User manual | D-Link DSR 500AC, DSR 1000AC router CLI Reference Guide
Add to My manuals217 Pages
The DSR-500AC and DSR-1000AC are Unified Services Routers, this guide will outline all the available CLI commands to configure these models. The guide is arranged by branch, going through the network settings, security settings, admin settings, wireless settings, VPN settings and RADIUS settings.
advertisement
▼
Scroll to page 2
of
217
CLI Reference Guide Unified Services Router D-Link Corporation Copyright © 2015. http://www.dlink.com CLI Reference Guide DSR-500AC/1000AC Unified Services Router Version 1.00 Copyright © 2015 Copyright Notice This publication, including all photographs, illustrations and software, is protected under international copyright laws, with all rights reserved. Neither this manual, nor any of the material contained herein, may be reproduced without written consent of the author. Disclaimer The information in this document is subject to change without notice. The manufacturer makes no representations or warranties with respect to the contents hereof and specifically disclaim any implied warranties of merchantability or fitness for any particular purpose. The manufacturer reserves the right to revise this publication and to make changes from time to time in the content hereof without obligation of the manufacturer to notify any person of such revision or changes. Limitations of Liability UNDER NO CIRCUMSTANCES SHALL D-LINK OR ITS SUPPLIERS BE LIABLE FOR DAMAGES OF ANY CHARACTER (E.G. DAMAGES FOR LOSS OF PROFIT, SOFTWARE RESTORATION, WORK STOPPAGE, LOSS OF SAVED DATA OR ANY OTHER COMMERCIAL DAMAGES OR LOSSES) RESULTING FROM THE APPLICATION OR IMPROPER USE OF THE D-LINK PRODUCT OR FAILURE OF THE PRODUCT, EVEN IF D-LINK IS INFORMED OF THE POSSIBILITY OF SUCH DAMAGES. FURTHERMORE, D-LINK W ILL NOT BE LIABLE FOR THIRD-PARTY CLAIMS AGAINST CUSTOMER FOR LOSSES OR DAMAGES. D-LINK WILL IN NO EVENT BE LIABLE FOR ANY DAMAGES IN EXCESS OF THE AMOUNT D-LINK RECEIVED FROM THE END-USER FOR THE PRODUCT. 2 Table of Contents Chapter 1. Introduction ........................................................................................................................... 10 1.1 Accessing the CLI ................................................................................................... 10 Chapter 2. Basic commands available on the CLI ............................................................................. 11 2.1 Context Sensitive Help ........................................................................................... 11 2.2 Auto-Completion ..................................................................................................... 11 2.3 Movement Keys....................................................................................................... 11 2.4 Deletion Keys .......................................................................................................... 11 2.5 Escape Sequences ................................................................................................. 12 Chapter 3. Command Hierarchy in CLI ................................................................................................ 13 3.1 CLI Commands ....................................................................................................... 13 3.2 Router Configuration .............................................................................................. 13 Chapter 4. Global commands used in CLI ........................................................................................... 14 Chapter 5. Show commands used in CLI ............................................................................................ 15 Chapter 6. Configuration commands under branch VPN .................................................................. 46 6.1 vpn gre_tunnel add ................................................................................................. 46 6.2 vpn gre_tunnel edit <row_id> ................................................................................ 47 6.3 vpn gre_tunnel delete <row_id> ........................................................................... 47 6.4 vpn l2tp client configure ......................................................................................... 48 6.5 vpn l2tp client_action <action>.............................................................................. 48 6.6 vpn l2tp server configure ....................................................................................... 48 6.7 vpn openvpn config................................................................................................. 50 6.8 vpn openvpn remote_network add ....................................................................... 52 6.9 vpn openvpn remote_network edit <row_id> ...................................................... 52 6.10 vpn openvpn remote_network delete <row_id> ................................................. