primary.
Selects the IP addresses
on the local side that will be
part of the tunnel. This can
be either a single IP
general_local_netwo
address, several IP
Vpn network type
rk_type
addresses in a range, an
entire subnet, or any IP
address that wants to
connect.
IPV4 or IPv6 address
general_local_start_ IP address from where the
depending upon protocol
address
range needs to begin.
selected IPV4 or IPV6
IPV4 or IPv6 address
general_local_end_ IP address where the range
depending upon protocol
needs to end.
address
selected IPV4 or IPV6
IP address
general_local_subne Enter the Subnet Mask of
AAA.BBB.CCC.DDD where
t_mask
the network.
each part is in the range 0-255
general_local_prefix Prefix length of the ipv6
IPv6 Prefix length
_length
subnet used.
66
S.No Command Name Description
26
27
28
29
30
31
32
33
34
35
36
37
Type and Description
Selects the IP addresses
on the remote side that will
be part of the tunnel. This
can be either a single IP
general_remote_net
address, several IP
Vpn network type.
work_type
addresses in a range, an
entire subnet, or any IP
address that wants to
connect.
IPV4 or IPv6 address
general_remote_star IP address from where the
depending upon protocol
t_address
range needs to begin.
selected IPV4 or IPV6.
IPV4 or IPv6 address
general_remote_end IP address where the range
depending upon protocol
_address
needs to end.
selected IPV4 or IPV6.
IP address
general_remote_sub Subnet mask of the subnet
AAA.BBB.CCC.DDD where
net_mask
used.
each part is in the range 0-255.
general_remote_pre Prefix length of the ipv6
IPv6 Prefix length.
fix_length
subnet used.
general_enable_kee
Enables/disables keepalive Boolean choice.
palive
IPV4 or IPv6 address
general_keepalive_s
keepalive sourceip
depending upon protocol
ourceip
selected IPV4 or IPV6.
IPV4 or IPv6 address
general_keepalive_d
keepalive destinationip
depending upon protocol
estinationip
selected IPV4 or IPV6.
Router sends ping packets
general_keepalive_d periodically at regular
Keepalive detection period in
etection_period
intervals of time which is
seconds.
specified by the user.
Keepalive failure count of
the specified number of
general_keepalive_f consecutive packets for
Keepalive failure count.
ailure_count
which the
acknowledgement is not
received.
Setting l2tp mode as
general_l2tp_mode None(0) or Client(1) or
IPsec L2tp Mode.
Gateway(2).
Takes a hexadecimal value
Takes a hexadecimal value
manual_spi_in
between 3 and 8
between 3 and 8 characters.
characters.
67
S.No Command Name Description
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
Type and Description
Takes a hexadecimal value
Takes a hexadecimal value
manual_spi_out
between 3 and 8
between 3 and 8 characters.
characters.
manual_encryption_ The algorithm used to
Vpn encryption algorithm.
algorithm
encrypt the data.
The key length for the
manual_key_length
Unsigned integer.
algorithm.
Encryption key of the
manual_encryption_ inbound policy. The length
String
key_in
of the key depends on the
algorithm chosen
Encryption key of the
manual_encryption_ outbound policy. The length
String
key_out
of the key depends on the
algorithm chosen.
manual_authenticati Algorithm used to verify the
Vpn authentication algorithm.
integrity of the data.
on_algorithm
This is the integrity key (for
ESP with Integrity-mode)
manual_authenticati
for the inbound policy and String
on_key_in
depends on the algorithm
chosen.
This is the integrity key (for
ESP with Integrity-mode)
manual_authenticati
for the outbound policy and String
on_key_out
depends on the algorithm
chosen.
auto_phase1_excha Setting IKE exchange
VPN Exchange Mode
nge_mode
Mode.
auto_phase1_enabl Enabling/Disabling Nat
Boolean choice
e_nat_traversal
traversal.
auto_phase1_nat_k Setting IKE nat alive
Unsigned integer
eepalive_frequecy frequency.
auto_phase1_local_i Setting IKE local identifier IPsec VPN IKE local identifier
denttype
type.
type.
auto_phase1_directi
Setting IKE direction type. IPsec VPN IKE direction Mode.
on_type
auto_phase1_local_i
Setting IKE local identifier. String
dentifier
auto_phase1_remot Setting IKE remote
IPsec VPN IKE local identifier
e_identtype
identifier.
type.
auto_phase1_remot Setting IKE remote
String
e_identifier
identifier.
auto_phase1_encry Setting IKE encryption
ption_algorithm
algorithm.
68
S.No Command Name Description
55
56
57
58
59
60
61
62
63
64
65
66
67
Type and Description
auto_phase1_encry Setting IKE encryption
ption_algorithm DES algorithm.
auto_phase1_encry
Enables DES encryption
ption_algorithm DES
algorithm.
enable_DES
auto_phase1_encry
Setting IKE encryption
ption_algorithm
algorithm.
3DES
auto_phase1_encry
ption_algorithm
Enables 3DES encryption
3DES
algorithm.
enable_3DES <3des
>
auto_phase1_encry
Setting IKE encryption
ption_algorithm
algorithm.
AES-128
auto_phase1_encry
ption_algorithm
Enables AES-128
AES-128
encryption algorithm.
enable_AES-128
auto_phase1_encry
Setting IKE encryption
ption_algorithm
algorithm.
AES-192
auto_phase1_encry
ption_algorithm
Enables AES-192
AES-192
encryption algorithm.
enable_AES-192
auto_phase1_encry
Setting IKE encryption
ption_algorithm
algorithm.
AES-256
auto_phase1_encry
ption_algorithm
Enables AES-256
AES-256
encryption algorithm
enable_AES-256
auto_phase1_encry
Setting IKE encryption
ption_algorithm
algorithm.
BLOWFISH
auto_phase1_encry
ption_algorithm
Enables BLOWFISH
BLOWFISH
encryption algorithm.
enable_BLOWFISH
auto_phase1_encry
ption_algorithm
Enter BLOWFISH
BLOWFISH
keylength.
keylength
69
Boolean choice
Boolean choice
Boolean choice
Boolean choice
Boolean choice
Boolean choice
Unsigned integer
S.No Command Name Description
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
Type and Description
auto_phase1_encry
Setting IKE encryption
ption_algorithm
algorithm.
CAST128
auto_phase1_encry
ption_algorithm
Enables CAST128
Boolean choice
CAST128
encryption algorithm.
enable_CAST128
auto_phase1_encry
ption_algorithm
Enter CAST128 keylength. Unsigned integer
CAST128 keylength
auto_phase1_auth_ Setting IKE authentication
algorithm
algorithm.
auto_phase1_auth_ Setting IKE authentication
algorithm MD5
algorithm.
auto_phase1_auth_
Enables MD5
algorithm MD5
Boolean choice
authentication algorithm.
enable_MD5
auto_phase1_auth_ Setting IKE authentication
algorithm SHA1
algorithm.
auto_phase1_auth_
Enables SHA1
algorithm SHA1
Boolean choice
authentication algorithm.
enable_SHA1
auto_phase1_auth_ Setting IKE authentication
algorithm SHA2-256 algorithm.
auto_phase1_auth_
Enables SHA2-256
algorithm SHA2-256
Boolean choice
authentication algorithm.
enable_SHA2-256
auto_phase1_auth_ Setting IKE authentication
algorithm SHA2-384 algorithm.
auto_phase1_auth_
Enables SHA2-384
algorithm SHA2-384
Boolean choice
authentication algorithm.
enable_SHA2-384
auto_phase1_auth_ Setting IKE authentication
algorithm SHA2-512 algorithm.
auto_phase1_auth_
Enables SHA2-512
algorithm SHA2-512
Boolean choice
authentication algorithm.
enable_SHA2-512
auto_phase1_auth_ Setting IKE authentication IPsec VPN IKE authentication
method
algorithm method.
algorithm method.
auto_phase1_dh_gr Setting IKE Diffie-Hellman IPsec VPN IKE Diffie-Hellman
oup
(DH) Group.
(DH) Group type.
auto_phase1_sa_life Setting IKE SA lifetime in
Unsigned integer.
time
seconds.
auto_phase1_pre_s
Setting IKE pre shared key. String
hared_key
70
S.No Command Name Description
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
Type and Description
auto_phase1_enabl
Enabling/Disabling dead
e_dead_peer_detect
Boolean choice
peer detection.
ion
auto_phase1_detect Setting dead peer detection
Unsigned integer
ion_period
time period.
auto_phase1_recon Setting dead peer detection
Unsigned integer
nect_failure_count failure count.
auto_phase1_exten Setting extended
IPsec VPN IKE extended
ded_authentication authentication method.
authentication method.
auto_phase1_authe Setting extended
IPsec VPN IKE extended
ntication_type
authentication type.
authentication method.
auto_phase1_xauth Username for extended
String
_username
authentication.
auto_phase1_xauth Password for extended
String
_password
authentication.
auto_phase2_sa_life Vpn auto policy phase2
time
configure.
auto_phase2_sa_life Setting IKE SA lifetime in
Unsigned integer
time seconds
seconds.
auto_phase2_sa_life Setting IKE SA lifetime in
Unsigned integer
time bytes
bytes.
auto_phase2_encry Setting IKE encryption
ption_algorithm
algorithm.
auto_phase2_encry Setting IKE encryption
ption_algorithm DES algorithm.
auto_phase2_encry
Enables DES encryption
ption_algorithm DES
Boolean choice
algorithm.
enable_DES
auto_phase2_encry
Setting IKE encryption
ption_algorithm
algorithm.
3DES
auto_phase2_encry
ption_algorithm
Enables 3DES encryption
3DES
Boolean choice
algorithm.
enable_3DES <3des
>
auto_phase2_encry
Setting IKE encryption
ption_algorithm
algorithm.
AES-128
auto_phase2_encry
ption_algorithm
Enables AES-128
Boolean choice
AES-128
encryption algorithm.
enable_AES-128
71
S.No Command Name Description
103
104
105
106
107
108
109
110
111
112
113
114
auto_phase2_encry
ption_algorithm
AES-192
auto_phase2_encry
ption_algorithm
AES-192
enable_AES-192
auto_phase2_encry
ption_algorithm
AES-256
auto_phase2_encry
ption_algorithm
AES-256
enable_AES-256
auto_phase2_encry
ption_algorithm
TWOFISH-128
auto_phase2_encry
ption_algorithm
TWOFISH-128
enable_TWOFISH128
auto_phase2_encry
ption_algorithm
TWOFISH-192
auto_phase2_encry
ption_algorithm
TWOFISH-192
enable_TWOFISH192
auto_phase2_encry
ption_algorithm
TWOFISH-256
auto_phase2_encry
ption_algorithm
TWOFISH-256
enable_TWOFISH256
auto_phase2_encry
ption_algorithm
BLOWFISH
auto_phase2_encry
ption_algorithm
BLOWFISH
enable_BLOWFISH
Type and Description
Setting IKE encryption
algorithm.
Enables AES-192
encryption algorithm.
Boolean choice
Setting IKE encryption
algorithm.
Enables AES-256
encryption algorithm.
Boolean choice
Setting IKE encryption
algorithm.
Enables TWOFISH-128
encryption algorithm.
Boolean choice
Setting IKE encryption
algorithm.
Enables TWOFISH-192
encryption algorithm.
Boolean choice
Setting IKE encryption
algorithm.
Enables TWOFISH-256
encryption algorithm.
Boolean choice
Setting IKE encryption
algorithm.
Enables BLOWFISH
encryption algorithm.
72
Boolean choice
S.No Command Name Description
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
auto_phase2_encry
ption_algorithm
BLOWFISH
keylength
auto_phase2_encry
ption_algorithm
CAST128
auto_phase2_encry
ption_algorithm
CAST128
enable_CAST128
auto_phase2_encry
ption_algorithm
CAST128 keylength
auto_phase2_auth_
algorithm
auto_phase2_auth_
algorithm MD5
auto_phase2_auth_
algorithm MD5
enable_MD5
auto_phase2_auth_
algorithm SHA1
auto_phase2_auth_
algorithm SHA1
enable_SHA1
auto_phase2_auth_
algorithm SHA2-256
auto_phase2_auth_
algorithm SHA2-256
enable_SHA2-256
auto_phase2_auth_
algorithm SHA2-384
auto_phase2_auth_
algorithm SHA2-384
enable_SHA2-384
auto_phase2_auth_
algorithm SHA2-224
auto_phase2_auth_
algorithm SHA2-224
enable_SHA2-224
auto_phase2_auth_
algorithm SHA2-512
auto_phase2_auth_
algorithm SHA2-512
enable_SHA2-512
Type and Description
Enters BLOWFISH
keylength.
Unsigned integer
Setting IKE encryption
algorithm.
Enables CAST128
encryption algorithm.
Boolean choice
Enter CAST128 keylength. Unsigned integer
Setting IKE authentication
algorithm.
Setting IKE authentication
algorithm.
Enables MD5
authentication algorithm.
Boolean choice
Setting IKE authentication
algorithm.
Enables SHA1
authentication algorithm.
Boolean choice
Setting IKE authentication
algorithm.
Enables SHA2-256
authentication algorithm.
Boolean choice
Setting IKE authentication
algorithm.
Enables SHA2-384
authentication algorithm.
Boolean choice
Setting IKE authentication
algorithm.
Enables SHA2-224
authentication algorithm.
Boolean choice
Setting IKE authentication
algorithm.
Enables SHA2-512
authentication algorithm.
73
Boolean choice
S.No Command Name Description
132
133
auto_phase2_enabl
e_pfskeygroup
auto_phase2_dh_gr
oup
Type and Description
Enables/DIsables PFS key
Boolean choice
group.
Setting IKE Diffie-Hellman IPsec VPN IKE Diffie-Hellman
(DH) Group.
(DH) Group type
6.42 vpn ipsec dhcp configure
S.No Command Name Description
1
save
2
cancel
3
exit
4
start_address
5
end_address
6
subnet_mask
Type and Description
Saves vpn ipsec dhcp
configuration settings.
To revert to the previous
vpn ipsec dhcp
configuration settings.
Saves vpn ipsec dhcp
configuration settings and
exits current mode.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
Setting ipsec dhcp end
AAA.BBB.CCC.DDD where
address.
each part is in the range 0-255
IP address
Setting ipsec dhcp subnet
AAA.BBB.CCC.DDD where
mask.
each part is in the range 0-255
Setting ipsec dhcp start
address.
6.43 vpn ipsec policy enable <name>
S.No Command Name Description
Type and Description
1
String
<name>
Enables a vpn policy
6.44 vpn ipsec policy disable <name>
S.No Command Name Description
Type and Description
1
String
<name>
Disables a vpn policy
6.45 vpn ipsec policy delete <name>
S.No Command Name Description
Type and Description
1
String
<name>
Deletes a vpn policy
74
6.46 vpn ipsec policy connect <name>
S.No Command Name Description
Type and Description
1
String
<name>
Connects a vpn tunnel
6.47 vpn ipsec policy drop <name>
S.No Command Name Description
1
<name>
Type and Description
Drops/Disconnects a vpn
tunnel
75
String
Chapter 7. Configuration commands
under branch DOT11
7.1 dot11 profile add <profile_name>
S.No Command Name Description
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
Type and Description
802.11 profile configuration
String
mode.
Saves profile configuration
save
settings.
Saves profile configuration
exit
settings and exit current
mode.
Sets the 802.11 profile
ssid
String
SSID.
Enables or Disables SSID
broadcast-ssid
Boolean choice
broadcast.
Sets the profile security
security_type
802.11 Security Types
type.
radio_mode
Sets the profile radio mode. Dot11 Radio band
wep
Sets profile WEP options.
Sets WEP authentication
wep authentication
WEP Authentication Types
type.
wep encryption
Sets WEP encryption type. WEP Encryption Types
Sets WEP key. Not
WEP key index type (1-4)
wep key
required if passphrase is
String
set.
Sets WEP passphrase to WEP key index type (1-4)
wep passphrase
generate WEP key from.
String
wpa
Sets the WPA options.
Sets WPA authentication
wpa authentication
WPA Authentication Types
type.
wpa encryption
Sets WPA encryption type. WPA Encryption Types
WPA Password. Needed
wpa wpa-password only if authentication is
String
PSK
<profile_name>
7.2 dot11 profile edit <profile_name>
S.No Command Name Description
1
<profile_name>
Type and Description
802.11 profile configuration
String
mode.
76
S.No Command Name Description
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
Type and Description
Saves profile configuration
save
settings.
Saves profile configuration
exit
settings, and exit current
mode.
Sets the 802.11 profile
ssid
String
SSID.
Enables or DisablesSSID
broadcast-ssid
Boolean choice
broadcast.
Sets the profile security
security_type
802.11 Security Types
type.
radio_mode
Sets the profile radio mode. Dot11 Radio band
Sets the profile WEP
wep
options.
Sets the WEP
wep authentication
WEP Authentication Types
authentication type.
Sets the WEP encryption
wep encryption
WEP Encryption Types
type.
Sets the WEP key. Not
WEP key index type (1-4)
wep key
required if passphrase is
String
set.
Sets the WEP passphrase WEP key index type (1-4)
wep passphrase
to generate WEP key from. String
wpa
Sets the WPA options.
Sets the WPA
wpa authentication
WPA Authentication Types
authentication type.
Sets the WPA encryption
wpa encryption
WPA Encryption Types
type.
WPA Password. Needed
wpa wpa-password only if authentication is
String
PSK
7.3 dot11 wmm edit <profile_name>
S.No Command Name Description
1
<profile_name>
2
save
Type and Description
The name of the profile to
which service is being
added will be displayed
String
here. 802.11 wmm
configuration mode.
Saves wmm configuration
settings.
77
S.No Command Name Description
3
exit
4
enable
5
default_class
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
dscp_0
dscp_1
dscp_2
dscp_3
dscp_4
dscp_5
dscp_6
dscp_7
dscp_8
dscp_9
dscp_10
dscp_11
dscp_12
dscp_13
dscp_14
dscp_15
dscp_16
dscp_17
dscp_18
dscp_19
dscp_20
dscp_21
dscp_22
dscp_23
dscp_24
dscp_25
dscp_26
dscp_27
dscp_28
Type and Description
Saves wmm configuration
settings, and exit current
mode.
Enables/Disables the
Boolean choice
802.11 profile wmm.
Choose among
"Background", "Best Effort",
"video", "Voice". This class
of service is used for the
traffic for whose IP
Dot11 WMM class
DSCP/TOS value is set to
"Default" in IP
TOS/DiffServ Mapping
table.
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
Selects class of ip dscp.
Dot11 WMM class
78
S.No Command Name Description
Type and Description
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
Dot11 WMM class
dscp_29
dscp_30
dscp_31
dscp_32
dscp_33
dscp_34
dscp_35
dscp_36
dscp_37
dscp_38
dscp_39
dscp_40
dscp_41
dscp_42
dscp_43
dscp_44
dscp_45
dscp_46
dscp_47
dscp_48
dscp_49
dscp_50
dscp_51
dscp_52
dscp_53
dscp_54
dscp_55
dscp_56
dscp_57
dscp_58
dscp_59
dscp_60
dscp_61
dscp_62
dscp_63
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
Selects class of ip dscp.
.
7.4 dot11 radius configure
S.No Command Name Description
1
save
Type and Description
Saves radius configuration
settings.
79
S.No Command Name Description
2
cancel
3
exit
4
primary_server
5
secondary_server
6
7
port
secret
8
timeout
9
retries
Type and Description
To revert to the previous
radius configuration
settings
Saves ACL configuration
settings and exit current
mode.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
Sets Radius Seconadry
AAA.BBB.CCC.DDD where
authentication Server.
each part is in the range 0-255
Sets port number.
number in range of 0 to 65535
Sets secret key for radius. String
Sets timeout for radius
Radius client authentication
client.
timeout Type.
Authentication retries limit Radius client authentication
to radius server.
timeout Type.
Sets Radius Primary
authentication Server.
7.5 dot11 profile delete <profile_name>
S.No Command Name Description
Type and Description
1
String
<profile_name>
Deletes an 802.11 profile.
80
7.6 dot11 accesspoint add <ap_name>
S.No Command Name Description
Type and Description
9
10
11
12
802.11 access point
configuration mode.
Saves AP configuration
save
settings.
To revert to the previous
cancel
AP configuration settings.
Saves AP configuration
exit
settings, and exit current
mode.
Sets the 802.11 profile the
profile
AP will use.
Enables or Disables
wlan_partition
wlan_partition.
enable_active_time Setting time.
enable_schedule_co Enables/disables Schedule
ntrol
Control.
start
Setting the time limits.
stop
Setting the time limits.
start hour
Setting the time limits.
stop hour
Setting the time limits.
13
start minute
Setting the time limits.
14
stop minute
Setting the time limits.
15
16
start meridian
stop meridian
Setting the time limits.
Setting the time limits.
1
2
3
4
5
6
7
8
<ap_name>
String
String
Boolean choice
Boolean choice
Boolean choice
H(1-12) using 12 hour clock
H(1-12) using 12 hour clock
minute in the format MM(0059)
minute in the format MM(0059)
Schedule Meridiem Types.
Schedule Meridiem Types.
7.7 dot11 accesspoint edit <ap_name>
S.No Command Name Description
1
<ap_name>
2
save
3
cancel
4
exit
5
profile
Type and Description
802.11 access point
String
configuration mode
Saves AP configuration
settings.
To revert to the previous
AP configuration settings
Saves AP configuration
settings, and exits current
mode.
Sets the 802.11 profile the
String
AP will use.
81
S.No Command Name Description
Type and Description
9
10
11
12
Enables or Disables
wlan_partition
wlan_partition.
enable_active_time Setting time.
enable_schedule_co Enables/disables Schedule
ntrol
Control.
start
Setting the time limits.
stop
Setting the time limits.
start hour
Setting the time limits.
stop hour
Setting the time limits.
13
start minute
Setting the time limits.
14
stop minute
Setting the time limits.
15
16
start meridian
stop meridian
Setting the time limits.
Setting the time limits.
6
7
8
Boolean choice
Boolean choice
Boolean choice
H(1-12) using 12 hour clock
H(1-12) using 12 hour clock
minute in the format MM(0059)
minute in the format MM(0059)
Schedule Meridiem Types.
Schedule Meridiem Types.
7.8 dot11 accesspoint delete <ap_name>
S.No Command Name Description
1
<ap_name>
Type and Description
Deletes an 802.11 access
String
point.
7.9 dot11 wds enable <radio_no>
S.No Command Name Description
Type and Description
1
Unsigned integer
<radio_no>
Enables wds.
7.10 dot11 wds disable <radio_no>
S.No Command Name Description
Type and Description
1
Unsigned integer
<radio_no>
Disables wds.
82
7.11 dot11 wds add_peer <radio_no>
<mac_addr>
S.No Command Name Description
1
Type and Description
<radio_no> <mac_a Adds peer mac address
ddr>
wds.
Unsigned integer
MAC address
AA:BB:CC:DD:EE:FF where
each part is in the range 00-FF
7.12 dot11 wds delete_peer <radio_no>
<mac_addr>
S.No Command Name Description
1
Type and Description
Unsigned integer
<radio_no> <mac_a Deletes peer mac address MAC address
ddr>
wds.
AA:BB:CC:DD:EE:FF where
each part is in the range 00-FF
7.13 dot11 accesspoint disable <ap_name>
S.No Command Name Description
1
<ap_name>
Type and Description
Disables an 802.11 access
String
point.
7.14 dot11 accesspoint enable <ap_name>
S.No Command Name Description
1
<ap_name>
Type and Description
Enables an 802.11 access
String
point.
7.15 dot11 radio configure <radio_no>
S.No Command Name Description
1
<radio_no>
2
save
3
cancel
Type and Description
802.11 radio configuration
Unsigned integer
mode.
Saves radio configuration
settings.
To revert to the previous
radio configuration settings.
83
S.No Command Name Description
4
5
6
7
8
9
10
11
12
Type and Description
Saves radio configuration
exit
settings, and exit current
mode.
Sets the channel used by
channel
Dot11 Radio Channels.
radio.
Sets the default transmit
default-transmitDot11 Radio default transmit
power for APs using this
power
power.
radio.
Sets the dot11 radio
Dot11 Radio operating
operating_freqency
operating frequency.
frequency band
2.4mode
Sets the dot11 radio mode. Dot11 Radio Mode
5mode
Sets the dot11 radio mode. Dot11 Radio Mode
Sets the Transmission Rate Dot11 Radio Transmission
transmission_rate
for the radio.
Rate
Sets the channel spacing
channel_spacing
Radio Channel Spacing.
for the radio.
Sets the contol band for
control_side_band
Dot11 Radio control band
radio.
7.16 dot11 radio advanced configure
<radio_no>
S.No Command Name Description
1
2
3
4
5
6
7
8
Type and Description
802.11 AP advanced
configuration mode.
Saves advanced AP
save
configuration settings.
To revert to the previous
cancel
advanced AP configuration
settings.
Saves advanced AP
exit
configuration settings and
exit current mode.
Sets the time between
beacon_interval
beacon transmissions (in
milliseconds).
Sets the interval between
dtim_interval
delivery traffic indication
messages.
Sets the Request to Send
rts_threshold
(RTS) threshold.
fragmentation_thres Sets the maximum length
hold
of the frame.
<radio_no>
84
Unsigned integer
Dot11 BEACON Interval.
Dot11 Dtim Interval.
Dot11 Rts thresold Interval.
Dot11 Fragmentation Interval.
S.No Command Name Description
9
10
11
12
13
14
15
16
Type and Description
Sets the 802.11b preamble
preamble_mode
type to be prepended to
802.11b Preamble Types.
every frame
Enables/disables RTS/CTS
protection_mode
handshake before packet RTSCTS Protection mode.
transmission.
Sets the retry limit for frame
short_retry_limit
retransmission on
802.11 Retry Limit.
transmission failure.
Sets the retry limit for frame
long_retry_limit
retransmission on
802.11 Retry Limit.
transmission failure.
Enables/Disables power
power_save_enable
Boolean choice.
save mode.
Sets the no of transmit
tx_antennas
Dot11 Antenna No.
antennas to use.
Sets the no of receive
rx_antennas
Dot11 Antenna No.
antennas to use.
ampdu_enable
Enables/Disables ampdu. Boolean choice.
7.17 dot11 accesspoint wps configure
S.No Command Name Description
1
save
2
cancel
3
exit
4
5
6
7
access_point
wps_status
configure_via_pin
configure_via_pbc
8
station_pin
Type and Description
Saves WPS configuration
settings.
To revert to the previous
WPS configuration settings
Saves WPS configuration
settings, and exit current
mode.
Access point.
WPS status.
Configures WPS via PIN.
Configures WPS via PBC.
Sets the PIN for WPS
config.
String.
WPS status.
Boolean choice.
Boolean choice.
String.
7.18 dot11 accesspoint ACL configure
<ap_name>
S.No Command Name Description
1
<ap_name>
Type and Description
802.11 AP ACL
configuration mode.
85
String
S.No Command Name Description
2
save
3
cancel
4
exit
5
acl_policy
6
mac_address
Type and Description
Saves AP ACL
configuration settings.
To revert to the previous
AP ACL configuration
settings.
Saves the AP ACL
configuration settings, and
exit current mode.
Sets the accesspoint ACL
Accesspoint ACL Policy type.
Policy.
MAC address
Sets the accesspoint mac AA:BB:CC:DD:EE:FF where
address.
each part is in the range 00FF.
7.19 dot11 accesspoint acl
delete_mac_address <rowid>
S.No Command Name Description
1
<rowid>
Type and Description
Deletes acl mac address
entry.
86
Unsigned integer.
Chapter 8. Configuration commands
under branch SYSTEM
8.1 System NT-Domain-Settings
S.No Command Name Description
save
2
exit
3
cancel
4
5
6
7
8
9
10
11
12
13
14
15
16
Type and Description
Saves NT Domain
configuration settings.
Saves the NT Domain
configuration settings and
exit.
To revert to the previous
configuration settings.
IP address
Authentication_Serv Sets the primary server IP
AAA.BBB.CCC.DDD where
er_1
address.
each part is in the range 0-255
IP address
Authentication_Serv Sets the Second alternative
AAA.BBB.CCC.DDD where
er_2
server IP address.
each part is in the range 0-255
IP address
Authentication_Serv Sets the third alternative
AAA.BBB.CCC.DDD where
er_3
server IP address.
each part is in the range 0-255
Sets the NT Domain
workgroup
String
Workgroup.
Sets the second alternative
second_workgroup
String
Workgroup.
Sets the Third alternative
third_workgroup
String
Workgroup.
Sets the NT Domain server
Unsigned integer
timeout
connection timeout.
Sets the NT Domain server
retries
Unsigned integer
connection retry attempts.
Sets the NT Domain first
first_admin_name
String
server admin name.
Sets the NT Domain first
first_admin_passwd
String
server admin password.
first_admin_hostna Sets the NT Domain first
String
me
server admin hostname.
Sets the NT Domain
second_admin_nam
second server admin
String
e
name.
Sets the NT Domain
second_admin_pass
second server admin
String
wd
password.
87
S.No Command Name Description
17
18
19
20
21
Type and Description
Sets the NT Domain
second_admin_host
second server admin
name
hostname.
Sets the NT Domain third
third_admin_name
server admin name.
Sets the NT Domain third
third_admin_passwd
server admin password.
third_admin_hostna Sets the NT Domain third
me
server admin hostname.
Checks the reachability of
serverCheck
configured servers.
String
String
String
String
8.2 system Active-Directory-Settings
S.No Command Name Description
1
save
2
exit
3
cancel
4
5
6
7
8
9
10
11
12
Type and Description
Saves Active Directory
Configuration settings.
Saves Active Directory
configuration settings and
exit.
To revert to the previous
configuration settings.
IP address
Authentication_Serv Sets the primary server IP
AAA.BBB.CCC.DDD where
er_1
address.
each part is in the range 0-255.
IP address
Authentication_Serv Sets the second alternative
AAA.BBB.CCC.DDD where
er_2
server IP address.
each part is in the range 0-255.
IP address
Authentication_Serv Sets the third alternative
AAA.BBB.CCC.DDD where
er_3
server IP address.
each part is in the range 0-255.
Active_Directory_Do Sets the Active Directory
String
main
Domain.
Sets the Second
Second_Active_Dire
Alternative Active Directory String
ctory_Domain
Domain.
Third_Active_Direct Sets the Third Alternative
String
ory_Domain
Active Directory Domain.
Sets the Active Directory
timeout
Unsigned integer
domain connection timeout.
Sets the Active Directory
retries
Unsigned integer
connection retry attempts.
Sets the Active Directory
first_admin_name
String
first server admin name.
88
S.No Command Name Description
13
14
15
16
17
18
19
20
21
Type and Description
Sets the Active Directory
first_admin_passwd first server admin
password.
Sets the Active Directory
first_admin_hostna
first server admin
me
hostname.
Sets the Active Directory
second_admin_nam
second server admin
e
name.
Sets the Active Directory
second_admin_pass
second server admin
wd
password.
Sets the Active Directory
second_admin_host
second server admin
name
hostname.
Sets the Active Directory
third_admin_name
third server admin name.
Sets the Active Directory
third_admin_passwd third server admin
password.
Sets the Active Directory
third_admin_hostna
third server admin
me
hostname.
Checks the reachability of
serverCheck
configured servers.
String
String
String
String
String
String
String
String
8.3 system LDAP_Settings
S.No Command Name Description
1
save
2
exit
3
cancel
4
5
6
Type and Description
Saves LDAP configuration
settings.
Saves LDAP configuration
settings and exit.
To revert to the previous
configuration settings.
IP address
Authentication_Serv Sets the primary server IP
AAA.BBB.CCC.DDD where
er_1
address.
each part is in the range 0-255.
IP address
Authentication_Serv Sets the second alternative
AAA.BBB.CCC.DDD where
er_2
server IP address.
each part is in the range 0-255.
IP address
Authentication_Serv Sets the third alternative
AAA.BBB.CCC.DDD where
er_3
server IP address.
each part is in the range 0-255.
89
S.No Command Name Description
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
Type and Description
LDAP_Base_DN
Second_LDAP_Bas
e_DN
Third_LDAP_Base_
DN
LDAPAttribute1
LDAPAttribute2
LDAPAttribute3
LDAPAttribute4
Sets the LDAP Base DN. String
Sets the second alternative
String
LDAP Base DN.
Sets the Third alternative
String
LDAP Base DN.
Sets the LDAP Attribute 1. String
Sets the LDAP Attribute 2. String
Sets the LDAP Attribute 3. String
Sets the LDAP Attribute 4. String
Sets the LDAP server
timeout
Unsigned integer
connection timeout.
Sets the LDAP server
retries
Unsigned integer
connection retry attempts.
Sets the LDAP first server
first_admin_name
String
admin name.
Sets the LDAP first server
String
first_admin_passwd
admin password.
second_admin_nam Sets the LDAP second
String
e
server admin name.
second_admin_pass Sets the LDAP second
String
wd
server admin password.
Sets the LDAP third server
third_admin_name
String
admin name.
Sets the LDAP third server
third_admin_passwd
String
admin password.
Checks the reachability of
serverCheck
configured servers.
8.4 system POP3_Settings
POP3_Server_Configuration
S.No Command Name Description
1
save
2
exit
3
cancel
4
5
Type and Description
Saves POP3 configuration
settings.
Saves POP3 configuration
settings and exit.
To revert to the previous
configuration settings.
Authentication_Serv
Sets the primary server.
String
er_1
Authentication_Serv
Sets the secondary server. String
er_2
90
S.No Command Name Description
6
7
8
9
Authentication_Serv
er_3
Authentication_Port
_1
Authentication_Port
_2
Authentication_Port
_3
10
SSL_Enable_1
11
SSL_Enable_2
12
SSL_Enable_3
13
CA_File_1
14
CA_File_2
15
CA_File_3
16
serverCheck
Type and Description
Sets the optional server.
Sets the port for primary
server.
Sets the port for secondary
server.
Sets the port for optional
server.
Enables the SSL for
primary server.
Enables the SSL for
secondary server.
Enables the SSL for
optional server.
CAFILE for primary server.
CAFILE for secondary
server.
CAFILE for optional server.
Checks the reachability of
configured servers.
String
Port number
Port number
Port number
Boolean choice
Boolean choice
Boolean choice
String
String
String
8.5 system POP3_Settings POP3_Trusted_CA
S.No Command Name Description
1
exit
Type and Description
Exits the
POP3_Trusted_CA.
2
add
Adds a certificate.
3
delete
Deletes a certificate.
String
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
String
8.6 system logging ipv4 configure
S.No Command Name Description
1
save
2
exit
3
cancel
Type and Description
Saves logging configuration
settings.
Saves logging configuration
settings and exit current
mode.
To revert to the previous
logging configuration
settings.
91
S.No Command Name Description
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
Type and Description
lan_wan_accept_pa
cket_logs
lan_wan_drop_pack
et_logs
wan_lan_accept_pa
cket_logs
wan_lan_drop_pack
et_logs
wan_dmz_accept_p
acket_logs
wan_dmz_drop_pac
ket_logs
dmz_wan_accept_p
acket_logs
dmz_wan_drop_pac
ket_logs
dmz_lan_accept_pa
cket_logs
dmz_lan_drop_pack
et_logs
lan_dmz_accept_pa
cket_logs
lan_dmz_drop_pack
et_logs
LAN to wan accepted Pkts
Boolean choice
Enable/Disable.
LAN to wan dropped Pkts
Boolean choice
Enable/Disable.
Wan to lan accepted Pkts
Boolean choice
logs Enable/Disable.
Wan to lan dropped Pkts
Boolean choice
logs Enable/Disable.
Wan to dmz accepted Pkts
Boolean choice
logs Enable/Disable.
Wan to dmz dropped Pkts
Boolean choice
logs Enable/Disable.
DMZ to wan accepted Pkts
Boolean choice
logs Enable/Disable.
DMZ to wan dropped Pkts
Boolean choice
logs Enable/Disable.
DMZ to lan accepted Pkts
Boolean choice
logs Enable/Disable.
DMZ to lan dropped Pkts
Boolean choice
logs Enable/Disable.
LAN to dmz accepted Pkts
Boolean choice
logs Enable/Disable.
LAN to dmz dropped Pkts
Boolean choice
logs Enable/Disable.
All Unicast Traffic logs
unicast_traffic_logs
Boolean choice
Enable/Disable.
broadcast_or_multic All Broadcast/Multicast
Boolean choice
ast_traffic_logs
Traffic logs Enable/Disable.
source_mac_filter_lo Source mac filter logs
Boolean choice
gs
Enable/Disable.
bandwidth_limit_log Bandwidth Limit logs
Boolean choice
s
Enable/Disable.
ftp_logs
FTP logs Enable/Disable. Boolean choice
Invalid ICMP Packets logs
icmp_invalid_logs
Boolean choice
Enable/Disable.
Redirected ICMP Packets
icmp_redirect_logs
Boolean choice
logs Enable/Disable.
Log invalid packet
log_invalid_packet
Boolean choice
Enable/Disable.
92
8.7 system logging facility configure <facility>
S.No Command Name Description
1
<facility>
2
save
3
exit
4
cancel
5
level_options_set
Type and Description
System logging facility
configuration mode.
Saves log Facility
configuration settings.
Saves log facility
configuration settings and
exit current mode.
To revert to the previous
log Facility configuration
settings.
Sets level options. This
command can run multiple
times in this view to set
different level options.
Logging Facility Type.
Logging Facility Type.
Logging Level Options Type.
Boolean choice.
8.8 system logging remote configure
S.No Command Name Description
1
2
3
4
5
6
7
8
9
10
Type and Description
Saves remote Logging
configuration settings.
Saves remote logging
exit
configuration settings and
exit current mode.
To revert to the previous
cancel
remote logging
configuration settings.
Sets the log identifier
log_identifier
prefixed to both, e-mail and
Syslog messages.
Sets whether or not system
email_logs_enable
emails scheduled logs.
Sets options for emailing of
email_server
logs.
The SMTP port of the esmtp_port
mail server.
return_email_addres Sets email address SMTP
s
server replies are sent.
send_to_email_addr Sets email address where
ess
logs and alerts will be sent.
send_to_email_addr Sets email address where
ess2
logs and alerts will be sent.
save
93
String
Boolean choice
String
Port number
String
String
String
S.No Command Name Description
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
Type and Description
send_to_email_addr Sets email address where
ess3
logs and alerts will be sent.
Sets SMTP authentication
smtp_auth
details.
Sets SMTP authentication
smtp_auth type
types.
Sets SMTP authentication
smtp_auth
username (for plain and
username
CRAM-MD5 auth).
Sets SMTP authentication
smtp_auth password password (for plain and
CRAM-MD5 auth).
Enables Tls support (for
Tls_Enable
plain and CRAM-MD5
auth).
identd_from_smtp_s Enables/Diables to identd
erver_enable
from smtp server.
Sets schedule for sending
schedule
log by email.
schedule unit
Sets schedule unit.
schedule day
Sets schedule day.
schedule time
Sets schedule time.
schedule meridiem Sets schedule meridiem.
syslog_server
syslog
syslog_server
server1
server_name1
syslog_server
server2
server_name2
syslog_server
server3
server_name3
syslog_server
server4
server_name4
syslog_server
server5
server_name5
syslog_server
server6
server_name6
syslog_server
server7
server_name7
syslog_server
server8
server_name8
syslog_server
server_name1
Boolean Choice Y/N
enable
94
String
SMTP Authentication Types.
String
String
Boolean choice
Boolean choice
Schedule Unit Types.
Schedule Day Types.
Schedule Time Units Types.
Schedule Meridiem Types.
Boolean choice
S.No Command Name Description
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
Type and Description
syslog_server
Sets Syslog server.
server_name1 name
syslog_server
server_name1
severity
syslog_server
server_name1
facility
syslog_server
server_name2
enable
Sets Syslog severity.
Syslog server severity types.
Sets Syslog facility.
Syslog server facility ID types
Boolean Choice Y/N.
Boolean choice
syslog_server
Sets Syslog server.
server_name2 name
syslog_server
server_name2
severity
syslog_server
server_name2
facility
syslog_server
server_name3
enable
Syslog server severity types.
Sets Syslog facility.
Syslog server facility ID types.
Boolean Choice Y/N.
Boolean choice
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Sets Syslog severity.
Syslog server severity types.
Sets Syslog facility.
Syslog server facility ID types.
Boolean Choice Y/N
Boolean choice
syslog_server
Sets Syslog server.
server_name4 name
syslog_server
server_name4
severity
syslog_server
server_name4
facility
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Sets Syslog severity.
syslog_server
Sets Syslog server.
server_name3 name
syslog_server
server_name3
severity
syslog_server
server_name3
facility
syslog_server
server_name4
enable
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Sets Syslog severity.
Syslog server severity types.
Sets Syslog facility.
Syslog server facility ID types.
95
S.No Command Name Description
Type and Description
48
syslog_server
server_name5
enable
49
syslog_server
Sets Syslog server.
server_name5 name
50
51
52
53
54
55
56
57
58
59
60
syslog_server
server_name5
severity
syslog_server
server_name5
facility
syslog_server
server_name6
enable
Boolean Choice Y/N.
Syslog server severity types.
Sets Syslog facility.
Syslog server facility ID types.
Boolean Choice Y/N.
Boolean choice
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Sets Syslog severity.
Syslog server severity types.
Sets Syslog facility.
Syslog server facility ID types.
Boolean Choice Y/N.
Boolean choice
syslog_server
Sets Syslog server.
server_name7 name
syslog_server
server_name7
severity
syslog_server
server_name7
facility
syslog_server
server_name8
enable
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Sets Syslog severity.
syslog_server
Sets Syslog server.
server_name6 name
syslog_server
server_name6
severity
syslog_server
server_name6
facility
syslog_server
server_name7
enable
Boolean choice
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Sets Syslog severity.
Syslog server severity types.
Sets Syslog facility.
Syslog server facility ID types.
Boolean Choice Y/N.
Boolean choice.
61
syslog_server
Sets Syslog server.
server_name8 name
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
62
syslog_server
server_name8
severity
Syslog server severity types.
Sets Syslog severity.
96
S.No Command Name Description
63
syslog_server
server_name8
facility
Type and Description
Sets Syslog facility.
Syslog server facility ID types.
8.9 system logging ipv6 configure
S.No Command Name Description
1
2
3
4
5
6
7
Type and Description
Saves ipv6 logging
configuration settings.
Saves ipv6 logging
exit
configuration settings, and
exits current mode.
To revert to the previous
cancel
ipv6 logging configuration
settings.
Enasbles/Disables logging
lan_wan_accept_en
for the LAN to WAN Accept
able
packets.
Enables/Disables logging
lan_wan_drop_enab
for the LAN to WAN
le
Dropped packets.
Enables/Disables logging
wan_lan_accept_en
for the WAN to LAN Accept
able
packets.
Enables/Disables logging
wan_lan_drop_enab
for the WAN to LAN
le
Dropped packets.
save
Boolean choice
Boolean choice
Boolean choice
Boolean choice
8.10 system Radius-Settings
S.No Command Name Description
Type and Description
Saves RADIUS
configuration settings.
Saves RADIUS
configuration settings and
exit current mode.
To revert to the previous
configuration settings
1
save
2
exit
3
cancel
4
primary-radiusserver
Sets Primary RADIUS
server IP address.
5
secondary-radiusserver
Sets Secondary RADIUS
server IP address.
97
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
S.No Command Name Description
6
7
8
9
10
11
12
13
14
15
16
17
18
19
Type and Description
optional-radiusserver
Sets Optional RADIUS
server IP address.
primary-serverauthentication-port
secondary-serverauthentication-port
optional-serverauthentication-port
primary-serversecret
secondary-serversecret
optional-serversecret
primary-servertimeout
secondary-servertimeout
optional-servertimeout
primary-serverretries
secondary-serverretries
optional-serverretries
Sets Primary RADIUS
server port.
Sets Secondary RADIUS
server port.
Sets Optional RADIUS
server port.
Sets Primary RADIUS
server secret.
Sets Secondary RADIUS
server secret.
Sets Optional RADIUS
server secret.
Sets primary server
connection timeout.
Sets secondary server
connection timeout.
Sets optional server
connection timeout.
Sets primary server
connection retry attempts.
Sets secondary server
connection retry attempts.
Sets optional server
connection retry attempts.
Checks the reachability of
configured servers.
serverCheck
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Port number
Port number
Port number
String
String
String
Radius server connection
timeout in seconds
Radius server connection
timeout in seconds
Radius server connection
timeout in seconds
Radius server retries attempts.
Radius server retries attempts.
Radius server retries attempts.
8.11 system remote_management https
configure
S.No
Command
Name
1
save
2
exit
3
cancel
4
enable
Description
Type and Description
Saves access Management
settings for https.
Saves access Management
settings for https and exit
current mode.
To revert to the previous
Remote Mgmt settings.
Enables/disables remote
Boolean choice
mgmt over https.
98
S.No
Command
Name
5
type
6
from_address
7
end_address
8
9
10
Description
Enables/disables remote
mgmt over https.
Sets the starting IP in case
of range, and the IP to be
allowed access in case of
granting access to a
particular machine
Type and Description
Unsigned integer
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
Sets the Ending IP in case
AAA.BBB.CCC.DDD where
of range.
each part is in the range 0-255
Sets the port you want to
port
Unsigned integer
use for HTTP.
enable_remote_sn Enables/disables remote
Boolean choice
mp
snmp.
enable_remote_ss Enables/disables remote
Boolean choice
h
ssh.
8.12 system remote_management telnet
configure
S.No Command Name
1
save
2
exit
3
cancel
4
enable
5
type
6
from_address
7
to_address
Description
Type and Description
Saves access Management
settings for telnet.
Saves access Management
settings for telnet and exit
current mode.
To revert to the previous
Remote Mgmt settings.
Enables/disables remote
Boolean choice
mgmt over telnet.
The kind of access you
Unsigned integer
want to allow.
Sets the starting IP in case
of range, and the IP to be IP address
allowed access in case of AAA.BBB.CCC.DDD where
granting access to a
each part is in the range 0-255
particular machine.
IP address
Sets the Ending IP in case
AAA.BBB.CCC.DDD where
of range.
each part is in the range 0-255
99
8.13 system sessionSettings admin configure
S.No Command Name
1
save
2
exit
3
cancel
4
SessionTimeout
Description
Type and Description
Saves Configurable WAN
settings.
Saves configurable settings
and exit current mode.
To revert to the previous
Configurable Session
settings settings.
Enters the Session timeout
Idle timeout value for user.
for the admin group.
8.14 system sessionSettings guest configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
SessionTimeout
Type and Description
Saves Configurable
settings.
Saves configurable settings
and exit current mode.
To revert to the previous
Configurable Session
settings.
Enters the Session timeout
Idle timeout value for user.
for the guest group.
8.15 system snmp trap configure <agent_ip>
S.No Command Name Description
Type and Description
SNMP trap configuration
mode.
1
<agent_ip>
2
save
3
exit
4
cancel
5
agent
The IP address of the
SNMP agent.
6
snmp_version
Snmp Version v1/v2/v3
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Saves SNMP trap
configuration settings.
Saves SNMP trap
configuration settings, and
exit current mode.
To revert to the previous
snmp configuration
settings.
100
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
String
S.No Command Name Description
7
port
8
community
Type and Description
SNMP trap port the trap
Port number
messages will be sent to.
The community string to
which the agent belongs.
Most agents are configured String
to listen for traps in the
Public community.
8.16 system snmp trap delete <agent_ip>
S.No Command Name Description
1
<agent_ip>
Type and Description
Deletes an SNMP trap
configuration.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
8.17 system snmp users configure <user>
S.No Command Name Description
1
2
3
4
5
6
7
8
9
Type and Description
SNMP v3 User list
snmpv3uers list user type
configuration settings
Saves SNMP trap
save
configuration settings.
Saves SNMP v3 Users
exit
configuration settings and
exit current mode.
To revert to the previous
cancel
SNMP v3 Users
configuration settings.
Authentication and privacy Snmp security level type for
security_level
settings.
snmpv3users list.
Selects either MD5 or SHA Snmpv3uers list authentication
authentication_algo
authentication.
algorithm type.
DES-56 privacy is available
Snmpv3uers list privacy
privacy_algorithm
for the authentication
algorithm type.
negotiation.
Shared authentication
authentication_pass
password with the SNMPv3 String
word
user.
Shared privacy password
privacy_password
String
with the SNMPv3 user.
<user>
101
8.18 system snmp sys configure
S.No Command Name Description
1
save
2
cancel
3
exit
4
sys-contact
5
sys-location
6
sys-name
Type and Description
Saves SNMP system
configuration settings.
To revert to the previous
snmp configuration
settings.
Saves SNMP system
configuration settings and
exit current mode.
Sets system contact
information.
Sets system location
information.
Sets system name
information.
String, Max 32 characters and
no ' or empty space or”.
String, Max 32 characters and
no ' or empty space or”.
String, Max 32 characters and
no ' or empty space or ".
8.19 system snmp access add
S.No Command Name Description
1
save
2
exit
3
cancel
4
agent
5
subnet_mask
6
accessType
Type and Description
Saves SNMP access
control configuration
settings.
Saves SNMP access
configuration settings and
exit current mode.
To revert to the previous
snmp configuration
settings.
The IP address of the
SNMP agent.
The network mask used to
determine the list of
allowed SNMP managers.
To allow any IP on the
network to manager the
device enter
255.255.255.0. For a
specific host, enter
255.255.255.255. To allow
global access, enter
0.0.0.0.
SNMP trap port the trap
messages will be sent to.
102
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
String
S.No Command Name Description
7
community
Type and Description
The community string to
which the agent belongs.
Most agents are configured String
to listen for traps in the
Public community
8.20 system snmp access edit <rowid>
S.No Command Name Description
Type and Description
1
<rowid>
Unsigned integer
2
save
3
exit
4
cancel
5
agent
6
subnet_mask
7
accessType
8
community
snmp configuration mode
Saves SNMP access
control configuration
settings.
Saves SNMP access
configuration settings and
exit current mode.
To revert to the previous
snmp configuration
settings.
The IP address of the
SNMP agent.
The network mask used to
determine the list of
allowed SNMP managers.
To allow any IP on the
network to manager the
device enter
255.255.255.0. For a
specific host, enter
255.255.255.255. To allow
global access, enter
0.0.0.0.
SNMP trap port the trap
messages will be sent to.
The community string to
which the agent belongs.
Most agents are configured
to listen for traps in the
Public community.
103
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
String
String
8.21 system snmp access delete <rowid>
S.No Command Name Description
1
<rowid>
Type and Description
SNMP access configuration
Unsigned integer
mode.
8.22 system switch_settings power_saving
configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
link_status
5
cable_length
Type and Description
Saves powerMode
configuration settings.
Saves power mode
configuration settings, and
exit current mode.
To revert to the previous
content Filtering ower
mode configuration
settings.
Enables/Disables Link
Boolean choice
status
Enables/Disables Cable
Boolean choice
Length
8.23 system switch_settings jumbo_frame
configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
jumbo_frame
Type and Description
Saves jumbo frame
configuration settings.
Saves jumbo frame
configuration settings and
exit current mode.
To revert to the previous
jumbo frame configuration
settings.
Enables/Disables jumbo
Boolean choice
frame.
104
8.24 system admin_setting configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
System_name
Type and Description
Saves system admin
settings.
Saves configuration
settings, and exit current
mode.
To revert to the previous
admin configuration
settings.
String
8.25 system time configure
S.No Command Name Description
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
Type and Description
Saves time configuration
settings.
Saves time configuration
exit
settings, and exits current
mode.
To revert to the previous
cancel
time configuration settings.
time_zone
Specifies timezone
Timezones
enable_daylight_sav Specifies whether you want
Boolean choice
ing
to enable daylight saving.
Specifies whether to use
configure_ntp_serve
ntpp servers or user will set Boolean choice
rs
date and time.
Specifies whether to use
use_default_servers system default NTP servers Boolean choice
or custom NTP servers.
primary_ntp_server Sets Primary NTP server. String
secondary_ntp_serv Sets Secondary NTP
String
er
server.
ntp_year
Sets year for the date.
Year
ntp_month
Sets month for the date.
Month in the format MM(01-12)
ntp_day
Sets Day for the date.
Day in the format DD(01-31)
ntp_hour
Sets hour for the date.
HH(00-23) using 24 hour clock
Minute in the format MM(00ntp_minutes
Sets minutes for the date.
59)
Second in the format SS(00ntp_seconds
Sets seconds for the date.
59)
Sets sync interval (in
ntp_sync_interval
Unsigned integer
minutes).
save
105
8.26 system traffic_meter configure
S.No Command Name Description
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
Type and Description
Saves traffic meter
configuration settings.
Saves traffic meter
exit
configuration settings and
exit current mode.
To revert to the previous
cancel
traffic meter configuration
settings.
Enables/Disables the traffic
enable
Boolean choice
meter status.
Sets traffic Limit Type 0(No
limit_type
limit), 1(Download only),
traffic meter types
2(Both Directions).
Sets the monthly limit value
monthly_limit
Unsigned integer
of the traffic meter.
Enables/Disables status of
increase_limit_enabl
increase limit of the traffic Boolean choice
e
meter option.
Sets the value to increase
increase_limit_by
Unsigned integer
limit of the traffic meter.
Sets traffic counter as
counter
either specific time or
traffic counter type
restart counter now.
time_hour
Sets hours for restart time. HH(00-23) using 24 hour clock
Sets minutes for restart
Minute in the format MM(00time_minute
time.
59)
day_of_month
Sets day of month.
Calendar day of month
Enables/Disables send
send_email_report
Boolean choice
email report.
Sets block Traffic type
block_type
0(block all traffic) 1(block Block traffic type.
all traffic except email).
Enables/Disables send
send_email_alert
Boolean choice
email alert.
save
8.27 system usb usb1 configure
S.No Command Name Description
1
save
Type and Description
Saves Configurable WAN
settings.
106
S.No Command Name Description
2
exit
3
cancel
4
5
6
enable
printer_enable
Storage_enable
7
usb_type
Type and Description
Saves configurable WAN
settings and exit current
mode.
To revert to the previous
Configurable WAN settings
settings.
Enables USB1
Boolean choice
Enables printer usb
Boolean choice
Enables Storage USB
Boolean choice
Selects the USB type
3G_USB_ADAPTOR/USB_ usb device type
Disc
8.28 system usb usb2 configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
5
6
enable
printer_enable
Storage_enable
7
usb_type
Type and Description
Saves USB1 Settings
settings.
Saves USB2 settings and
exit current mode.
To revert to the previous
Configurable WAN settings
settings.
Enables USB2.
Boolean choice
Enables printer.
Boolean choice
Enables USB2.
Boolean choice
Selects the USB type
3G_USB_ADAPTOR/USB_ usb device type
Disc.
8.29 system usb shareport_vlan configure
<row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
Type and Description
SharePort on vlan
configuration.
Saves SharePort on vlan
settings.
Saves shareport on vlan
settings and exit current
mode.
107
Unsigned integer
S.No Command Name Description
4
cancel
5
6
printer_sharing
storage_sharing
Type and Description
To revert to the previous
shareport on vlan settings.
Enables printer
Boolean choice
Enables USB2
Boolean choice
8.30 system group add
S.No Command Name Description
1
save
2
exit
3
cancel
4
groupname
5
description
6
Privilege_Type
7
8
9
10
11
12
13
14
Privilege_Type
Admin
Privilege_Type
sslvpn
Privilege_Type
L2TP
Privilege_Type
PPTP
Privilege_Type
Xauth
Privilege_Type
Guest
Privilege_Type
Captive_Portal
grouptimeOut
Type and Description
Saves system group
configuration settings.
Saves system group
configuration settings and
exit current mode.
To revert to the previous
system group configuration
settings.
Enter the Group Name
String
here
Enter a brief description of
String
the group here
Selects the privilege type
for the group.
Adds ADMIN privilege to
Boolean choice
the group.
Adds sslvpn privilege to the
Boolean choice
group.
Adds L2TP privilege to the
Boolean choice
group.
Adds PPTP privilege to the
Boolean choice
group.
Adds Xauth privilege to the
Boolean choice
group.
Adds Guest privilege to the
Boolean choice
group.
Adds captive portal
Boolean choice
privilege to the group.
Enter the time out for the
Idle timeout value for user.
group.
8.31 system group edit <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
System groups edit mode. Unsigned integer
108
S.No Command Name Description
2
save
3
exit
4
cancel
5
description
6
grouptimeOut
Type and Description
Saves system group
configuration settings.
Saves system group
configuration settings and
exit current mode.
To revert to the previous
system group configuration
settings.
Enter a brief description of
String
the group here.
Enter the new time out for
Idle timeout value for user.
the group.
8.32 system group delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
System groups delete
mode.
Unsigned integer
8.33 system users add
S.No Command Name Description
1
2
3
4
5
6
7
8
9
10
Type and Description
Saves system user
save
configuration settings.
Saves system user
exit
configuration settings and
exit current mode.
To revert to the previous
cancel
system user configuration
settings.
username
Enter the username here.
Enter the user's first name
FirstName
here.
Enter the user's last name
LastName
here.
password
Enter the password here.
Re-Enter the password
password_confirm
here.
groupname
Enter the groupname here.
Enables/Disables change
enable_change_pas
password for captive portal
sword
user.
109
String
String
String
String
String
String
Boolean choice
8.34 system users edit <row_id>
S.No Command Name Description
1
2
3
4
5
6
7
8
Type and Description
System users edit mode. Unsigned integer
Saves system user
save
configuration settings.
Saves system user
exit
configuration settings and
exit current mode.
To revert to the previous
cancel
system user configuration
settings.
Enter the user's first name
FirstName
String
here.
Enter the user's last name
LastName
String
here.
String
change_password Change user's password. String
String
Enables/Disables change
enable_change_pas
password for captive portal Boolean choice
sword
user.
<row_id>
8.35 system users delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
System users delete mode. Unsigned integer
8.36 system group groupaccesscontrol
configure <group_id>
S.No Command Name Description
1
<group_id>
2
save
3
exit
4
cancel
5
6
deny_login
deny_login_wan
Type and Description
group access control
Unsigned integer
configuration.
Saves group access control
configuration settings.
Saves group access control
configuration settings and
exit current mode.
To revert to the previous
group access control
configuration settings.
Denies login.
Boolean choice
Denies login wan.
Boolean choice
110
S.No Command Name Description
7
8
Type and Description
allow_login_from_de
Login from ip.
fined_ips
allow_login_from_de
Login from browser.
fined_browsers
Boolean choice
Boolean choice
8.37 system group access_control_browser
add
S.No Command Name Description
1
save
2
exit
3
cancel
4
5
group_id
browser_name
Type and Description
Saves group access control
browser configuration
settings.
Saves group access control
browser configuration
settings and exit current
mode.
To revert to the previous
group access control
browser configuration
settings.
group id
Unsigned integer
browser name
Supported browsers
8.38 system group access_control_browser
delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Deletes a browser from
Access Control browsers
list.
Unsigned integer
8.39 system group access_control_ip add
S.No Command Name Description
1
save
2
exit
Type and Description
Saves group access control
ip configuration settings.
Saves group access control
ip configuration settings
and exit current mode.
111
S.No Command Name Description
Type and Description
3
cancel
4
group_id
To revert to the previous
group access control ip
configuration settings.
group id
5
address_type
address type
6
source_address
Sets the source address.
7
mask_length
Sets the source network
mask length.
Unsigned integer
source address type for users
ip policy
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
number in range of 1 to 32
8.40 system group access_control_ip delete
<row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Deletes an ip from Access
Unsigned integer
Control ips list.
112
Chapter 9. Configuration commands
under branch UTIL
9.1 util system_check ping <ip_address>
S.No Command Name Description
1
<ip_address>
Type and Description
Pings an Internet Address. String
9.2 util system_check dns_lookup <dns>
S.No Command Name Description
1
<dns>
Type and Description
To retrieve the IP address
of a Web, FTP, Mail or any String
other Server on the Internet
9.3 util system_check traceroute <ip_address>
S.No Command Name Description
1
<ip_address>
Type and Description
Displays all the routers
present between the
String
destination IP address and
this router.
9.4 util system_check capturePackets
start <interface>
S.No Command Name Description
Type and Description
1
String
<interface>
Starts the packet capture.
9.5 util system_check capturePackets
download <fileName> <ipAddr>
S.No Command Name Description
1
Type and Description
Downloads the packet
<fileName> <ipAddr
capture to the host
>
machine.
FileName string
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
9.6 util dbglog_download <fileName> <ipAddr>
S.No Command Name Description
1
Type and Description
<fileName> <ipAddr Downloads Dbglogs to the FileName string
>
host machine
IP address
113
S.No Command Name Description
Type and Description
AAA.BBB.CCC.DDD where
each part is in the range 0-255
9.7 util usb_test <ipAddr> <fileName>
S.No Command Name Description
1
Type and Description
<ipAddr> <fileName
To test the USB.
>
String
FileName string
9.8 util firmware_upgrade <IpAddr> <FileName>
S.No Command Name Description
1
Type and Description
<IpAddr> <FileNam
To upgrade the firmware.
e>
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
String.
9.9 util enable_auto_backup <status>
S.No Command Name Description
1
<status>
Type and Description
Enables/Disables Auto
Backup support.
Boolean choice.
9.10 util enable_config_encryp <status>
S.No Command Name Description
1
<status>
Type and Description
Enables/Disables
Configuration encryption
support.
Boolean choice
9.11 util watchdog_disable <status>
S.No Command Name Description
1
<status>
Type and Description
Disables/Enables watchdog
Boolean choice
timer.
114
Chapter 10. Configuration commands
under branch LICENSE
10.1 license list
S.No Command Name Description
1
list
2
activate
Type and Description
Lists all licenses configured
on the device.
Activates a license on the
device.
10.2 license activate <activationKey>
S.No Command Name Description
1
<activationKey>
2
list
3
activate
Type and Description
Activates a license on the
device.
Lists all licenses configured
on the device.
Activates a license on the
device.
115
Takes a string value that has
only AtoZ, atoz and 0to9
characters only
Chapter 11. Configuration commands
under branch NET
11.1 net ipv6_tunnel six_to_four configure
S.No Command Name Description
1
2
3
4
Type and Description
Saves sixToFour Tunnel
configuration settings.
Saves sixToFour Tunnel
exit
configuration settings, and
exits current mode.
To revert to the previous
cancel
sixToFourTunnel
configuration settings.
Enables/disables automatic
tunneling which will allow
traffic from a LAN IPv6
automatic_tunneling
network to be tunneled
Boolean choice
_enable
through a WAN IPv4
network to reach an IPV6
network.
save
11.2 net bandwidth profile enable <enable>
S.No Command Name Description
1
<enable>
Type and Description
It allows to enable/disable
Boolean choice
bandwidth profiles.
11.3 net bandwidth profile add
S.No Command Name Description
1
save
2
exit
3
cancel
4
name
5
policytype
Type and Description
Saves bandwidth profile
configuration settings.
Saves bandwidth Profile
configuration settings and
exit current mode.
To revert to the previous
bandwidth Profile
configuration settings.
Unique Profile Name.
String
Policy Type, either Inbound
Bandwidth policy type.
or Outbound.
116
S.No Command Name Description
6
type
7
priority
8
minimum_rate
9
maximum_rate
10
Interface
Type and Description
Profile Type, either Priority
Bandwidth profile type.
or Rate.
Priority.
Bandwidth priority type.
Minimum Bandwidth
Minimum bandwidth rate 0provided by user.
Max bandwidth Kbps.
Maximum Bandwidth
Maximum bandwidth rate 100provided by user.
100000 Kbps.
Enter WAN interface
(WAN1/WAN2) for Outbund
Policy and LAN/VLAN (Use
show net bandwidth profile String
interface_list command to
see list) interface for
Inbound Bandwidth Profile.
11.4 net bandwidth profile edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
4
cancel
5
name
6
policytype
7
type
8
priority
9
minimum_rate
10
maximum_rate
Type and Description
It allows to edit a bandwidth
Unsigned integer
profile.
Saves bandwidth profile
configuration settings.
Saves bandwidth Profile
configuration settings and
exit current mode.
To revert to the previous
bandwidth Profile
configuration settings.
Unique Profile Name.
String
Policy Type, either Inbound
Bandwidth policy type.
or Outbound.
Profile Type, either Priority
Bandwidth profile type.
or Rate.
Select from Low, Medium
or High if the profile type is Bandwidth priority type.
priority.
Minimum Bandwidth
Minimum bandwidth rate 0provided by user.
Max bandwidth Kbps.
Maximum Bandwidth
Maximum bandwidth rate 100provided by user.
100000 Kbps.
117
S.No Command Name Description
11
Interface
Type and Description
Enter WAN interface
(WAN1/WAN2) for
Outbound Policy and
LAN/VLAN (Use show net
String
bandwidth profile
interface_list command to
see list)interface for
Inbound Bandwidth Profile.
11.5 net bandwidth profile delete <row_id>
S.No Command Name Description
It allows to delete a
<row_id>
1
bandwidth profile.
Type and Description
Unsigned integer
11.6 net bandwidth traffic_selector add
S.No Command Name Description
1
save
2
exit
3
cancel
4
profile_name
5
service_name
6
match_type
7
ip_address
8
subnet_mask
9
mac_address
10
11
12
port_name
vlan_id
access_point
Type and Description
Saves Traffic Selector
configuration settings.
Saves Traffic Selector
configuration settings and
exit current mode.
To revert to the previous
Traffic Selector
configuration settings.
Profile Name.
To see available services
list by show command.
The match type can be IP
or MAC Address.
String
String
Traffic selector match type.
IP address
IP Address.
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
Subnet Mask.
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
MAC address
AA:BB:CC:DD:EE:FF where
MAC Address
each part is in the range 00FF.
Port Name
Traffic selectors Port types.
Vlan ID
Unsigned integer.
Virtual Access Point Name String.
118
11.7 net bandwidth traffic_selector
edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
4
cancel
5
profile_name
6
service_name
7
match_type
8
ip_address
9
subnet_mask
10
mac_address
11
12
13
port_name
vlan_id
access_point
Type and Description
It allows to edit a traffic
selector for a bandwidth
profile.
Saves Traffic Selector
configuration settings.
Saves Traffic Selector
configuration settings and
exit current mode.
To revert to the previous
Traffic Selector
configuration settings.
Profile Name.
Sees available services list
by show command
IP /MAC Address
Unsigned integer
String
String
Traffic selector match type.
IP address
IP Address.
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
Subnet Mask.
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
MAC address
AA:BB:CC:DD:EE:FF where
MAC Address
each part is in the range 00FF.
Port Name
Traffic selectors Port types.
Vlan ID
Unsigned integer.
Virtual Access Point Name String
11.8 net bandwidth traffic_selector
delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
It allows to delete a traffic
selector for a bandwidth
profile.
119
Unsigned integer
11.9 net ddns wan1 configure
S.No Command Name Description
1
2
3
4
5
6
7
8
9
Type and Description
Saves DDNS configuration
settings.
Saves DDNS configuration
exit
settings and exit current
mode.
To revert to the previous
cancel
DDNS configuration
settings.
Enables or Disables
ddns_service
Dyndns to provide Dynamic Select the Ddns Service type.
DNS service
String, Max 64 characters and
hostname
Sets Hostname.
no ' or empty space or "
String, Max 64 characters and
username
Sets username.
no ' or empty space or "
String, Max 64 characters and
password
Sets Password.
no ' or empty space or "
Sets Timeperiod as 30
time_update_enable
Boolean choice
days.
Enables/Disables using
wild_flag_enable
Boolean choice
wild cards.
save
11.10
net ddns wan2 configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
ddns_service
5
hostname
6
username
7
password
Type and Description
Saves DDNS configuration
settings.
Saves DDNS configuration
settings and exit current
mode.
To revert to the previous
DDNS configuration
settings.
Enables or Disables
Dyndns to provide Dynamic Select the Ddns Service type.
DNS service
String, Max 64 characters and
Sets Hostname.
no ' or empty space or "
String, Max 64 characters and
Sets username.
no ' or empty space or "
String, Max 64 characters and
Sets Password.
no ' or empty space or "
120
S.No Command Name Description
8
9
Type and Description
Sets Timeperiod as 30
time_update_enable
days.
Enables/Disables using
wild_flag_enable
wild cards.
Boolean choice
Boolean choice
11.11 net lan dhcp reserved_ip
configure <mac_address>
S.No Command Name Description
1
<mac_address>
2
save
3
exit
4
cancel
5
ip_address
6
computer_name
7
8
Type and Description
DHCP Reserved IPs
add/edit mode.
MAC address
AA:BB:CC:DD:EE:FF where
each part is in the range 00-FF
Saves DHCP Reserved IPs
configuration settings.
Saves DHCP Reserved IPs
configuration settings, and
exit current mode.
To revert to the previous
DHCP Reserved IPs
configuration settings.
Sets IP Address to be
reserved.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
String
Specifies a unique name.
Selects to Associate with IP
Association
Boolean choice
/ MAC Binding.
log_dropped_packet Specifies logging option for
Boolean choice
s
this rule.
11.12 net lan dhcp reserved_ip
delete <mac_address>
S.No Command Name Description
1
<mac_address>
Type and Description
MAC address
Deletes a specific reserved
AA:BB:CC:DD:EE:FF where
ip entry.
each part is in the range 00-FF
121
11.13 net dmz dhcp reserved_ip
configure <mac_address>
S.No Command Name Description
1
<mac_address>
2
save
3
exit
4
cancel
5
ip_address
Type and Description
DHCP Reserved IPs
add/edit mode.
MAC address
AA:BB:CC:DD:EE:FF where
each part is in the range 00-FF
Saves DHCP Reserved IPs
configuration settings.
Saves DHCP Reserved IPs
configuration settings and
exit current mode.
To revert to the previous
DHCP Reserved IPs
configuration settings.
Sets IP Address to be
reserved.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
11.14 net dmz dhcp reserved_ip
delete <mac_address>
S.No Command Name Description
1
<mac_address>
Type and Description
MAC address
Deletes a specific reserved
AA:BB:CC:DD:EE:FF where
ip entry.
each part is in the range 00-FF
11.15 net ethernet
configure <interface_name>
S.No Command Name Description
1
<interface_name>
2
save
3
exit
4
cancel
5
vlan-enable
Type and Description
Ethernet configuration
String
mode.
Saves ethernet
configuration settings.
Saves ethernet
configuration settings, and
exits current mode.
To revert to the previous
configuration settings.
Enables/Disables VLAN for
Boolean choice
this interface.
122
S.No Command Name Description
6
native-vlan
7
vlanid
11.16
Type and Description
Enables/Disables native
VLAN status.
Sets VLAN Id.
Type and Description
Saves LAN configuration
settings.
Saves LAN configuration
settings and exit current
mode.
To revert to the previous
LAN configuration settings.
Configures LAN Settings.
1
save
2
exit
3
cancel
4
static
5
static address
Sets system LAN IP
address.
6
static subnet_mask
Sets system LAN subnet
mask.
7
8
dhcp
dhcp mode
10
11
12
13
14
15
Unsigned integer
net lan ipv4 configure
S.No Command Name Description
9
Boolean choice
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Configures DHCP Settings.
Sets dhcp mode.
dhcpv4 modes
IP address
Sets dhcp servers start
dhcp start_address
AAA.BBB.CCC.DDD where
address.
each part is in the range 0-255
IP address
Sets dhcp servers end
dhcp end_address
AAA.BBB.CCC.DDD where
address.
each part is in the range 0-255
IP address
dhcp default_gw
Sets dhcp default gateway. AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
dhcp primary_dns Sets primary dns server.
AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
dhcp secondary_dns Sets secondary dns server. AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
dhcp wins_server
Sets Wins Server address. AAA.BBB.CCC.DDD where
each part is in the range 0-255
Number in range of 1 to
dhcp lease_time
Sets system Lease Time.
262800.
123
S.No Command Name Description
Type and Description
16
dhcp domain_name Sets dhcp domain name.
17
dhcp relay_gateway
18
19
dns
dns host_name
dns host_name
mapping
dns host_name
mapping 1
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
dns host_name
mapping 2
dns host_name
mapping 3
dns host_name
mapping 4
dns host_name
mapping 5
dns host_name
mapping 6
dns host_name
mapping 7
dns host_name
mapping 8
dns host_name
mapping 1
host_name
dns host_name
mapping 1
ipaddress
dns host_name
mapping 2
host_name
dns host_name
mapping 2
ipaddress
dns host_name
mapping 3
host_name
dns host_name
mapping 3
ipaddress
Sets dhcp relays gateway
address.
String, Max 256 characters and
no ' or empty space or "
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Configures DNS Settings.
Configures DNS Settings.
Configures DNS Host
NameMapping.
Configures DNS Host
NameMapping for 1st row.
Configures DNS Host
NameMapping for 2nd
Row.
Configures DNS Host
NameMapping for 3rd row.
Configures DNS Host
NameMapping for 4th row.
Configures DNS Host
NameMapping for 5th row.
Configures DNS Host
NameMapping for 6th row.
Configures DNS Host
NameMapping for 7th row.
Configures DNS Host
NameMapping for 8th row.
Sets Host Name.
String
Sets Host Name.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Sets Host Name.
String
Sets Host Name.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Sets Host Name.
String
Sets Host Name.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
124
S.No Command Name Description
35
36
37
38
39
40
41
42
43
44
dns host_name
mapping 4
host_name
dns host_name
mapping 4
ipaddress
dns host_name
mapping 5
host_name
dns host_name
mapping 5
ipaddress
dns host_name
mapping 6
host_name
dns host_name
mapping 6
ipaddress
dns host_name
mapping 7
host_name
dns host_name
mapping 7
ipaddress
dns host_name
mapping 8
host_name
dns host_name
mapping 8
ipaddress
45
proxy
46
proxy dns_enable
11.17
Type and Description
Sets Host Name.
String
Sets Host Name.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Sets Host Name.
String
Sets Host Name.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Sets Host Name.
String
Sets Host Name.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Sets Host Name.
String
Sets Host Name.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Sets Host Name.
String
Sets Host Name.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Configures the LAN
Proxies.
Enables/Disables dns
proxy.
net lan ipv6 configure
S.No Command Name Description
1
save
2
exit
3
cancel
Boolean choice
Type and Description
Saves LAN configuration
settings.
Saves LAN configuration
settings and exit current
mode.
To revert to the previous
LAN configuration settings.
125
S.No Command Name Description
4
Type and Description
static
Sets system LAN Settings.
5
static address
Sets system LAN IP
address.
6
7
8
9
static prefix_value
dhcp
dhcp server_enable
dhcp mode
10
11
12
13
14
15
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part
is in the range [0-9A-Fa-f:]
Unsigned integer
Prefix length
Sets system LAN Settings.
Sets dhcpv6 server status. Boolean choice
DHCPv6 Mode
dhcpv6 modes
String, Max 256 characters
dhcp domain_name DHCP server domain name
and no ' or empty space or "
dhcp
Server preference number. Unsigned integer
server_preference
dhcp dns_type
Dns server type.
dhcpv6 dns server types
IP address
abcd:abcd:abcd:abcd:abcd:abc
dhcp primary_dns Enter primary dns server.
d:abcd:abcd where each part
is in the range [0-9A-Fa-f:]
IP address
Enter secondary dns
abcd:abcd:abcd:abcd:abcd:abc
dhcp secondary_dns
server.
d:abcd:abcd where each part
is in the range [0-9A-Fa-f:]
number in range of 0 to
dhcp rebind_time
Rebind time.
604800
11.18 net lan ipv6 pool
configure <ipv6PoolStartAddr>
S.No Command Name Description
1
<ipv6PoolStartAddr>
2
save
3
exit
4
cancel
5
start_address
Type and Description
IPv6 LAN configuration
add/edit mode.
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
Saves LAN configuration
settings.
Saves LAN configuration
settings and exit current
mode.
To revert to the previous
LAN configuration settings.
Sets dhcpv6 start IP
address.
126
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
S.No Command Name Description
Type and Description
6
end_address
Sets dhcpv6 end IP
address.
7
prefix_value
Prefix length
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
Unsigned integer
11.19 net lan ipv6 pool
delete <ipv6PoolStartAddr>
S.No Command Name Description
1
<ipv6PoolStartAddr>
11.20
Type and Description
IPv6 LAN configuration
delete.
net igmp configure
S.No Command Name Description
1
2
3
4
5
6
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
Type and Description
save
Saves igmp settings.
Saves igmp settings and
exit
exit current mode.
To revert to the previous
cancel
igmp settings settings.
Specifies the igmp proxy
Enable
should enable or disable.
This command is used to
UpStreamInterface_
select WAN upstream
WAN1
interface for WAN1.
This command is used to
UpStreamInterface_
select WAN upstream
WAN2
interface for WAN2.
11.21
save
2
cancel
3
exit
WAN interface type WANDHCP/WAN-PPTP/WANL2TP.
WAN interface type WANDHCP/WAN-PPTP/WANL2TP.
net intel_Amt server configure
S.No Command Name Description
1
Boolean choice
Type and Description
Saves InterlAmt server
configuration settings.
To revert to the previous
IntelAmt server
configuration settings.
Saves IntelAmt server
configuration settings and
exit current mode.
127
S.No Command Name Description
4
5
6
7
Type and Description
Enables/disables Intel Amt
enable_Intel_Amt
Boolean choice.
Ports.
Wan_hosts
IntelAmt Wan Host Type. Intel Amt Wan Host type.
IntelAmt Wan Host
Wan_host_Address
String.
Address.
IP address
Internal_Address
IntelAmt internal Address. AAA.BBB.CCC.DDD where
each part is in the range 0-255.
11.22
net intel_Amt_Reflector configure
S.No Command Name Description
1
save
2
cancel
3
exit
4
enable
5
6
7
8
9
10
11
12
enable
Intel_Amt_Reflector
enable
Intel_Amt_Reflector
_destport
enable
Intel_Amt_Reflector
_destport 16992
enable
Intel_Amt_Reflector
_destport 16993
enable
Intel_Amt_Reflector
_destport 16994
enable
Intel_Amt_Reflector
_destport 16995
enable
Intel_Amt_Reflector
_destport 9971
Intel_Amt_Reflector
_srcport
Type and Description
Saves InterlAmt Reflector
configuration settings.
To revert to the previous
IntelAmt server
configuration settings.
Saves IntelAmt server
configuration settings and
exit current mode.
Enables intelAmt reflectors
on port.
Enables/disables Ports.
Boolean choice
Enables intelamt reflectors
on different ports.
Enables/disables Ports.
Boolean choice
Enables/disables Ports.
Boolean choice
Enables/disables Ports.
Boolean choice
Enables/disables Ports.
Boolean choice
Enables/disables Ports.
Boolean choice
Sets port number for
different ports.
128
S.No Command Name Description
13
14
15
16
17
Intel_Amt_Reflector
_srcport 16992
Intel_Amt_Reflector
_srcport 16993
Intel_Amt_Reflector
_srcport 16994
Intel_Amt_Reflector
_srcport 16995
Intel_Amt_Reflector
_srcport 9971
11.23
Type and Description
Enter source port value for
16992.
Enter source port value for
16993.
Enter source port value for
16994.
Enter source port value for
16995.
Enter source port value for
9971.
Port number
Port number
Port number
Port number
net ip_Aliasing server add
S.No Command Name Description
1
save
2
cancel
3
exit
4
Interface
5
Ip_Address
6
Subnet_Mask
11.24
Port number
Type and Description
Saves Ip Alias server
configuration settings.
To revert to the previous Ip
Alias server configuration
settings.
Saves Ip Aias server
configuration settings and
exit current mode.
Selects the Interface for the
WAN interface type.
Ip Aliasing
IP address
Ip Address for ip Aliasing. AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
Subnet mask for ip
AAA.BBB.CCC.DDD where
Aliasing.
each part is in the range 0-255.
net ip_Aliasing server edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
cancel
4
exit
Type and Description
Editing Ip Aliasing server
Unsigned integer
configuration.
Saves Ip Alias server
configuration settings.
To revert to the previous Ip
Alias server configuration
settings.
Saves Ip Aias server
configuration settings and
exit current mode.
129
S.No Command Name Description
5
Interface
6
Ip_Address
7
Subnet_Mask
11.25
Type and Description
Select the Interface for the
WAN interface type
Ip Aliasing
IP address
Ip Address for ip Aliasing. AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
Subnet mask for ip
AAA.BBB.CCC.DDD where
Aliasing.
each part is in the range 0-255.
net ip_Aliasing server delete <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
cancel
4
exit
5
Interface
6
Ip_Address
7
Subnet_Mask
11.26
Type and Description
Deletes Ip Aliasing
Unsigned integer
configuration.
Saves Ip Alias server
configuration settings.
To revert to the previous Ip
Alias server configuration
settings.
Saves Ip Aias server
configuration settings and
exit current mode.
Selects the Interface for the
WAN interface type
Ip Aliasing.
IP address
Ip Address for ip Aliasing. AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
Subnet mask for ip
AAA.BBB.CCC.DDD where
Aliasing.
each part is in the range 0-255
net mode configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
ip_type
Type and Description
Saves IP Mode
configuration settings.
Saves IP Mode
configuration settings and
exit current mode.
To revert to the previous IP
Mode configuration
settings.
Selects IPv4 only or
Select the ip address type.
IPv4/IPv6 mode.
130
11.27
net ipv6_tunnel isatap add
S.No Command Name Description
1
save
2
exit
3
cancel
4
subnet_prefix
5
end_point_type
6
ipv4_address
11.28
Type and Description
Saves isatap tunnel
configuration settings.
Saves isaptap tunnel
configuration settings, and
exit current mode.
To revert to the previous
isatap tunnel configuration
settings.
This is the 64-bit subnet
prefix that is assigned to
String
the logical ISATAP subnet
for this intranet.
This is the endpoint
address for the tunnel that
starts with this router. The
endpoint can be the LAN Select the local end point
address type.
interface (assuming the
LAN is an IPv4 network), or
a specific LAN IPv4
address.
The local end point address IP address
if not the LAN IPv4
AAA.BBB.CCC.DDD where
address.
each part is in the range 0-255.
net ipv6_tunnel isatap edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
4
cancel
5
subnet_prefix
Type and Description
Isatap Tunnel configuration
Unsigned integer
mode.
Saves isatap tunnel
configuration settings.
Saves isaptap tunnel
configuration settings and
exit current mode.
To revert to the previous
isatap tunnel configuration
settings.
This is the 64-bit subnet
prefix that is assigned to
String
the logical ISATAP subnet
for this intranet.
131
S.No Command Name Description
6
end_point_type
7
ipv4_address
11.29
Type and Description
This is the endpoint
address for the tunnel that
starts with this router. The
endpoint can be the LAN Select the local end point
interface (assuming the
address type.
LAN is an IPv4 network), or
a specific LAN IPv4
address.
The local end point address IP address
if not the LAN IPv4
AAA.BBB.CCC.DDD where
address.
each part is in the range 0-255
net ipv6_tunnel isatap delete <row_id>
S.No Command Name Description
1
<row_id>
11.30
Type and Description
Deletes a specified isatap
Unsigned integer
tunnel configuration mode.
net routing mode configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
type
5
bridgeModeSetup
6
bridgeModeSetup
bridge_interfaceIp
7
bridgeModeSetup
dmz_interfaceIp
8
bridgeModeSetup
subnetMask
Type and Description
Saves NAT configuration
settings.
Saves NAT configuration
settings and exit current
mode.
To revert to the previous
Basic Security Level
configuration settings.
Selects NAT or
Transparent or Bridge
Routing mode type.
mode.
Sets IP Addresses for
Bridge and DMZ interfaces
in same subnet.
IP address
Gives bridge Interface ip
AAA.BBB.CCC.DDD where
Address.
each part is in the range 0-255.
IP address
Gives DMZ Interface ip
AAA.BBB.CCC.DDD where
Address.
each part is in the range 0-255.
IP address
Gives subnet for the DMZ
AAA.BBB.CCC.DDD where
and Bridge Interfaces.
each part is in the range 0-255.
132
S.No Command Name Description
9
nat_wanInterface
11.31
Type and Description
Selects WAN interfaces for
Select WAN interface.
which NAT is to be enabled
net wan wan1 ipv4 configure
S.No Command Name Description
1
2
3
4
5
6
7
8
9
10
Type and Description
Saves ipv4 wan
configuration settings.
To revert to the previous
cancel
ipv4 wan configuration
settings.
Exits from the current
exit
configuration.
Selects among the options:
STATIC, DHCP Client,
PPPoE, PPTP, L2TP,
isp_connection_type Russian PPTP, Russian
ISP Types.
L2TP, Japanese Multiple
PPPoE, Dual Access
PPPoE
If ISP Type selected is
DHCPC, this field gives you
dhcpc
options to configure
DHCPC credentials
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
dhcpc
assign a DNS address to Boolean choice.
get_dns_from_isp
the router using DHCP
network protocol.
Otherwise Enter No and
give valid static dns
addresses
IP address
Valid primary DNS Server
dhcpc primary_dns
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
IP address
dhcpc
Valid secondary DNS
AAA.BBB.CCC.DDD where
secondary_dns
Server IP Address.
each part is in the range 0-255.
Selects the Mac Address
dhcpc mac_type
Types of mac address source.
Source.
MAC address
dhcpc mac_address Valid MAC address.
AA:BB:CC:DD:EE:FF where
save
133
S.No Command Name Description
Type and Description
11
each part is in the range 00FF.
String
12
13
14
15
16
17
18
19
20
21
22
23
24
dhcpc hostname
Enter the hostname.
If ISP Type selected is
STATIC, this field gives you
static
options to configure
STATIC credentials.
If your ISP has assigned a
fixed (static or permanent)
IP address, fill this fields
IP address
static ip_address
with Static IP address
AAA.BBB.CCC.DDD where
assigned to you. This will each part is in the range 0-255.
identify the router to your
ISP.
IPv4 Subnet Mask. This is
IP address
usually provided by the ISP
AAA.BBB.CCC.DDD where
static subnet_mask
or your network
each part is in the range 0-255.
administrator.
IP address of the ISP’s
IP address
static
gateway. This is usually
AAA.BBB.CCC.DDD where
provided by the ISP or your
gateway_address
each part is in the range 0-255.
network administrator.
IP address
Valid primary DNS Server
static primary_dns
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
IP address
static
Valid secondary DNS
AAA.BBB.CCC.DDD where
secondary_dns
Server IP Address.
each part is in the range 0-255.
Selects the Mac Address
static mac_type
Types of mac address source
Source.
MAC address
AA:BB:CC:DD:EE:FF where
static mac_address Enter Valid MAC address.
each part is in the range 00FF.
If ISP Type selected is
PPPoE, this field gives you
pppoe
options to configure PPPoE
credentials.
Enter the username to
String, Max 64 characters and
pppoe username
authenticate.
no ' or empty space or ".
Enter the password to
String, Max 16 characters and
pppoe password
authenticate.
no ' or empty space or ".
Enter the password to
pppoe service
String.
authenticate.
Enter the Auth Option to
pppoe authOpt
PPPOE Authentication Types.
authenticate.
134
S.No Command Name Description
25
26
27
28
29
30
31
32
33
34
35
pppoe
connectivity_type
pppoe idletime
Type and Description
Enter the connectivity type. ISP Connectivity Types.
Enter the idle time.
Idle timeout value type.
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
pppoe
assign a DNS address to Boolean choice.
get_dns_from_isp
the router using PPPOE
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
IP address
Valid primary DNS Server
pppoe primary_dns
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
IP address
pppoe
Valid secondary DNS
AAA.BBB.CCC.DDD where
secondary_dns
Server IP Address.
each part is in the range 0-255.
Enter Yes to get IP
dynamically from ISP if you
have not been assigned
any static IP address. The
pppoe
ISP will automatically
Boolean choice
get_ip_from_isp
assign an IP address to the
router using PPPOE
network protocol.
Otherwise Enter No and
give valid static IP address.
IP address
pppoe static_ip
Enter valid IP Address.
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
pppoe subnet_mask Enter valid subnet mask. AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Selects the Mac Address
pppoe mac_type
Types of mac address source
Source.
MAC address
AA:BB:CC:DD:EE:FF where
pppoe mac_address Enter valid MAC address.
each part is in the range 00FF.
If ISP Type selected is
PPTP, this field gives you
pptp
options to configure PPTP
credentials.
135
S.No Command Name Description
Type and Description
Enter the username to log
in.
Enter the password to log
in.
36
pptp username
37
pptp password
38
pptp ip_address
If Address Mode is Static,
give static ip.
39
pptp subnet_mask
If Address Mode is Static,
give subnet mask.
40
pptp
get_ip_from_isp
42
pptp
mmpe_encryption
pptp split_tunnel
43
pptp gateway
44
pptp server_address
41
45
46
47
48
49
pptp
connectivity_type
pptp idle_time
Enter Yes to get IP
dynamically from ISP if you
have not been assigned
any static IP address.
Otherwise Enter No and
give valid static IP address.
Enter the MMPE
Encryption.
Selects the split_tunnel.
Gateway assigned by the
ISP to make a connection
with the ISP server.
IP address of the PPTP
server (if applicable).
Sets ISP Type.
String, Max 64 characters and
no ' or empty space or "
String, Max 16 characters and
no ' or empty space or "
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Boolean choice
Boolean choice
Boolean choice
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
ISP Connectivity Types.
Sets ISP Type.
Idle timeout value type.
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
pptp
assign a DNS address to Boolean choice
get_dns_from_isp
the router using PPTP
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
IP address
Enter valid primary DNS
pptp primary_dns
AAA.BBB.CCC.DDD where
Server IP Address.
each part is in the range 0-255.
IP address
Enter valid secondary DNS
pptp secondary_dns
AAA.BBB.CCC.DDD where
Server IP Address.
each part is in the range 0-255.
136
S.No Command Name Description
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
pptp mac_type
Type and Description
Selects the Mac Address
Source.
Types of mac address source.
MAC address
AA:BB:CC:DD:EE:FF where
pptp mac_address Enter Valid MAC address.
each part is in the range 00FF.
If ISP Type selected is
Russian dual access
russ_pptp
PPTP, this field gives you
options to configure
credentials.
Enter the username to log String, Max 64 characters and
russ_pptp username
in.
no ' or empty space or "
Enter the password to log String, Max 16 characters and
russ_pptp password
in.
no ' or empty space or "
russ_pptp
Enter the MMPE
Boolean choice
mmpe_encryption Encryption.
russ_pptp
Selects the split_tunnel.
Boolean choice
split_tunnel
IP address
russ_pptp
IP address of the PPTP
AAA.BBB.CCC.DDD where
server_address
server (if applicable).
each part is in the range 0-255.
russ_pptp
Sets the ISP Type.
ISP Connectivity Types.
connectivity_type
russ_pptp idle_time Sets the ISP Type.
Idle timeout value type.
IP address
russ_pptp
If Address Mode is Static,
AAA.BBB.CCC.DDD where
ip_address
give static ip.
each part is in the range 0-255.
IP address
russ_pptp
If Address Mode is Static,
AAA.BBB.CCC.DDD where
subnet_mask
give subnet mask.
each part is in the range 0-255.
Gateway assigned by the IP address
russ_pptp gateway ISP to make a connection AAA.BBB.CCC.DDD where
with the ISP server.
each part is in the range 0-255.
Enter Yes to get IP
dynamically from ISP if you
russ_pptp
have not been assigned
Boolean choice
any static IP address.
get_ip_from_isp
Otherwise Enter No and
give valid static IP address.
Enter Yes to get dns
dynamically from ISP if you
russ_pptp
have not been assigned
Boolean choice
get_dns_from_isp any static IP address. The
ISP will automatically
assign a DNS address to
137
S.No Command Name Description
Type and Description
the router using PPTP
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
IP address
Enter a valid primary DNS
AAA.BBB.CCC.DDD where
Server IP Address
each part is in the range 0-255.
IP address
russ_pptp
Enter a alid secondary
AAA.BBB.CCC.DDD where
secondary_dns
DNS Server IP Address
each part is in the range 0-255.
Selects the Mac Address
russ_pptp mac_type
Types of mac address source.
Source
MAC address
russ_pptp
AA:BB:CC:DD:EE:FF where
Enter Valid MAC address
mac_address
each part is in the range 00FF.
If ISP Type selected is
L2TP, this field gives you
l2tp
options to configure L2TP
credentials.
Enter the username to log String, Max 64 characters and
l2tp username
in.
no ' or empty space or "
Enter the password to log String, Max 16 characters and
l2tp password
in.
no ' or empty space or "
l2tp secret
Enter the secret to log in. String
l2tp split_tunnel
Select the split_tunnel.
Boolean choice
Gateway assigned by the IP address
l2tp gateway
ISP to make a connection AAA.BBB.CCC.DDD where
each part is in the range 0-255.
with the ISP server.
IP address
IP address of the L2TP
l2tp server_address
AAA.BBB.CCC.DDD where
server (if applicable).
each part is in the range 0-255.
l2tp
Sets ISP Type.
ISP Connectivity Types.
connectivity_type
l2tp idle_time
Sets ISP Type.
Idle timeout value type.
IP address
If Address Mode is Static,
l2tp ip_address
AAA.BBB.CCC.DDD where
give static ip.
each part is in the range 0-255.
IP address
If Address Mode is Static,
l2tp subnet_mask
AAA.BBB.CCC.DDD where
give subnet mask.
each part is in the range 0-255.
Enter Yes to get IP
dynamically from ISP if you
l2tp get_ip_from_isp
Boolean choice
have not been assigned
any static IP address.
russ_pptp
primary_dns
138
S.No Command Name Description
81
82
83
84
85
86
87
88
89
90
91
92
93
94
Type and Description
Otherwise Enter No and
give valid static IP address.
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
l2tp
assign a DNS address to Boolean choice
get_dns_from_isp
the router using L2TP
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
IP address
Valid primary DNS Server
l2tp primary_dns
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
IP address
Valid secondary DNS
l2tp secondary_dns
AAA.BBB.CCC.DDD where
Server IP Address.
each part is in the range 0-255.
Selects the Mac Address
l2tp mac_type
Types of mac address source.
Source.
MAC address
AA:BB:CC:DD:EE:FF where
l2tp mac_address Enter Valid MAC address.
each part is in the range 00FF.
If ISP Type selected is
Russian Dual Access
russ_l2tp
L2TP, this field gives you
options to configure
Russian L2TP credentials.
Enter the username to log String, Max 64 characters and
russ_l2tp username
in.
no ' or empty space or "
Enter the password to log String, Max 16 characters and
russ_l2tp password
in.
no ' or empty space or "
russ_l2tp secret
Enter the secret to log in. String
russ_l2tp
Select the split_tunnel.
Boolean choice
split_tunnel
IP address
russ_l2tp
IP address of the L2TP
AAA.BBB.CCC.DDD where
server_address
server (if applicable).
each part is in the range 0-255.
russ_l2tp
Sets ISP Type.
ISP Connectivity Types.
connectivity_type
russ_l2tp idle_time Sets ISP Type.
Idle timeout value type.
IP address
If Address Mode is Static,
russ_l2tp ip_address
AAA.BBB.CCC.DDD where
give static ip.
each part is in the range 0-255.
139
S.No Command Name Description
Type and Description
95
russ_l2tp gateway
Gateway assigned by the
ISP to make a connection
with the ISP server
96
russ_l2tp
subnet_mask
If Address Mode is Static,
give subnet mask.
97
98
99
100
101
102
103
104
105
106
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Enter Yes to get IP
dynamically from ISP if you
russ_l2tp
have not been assigned
Boolean choice
get_ip_from_isp
any static IP address.
Otherwise Enter No and
give valid static IP address
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
russ_l2tp
assign a DNS address to Boolean choice
get_dns_from_isp
the router using L2TP
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
IP address
russ_l2tp
Valid primary DNS Server
AAA.BBB.CCC.DDD where
primary_dns
IP Address.
each part is in the range 0-255.
IP address
russ_l2tp
Valid secondary DNS
AAA.BBB.CCC.DDD where
secondary_dns
Server IP Address.
each part is in the range 0-255.
Selects the Mac Address
russ_l2tp mac_type
Types of mac address source.
Source.
MAC address
russ_l2tp
AA:BB:CC:DD:EE:FF where
Enter Valid MAC address.
mac_address
each part is in the range 00FF.
If ISP Type selected is
japanese multiple pppoe,
japanese_pppoe
this field gives you options
to configure credentials.
japanese_pppoe
configure the primary
primary_profile
pppoe profile
japanese_pppoe
Enter the username to
String, Max 64 characters and
primary_profile
authenticate.
no ' or empty space or "
username
japanese_pppoe
Enter the password to
String, Max 16 characters and
primary_profile
authenticate.
no ' or empty space or "
password
140
S.No Command Name Description
107
108
109
110
111
112
113
114
115
116
117
japanese_pppoe
primary_profile
service
japanese_pppoe
primary_profile
authOpt
japanese_pppoe
primary_profile
connectivity_type
japanese_pppoe
primary_profile
idletime
japanese_pppoe
primary_profile
get_dns_from_isp
japanese_pppoe
primary_profile
primary_dns
japanese_pppoe
primary_profile
secondary_dns
japanese_pppoe
primary_profile
get_ip_from_isp
japanese_pppoe
primary_profile
static_ip
japanese_pppoe
primary_profile
subnet_mask
japanese_pppoe
secondary_profile
Type and Description
Enter the password to
authenticate.
String
Enter the Auth Option to
authenticate.
PPPOE Authentication Types.
Enter the connectivity type. ISP Connectivity Types.
Enter the idle time.
Idle timeout value type.
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
assign a DNS address to Boolean choice.
the router using PPPOE
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
IP address
Valid primary DNS Server
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
IP address
Valid secondary DNS
AAA.BBB.CCC.DDD where
Server IP Address.
each part is in the range 0-255.
Enter Yes to get IP
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
Boolean choice
assign an IP address to the
router using PPPOE
network protocol.
Otherwise Enter No and
give valid static IP address.
IP address
Valid IP Address.
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
Valid subnet mask.
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Configures the secondary
pppoe profile.
141
S.No Command Name Description
118
119
120
121
122
123
124
125
126
127
japanese_pppoe
secondary_profile
username
japanese_pppoe
secondary_profile
password
japanese_pppoe
secondary_profile
service
japanese_pppoe
secondary_profile
authOpt
japanese_pppoe
secondary_profile
connectivity_type
japanese_pppoe
secondary_profile
idletime
japanese_pppoe
secondary_profile
get_dns_from_isp
japanese_pppoe
secondary_profile
primary_dns
japanese_pppoe
secondary_profile
secondary_dns
japanese_pppoe
secondary_profile
get_ip_from_isp
Type and Description
Enter the username to
authenticate.
String, Max 64 characters and
no ' or empty space or "
Enter the password to
authenticate.
String, Max 16 characters and
no ' or empty space or "
Enter the password to
authenticate.
String
Enter the Auth Option to
authenticate.
PPPOE Authentication Types.
Enter the connectivity type. ISP Connectivity Types.
Enter the idle time.
Idle timeout value type.
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
assign a DNS address to Boolean choice
the router using PPPOE
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
IP address
Valid primary DNS Server
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
IP address
Valid secondary DNS
AAA.BBB.CCC.DDD where
Server IP Address.
each part is in the range 0-255.
Enter Yes to get IP
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
Boolean choice
assign an IP address to the
router using PPPOE
network protocol.
Otherwise Enter No and
give valid static IP address.
142
S.No Command Name Description
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
japanese_pppoe
secondary_profile
static_ip
japanese_pppoe
secondary_profile
subnet_mask
japanese_pppoe
mac_type
Type and Description
Valid IP Address.
Valid subnet mask.
Select the Mac Address
Source.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Types of mac address source
MAC address
japanese_pppoe
AA:BB:CC:DD:EE:FF where
Enter Valid MAC address.
mac_address
each part is in the range 00FF.
If ISP Type selected is Dual
PPPoE, this field gives you
dual_pppoe
options to configure Dual
Access PPPoE credentials.
dual_pppoe
Enter the username to
String, Max 64 characters and
username
authenticate.
no ' or empty space or "
dual_pppoe
Enter the password to
String, Max 16 characters and
password
authenticate.
no ' or empty space or "
Enter the service to
dual_pppoe service
String
authenticate.
Enter the Auth Option to
dual_pppoe authOpt
PPPOE Authentication Types.
authenticate.
dual_pppoe
Enter the connectivity type. ISP Connectivity Types.
connectivity_type
dual_pppoe idletime Enter the idle time.
Idle timeout value type.
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static Dns address.
The ISP will automatically
dual_pppoe
assign an DNS address to Boolean choice
get_dns_from_isp
the router using PPPOE
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
IP address
dual_pppoe
Valid primary DNS Server
AAA.BBB.CCC.DDD where
primary_dns
IP Address.
each part is in the range 0-255.
IP address
dual_pppoe
Valid secondary DNS
AAA.BBB.CCC.DDD where
secondary_dns
Server IP Address.
each part is in the range 0-255.
dual_pppoe
Enter Yes to get IP
Boolean choice
get_ip_from_isp
dynamically from ISP if you
143
S.No Command Name Description
Type and Description
have not been assigned
any static IP address. The
ISP will automatically
assign an IP address to the
router using PPPOE
network protocol.
Otherwise Enter No and
give valid static IP address.
143
dual_pppoe static_ip Valid IP Address.
144
dual_pppoe
subnet_mask
Valid subnet mask.
145
dual_pppoe
mac_type
Select the Mac Address
Source.
146
dual_pppoe
mac_address
147
148
149
150
151
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Types of mac address source
MAC address
AA:BB:CC:DD:EE:FF where
Enter Valid MAC address.
each part is in the range 00FF.
Enter Yes to get ip on
physical interface from
dhcp server in the internal
dual_pppoe
isp network. Otherwise
Boolean choice
get_ip_from_phy
Enter No and give valid
static IP address, subnet
mask and gateway.
IP address
dual_pppoe
Valid IP Address of
AAA.BBB.CCC.DDD where
static_ip_phy
physical interface.
each part is in the range 0-255.
IP address
dual_pppoe
Valid subnet mask of
AAA.BBB.CCC.DDD where
subnet_mask_phy physical network.
each part is in the range 0-255.
IP address
dual_pppoe
Valid gateway of physcial
AAA.BBB.CCC.DDD where
gateway_phy
network.
each part is in the range 0-255.
Enter Yes to get dns
dynamically from interal
ISP if you have not been
assigned any static Dns
dual_pppoe
address. The internal ISP
get_dns_from_isp_p will automatically assign an Boolean choice
hy
DNS address to the router
using Dhcp network
protocol. Otherwise Enter
No and give valid static dns
addresses.
144
S.No Command Name Description
152
153
154
155
Type and Description
Valid primary DNS Server IP address
dual_pppoe
IP Address of physical
AAA.BBB.CCC.DDD where
primary_dns_phy
network.
each part is in the range 0-255.
IP address
Valid secondary DNS
dual_pppoe
AAA.BBB.CCC.DDD where
secondary_dns_phy Server IP Address.
each part is in the range 0-255.
enable_vlan_tag
Enables vlan on wan1.
Boolean choice
vlan_Id
Enter Vlan Id.
Unsigned integer
11.32
net wan wan2 ipv4 configure
S.No Command Name Description
1
2
3
4
5
6
7
Type and Description
Saves ipv4 wan
configuration settings.
To revert to the previous
cancel
ipv4 wan configuration
settings.
Exit from the current
exit
configuration.
Select among the options:
STATIC, DHCP Client,
PPPoE, PPTP, L2TP,
isp_connection_type Russian PPTP, Russian
WAN2 ISP Types.
L2TP, Japanese Multiple
PPPoE, Dual Access
Pppoe, ThreeG
If ISP Type selected is
DHCPC, this field gives you
dhcpc
options to configure
DHCPC credentials
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
dhcpc
assign a DNS address to Boolean choice
get_dns_from_isp
the router using DHCP
network protocol.
Otherwise Enter No and
give valid static dns
addresses
IP address
Valid primary DNS Server
dhcpc primary_dns
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
save
145
S.No Command Name Description
Type and Description
8
dhcpc
secondary_dns
Valid secondary DNS
Server IP Address.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
9
dhcpc mac_type
Select Mac Address
source.
Types of mac address source.
10
dhcpc mac_address Valid MAC address.
11
dhcpc hostname
12
static
13
static ip_address
14
15
16
17
18
19
20
21
22
Enter the hostname.
If ISP Type selected is
STATIC, this field gives you
options to configure
STATIC credentials.
If Address Mode is Static,
give static ip.
IPv4 Subnet Mask. This is
usually provided by the ISP
static subnet_mask
or your network
administrator.
IP address of the ISP’s
static
gateway. This is usually
provided by the ISP or your
gateway_address
network administrator.
MAC address
AA:BB:CC:DD:EE:FF where
each part is in the range 00FF.
String
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
Valid primary DNS Server
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
IP address
static
Valid secondary DNS
AAA.BBB.CCC.DDD where
secondary_dns
Server IP Address.
each part is in the range 0-255.
Select the Mac Address
static mac_type
Types of mac address source.
Source.
MAC address
AA:BB:CC:DD:EE:FF where
static mac_address Enter Valid MAC address.
each part is in the range 00FF.
If ISP Type selected is
PPPoE, this field gives you
pppoe
options to configure PPPoE
credentials.
Enter the username to
String, Max 64 characters and
pppoe username
authenticate.
no ' or empty space or "
Enter the password to
String, Max 16 characters and
pppoe password
authenticate.
no ' or empty space or "
static primary_dns
146
S.No Command Name Description
23
pppoe service
24
pppoe authOpt
25
26
27
28
29
30
31
32
33
34
35
36
pppoe
connectivity_type
pppoe idletime
Type and Description
Enter the password to
authenticate.
Enter the Auth Option to
authenticate.
String
PPPOE Authentication Types.
Enter the connectivity type. ISP Connectivity Types.
Enter the idle time.
Idle timeout value type.
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
pppoe
assign a DNS address to Boolean choice
get_dns_from_isp
the router using PPPOE
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
IP address
Valid primary DNS Server
pppoe primary_dns
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
IP address
pppoe
Valid secondary DNS
AAA.BBB.CCC.DDD where
secondary_dns
Server IP Address.
each part is in the range 0-255.
enable_vlan_tag
Enables vlan on wan2.
Boolean choice
vlan_Id
Enter Vlan Id.
Unsigned integer
Enter Yes to get IP
dynamically from ISP if you
have not been assigned
any static IP address. The
pppoe
ISP will automatically
Boolean choice
get_ip_from_isp
assign an IP address to the
router using PPPOE
network protocol.
Otherwise Enter No and
give valid static IP address.
IP address
pppoe static_ip
Valid IP Address.
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
pppoe subnet_mask Valid subnet mask.
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Select the Mac Address
pppoe mac_type
Types of mac address source.
Source.
MAC address
pppoe mac_address Enter Valid MAC address.
AA:BB:CC:DD:EE:FF where
147
S.No Command Name Description
Type and Description
each part is in the range 00FF.
37
pptp
38
pptp username
39
pptp password
41
pptp
mmpe_encryption
pptp split_tunnel
42
pptp gateway
43
pptp server_address
40
If ISP Type selected is
PPTP, this field gives you
options to configure PPTP
credentials.
Enter the username to log
in.
Enter the password to log
in.
Enter the MMPE
Encryption.
Selects the split_tunnel.
Gateway assigned by the
ISP to make a connection
with the ISP server.
IP address of the PPTP
server (if applicable).
45
pptp
connectivity_type
pptp idle_time
46
pptp ip_address
If Address Mode is Static,
give static ip.
47
pptp subnet_mask
If Address Mode is Static,
give subnet mask.
44
48
pptp
get_ip_from_isp
49
pptp
get_dns_from_isp
String, Max 64 characters and
no ' or empty space or "
String, Max 16 characters and
no ' or empty space or "
Boolean choice.
Boolean choice.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Sets the ISP Type.
ISP Connectivity Types.
Sets the ISP Type.
Idle timeout value type.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Enter Yes to get IP
dynamically from ISP if you
have not been assigned
Boolean choice
any static IP address.
Otherwise Enter No and
give valid static IP address.
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
assign a DNS address to Boolean choice
the router using PPTP
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
148
S.No Command Name Description
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
Type and Description
IP address
Valid primary DNS Server
pptp primary_dns
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
IP address
Valid secondary DNS
AAA.BBB.CCC.DDD where
pptp secondary_dns
Server IP Address.
each part is in the range 0-255.
Select the Mac Address
pptp mac_type
Types of mac address source.
Source.
MAC address
AA:BB:CC:DD:EE:FF where
pptp mac_address Enter Valid MAC address.
each part is in the range 00FF.
If ISP Type selected is
Russian dual access
russ_pptp
PPTP, this field gives you
options to configure
credentials.
Enter the username to log String, Max 64 characters and
russ_pptp username
in.
no ' or empty space or "
Enter the password to log String, Max 16 characters and
russ_pptp password
in.
no ' or empty space or "
russ_pptp
Enter the MMPE
Boolean choice
mmpe_encryption Encryption.
russ_pptp
Selects the split_tunnel.
Boolean choice
split_tunnel
IP address
russ_pptp
IP address of the PPTP
AAA.BBB.CCC.DDD where
server_address
server (if applicable).
each part is in the range 0-255.
russ_pptp
Sets the ISP Type.
ISP Connectivity Types.
connectivity_type
russ_pptp idle_time Sets the ISP Type.
Idle timeout value type.
IP address
russ_pptp
If Address Mode is Static,
AAA.BBB.CCC.DDD where
ip_address
give static ip.
each part is in the range 0-255.
IP address
russ_pptp
If Address Mode is Static,
AAA.BBB.CCC.DDD where
subnet_mask
give subnet mask.
each part is in the range 0-255.
Gateway assigned by the IP address
russ_pptp gateway ISP to make a connection AAA.BBB.CCC.DDD where
with the ISP server.
each part is in the range 0-255.
Enter Yes to get IP
dynamically from ISP if you
russ_pptp
have not been assigned
Boolean choice
get_ip_from_isp
any static IP address.
Otherwise Enter No and
give valid static IP address.
149
S.No Command Name Description
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
Type and Description
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
russ_pptp
assign a DNS address to Boolean choice
get_dns_from_isp
the router using PPTP
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
IP address
russ_pptp
Valid primary DNS Server
AAA.BBB.CCC.DDD where
primary_dns
IP Address.
each part is in the range 0-255.
IP address
russ_pptp
Valid secondary DNS
AAA.BBB.CCC.DDD where
secondary_dns
Server IP Address.
each part is in the range 0-255.
Selects the Mac Address
russ_pptp mac_type
Types of mac address source.
Source.
MAC address
russ_pptp
AA:BB:CC:DD:EE:FF where
Enter Valid MAC address.
mac_address
each part is in the range 00FF.
If ISP Type selected is
L2TP, this field gives you
l2tp
options to configure L2TP
credentials.
Enter the username to log String, Max 64 characters and
l2tp username
in.
no ' or empty space or "
Enter the password to log String, Max 16 characters and
l2tp password
in.
no ' or empty space or "
l2tp secret
Enter the secret to log in. String
l2tp split_tunnel
Selects the split_tunnel.
Boolean choice
IP address assigned by the IP address
l2tp gateway
ISP to make a connection AAA.BBB.CCC.DDD where
with the ISP server.
each part is in the range 0-255.
IP address
IP address of the L2TP
l2tp server_address
AAA.BBB.CCC.DDD where
server (if applicable).
each part is in the range 0-255.
l2tp
Sets the ISP Type.
ISP Connectivity Types.
connectivity_type
l2tp idle_time
Sets the ISP Type.
Idle timeout value type.
IP address
If Address Mode is Static,
l2tp ip_address
AAA.BBB.CCC.DDD where
give static ip.
each part is in the range 0-255.
150
S.No Command Name Description
81
82
83
84
85
86
87
88
89
90
91
92
l2tp subnet_mask
Type and Description
If Address Mode is Static,
give subnet mask.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Enter Yes to get IP
dynamically from ISP if you
have not been assigned
l2tp get_ip_from_isp
Boolean choice
any static IP address.
Otherwise Enter No and
give valid static IP address.
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
l2tp
assign a DNS address to Boolean choice
get_dns_from_isp
the router using L2TP
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
IP address
Valid primary DNS Server
l2tp primary_dns
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
IP address
Valid secondary DNS
l2tp secondary_dns
AAA.BBB.CCC.DDD where
Server IP Address.
each part is in the range 0-255.
Selects the Mac Address
l2tp mac_type
Types of mac address source.
Source.
MAC address
AA:BB:CC:DD:EE:FF where
l2tp mac_address Enter Valid MAC address.
each part is in the range 00FF.
If ISP Type selected is
Russian DualAccessL2TP,
russ_l2tp
this field gives you options
to configure L2TP
credentials.
Enter the username to log String, Max 64 characters and
russ_l2tp username
in.
no ' or empty space or "
Enter the password to log String, Max 16 characters and
russ_l2tp password
in.
no ' or empty space or "
russ_l2tp secret
Enter the secret to log in. String
russ_l2tp
Select the split_tunnel.
Boolean choice
split_tunnel
151
S.No Command Name Description
93
russ_l2tp
server_address
Type and Description
IP address of the L2TP
server (if applicable).
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Set ISP Type.
ISP Connectivity Types.
Set ISP Type.
Idle timeout value type.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
95
russ_l2tp
connectivity_type
russ_l2tp idle_time
96
russ_l2tp ip_address
If Address Mode is Static,
give static ip.
97
russ_l2tp
subnet_mask
If Address Mode is Static,
give subnet mask.
94
98
99
100
101
102
103
104
105
Gateway assigned by the
ISP to make a connection
with the ISP server.
Enter Yes to get IP
dynamically from ISP if you
russ_l2tp
have not been assigned
Boolean choice.
get_ip_from_isp
any static IP address.
Otherwise Enter No and
give valid static IP address.
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
russ_l2tp
assign a DNS address to Boolean choice.
get_dns_from_isp
the router using L2TP
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
IP address
russ_l2tp
Valid primary DNS Server
AAA.BBB.CCC.DDD where
primary_dns
IP Address.
each part is in the range 0-255.
IP address
russ_l2tp
Valid secondary DNS
AAA.BBB.CCC.DDD where
secondary_dns
Server IP Address.
each part is in the range 0-255.
Selects the Mac Address
russ_l2tp mac_type
Types of mac address source.
Source.
MAC address
russ_l2tp
AA:BB:CC:DD:EE:FF where
Enter Valid MAC address.
mac_address
each part is in the range 00FF.
If ISP Type selected is
japanese_pppoe
japanese multiple pppoe,
russ_l2tp gateway
152
S.No Command Name Description
106
107
108
109
110
111
112
113
114
115
116
japanese_pppoe
primary_profile
japanese_pppoe
primary_profile
username
japanese_pppoe
primary_profile
password
japanese_pppoe
primary_profile
service
japanese_pppoe
primary_profile
authOpt
japanese_pppoe
primary_profile
connectivity_type
japanese_pppoe
primary_profile
idletime
japanese_pppoe
primary_profile
get_dns_from_isp
japanese_pppoe
primary_profile
primary_dns
japanese_pppoe
primary_profile
secondary_dns
japanese_pppoe
primary_profile
get_ip_from_isp
Type and Description
this field gives you options
to configure credentials.
Configure the primary
pppoe profile.
Enter the username to
authenticate.
String, Max 64 characters and
no ' or empty space or "
Enter the password to
authenticate.
String, Max 16 characters and
no ' or empty space or "
Enter the password to
authenticate.
String
Enter the Auth Option to
authenticate.
PPPOE Authentication Types.
Enter the connectivity type. ISP Connectivity Types.
Enter the idle time.
Idle timeout value type.
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
assign a DNS address to Boolean choice
the router using PPPOE
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
IP address
Valid primary DNS Server
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
IP address
Valid secondary DNS
AAA.BBB.CCC.DDD where
Server IP Address.
each part is in the range 0-255.
Enter Yes to get IP
dynamically from ISP if you
have not been assigned
any static IP address. The
Boolean choice
ISP will automatically
assign an IP address to the
router using PPPOE
network protocol.
153
S.No Command Name Description
Type and Description
Otherwise Enter No and
give valid static IP address.
117
118
119
120
121
122
123
124
125
126
127
128
japanese_pppoe
primary_profile
static_ip
japanese_pppoe
primary_profile
subnet_mask
japanese_pppoe
secondary_profile
japanese_pppoe
secondary_profile
username
japanese_pppoe
secondary_profile
password
japanese_pppoe
secondary_profile
service
japanese_pppoe
secondary_profile
authOpt
japanese_pppoe
secondary_profile
connectivity_type
japanese_pppoe
secondary_profile
idletime
japanese_pppoe
secondary_profile
get_dns_from_isp
japanese_pppoe
secondary_profile
primary_dns
japanese_pppoe
secondary_profile
secondary_dns
Valid IP Address.
Valid subnet mask.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Configures the secondary
pppoe profile.
Enter the username to
authenticate.
String, Max 64 characters and
no ' or empty space or "
Enter the password to
authenticate.
String, Max 16 characters and
no ' or empty space or "
Enter the password to
authenticate.
String
Enter the Auth Option to
authenticate.
PPPOE Authentication Types.
Enter the connectivity type. ISP Connectivity Types.
Enter the idle time.
Idle timeout value type.
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
assign a DNS address to Boolean choice.
the router using PPPOE
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
IP address
Valid primary DNS Server
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
IP address
Valid secondary DNS
AAA.BBB.CCC.DDD where
Server IP Address.
each part is in the range 0-255.
154
S.No Command Name Description
129
130
131
132
133
134
135
136
137
138
139
140
141
Type and Description
Enter Yes to get IP
dynamically from ISP if you
have not been assigned
any static IP address. The
japanese_pppoe
ISP will automatically
Boolean choice
secondary_profile
assign an IP address to the
get_ip_from_isp
router using PPPOE
network protocol.
Otherwise Enter No and
give valid static IP address.
japanese_pppoe
IP address
secondary_profile Valid IP Address.
AAA.BBB.CCC.DDD where
static_ip
each part is in the range 0-255.
japanese_pppoe
IP address
secondary_profile Valid subnet mask.
AAA.BBB.CCC.DDD where
subnet_mask
each part is in the range 0-255.
japanese_pppoe
Select the Mac Address
Types of mac address source.
mac_type
Source.
MAC address
AA:BB:CC:DD:EE:FF where
japanese_pppoe
Enter Valid MAC address.
mac_address
each part is in the range 00FF.
If ISP Type selected is Dual
PPPoE, this field gives you
dual_pppoe
options to configure Dual
Access PPPoE credentials.
dual_pppoe
Enter the username to
String, Max 64 characters and
username
authenticate.
no ' or empty space or "
dual_pppoe
Enter the password to
String, Max 16 characters and
password
authenticate.
no ' or empty space or "
Enter the service to
dual_pppoe service
String
authenticate.
Enter the Auth Option to
dual_pppoe authOpt
PPPOE Authentication Types.
authenticate.
dual_pppoe
Enter the connectivity type. ISP Connectivity Types.
connectivity_type
dual_pppoe idletime Enter the idle time.
Idle timeout value type.
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static Dns address.
dual_pppoe
The ISP will automatically Boolean choice
get_dns_from_isp
assign a DNS address to
the router using PPPOE
network protocol.
Otherwise Enter No and
155
S.No Command Name Description
Type and Description
give valid static dns
addresses.
142
143
144
145
146
147
148
149
150
151
152
IP address
Valid primary DNS Server
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
IP address
dual_pppoe
Valid secondary DNS
AAA.BBB.CCC.DDD where
secondary_dns
Server IP Address.
each part is in the range 0-255.
Enter Yes to get IP
dynamically from ISP if you
have not been assigned
any static IP address. The
dual_pppoe
ISP will automatically
Boolean choice
get_ip_from_isp
assign an IP address to the
router using PPPOE
network protocol.
Otherwise Enter No and
give valid static IP address.
IP address
dual_pppoe static_ip Valid IP Address.
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
dual_pppoe
Valid subnet mask.
AAA.BBB.CCC.DDD where
subnet_mask
each part is in the range 0-255.
dual_pppoe
Select the Mac Address
Types of mac address source.
mac_type
Source.
MAC address
dual_pppoe
AA:BB:CC:DD:EE:FF where
Enter Valid MAC address.
mac_address
each part is in the range 00FF.
Enter Yes to get ip on
physical interface from
dhcp server in the internal
dual_pppoe
isp network. Otherwise
Boolean choice.
get_ip_from_phy
Enter No and give valid
static IP address, subnet
mask and gateway.
IP address
dual_pppoe
Valid IP Address of
AAA.BBB.CCC.DDD where
static_ip_phy
physical interface.
each part is in the range 0-255.
IP address
dual_pppoe
Valid subnet mask of
AAA.BBB.CCC.DDD where
subnet_mask_phy physical network
each part is in the range 0-255.
IP address
dual_pppoe
Valid gateway of physcial
AAA.BBB.CCC.DDD where
gateway_phy
network.
each part is in the range 0-255.
dual_pppoe
primary_dns
156
S.No Command Name Description
153
154
155
156
157
158
159
160
161
162
163
164
Type and Description
Enter Yes to get dns
dynamically from interal
ISP if you have not been
assigned any static Dns
dual_pppoe
address. The internal ISP
get_dns_from_isp_p will automatically assign a Boolean choice.
hy
DNS address to the router
using Dhcp network
protocol. Otherwise Enter
No and give valid static dns
addresses.
Valid primary DNS Server IP address
dual_pppoe
IP Address of physical
AAA.BBB.CCC.DDD where
primary_dns_phy
network.
each part is in the range 0-255.
IP address
dual_pppoe
Valid secondary DNS
AAA.BBB.CCC.DDD where
secondary_dns_phy Server IP Address.
each part is in the range 0-255.
If ISP Type selected is
THREEG, this field gives
threeg
you options to configure
THREEG credentials.
Enter the username to
String, Max 256 characters and
threeg username
authenticate.
no ' or empty space or "
Enter the password to
String, Max 256 characters and
threeg password
authenticate.
no ' or empty space or "
Enter the dail number to
threeg dial_number
String
connect.
Enter the auth type to
THREEG Authentication
threeg authMethod
connect.
Types.
threeg apn
Enter the apn to connect. String
threeg
Sets the ISP Type.
ISP Connectivity Types.
connectivity_type
threeg idle_time
Sets the ISP Type.
Idle timeout value type.
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
any static IP address. The
ISP will automatically
threeg
assign a DNS address to Boolean choice
get_dns_from_isp
the router using THREEG
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
157
S.No Command Name Description
165
166
Type and Description
IP address
Valid primary DNS Server
threeg primary_dns
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
IP address
threeg
Valid secondary DNS
AAA.BBB.CCC.DDD where
secondary_dns
Server IP Address.
each part is in the range 0-255.
11.33
net wan wan3 threeG configure
S.No Command Name Description
1
save
2
cancel
3
exit
4
Username
5
Password
6
Dial_number
7
AuthMethod
8
Apn
9
Reconnect_mode
10
Idle_time
11
Get_dns_from_isp
Type and Description
Saves wan3 threeG
configuration settings.
To revert to the previous
wan3 threeG configuration
settings.
Saves wan3 threeG
configuration settings and
current mode.
Enter the username
required to log in to the
ISP.
Enter the password
required to login to the ISP.
Enter the number to dial to
the ISP.
Selects one of None, PAP
or CHAP Authentication
Protocols to connect to the
ISP.
Enter the APN (Access
Point Name) provided by
the ISP.
Selects Always On: The
connection is always on
OR On Demand: The
connection will close after
time specified in Idle_time
field.
The connection is
automatically ended if it is
idle for a specified number
of minutes.
Enter Yes to get dns
dynamically from ISP if you
have not been assigned
158
String, Max 256 characters and
no ' or empty space or "
String, Max 256 characters and
no ' or empty space or "
String
THREEG Authentication
Types.
String
ISP Connectivity Types.
Idle timeout value type.
Boolean choice
S.No Command Name Description
Type and Description
any static IP address. The
ISP will automatically
assign a DNS address to
the router using THREEG
network protocol.
Otherwise Enter No and
give valid static dns
addresses.
12
Primary_dns
13
Secondary_dns
11.34
IP address
Valid primary DNS Server
AAA.BBB.CCC.DDD where
IP Address.
each part is in the range 0-255.
IP address
Valid secondary DNS
AAA.BBB.CCC.DDD where
Server IP Address.
each part is in the range 0-255.
net wan mode configure
S.No Command Name Description
1
save
2
cancel
3
exit
4
wan_mode_type
5
loadbalancing
6
loadbalancing algo
7
8
9
loadbalancing
failover_method
loadbalancing
spillover
loadbalancing
spillover
load_tolerance
Type and Description
Saves wan mode
configuration settings.
To revert to the previous
ipv4 wan configuration
settings.
Saves wan mode
configuration settings and
current mode.
Select among the options:
SINGLE_WAN,
Types of WAN modes.
LOAD_BALANCING,
AUTO_ROLLOVER
If Mode Type selected is
LOAD_BALANCING, this
field gives you options to
configure
LOAD_BALANCING
credentials
Enter the type of
Types of Loadbalancing
LoadBalancing Algo
algorithms.
Selects the Fail Over
detection method
Spill Over Configuration
Parameters
Percentage of max
bandwidth after which the
159
Unsigned integer.
S.No Command Name Description
10
11
12
13
14
15
16
17
18
19
20
Type and Description
router switches to
secondary WAN
Sets the maximum
bandwidth tolerable by the
Primary WAN. If the
loadbalancing
bandwidth goes below the
spillover
load tolerance value of
max_bandwidth
configured Max Bandwidth,
the router switches to
secondary WAN.
Sets the maximum
bandwidth unit tolerable by
the Primary WAN. If the
loadbalancing
bandwidth goes below the
spillover
load tolerance value of
max_bandwidth_unit
configured Max Bandwidth,
the router switches to
secondary WAN.
loadbalancing
Select the Fail Over
failover_method
detection method
type
loadbalancing
failover_method dns
loadbalancing
failover_method dns
ipaddr_wan1
loadbalancing
failover_method dns
ipaddr_wan2
loadbalancing
failover_method dns
ipaddr_wan3
loadbalancing
failover_method
ping
loadbalancing
failover_method
ping ipaddr_wan1
loadbalancing
failover_method
ping ipaddr_wan2
loadbalancing
failover_method
ping ipaddr_wan3
160
Unsigned integer.
Types of max bandwidth unit.
Types of Faillover Detection
methods.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
S.No Command Name Description
23
loadbalancing
failover_method
retry_interval
loadbalancing
failover_method
retry_attempts
rollover
24
rollover wan_port
21
22
25
26
27
28
29
30
31
32
33
34
35
36
37
Type and Description
Idle timeout value type.
Number in range of 2 to 999.
Wan Mode in Auto Rollover
Selects the Auto rollover
WAN interface type
WAN port
Select the Auto rollover
WAN interface type
WAN port
Selects the Fail Over
detection method
rollover
wan_port_Sec
rollover
failover_method
rollover
Selects the Fail Over
failover_method
detection method
type
rollover
failover_method dns
rollover
failover_method dns
ipaddr_wan1
rollover
failover_method dns
ipaddr_wan2
rollover
failover_method dns
ipaddr_wan3
rollover
failover_method
ping
rollover
failover_method
ping ipaddr_wan1
rollover
failover_method
ping ipaddr_wan2
rollover
failover_method
ping ipaddr_wan3
rollover
failover_method
retry_interval
rollover
failover_method
retry_attempts
161
Types of Faillover Detection
methods.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Idle timeout value type.
Number in range of 2 to 999.
S.No Command Name Description
Type and Description
38
39
WAN interface type.
singleport
singleport wan_port
11.35
net wan port_setup configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
respond_ping
5
6
7
wan1
wan1 mtu_type
wan1 mtu_size
8
wan1 port_speed
9
10
11
wan2
wan2 mtu_type
wan2 mtu_size
12
wan2 port_speed
11.36
Type and Description
Saves WAN port settings.
Saves WAN port settings
and exit current mode.
To revert to the previous
WAN port settings settings.
Disables or Enables ping
on WAN side
WAN1 port settings
Enter MTU type.
Enter MTU size for WAN1.
Enter the type of port
speed for WAN1.
WAN2 port settings.
Enter MTU type.
Enter MTU size for WAN2.
Enter the type of port
speed for WAN2.
2
3
4
5
Port Speed types.
Mtu type.
Mtu size.
Port Speed types.
Type and Description
Saves WAN port vlan
settings.
Saves WAN vlan settings
exit
and exit current mode.
To revert to the previous
cancel
WAN vlan settings settings.
Disables or Enables Trunk
trunk_mode
Boolean choice
Mode Vlan.
Disables or Enables Force
force_recegotiation
Boolean choice
renegotiation on WAN.
save
11.37
net wan vlan_setup vlanId_Add
S.No Command Name Description
1
Mtu type.
Mtu size.
net wan vlan_setup configure
S.No Command Name Description
1
Boolean choice.
save
Type and Description
Saves WAN port vlan Add
settings.
162
S.No Command Name Description
2
exit
3
cancel
4
vlan_Id
11.38
Type and Description
Saves WAN vlan Add
settings and exit current
mode.
To revert to the previous
WAN vlan settings settings.
Enter Vlan Id.
Unsigned integer
net wan vlan_setup vlanId_Delete
S.No Command Name Description
1
save
2
exit
3
cancel
4
vlan_Id
11.39
Type and Description
Saves WAN port vlan
Delete settings.
Saves WAN vlan Delete
settings and exit current
mode.
To revert to the previous
WAN vlan settings settings.
Enter Vlan Id.
Unsigned integer
net wan configurable_port configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
port_name
11.40
Type and Description
Saves Configurable WAN
settings.
Saves configurable WAN
settings and exit current
mode.
To revert to the previous
Configurable WAN settings
settings.
Selects the configurable
WAN interface type
port type.
net wan wan1 ipv6 configure
S.No Command Name Description
1
save
2
cancel
Type and Description
Saves ipv6 wan1
configuration settings.
To revert to the previous
ipv6 wan configuration
settings.
163
S.No Command Name Description
3
exit
4
isp_type
5
dhcpc
6
7
8
9
10
11
12
13
14
15
16
17
18
19
Type and Description
Saves ipv6 wan1
configuration settings and
current mode.
Sets the ISP Type.
Sets the DHCPC
Configurations.
ISP Types.
dhcpc
stateless_mode_ena Sets the Stateless Mode. Stateless mode configuration.
ble
dhcpc
prefix_delegation_e Enables prefix delegation. Boolean choice
nable
static
Sets ipv6 address.
IP address
abcd:abcd:abcd:abcd:abcd:abc
static ip_address
Sets ipv6 address.
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
static prefix
Sets the prefix length.
Unsigned integer
IP address
static
Sets the ipv6 gateway
abcd:abcd:abcd:abcd:abcd:abc
gateway_address
address.
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
IP address
Sets the ipv6 primary dns abcd:abcd:abcd:abcd:abcd:abc
static primary_dns
address.
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
IP address
static
Sets the ipv6 secondary
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
secondary_dns
dns address.
in the range [0-9A-Fa-f:]
PPPoE over ipv6
pppoe
configuration parameters.
Enter the username to
pppoe username
String
authenticate.
Enter the password to
pppoe password
String
authenticate.
Enter the Auth Option to
pppoe authOpt
PPPOE Authentication Types.
authenticate.
Enter the dhcpv6 option for
pppoe dhcpv6_opt configuring additional
WAN interface type
parameters.
IP address
Valid primary DNS Server abcd:abcd:abcd:abcd:abcd:abc
pppoe primary_dns
IP Address.
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
164
S.No Command Name Description
20
pppoe
secondary_dns
11.41
Type and Description
Valid secondary DNS
Server IP Address.
net wan wan2 ipv6 configure
S.No Command Name Description
1
save
2
cancel
3
exit
4
isp_type
5
dhcpc
6
7
8
9
10
11
12
13
14
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
Type and Description
Saves ipv6 wan2
configuration settings.
To revert to the previous
ipv6 wan2 configuration
settings.
Saves ipv6 wan2
configuration settings and
current mode.
Sets the ISP Type.
Sets the DHCPC
Configurations.
ISP Types.
dhcpc
stateless_mode_ena Sets the Stateless Mode. Stateless mode configuration.
ble
dhcpc
prefix_delegation_e Enables prefix delegation. Boolean choice
nable
static
Sets the ipv6 address.
IP address
abcd:abcd:abcd:abcd:abcd:abc
static ip_address
Sets the ipv6 address.
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
static prefix
Sets the prefix length.
Unsigned integer
IP address
static
Sets the ipv6 gateway
abcd:abcd:abcd:abcd:abcd:abc
gateway_address
address.
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
IP address
Sets the ipv6 primary dns abcd:abcd:abcd:abcd:abcd:abc
static primary_dns
address.
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
IP address
static
Sets the ipv6 secondary
abcd:abcd:abcd:abcd:abcd:abc
secondary_dns
dns address.
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
PPPoE over ipv6
pppoe
configuration parameters.
165
S.No Command Name Description
Type and Description
15
pppoe username
Enter the username to
authenticate.
16
pppoe password
Enter the password to
authenticate.
17
pppoe authOpt
18
19
20
String
String
Enter the Auth Option to
PPPOE Authentication Types.
authenticate.
Enter the dhcpv6 option for
pppoe dhcpv6_opt configuring additional
WAN interface type
parameters.
IP address
Valid primary DNS Server abcd:abcd:abcd:abcd:abcd:abc
pppoe primary_dns
IP Address.
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
IP address
pppoe
Valid secondary DNS
abcd:abcd:abcd:abcd:abcd:abc
secondary_dns
Server IP Address.
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
11.42 net routing ospfv2
configure <interface>
S.No Command Name Description
1
<interface>
2
save
3
exit
4
cancel
5
enable
6
area
7
priority
Type and Description
Ospfv2 configuration mode. OSPF Interfaces type
Saves OSPFv2
configuration settings.
Saves OSPFv2
configuration settings and
exit current mode.
To revert to the previous
configuration settings.
Enables/Disables OSPFv2
Boolean choice
for a particular interface.
Gives the area to which the
Unsigned integer
interface belongs.
Helps to determine the
OSPFv2 designated router
for a network. The router
with the highest priority will
be more eligible to become
Unsigned integer
Designated Router. Setting
the value to 0, makes the
router ineligible to be come
Designated Router. The
default value is 1.
166
S.No Command Name Description
8
hello_interval
9
dead_interval
10
cost
11
auth_type
12
auth_key
13
14
md5_key_id
md5_auth_key
Type and Description
The number of seconds for
HelloInterval timervalue.
Setting this value, Hello
packet will be sent every
timer value seconds on the
specified interface. This
value must be the same for
all routers attached to a
common network. The
default value is 10
seconds.
The number of seconds
that a device’s hello
packets must not have
been seen before its
neighbors declare the
OSPF router down. This
value must be the same for
all routers attached to a
common network. The
default value is 40
seconds.
The cost of sending a
packet on an OSPFv2
interface.
Gives the authentication
type used for OSPFv2. If
Authentication type is
none, the interface does
not authenticate ospf
packets. If Authentication
Type is Simple, ospf
packets are authenticated
using simple text key. If
Authentication Type is
MD5, the interface
authenticates ospf packets
with MD5 authentication.
Text Key for Simple
Authentication type.
Gives the MD5 Key id.
Gives the MD5 text key.
167
Unsigned integer
Unsigned integer
Unsigned integer
OSPF Authentication type
String
Unsigned integer
String
11.43 net routing ospfv3
configure <interface>
S.No Command Name Description
Type and Description
1
<interface>
Ospfv3 configuration mode. OSPF Interfaces type
2
save
Saves OSPFv3
configuration settings.
3
exit
4
cancel
5
enable
6
priority
7
hello_interval
8
dead_interval
Saves OSPFv3
configuration settings and
exit current mode.
To revert to the previous
configuration settings.
Enables/Disables OSPFv3
for a particular interface.
Helps to determine the
OSPFv3 designated router
for a network.The router
with the highest priority will
be more eligible to become
Designated Router. Setting
the value to 0, makes the
router ineligible to beco me
Designated Router. The
default value is 1.
The number of seconds for
HelloInterval timer
value.Setting this value,
Hello packet will be sent
every timer value seconds
on the specified interface.
This value must be the
same for all routers
attached to a common
network. The default value
is 10 seconds.
The number of seconds
that a device’s hello
packets must not have
been seen before its
neighbors declare the
OSPF router down. This
value must be the same for
all routers attached to a
common network. The
defaul t value is 40
seconds.
168
Boolean choice
Unsigned integer
Unsigned integer
Unsigned integer
S.No Command Name Description
9
cost
11.44
Type and Description
The cost of sending a
packet on an OSPFv3
interface.
16.44 net routing protocol_binding add
S.No Command Name Description
Type and Description
Saves Protocol-Binding
rules configuration settings.
Saves Protocol Binding
rules configuration settings
and exit current mode.
To revert to the previous
configuration settings.
Available Service.
service type
Local gateway type.
WAN interface type
Source network type.
Firewall rule address type.
1
save
2
exit
3
cancel
4
5
6
Service
Local_Gateway
Source_Network
Destination_Networ
Destination network type.
k
7
Unsigned integer
8
source_address_sta Starting IP of the Source
rt
Network.
9
source_address_en Ending IP of the Source
d
user.
10
destination_address Sets the start IP of the
_start
Destination user range.
11
destination_address Sets the last IP of the
_end
Destiation use range.
Firewall rule address type.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
11.45 net routing protocol_binding
edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
Type and Description
Protocol_binding rules
Unsigned integer
configuration mode.
Saves Protocol-Binding
rules configuration settings.
Saves Protocol Binding
rules configuration settings
and exit current mode.
169
S.No Command Name Description
4
5
6
7
8
Type and Description
To revert to the previous
cancel
configuration settings.
Service
Available Service.
Local_Gateway
Local gateway type.
Source_Network
Source network type.
Destination_Network Destination network type.
9
source_address_sta
rt
10
source_address_en
d
11
destination_address
_start
12
destination_address
_end
service type
WAN interface type
firewall rule address type
firewall rule address type
IP address
Starting IP of the Source
AAA.BBB.CCC.DDD where
Network.
each part is in the range 0-255
IP address
Ending IP of the Source
AAA.BBB.CCC.DDD where
user.
each part is in the range 0-255
IP address
Start IP of the Destination
AAA.BBB.CCC.DDD where
user.
each part is in the range 0-255
IP address
Ending IP of the Destiation
AAA.BBB.CCC.DDD where
user.
each part is in the range 0-255
11.46 net routing protocol_binding
enable <row_id>
S.No Command Name Description
1
2
3
4
5
6
7
8
9
10
Type and Description
Protocol_binding rules
Unsigned integer
configuration mode.
Saves Protocol-Binding
save
rules configuration settings.
Saves Protocol Binding
exit
rules configuration settings
and exit current mode.
To revert to the previous
cancel
configuration settings.
Service
Available Service
Service type.
Local_Gateway
Local gateway type.
WAN interface type.
Source_Network
Source network type.
Firewall rule address type.
Destination_Network Destination network type. Firewall rule address type.
IP address
source_address_sta Starting IP of the Source
AAA.BBB.CCC.DDD where
rt
Network.
each part is in the range 0-255.
IP address
source_address_en Ending IP of the Source
AAA.BBB.CCC.DDD where
d
user.
each part is in the range 0-255.
<row_id>
170
S.No Command Name Description
Type and Description
11
destination_address First IP of the Destination
_start
user address range.
12
destination_address Last IP of the Destiation
_end
user address range.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
11.47 net routing protocol_binding
disable <row_id>
S.No Command Name Description
1
2
3
4
5
6
7
8
9
10
11
12
Type and Description
Protocol_binding rules
Unsigned integer.
configuration mode.
Saves Protocol-Binding
save
rules configuration settings.
Saves Protocol Binding
exit
rules configuration settings
and exit current mode.
To revert to the previous
cancel
configuration settings.
Service
Available Service.
Service type.
Local_Gateway
Local gateway type.
WAN interface type.
Source_Network
Source network type.
Firewall rule address type.
Destination_Network Destination network type. Firewall rule address type.
IP address
source_address_sta First IP of the Source
AAA.BBB.CCC.DDD where
rt
Network.
each part is in the range 0-255.
IP address
source_address_en
Last IP of the Source user. AAA.BBB.CCC.DDD where
d
each part is in the range 0-255.
IP address
destination_address First IP of the Destination
AAA.BBB.CCC.DDD where
_start
user.
each part is in the range 0-255.
IP address
destination_address Last IP of the Destiation
AAA.BBB.CCC.DDD where
_end
user.
each part is in the range 0-255.
<row_id>
11.48 net routing protocol_binding
delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Protocol_binding rules
configuration mode.
171
Unsigned integer.
S.No Command Name Description
2
3
4
5
6
7
8
9
10
11
12
Type and Description
Saves Protocol-Binding
save
rules configuration settings.
Save Protocol Binding rules
exit
configuration settings and
exit current mode.
To revert to the previous
cancel
configuration settings.
Service
Available Service
Service type.
Local_Gateway
Local gateway type.
WAN interface type.
Source_Network
Source network type.
Firewall rule address type.
Destination_Network Destination network type. Firewall rule address type.
IP address
source_address_sta First IP address of the
AAA.BBB.CCC.DDD where
rt
Source Network.
each part is in the range 0-255.
IP address
source_address_en
Last IP of the Source user. AAA.BBB.CCC.DDD where
d
each part is in the range 0-255.
IP address
destination_address First IP of the Destination
AAA.BBB.CCC.DDD where
_start
user.
each part is in the range 0-255.
IP address
destination_address Last IP of the Destiation
AAA.BBB.CCC.DDD where
_end
user.
each part is in the range 0-255.
11.49
net radvd configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
enable
5
mode
6
interval
Type and Description
Saves radvd configuration
settings.
Saves radvd configuration
settings and exit current
mode.
To revert to the previous
radvd configuration
settings.
Enables the RADVD
process here to allow
Boolean choice
stateless auto configuration
of the IPv6 LAN network.
Selects N to send router
Radvd advertizement mode
advertisements (RA’s) to all
type.
interfaces, else Y.
The time in seconds
PPPOE idle timeout Type.
between sending
172
S.No Command Name Description
7
flags
8
flags
managed_enable
9
flags other_enable
10
preference
11
mtu
12
life_time
11.50
Type and Description
unsolicited multicast RA’s.
The default is 30 seconds.
RA Flags
Selects Managed to use
the administered /stateful
Boolean choice
protocol for address auto
configuration.
The Other flag is selected
the host uses
administered/stateful
Boolean choice
protocol of other (i.e. nonaddress) information auto
configuration.
Selects low/medium/high
for the preference
Radvd preference type.
associated with this router’s
RADVD process.
This is used in RA’s to
ensure all nodes on the
network use the same MTU
Mtu size.
value in the cases where
the LAN MTU is not well
known. The default is 1500.
The lifetime in seconds of
the route. The default is
Unsigned integer.
3600 seconds.
net radvd pool add
S.No Command Name Description
1
save
2
exit
3
cancel
4
prefix_type
5
sla_id
Type and Description
Saves radvd Pool
configuration settings.
Saves radvd Pool
configuration settings and
exit current mode.
To revert to the previous
radvd Pool configuration
settings.
Option whether to select
the prefix type as 6to4 or Ipv6 prefix type.
Global/Local/ISATAP.
The SLA ID (Site-Level
Aggregation Identifier) in
Unsigned integer.
the 6to4 address prefix is
set to the interface ID of the
173
S.No Command Name Description
6
prefix_address
7
prefix_length
8
prefix_life_time
11.51
Type and Description
interface on which the
advertisements are sent.
It specifies the IPv6
String
network address.
The prefix length variable is
a decimal value that
indicates the number of
contiguous, higher order
Unsigned integer
bits of the address that
make up the network
portion of the address.
The length of time over
which the requesting router Unsigned integer
is allowed to use the prefix.
net radvd pool edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
4
cancel
5
prefix_type
6
sla_id
7
prefix_address
8
prefix_length
Type and Description
Radvd Pool configuration
Unsigned integer.
mode.
Saves radvd Pool
configuration settings.
Saves radvd Pool
configuration settings and
exit current mode.
To revert to the previous
radvd Pool configuration
settings.
Option whether to select
the prefix type as 6to4 or Ipv6 prefix type.
Global/Local/ISATAP.
The SLA ID (Site-Level
Aggregation Identifier) in
the 6to4 address prefix is
Unsigned integer.
set to the interface ID of the
interface on which the
advertisements are sent.
It specifies the IPv6
String.
network address.
The prefix length variable is
a decimal value that
indicates the number of
Unsigned integer.
contiguous, higher order
bits of the address that
174
S.No Command Name Description
9
prefix_life_time
11.52
Type and Description
make up the network
portion of the address.
The length of time over
which the requesting router Unsigned integer
is allowed to use the prefix.
net radvd pool delete <row_id>
S.No Command Name Description
1
<row_id>
11.53
Type and Description
Radvd pool configuration
delete mode.
net routing dynamic configure
S.No Command Name Description
1
2
3
4
5
6
7
8
9
10
11
12
13
save
Unsigned integer
Type and Description
Saves dynamic route
settings.
Saves dynamic routes
settings and exit current
mode.
To revert to the previous rip
cancel
configuration settings.
Rip direction can be None,
direction
Rip direction.
In only, Out only, Both.
version
Rip version.
Rip version.
Enables/Disables
authentication_enabl
Authentication for RIPBoolean choice.
e
2B/2M.
first_key
First MD5 key.
first_key id_number First MD5 Key Id.
Unsigned integer
first_key
First MD5 Authentication
String
authentication_id
Key.
First MD5 Key Not Valid
first_key valid_from
Before entered date.
Month in which md5
first_key valid_from
authentication key validity Month in the format MM(01-12)
month
starts.
Day in which md5
first_key valid_from
authentication key validity Day in the format DD(01-31)
day
starts.
Year in which md5
first_key valid_from
authentication key validity Year
year
starts.
exit
175
S.No Command Name Description
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
Type and Description
Hour in which md5
first_key valid_from
authentication key validity
hour
starts.
Minute in which md5
first_key valid_from
authentication key validity
minute
starts.
Second in which md5
first_key valid_from
authentication key validity
second
starts.
First MD5 Key is Not Valid
first_key valid_to
After entered date.
Month in which md5
first_key valid_to
authentication key validity
month
ends.
Day in which md5
first_key valid_to
authentication key validity
day
ends.
Year in which md5
first_key valid_to
authentication key validity
year
ends.
Hour in which md5
first_key valid_to
authentication key validity
hour
ends.
Minute in which md5
first_key valid_to
authentication key validity
minute
ends.
Second in which md5
first_key valid_to
authentication key validity
second
ends.
Second MD5 Key
second_key
Parameters.
second_key
Second MD5 Key Id.
id_number
second_key
Second MD5
authentication_id
Authentication Key.
second_key
Second MD5 Key Not Valid
valid_from
Before Entered date.
Second MD5 Key Not Valid
second_key valid_to
After entered date.
Month in which md5
second_key
authentication key validity
valid_from month
starts.
Day in which md5
second_key
authentication key validity
valid_from day
starts.
176
HH(00-23) using 24 hour clock
Minute in the format MM(0059.)
Second in the format SS(0059).
Month in the format MM(01-12)
Day in the format DD(01-31)
Year
HH(00-23) using 24 hour clock
Minute in the format MM(0059).
Second in the format SS(0059)
Unsigned integer
String
Month in the format MM(01-12)
Day in the format DD(01-31)
S.No Command Name Description
31
second_key
valid_from year
32
second_key
valid_from hour
33
second_key
valid_from minute
34
second_key
valid_from second
35
second_key valid_to
month
36
second_key valid_to
day
37
second_key valid_to
year
38
second_key valid_to
hour
39
second_key valid_to
minute
40
second_key valid_to
second
Type and Description
Year in which md5
authentication key validity
starts.
Hour in which md5
authentication key validity
starts.
Minute in which md5
authentication key validity
starts.
Second in which md5
authentication key validity
starts.
Month in which md5
authentication key validity
ends.
Day in which md5
authentication key validity
ends.
Year in which md5
authentication key validity
ends.
Hour in which md5
authentication key validity
ends.
Minute in which md5
authentication key validity
ends.
Second in which md5
authentication key validity
ends.
Year
HH(00-23) using 24 hour clock
Minute in the format MM(0059).
Second in the format SS(0059)
Month in the format MM(01-12)
Day in the format DD(01-31)
Year
HH(00-23) using 24 hour clock
Minute in the format MM (0059).
Second in the format SS(0059)
11.54 net routing static ipv4
configure <name>
S.No Command Name Description
1
2
3
4
5
Type and Description
Adds new static routes.
String
Saves static route settings.
Saves static routes settings
exit
and exit current mode.
To revert to the previous
cancel
route configuration settings.
IP address
destination_address Sets the destination IP.
AAA.BBB.CCC.DDD where
each part is in the range 0-255
<name>
save
177
S.No Command Name Description
6
subnet_mask
7
gateway_address
8
interface
9
metric
10
private_flag
11
active_flag
Type and Description
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
Sets the gateway IP.
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Use show net routing static
Sets the interface for which
interface_list to see list of
the rule applies.
interface
Sets the metric for this
Unsigned integer
route.
Defines whether the route
can be shared with other
Boolean choice
gateways when RIP is
enabled.
Defines whether it’s an
Boolean choice
active route.
Sets the subnet for this
rule.
11.55 net routing static ipv6
configure <name>
S.No Command Name Description
Type and Description
Adds new IPV6 static
routes.
Saves IPV6 static route
settings.
Saves IPV6 static routes
settings and exit current
mode.
To revert to the previous
IPV6 route configuration
settings.
1
<name>
2
save
3
exit
4
cancel
5
Sets the IPV6 destination
destination_address
IP.
6
prefix
String
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
Sets the prefix length for
this rule.
Unsigned integer
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
7
gateway_address
Sets the gateway IPV6.
8
interface
Sets the interface for which
select the ipv6 interface type
the rule applies.
178
S.No Command Name Description
9
metric
10
active_flag
11.56
Type and Description
Sets the metric for this
route.
Defines whether its an
active IPV6 route
<name>
11.57
Type and Description
Deletes a specific IPv4
route.
<name>
11.58
Type and Description
Deletes a specific IPV6
route.
<ip_address>
11.59
Type and Description
IP address
Adds ipv6 default route on abcd:abcd:abcd:abcd:abcd:abc
lan interface.
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
net tahi add-route <ip_address> <gw>
S.No Command Name Description
1
<ip_address> <gw>
11.60
Type and Description
Adds ipv6 route on lan
interface.
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
net tahi del-route <ip_address> <gw>
S.No Command Name Description
1
String
net tahi add-default-route <ip_address>
S.No Command Name Description
1
String
net routing static ipv6 delete <name>
S.No Command Name Description
1
Boolean choice
net routing static ipv4 delete <name>
S.No Command Name Description
1
Unsigned integer
<ip_address> <gw>
Type and Description
Adds ipv6 route on lan
interface.
179
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
S.No Command Name Description
Type and Description
in the range [0-9A-Fa-f:]
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
11.61 net tahi ipv6-AliasAdd(LAN) <ip6_address>
S.No Command Name Description
1
<ip6_address>
Type and Description
IP address
Adds ipv6 address to LAN abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
interface.
in the range [0-9A-Fa-f:]
11.62 net tahi ipv6-AliasDel(LAN) <ip6_address>
S.No Command Name Description
1
<ip6_address>
Type and Description
Deletes an ipv6 address
from LAN interface.
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
11.63 net tahi ipv6-AliasAdd(WAN) <ip6_address>
S.No Command Name Description
1
<ip6_address>
Type and Description
IP address
Adds ipv6 address to WAN abcd:abcd:abcd:abcd:abcd:abc
interface.
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
11.64 net tahi ipv6-AliasDel(WAN) <ip6_address>
S.No Command Name Description
1
<ip6_address>
Type and Description
Deletes an ipv6 address
from WAN interface.
180
IP address
abcd:abcd:abcd:abcd:abcd:abc
S.No Command Name Description
Type and Description
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
11.65
net tahi reachable-time <time>
S.No Command Name Description
1
Sets the reachable time of
number in range of 30 to 150
neighbour cache entries
<time>
11.66
Type and Description
net tahi ping6 <ip> <size>
S.No Command Name Description
1
<ip> <size>
11.67
Type and Description
Ping6 on LAN interface
with count one.
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
number in range of 1 to 1500
net tahi mping6 <mip>
S.No Command Name Description
Type and Description
1
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
Multicast ping6 on LAN.
<mip>
11.68
net tahi bping6 <bip> <psize>
S.No Command Name Description
Type and Description
1
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
number in range of 1 to 1500
<bip> <psize>
11.69
Ping6.
net tahi pmtu-route-add <ipAdd>
S.No Command Name Description
1
<ipAdd>
Type and Description
Adds ipv6 route on lan
interface.
181
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
11.70
net tahi interface-down <interface>
S.No Command Name Description
1
<interface>
11.71
Type and Description
Brings selected interface
down.
net tahi interface-up <interface>
S.No Command Name Description
1
Interfaces type
<interface>
Type and Description
Brings selected interface
up.
Interfaces type
11.72 net tahi start-RAcustom <fileName> <ipAddr>
S.No Command Name Description
1
Type and Description
Starts RA with
<fileName> <ipAddr
configuration file obtained
>
through tftp.
11.73
String
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
net tahi RA-Start
S.No Command Name Description
1
save
2
exit
3
cancel
4
Interface
5
AdvSendAdvert
6
MaxRtrAdvInterval
7
MinRtrAdvInterval
8
AdvCurHopLimit
9
AdvManagedFlag
Type and Description
Saves RA configuration
settings.
Starts RA, and exits current
mode.
To revert to the previous
RA configuration settings.
Interface on which RA
Interfaces type
should be sent.
Sets AdvSendAdvert value. Boolean choice
Sets MaxRtrAdvInterval
MaxRtrAdvInterval range
value.
Sets MinRtrAdvInterval
MinRtrAdvInterval range
value.
Sets AdvCurHopLimit
AdvCurHopLimit range
value.
Sets AdvManagedFlag
Boolean choice
value.
182
S.No Command Name Description
Type and Description
14
Sets AdvOtherConfigFlag
AdvOtherConfigFlag
value.
Sets AdvDefaultLifetime
AdvDefaultLifetime
value.
Sets AdvReachableTime
AdvReachableTime
value.
Sets AdvRetransTimer
AdvRetransTimer
value.
AdvLinkMTU
Sets AdvLinkMTU value.
15
prefix
16
17
prefixLength
AdvOnLink
10
11
12
13
18
19
20
Prefix to be advertised.
3
4
5
6
AdvReachableTime range
AdvRetransTimer range
AdvLinkMTU range
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
IPv6 Prefix length
Boolean choice
net ipv6_tunnel teredo configure
S.No Command Name Description
2
AdvDefaultLifetime range
Sets prefix length value.
Sets AdvOnLink value.
Sets AdvAutonomous
AdvAutonomous
Boolean choice
value.
Sets AdvValidLifetime
AdvValidLifetime
AdvValidLifetime range
value.
AdvPreferredLifetim Sets AdvPreferredLifetime
AdvPreferredLifetime range
e
value.
11.74
1
Boolean choice
Type and Description
Saves teredo Tunnel
configuration settings.
Saves teredo Tunnel
exit
configurationsettings and
exit current mode.
To revert to the previous
cancel
teredoTunnel configuration
settings.
Enables/disables teredo
tunneling which will allow
traffic from a LAN IPv6
teredo_tunneling_en
network to be tunneled
Boolean choice
able
through a WAN IPv4
network to reach an IPV6
network.
primary_teredo_serv
Primary teredo server.
String
er
secondary_teredo_s
Secondary teredo server. String
erver
save
183
11.75
net upnp configure
S.No Command Name Description
1
save
2
cancel
3
exit
4
enable
5
Interface
6
advertisement
7
8
9
advertisement
period
advertisement
time_to_live
avail_vlan
11.76
Type and Description
Saves upnp configuration
settings.
To revert to the previous
upnp configuration settings.
Saves upnp configuration
settings and current mode.
Enables/Disables UPNP. Boolean choice
Selects the interface from
String
LAN/VLAN.
Sets upnp advertisement
parameters.
Sets Advertisement Period UPnP Advertisement Period
(in seconds).
Type.
Sets Advertisement Time UPnP Advertisement Time To
To Live (in seconds).
Live Type.
Displays available vlan.
net port-vlan lan_edit <portnamew>
S.No Command Name Description
1
<portnamew>
2
save
3
exit
4
cancel
5
6
mode
pvid
11.77
Type and Description
Vlan port name range 1-4. port ID
Saves vlan configuration
settings.
Saves vlan settings and
exit current mode.
To revert to the previous
configuration settings.
Port Vlan mode.
Captive Portal Profile ID
Port Vlan ID.
vlan id possible values
net port-vlan wlan_edit <ssidName>
S.No Command Name Description
1
<ssidName>
2
save
3
exit
Type and Description
SSID to be edited.Use
command 'show net
wireless_vlan status 'to
dislay all SSID's Name
Saves vlan configuration
settings.
Saves vlan settings and
exit current mode.
184
String
S.No Command Name Description
4
cancel
5
6
mode
pvid
11.78
Type and Description
To revert to the previous
configuration settings.
Port Vlan mode.
Port Vlan ID
net vlan-membership lan_edit <portw>
S.No Command Name Description
1
2
3
4
5
6
7
Captive Portal Profile ID
vlan id possible values
Type and Description
Net vlan membership for
port ID
the vlan and Wlan port.
Saves Vlan Membership
save
configuration settings.
To revert to the previous
cancel
vlan membership
configuration settings.
Saves vlan membership
exit
configuration. Settings and
exit current mode.
Vlan membership.Give
membership
comma seperated VLAN ID
values.
Vlan membership.Give
membership add
comma seperated VLAN ID String
values.
Vlan membership.Give
membership remove comma seperated VLAN ID String
values.
<portw>
11.79 net vlan-membership
wlan_edit <ssidName>
S.No Command Name Description
1
<ssidName>
2
save
3
cancel
Type and Description
SSID to be edited.Use
command 'show net
wireless_vlan status 'to
dislay all SSID's Name
Saves Vlan Membership
configuration settings.
To revert to the previous
vlan membership
configuration settings.
185
String
S.No Command Name Description
4
5
6
7
Type and Description
Saves vlan membership
exit
configuration settings and
exit current mode.
Vlan membership.Give
membership
comma seperated VLAN ID
values.
Vlan membership.Give
membership add
comma seperated VLAN ID String
values.
Vlan membership.Give
membership remove comma seperated VLAN ID String
values.
11.80
net multiVlan subnet edit <vlanID>
S.No Command Name Description
1
<vlanID>
2
save
3
cancel
4
exit
5
ip-address
6
subnet-mask
7
dhcp-mode
8
domain-name
9
start-ip
10
end-ip
11
primary-dns
Type and Description
Multivlan server edit mode vlan id possible values
Saves Multi Vlan server
configuration settings.
To revert to the previous
Multi Vlan server
configuration settings.
Saves Multivlan server
configuration settings and
exit current mode.
IP address
IP of given MultiVlan
AAA.BBB.CCC.DDD where
subnetVlan.
each part is in the range 0-255
IP address
Adds subnet mask for
AAA.BBB.CCC.DDD where
Multivlan.
each part is in the range 0-255
Selects the DHCP Mode. dhcpv4 modes
String, Max 256 characters and
Domain name for vlan.
no ' or empty space or "
IP address
Starting ip address of the
AAA.BBB.CCC.DDD where
dhcp mode.
each part is in the range 0-255
IP address
Ending ip of the Valn.
AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
Primary dns for the vlan.
AAA.BBB.CCC.DDD where
each part is in the range 0-255
186
S.No Command Name Description
12
secondary-dns
13
default_gw
14
lease-time
15
relay-gateway
16
enable-dns-proxy
11.81
Type and Description
IP address
Secondary dns for the vlan. AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
Sets default gateway.
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Lease time for the vlan.
number in range of 1 to 24
IP address
Relay gateway for the vlan. AAA.BBB.CCC.DDD where
each part is in the range 0-255
Relay gateway for the vlan. Boolean choice
net vlan config add <vlan_id>
S.No Command Name Description
1
<vlan_id>
2
save
3
exit
4
cancel
5
vlan-name
6
inter-vlan-routing
7
showCP-profiles
8
captive-portalenable
9
captive-portal-user
10
11
12
13
captive-portal-user
auth-mode
captive-portal-user
auth-type
captive-portal-user
CP-profile
captive-portal-user
Redirect-Type
Type and Description
Adds a vlan.
vlan id possible values
Saves vlan configuration
settings.
Saves vlan settings and
exit current mode.
To revert to the previous
configuration settings.
Name for vlan.
String
Enables/Disables interVlan
Boolean choice
Routing.
Available captive portal
profiles.
Enables captive portal.
AccessType is Permanent
User.
Authentication-server for
user.
Authentication-type for
user.
Captive portal profile for
user.
Captive portal profile for
user.
187
Boolean choice
Authentication Type for
Captive Portal user
Radius Authentication type
Captive Portal Profile ID
network redirect mode
11.82
net vlan config edit <vlan_Id>
S.No Command Name Description
Type and Description
1
<vlan_Id>
2
save
3
exit
4
cancel
5
vlan-name
6
inter-vlan-routing
7
showCP-profiles
8
captive-portalenable
Enables captive portal
9
captive-portal-user
AccessType is Permanent
User.
captive-portal-user
auth-mode
captive-portal-user
auth-type
captive-portal-user
CP-profile
captive-portal-user
Redirect-Type
Authentication-server for
user.
Authentication-type for
user.
Captive portal profile for
user.
Captive portal profile for
user.
10
11
12
13
11.83
Edits a configured vlan.
vlan id possible values
Saves vlan configuration
settings.
Saves vlan settings and
exit current mode.
To revert to the previous
configuration settings.
Name for vlan.
String
Enables/Disables interVlan
Boolean choice
Routing.
Available captive portal
profiles
Boolean choice
Authentication Type for
Captive Portal user.
Radius Authentication type.
Captive Portal Profile ID.
Network redirect mode.
net vlan config delete <VlanId>
S.No Command Name Description
Type and Description
1
Vlan id possible values.
<VlanId>
11.84
Deletes a vlan.
net dmz configure
S.No Command Name Description
1
save
2
cancel
3
exit
4
enable_dmz
Type and Description
Saves van configuration
mode.
To revert to the previous
dmz configuration settings.
Saves dmz configuration
settings and current mode.
Enables/Disables DMZ.
Enables/disables dmz.
188
S.No Command Name Description
5
ip_address
6
subnet_mask
7
dhcp_mode
8
domain_name
9
starting_ip_address
10
ending_ip_address
11
primary_dns_server
12
secondary_dns_ser
ver
13
default_gw
14
wins_server
15
lease_time
16
relay_gateway
17
dns_proxy_enable
18
enable_ldap
Type and Description
IP address
Static IP address.
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
Subnet Mask.
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Sets the DHCP mode.
dhcpv4 modes
String, Max 256 characters and
DHCP Domain Name.
no ' or empty space or "
IP address
DHCP Starting IP address. AAA.BBB.CCC.DDD where
each part is in the range 0-255.
IP address
DHCP ending IP address. AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
Primary DNS address.
AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
Secondary DNS server
AAA.BBB.CCC.DDD where
address.
each part is in the range 0-255
IP address
Setup default gateway.
AAA.BBB.CCC.DDD where
each part is in the range 0-255
IP address
Sets the DHCP WINS
AAA.BBB.CCC.DDD where
server.
each part is in the range 0-255
Sets the DHCP lease time. Unsigned integer
IP address
Sets the DHCP Relay
AAA.BBB.CCC.DDD where
gateway server.
each part is in the range 0-255
Sets the DNS proxy
Boolean choice
Enable/Disable.
IP address
Enables/Disables LDAP
AAA.BBB.CCC.DDD where
Server Info.
each part is in the range 0-255
189
Chapter 12. Configuration commands
under branch SECURITY
12.1 security advanced_network attack_checks
configure
S.No Command Name Description
1
2
3
4
5
6
7
8
9
10
11
12
13
14
Type and Description
Saves Security Checks
configuration settings.
Saves Security Checks
exit
configuration settings and
exit current mode.
To revert to the previous
cancel
Security Checks
configuration settings.
enable_stealth_mod Enables or Disables Stealth
Boolean choice
Mode.
e
Enables or DisablesTCP
block_tcp_flood
Boolean choice
Flood on WAN port.
Enables or DisablesUDP
block_udp_flood
Boolean choice
Flood on LAN port.
Range of simultaneous active
udp_connection_limi Connection limit of UDP on UDP connections to be
t
LAN port.
accepted from a single
computer on the LAN.
Enables or Disables ICMP
allow_lan_icmp
Boolean choice
Notification on LAN port.
block_spoofed_pack Allows/Blocks spoofed
Boolean choice
ets
packets.
Allows/Blocks Tcp Filter
Tcp_Filter_Check
Boolean choice
Check.
Enables or Disables ICMP
block_icmp_notificati
notifications on Internet
Boolean choice
on
Ports.
Enables or Disables
block_fragmented_p
Fragmented Packets on
Boolean choice
ackets
Internet Ports.
Enables or Disables
block_multicast_pac
Multicast packets on
Boolean choice
kets
Internet Ports.
synflood_dectect_rat Configures the Syn flood Range of packets sent per
e
Detect Rate.
second in dos attack types.
save
190
S.No Command Name Description
15
16
17
18
Type and Description
Enables or Disables
block_spoofed_tcp_r
blocking of spoofed tcp
st
RST packets.
Enables or Disables
block_ftp_bounce_at
blocking of FTP Bounce
tack
Attack packets.
echostorm_flood_rat Configures the Echo Storm
e
Flood Rate
Configures the ICMP flood
icmp_flood_rate
Rate
Boolean choice
Boolean choice
Range of packets sent per
second in dos attack types.
Range of packets sent per
second in dos attack types.
12.2 security advanced_network ips setup
S.No Command Name Description
1
2
3
4
5
6
7
8
Type and Description
Saves ips configuration
save
settings.
Saves ips configuration
exit
settings and exit current
mode.
To revert to the previous
cancel
ips configuration settings.
enable_intrusion_pr Enables or Disables
Boolean choice
evention
Intrusion Prevention.
enable_intrusion_de Enables or Disables
Boolean choice
tection
Intrusion Detection.
Enables or Disables IPS
ips_check_active
checks.
Enables or Disables ips
ips_check_active
checks active between LAN Boolean choice
lan-wan
and WAN.
Enables or Disables ips
ips_check_active
checks active between
Boolean choice
dmz-wan
DMZ and WAN.
12.3 security application_rules add
S.No Command Name Description
1
save
2
exit
Type and Description
Saves application rules
configuration settings.
Saves application rules
rules configuration settings,
and exits current mode.
191
S.No Command Name Description
3
cancel
4
name
5
enable_rule
6
7
8
9
10
11
Type and Description
To revert to the previous
application rules
configuration settings.
Name of the rule.
String
Specifies whether to
Boolean choice
Enable or Disable the rule.
Specifies whether the port
uses the TCP or UDP
protocol.
Displays interface name on
interface
which port triggering rule is
configured.
Start port number of the
outgoing_start_port
outgoing traffic.
Last port of the outgoing
outgoing_end_port
traffic.
Start port number of the
incoming_start_port
incoming traffic.
Last port number of the
incoming_end_port
incoming traffic.
protocol
Type of protocol to be selected
for a application rules.
interface type
Port number
Port number
Port number
Port number
12.4 security application_rules edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
4
cancel
5
name
6
enable_rule
7
protocol
8
interface
Type and Description
Application rules
configuration mode to edit Unsigned integer
the selected rule.
Saves application rules
configuration settings.
Saves application rules
rules configuration settings,
and exits current mode.
To revert to the previous
application rules
configuration settings.
Name of the rule.
String
Specifies whether to
Boolean choice
Enable or Disable the rule.
Specifies whether the port
Type of protocol to be selected
uses the TCP or UDP
for an application rules.
protocol.
Displays interface name on
which port triggering rule is Interface type.
configured.
192
S.No Command Name Description
9
10
11
12
Type and Description
First port number of the
outgoing_start_port
outgoing traffic.
Last port of the outgoing
outgoing_end_port
traffic.
Start port number of the
incoming_start_port
incoming traffic.
End port number of the
incoming_end_port
incoming traffic.
Port number
Port number
Port number
Port number
12.5 security application_rules delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Deletes the selected rule or
Unsigned integer
rules.
12.6 security firewall custom_service add
S.No Command Name Description
1
save
2
exit
3
cancel
4
name
5
protocol
6
type
7
start_port
8
icmp_type
9
finish_port
10
multiple_port
Type and Description
Saves custom services
configuration settings.
Saves custom services
configuration settings and
exit current mode.
To revert to the previous
custom services
configuration settings.
Name of the service for
String
which a rule is to be added.
Type of protocol to be selected
Protocol
for a custom service.
Port type can be Port
Range/Multiple Ports. The
layer 3 Protocol that the
Type to be selected for a
service uses. Can be TCP, custom service.
UDP, BOTH, ICMP or
ICMPv6
Port number of the
Port number
Destination user.
Port number of the
number in range of 0-40(icmp)
Destination user.
or 1-255(icmpv6)
Port of the Destiation user. Port number
Muliple Port of the
Destiation user.Seperate String
Ports by Comma.
193
12.7 security firewall custom_service
edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
4
cancel
5
name
6
protocol
7
type
8
start_port
9
icmp_type
10
finish_port
11
multiple_port
Type and Description
Opens the Custom
Services Configuration
Unsigned integer
page, to edit the selected
custom Service.
Saves custom services
configuration settings.
Saves custom services
configuration settings and
exit current mode.
To revert to the previous
custom services
configuration settings.
Name of the service for
String
which a rule is to be added.
Type of protocol to be selected
Protocol.
for a custom service.
Port type can be Port
Type to be selected for a
Range/Multiple Ports.
custom service.
Port number of the
Port number
Destination user.
Port number of the
Number in range of 0-40(icmp)
Destination user.
or 1-255(icmpv6).
Port of the Destiation user. Port number
Muliple Port of the
Destiation user. Seperate String
Ports by Comma.
12.8 security firewall custom_service
delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Deletes the selected
custom service or custom
services.
194
Unsigned integer.
12.9 security firewall ipv4 configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
from_zone
5
from_zone_vlan
6
to_zone
7
to_zone_vlan
8
service
9
service
service_custom
10
service
service_normal
11
action
12
schedule
13
14
15
16
17
18
source_address_typ
e
destination_address
_type
snat_address_type
Type and Description
Saves Firewall IPV4 rules
configuration settings.
Saves Firewall IPV4 rules
configuration settings and
exit current mode.
To revert to the previous
IPV4 rules configuration
settings.
Sets from Zone security
firewall rule type
type.
Sets From Zone VLAN
using corresponding VLAN String
name.
Sets to Zone security type Firewall rule type.
Sets To Zone VLAN using
String
corresponding VLAN name
.
Name of the custom
service for which a rule is
to be added. Custom name String
should already be added
into custom service
Name of the service for
Service type.
which a rule is to be added.
Action to be taken by the
Firewall rule action type.
rule.
Name of schedule for
String.
which the rule is applicable.
Type of the source user.
Firewall rule address type.
Type of the destination
Firewall rule address type.
user.
Type of the SNAT address. Firewall rule snat address type.
Firewall rule log
log
Log Always or Never
enable/disable.
IP address
source_address_sta
IP of the Source user.
AAA.BBB.CCC.DDD where
rt
each part is in the range 0-255.
IP address
source_address_en
IP of the Source user.
AAA.BBB.CCC.DDD where
d
each part is in the range 0-255.
195
S.No Command Name Description
19
20
21
22
23
24
25
26
27
28
29
Type and Description
IP address
destination_address
IP of the Destination user. AAA.BBB.CCC.DDD where
_start
each part is in the range 0-255.
IP address
destination_address
IP of the Destination user. AAA.BBB.CCC.DDD where
_end
each part is in the range 0-255
qos_priority
Firewall type of service.
firewall type of service
WAN interface for Source
wan_interface
WAN interface type
NAT settings.
IP address
snat_address
IP of the SNAT Address.
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Set Ip to use alias as
IP address
alias_SNAT_ipaddre
Internal_Interface for
AAA.BBB.CCC.DDD where
ss
firewall.
each part is in the range 0-255
The port number to use for
dnat_port
DNAT, required if port
Port number
forwarding is enabled.
Enables/disables port
port_forwarding_ena forwarding based on this
Boolean choice
ble
firewall rule configuration
settings.
Sends to Local Server
(DNAT IP), Specifies an IP
IP address
address and port number of
internal_ip_address
AAA.BBB.CCC.DDD where
a machine on the Local
each part is in the range 0-255
Network which is hosting
the server.
Sets it as
dnat_ipaddress
Dedicated/configured
WAN interface type
WAN/3G WAN.
Sets Ip to use alias as
IP address
alias_DNAT_ipaddre
External_Interface for
AAA.BBB.CCC.DDD where
ss
firewall.
each part is in the range 0-255
12.10 security firewall ipv4
default_outbound_policy <default_outbound
_policy>
S.No Command Name Description
1
Type and Description
Firewall Settings, Default
<default_outbound_
Outbound Policy
policy>
configuration mode.
196
Boolean choice
12.11
security firewall ipv4 edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
4
cancel
5
from_zone
6
from_zone_vlan
7
to_zone
8
to_zone_vlan
9
service
10
service
service_custom
11
service
service_normal
12
action
13
schedule
14
15
16
17
18
19
source_address_typ
e
destination_address
_type
snat_address_type
Type and Description
Firewall IPV4 rules
Unsigned integer
configuration mode.
Saves Firewall IPV4 rules
configuration settings.
Saves Firewall IPV4 rules
configuration settings and
exit current mode.
To revert to the previous
IPV4 rules configuration
settings.
Sets from Zone security
Firewall rule type.
type.
Sets From Zone VLAN
using corresponding VLAN String
name.
Sets to Zone security type. Firewall rule type.
Sets To Zone VLAN using
String
corresponding VLAN name.
.
Name of the custom
service for which a rule is
to be added. Custom name String
should already be added
into custom service.
Name of the service for
Service type.
which a rule is to be added.
Action to be taken by the
Firewall rule action type.
rule.
Name of schedule for
String
which the rule is applicable.
Type of the source user.
Firewall rule address type.
Type of the destination
Firewall rule address type.
user.
Type of the SNAT address. Firewall rule snat address type.
Firewall rule log
log
Log Always or Never.
enable/disable.
IP address
source_address_sta
IP of the Source user.
AAA.BBB.CCC.DDD where
rt
each part is in the range 0-255.
IP address
source_address_en
IP of the Source user.
AAA.BBB.CCC.DDD where
d
each part is in the range 0-255.
197
S.No Command Name Description
20
21
22
23
24
25
26
27
28
29
30
Type and Description
IP address
destination_address
IP of the Destination user. AAA.BBB.CCC.DDD where
_start
each part is in the range 0-255.
IP address
destination_address
IP of the Destiation user. AAA.BBB.CCC.DDD where
_end
each part is in the range 0-255.
qos_priority
Firewall type of service.
Firewall type of service.
WAN interface for Source
wan_interface
WAN interface type.
NAT settings.
IP address
snat_address
IP of the SNAT Address.
AAA.BBB.CCC.DDD where
each part is in the range 0-255.
Sets Ip to use alias as
IP address
alias_SNAT_ipaddre
Internal_Interface for
AAA.BBB.CCC.DDD where
ss
firewall.
each part is in the range 0-255.
The port number to use for
dnat_port
DNAT, required if port
Port number.
forwarding is enabled.
Enables/disables port
port_forwarding_ena forwarding based on this
Boolean choice.
ble
firewall rule configuration
settings.
Send to Local Server
(DNAT IP), Specifies an IP
IP address
address and port number of
internal_ip_address
AAA.BBB.CCC.DDD where
a machine on the Local
each part is in the range 0-255.
Network which is hosting
the server.
Sets it as
dnat_ipaddress
Dedicated/configured
WAN interface type.
WAN/3G WAN.
Sets Ip to use alias as
IP address
alias_DNAT_ipaddr
External_Interface for
AAA.BBB.CCC.DDD where
ess
firewall.
each part is in the range 0-255.
12.12
security firewall ipv4 enable <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Enables Firewall IPv4 rules
Unsigned integer
configuration mode.
198
12.13
security firewall ipv4 disable <row_id>
S.No Command Name Description
1
<row_id>
12.14
Type and Description
Disables Firewall IPv4
Unsigned integer
Rules configuration mode.
security firewall ipv4 delete <row_id>
S.No Command Name Description
1
<row_id>
12.15
Type and Description
Deletes a specified Firewall
Unsigned integer
IPV4 Rule.
security firewall ipv4 move <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
4
cancel
5
position
12.16
Type and Description
Firewall IPV4 Rule
reordering mode.
Saves Firewall IPV4 rule
reordering settings.
Saves Firewall IPV4 rule
reordering settings and exit
current mode.
To revert to the previous
IPV4 rule reordering
settings.
New position for the rule
Unsigned integer
security firewall algs
S.No Command Name Description
1
save
2
exit
3
cancel
4
Rtsp
5
Sip
6
H323
Row id(s) a,b,c where each
part is a valid rowid in the
range [0-9]
Type and Description
Saves Firewall algs
settings.
Saves Firewall algs
settings and exit current
mode.
Roll Firewall algs settings.
Protocal to be enabled at
Boolean choice
ALGs.
Protocal to be enabled at
Boolean choice
ALGs.
Protocal to be enabled at
Boolean choice
ALGs.
199
S.No Command Name Description
7
Tftp
12.17
Type and Description
Protocal to be enabled at
ALGs.
security firewall ipv6 configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
5
rule_type
service
6
service
service_custom
7
service
service_normal
8
action
9
schedule
10
11
Boolean choice
Type and Description
Saves Firewall IPV6 rules
configuration settings.
Saves Firewall IPV6 rules
configuration settings and
exit current mode.
To revert to the previous
IPV6 rules configuration
settings.
Type of rule to be added. Firewall rule type.
.
Name of the custom
service for which a rule is
to be added; custom name String
should already be added
into custom service.
Name of the service for
Service type.
which a rule is to be added.
Action to be taken by the
Firewall rule action type.
rule.
Schedule for which the rule
String
is applicable.
source_address_typ
Type of the source user.
e
destination_address Type of the destination
_type
user.
Log Always or Never.
Firewall rule address type.
Firewall rule address type.
Firewall rule log
enable/disable.
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:].
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:].
12
log
13
source_start_addres Start IP address of the
s
Source user.
14
source_end_addres End IP address of the
s
Source user.
15
source_address_pre Prefix length of the Source
String
fix
user.
200
S.No Command Name Description
Type and Description
16
destination_start_ad Start IP address of the
dress
Destination user.
17
destination_end_ad End IP address of the
dress
Destiation user.
18
destination_address Prefix Length of the
_prefix
Destination user.
12.18
1
<row_id>
2
save
3
exit
4
cancel
5
6
rule_type
service
7
service
service_custom
8
service
service_normal
9
action
10
schedule
12
13
14
String
security firewall ipv6 edit <row_id>
S.No Command Name Description
11
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:].
IP address
abcd:abcd:abcd:abcd:abcd:abc
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:].
Type and Description
Firewall IPV6 rules
Unsigned integer
configuration mode.
Saves Firewall IPV6 rules
configuration settings.
Saves Firewall IPV6 rules
configuration settings and
exit current mode.
To revert to the previous
IPV6 rules configuration
settings.
Type of rule to be added. firewall rule type
.
Name of the custom
service for which a rule is
to be added custom name String
should already be added
into custom service.
Name of the service for
Service type.
which a rule is to be added.
Action to be taken by the
Firewall rule action type.
rule.
Schedule for which the rule
String
is applicable.
source_address_typ
Type of the source user.
e
destination_address Type of the destination
_type
user.
Firewall rule address type.
Firewall rule address type.
Firewall rule log
enable/disable.
source_start_addres
IP address
Start IP of the Source user.
s
abcd:abcd:abcd:abcd:abcd:abc
log
Log Always or Never.
201
S.No Command Name Description
15
16
17
18
19
Type and Description
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
IP address
source_end_addres
abcd:abcd:abcd:abcd:abcd:abc
End IP of the Source user.
s
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
source_address_pre Prefix length of the Source
String.
fix
user.
IP address
destination_start_ad Start IP of the Destination abcd:abcd:abcd:abcd:abcd:abc
dress
user.
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
IP address
destination_end_ad End IP of the Destiation
abcd:abcd:abcd:abcd:abcd:abc
dress
user.
d:abcd:abcd where each part is
in the range [0-9A-Fa-f:]
destination_address Prefix Length of the
String
_prefix
Destination user.
12.19
security firewall ipv6 enable <row_id>
S.No Command Name Description
1
<row_id>
12.20
Type and Description
Enables selected Firewall
IPV6 rule.
security firewall ipv6 disable <row_id>
S.No Command Name Description
1
<row_id>
12.21
Type and Description
Disables selected Firewall
Unsigned integer
IPV6 Rule.
security firewall ipv6 delete <row_id>
S.No Command Name Description
1
<row_id>
12.22
Type and Description
Deletes selected Firewall
IPV6 Rule.
Unsigned integer
security firewall ipv6 move <row_id>
S.No Command Name Description
1
Unsigned integer
<row_id>
Type and Description
Firewall IPV6 Rule
reordering mode.
202
Row id(s) a,b,c where each
part is a valid rowid in the
range [0-9]
S.No Command Name Description
2
save
3
exit
4
cancel
5
position
Type and Description
Saves Firewall IPV6 rule
reordering settings.
Saves Firewall IPV6 rule
reordering settings and exit
current mode.
To revert to the previous
IPV6 rule reordering
settings.
New position for the rule. Unsigned integer
12.23 security firewall ipv6
default_outbound_policy <default_outbound
_policy>
S.No Command Name Description
1
Type and Description
Firewall Settings, IPv6
<default_outbound_
Default Outbound Policy
policy>
configuration mode.
12.24
security ids configure
S.No Command Name Description
1
2
3
4
5
Type and Description
Saves IDS configuration
settings.
Saves IDS configuration
exit
settings and exit current
mode.
To revert to the previous
cancel
IDS configuration settings.
Enables Intrusion detection
enable
Boolean choice
system.
intrusion_log_enabl Enables/Disables intrusion
Boolean choice
e
logs.
save
12.25
security session_settings configure
S.No Command Name Description
1
Boolean choice
save
Type and Description
Saves security session
settings configuration
settings.
203
S.No Command Name Description
2
3
4
5
6
7
8
9
Type and Description
Saves session settings
exit
configuration settings and
exit current mode.
To revert to the previous
cancel
session settings
configuration settings.
max_unidentified_se Maximum Unidentified
ssions
Sessions.
max_half_open_ses Maximum Half Open
sions
Sessions.
TCP Session Timeout
tcp_session_timeout
Duration.
udp_session_timeou UDP Session Timeout
t
Duration.
other_session_time Other Session Timeout
out
Duration.
tcp_session_cleanu TCP Session Cleanup
p_latency
Latency.
12.26
Unsigned integer
Unsigned integer
Unsigned integer
Unsigned integer
Unsigned integer
Unsigned integer
security schedules add
S.No Command Name Description
1
save
2
exit
3
cancel
4
name
5
days
6
days all
7
days monday
8
days tuesday
Type and Description
Saves schedules
configuration settings.
Saves schedules
configuration settings and
exit current mode.
To revert to the previous
schedules configuration
settings.
Name of the schedule for
String
which a rule is to be added.
The days when the
schedule is active.
The schedule applies to all
days. This option is the
Boolean choice
default selection.
Checks the box for each
day to include in this
Boolean choice
schedule.
Checks the box for each
day to include in this
Boolean choice
schedule.
204
S.No Command Name Description
9
days wednesday
10
days thursday
11
days friday
12
days saturday
13
days sunday
14
time_of_day
15
time_of_day
all_enable
16
time_of_day start
17
18
19
20
21
22
23
time_of_day start
mins
time_of_day start
hours
time_of_day start
meridiem
time_of_day end
time_of_day end
mins
time_of_day end
hours
time_of_day end
meridiem
12.27
Type and Description
Checks the box for each
day to include in this
schedule.
Checks the box for each
day to include in this
schedule.
Checks the box for each
day to include in this
schedule.
Checks the box for each
day to include in this
schedule.
Checks the box for each
day to include in this
schedule.
Scheduled time of day.
Selects type of schedule
activation for time of the
day.
The start time for the
schedule.
Boolean choice
Boolean choice
Boolean choice
Boolean choice
Boolean choice
Boolean choice
Minutes
Minute in the format MM(0059)
Hours
Schedule time unit type.
meridiem
Schedule Meridiem Types.
The end time for the
schedule.
Minutes
Minute in the format MM(0059)
Hours
Schedule time unit type.
meridiem
Schedule Meridiem Types.
security schedules edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
Type and Description
Schedules configuration
mode.
Saves schedules
configuration settings.
205
Unsigned integer
S.No Command Name Description
3
exit
4
cancel
5
name
6
days
7
days all
8
days monday
9
days tuesday
10
days wednesday
11
days thursday
12
days friday
13
days saturday
14
days sunday
15
time_of_day
16
time_of_day
all_enable
17
time_of_day start
18
19
time_of_day start
mins
time_of_day start
hours
Type and Description
Saves schedules
configuration settings and
exit current mode.
To revert to the previous
schedules configuration
settings.
Name of the schedule for
which a rule is to be added
The days when the
schedule is active.
The schedule applies to all
days. This option is the
default selection.
Checks the box for each
day to include in this
schedule.
Checks the box for each
day to include in this
schedule.
Checks the box for each
day to include in this
schedule.
Checks the box for each
day to include in this
schedule.
Checks the box for each
day to include in this
schedule.
Checks the box for each
day to include in this
schedule.
Checks the box for each
day to include in this
schedule.
Scheduled time of day.
Selects the type of
schedule activation for time
of the day.
The start time for the
schedule.
String
Boolean choice
Boolean choice
Boolean choice
Boolean choice
Boolean choice
Boolean choice
Boolean choice
Boolean choice
Boolean choice
Minutes
Minute in the format MM(0059).
Hours
Schedule time unit type.
206
S.No Command Name Description
Type and Description
20
time_of_day start
meridiem
meridiem
21
time_of_day end
The end time for the
schedule
22
23
24
time_of_day end
mins
time_of_day end
hours
time_of_day end
meridiem
12.28
Schedule Meridiem Types.
minutes
Minute in the format MM (0059).
hours
Schedule time unit type.
meridiem
Schedule Meridiem Types.
security schedules delete <row_id>
S.No Command Name Description
1
<row_id>
12.29
Type and Description
Deletes the selected
schedule or schedules.
Unsigned integer
security firewall smtpAlg configure
S.No Command Name Description
1
Save
2
Exit
3
cancel
4
smtp_Alg_Status
5
port
Type and Description
Saves SmtpAlg
configuration settings.
Saves SmtpAlg
configuration settings and
exit current mode.
To revert to the previous
SmtpAlg configuration
settings.
Enables/disables SmtpAlg
Boolean choice
status.
Sets the port you want to
Unsigned integer
use for Smtp Alg.
12.30 security firewall smtpAlg
approvedMailId add
S.No Command Name Description
1
save
2
exit
Type and Description
Saves ApprovedMailId
configuration settings.
Saves ApprovedMailId
configuration settings and
exit current mode.
207
S.No Command Name Description
3
cancel
4
approved_Mail_Id
Type and Description
To revert to the previous
ApprovedMailId
configuration settings.
Approved Mail_Id
String
12.31 security firewall smtpAlg
approvedMailId edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
4
cancel
5
approved_Mail_Id
Type and Description
It allows to edit an
approved MailId.
Saves ApprovedMailId
configuration settings.
Saves ApprovedMailId
configuration settings and
exit current mode.
To revert to the previous
ApprovedMailId
configuration settings.
Approved Mail_Id
Unsigned integer
String
12.32 security firewall smtpAlg
approvedMailId delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
It allows to delete an
approved MailId.
Unsigned integer
12.33 security firewall smtpAlg blockedMailId
add
S.No Command Name Description
1
save
2
exit
3
cancel
4
blocked_Mail_Id
Type and Description
Saves BlockedMailId
configuration settings.
Saves BlockedMailId
configuration settings and
exit current mode.
To revert to the previous
BlockedMailId configuration
settings.
Blocked Mail_Id
String
208
12.34 security firewall smtpAlg blockedMailId
edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
4
cancel
5
blocked_Mail_Id
Type and Description
It allows to edit a blocked
Unsigned integer
MailId.
Saves BlockedMailId
configuration settings.
Saves BlockedMailId
configuration settings and
exit current mode.
To revert to the previous
BlockedMailId configuration
settings.
Blocked Mail_Id
String
12.35 security firewall smtpAlg blockedMailId
delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
It allows to delete a blocked
Unsigned integer
MailId.
12.36 security firewall smtpAlg subjectList
add
S.No Command Name Description
1
save
2
exit
3
cancel
4
5
6
subject
mail_Id
action
Type and Description
Saves subjectList
configuration settings.
Saves subjectList
configuration settings and
exit current mode.
To revert to the previous
subjectList configuration
settings.
Subject in the Mail_Id.
Enter the Mail_Id.
Action Allow/Block.
209
String
String
Boolean choice
12.37 security firewall smtpAlg subjectList
edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
4
cancel
5
6
7
subject
mail_Id
action
Type and Description
It allows to edit subject with
MailId and action.
Saves subjectList
configuration settings.
Saves subjectList
configuration settings and
exit current mode.
To revert to the previous
subjectList configuration
settings.
Subject in the Mail_Id.
Enter the Mail_Id.
Action Allow/Block.
Unsigned integer
String
String
Boolean choice
12.38 security firewall smtpAlg subjectList
delete <row_id>
S.No Command Name Description
1
<row_id>
12.39
Type and Description
It allows to delete the
configuration.
security mac_filter configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
enable
5
policy
Unsigned integer
Type and Description
Saves mac filter
configuration settings.
Saves mac filter
configuration settings and
exit current mode.
To revert to the previous
mac filter configuration
settings.
Enables/Disables the mac
Boolean choice
filter status.
Sets the mac address
Policy type for mac addresses.
policy.
210
12.40
security mac_filter source add
S.No Command Name Description
1
save
2
exit
3
cancel
4
address
Type and Description
Saves source mac filter
configuration settings.
Saves source mac filter
configuration settings and
exit current mode.
To revert to the previous
source mac filter
configuration settings.
Enter mac address to
which the policies will be
applied.
MAC address
AA:BB:CC:DD:EE:FF where
each part is in the range 00-FF
12.41 security mac_filter source
edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
4
cancel
5
address
Type and Description
Source Mac Filter
configuration mode.
Saves source mac filter
configuration settings.
Saves source mac filter
configuration settings and
exit current mode.
To revert to the previous
source mac filter
configuration settings.
Enter mac address to
which policies will be
applied.
Unsigned integer
MAC address
AA:BB:CC:DD:EE:FF where
each part is in the range 00-FF
12.42 security mac_filter source
delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Deletes the selected
Source Mac Filter
configuration.
211
Unsigned integer
12.43
security ip_or_mac_binding add
S.No Command Name
1
save
2
exit
3
cancel
4
computer_name
5
mac_address
6
7
Description
Saves ip mac binding
configuration settings.
Saves ip mac binding
configuration settings and
exit current mode.
To revert to the previous
ip mac binding
configuration settings.
Specifies a unique name
for this rule.
Enter mac address to
which policies will be
applied.
Type and Description
String
MAC address
AA:BB:CC:DD:EE:FF where
each part is in the range 00-FF
IP address
Enter ip address to which
ip_address
AAA.BBB.CCC.DDD where
policies will be applied.
each part is in the range 0-255
Specifies logging option
log_dropped_packets
Boolean choice
for this rule.
12.44 security ip_or_mac_binding
edit <row_id>
S.No Command Name Description
Type and Description
1
<row_id>
Ip/mac binding
configuration mode.
2
save
Saves ip mac binding
configuration settings.
3
exit
4
cancel
5
computer_name
6
mac_address
7
ip_address
Saves ip mac binding
configuration settings and
exit current mode.
To revert to the previous ip
mac binding configuration
settings.
Specifies a unique name
for this rule.
Enter mac address to
which policies will be
applied.
Enter ip address to which
policies will be applied.
212
Unsigned integer
String
MAC address
AA:BB:CC:DD:EE:FF where
each part is in the range 00-FF
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
S.No Command Name Description
8
Type and Description
log_dropped_packet Specifies logging option for
Boolean choice
s
this rule.
12.45 security ip_or_mac_binding
delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Deletes the selected ip/mac
Unsigned integer
binding configuration.
12.46 security firewall vpn_passthrough
configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
ipsec_enable
5
pptp_enable
6
l2tp_enable
12.47
Type and Description
Saves VPN Passthrough
configuration settings.
Saves VPN Passthrough
configuration settings and
exit current mode.
To revert to the previous
VPN Passthrough
configuration settings.
Enables or DisablesIPSEC
Boolean choice
Passthrough.
Enables or DisablesPPTP
Boolean choice
Passthrough.
Enables or DisablesL2TP
Boolean choice
Passthrough.
security webAccess status <status>
S.No Command Name Description
1
<status>
12.48
Type and Description
Security webAccess status. WPS status
security webAccess add
S.No Command Name Description
1
save
Type and Description
Security webAccess
configuration.
213
S.No Command Name Description
Type and Description
2
exit
3
cancel
4
name
Saves webAccess rules
configuration settings and
exit current mode.
To revert to the previous
webAccess rules
configuration settings.
Name
5
accessType
AcessType
6
ipAddr
IpAddr
7
vlanId
VlanId
12.49
String
Access Type for web access
filter
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Number in the range 1-4095
security webAccess edit <row_id>
S.No Command Name Description
Type and Description
1
<row_id>
Unsigned integer
2
save
3
exit
4
cancel
5
name
Security webAccess edit
Security webAccess
configuration.
Saves webAccess rules
configuration settings and
exit current mode.
To revert to the previous
webAccess rules
configuration settings.
Name
6
accessType
AcessType
7
ipAddr
IpAddr
8
vlanId
VlanId
12.50
security webAccess delete <row_id>
S.No Command Name Description
1
String
Access Type for web access
filter
IP address
AAA.BBB.CCC.DDD where
each part is in the range 0-255
Number in the range 1-4095
<row_id>
Type and Description
Security webAccess delete Unsigned integer
214
12.51 security website_filter content_filtering
configure
S.No Command Name Description
1
save
2
exit
3
cancel
4
content_filtering
5
6
7
8
proxy_enable
java_enable
activex_enable
cookies_enable
Type and Description
Saves contentFiltering
configuration settings.
Saves content Filtering
configuration settings and
exit current mode.
To revert to the previous
content filtering
configuration settings.
Enables/Disables content
Filtering.
Enables/Disables proxy.
Enables/Disables java.
Enables/Disables activex.
Enables/Disables cookies.
Boolean choice
Boolean choice
Boolean choice
Boolean choice
Boolean choice
12.52 security website_filter approved_urls
add
S.No Command Name Description
1
save
2
exit
3
cancel
4
url
Type and Description
Saves trusted domains
configuration settings.
Saves trusted domains
configuration settings and
exit current mode.
To revert to the previous
trusted domains
configuration settings.
Trusted domain name.
String
12.53 security website_filter approved_urls
edit <row_id>
S.No Command Name Description
Type and Description
1
<row_id>
Trusted domains
configuration mode.
2
save
Saves trusted domains
configuration settings.
215
Unsigned integer
S.No Command Name Description
3
exit
4
cancel
5
url
Type and Description
Saves trusted domains
configuration settings and
exit current mode.
To revert to the previous
trusted domains
configuration settings.
Trusted domain name.
String
12.54 security website_filter approved_urls
delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Trusted Domains
configuration mode.
Unsigned integer
12.55 security website_filter
blocked_keywords add
S.No Command Name Description
1
save
2
exit
3
cancel
4
blocked_keyword
Type and Description
Saves blocked keywords
configuration settings.
Saves blocked keywords
configuration settings and
exit current mode.
To revert to the previous
blocked keywords
configuration settings.
Enter keyword to be
blocked.
String
12.56 security website_filter
blocked_keywords edit <row_id>
S.No Command Name Description
1
<row_id>
2
save
3
exit
Type and Description
Blocked Keywords
configuration mode.
Saves blocked keywords
configuration settings.
Saves blocked keywords
configuration settings and
exit current mode.
216
Unsigned integer
S.No Command Name Description
4
cancel
5
blocked_keyword
Type and Description
To revert to the previous
blocked keywords
configuration settings.
Enter keyword to be
blocked.
String
12.57 security website_filter
blocked_keywords delete <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Deletes the selected
Blocked Keywords.
Unsigned integer
12.58 security website_filter
blocked_keywords enable <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Enables the selected
Blocked Keywords.
Unsigned integer
12.59 security website_filter
blocked_keywords disable <row_id>
S.No Command Name Description
1
<row_id>
Type and Description
Disables the selected
Blocked Keywords.
217
Unsigned integer

advertisement

Key Features

  • Unified Services Router
  • CLI Configuration
  • Network Settings
  • Security Settings
  • Admin Settings
  • Wireless Settings
  • VPN Settings
  • RADIUS Settings

Related manuals

Frequently Answers and Questions

How to access the CLI?
You can access the CLI by logging in with the same user credentials used to access the web browser based UI.
What are the categories of CLI commands?
The CLI commands are divided into 4 categories: Global commands, Show commands, Utility commands and Configuration commands.
What are the branches of router configuration?
The router configuration is divided into 5 branches: Net: Network Settings, Security: Security Settings, System: Admin Settings, Dot11: Wireless Settings, Vpn: VPN Settings and Radius: RADIUS Settings.
Download PDF

advertisement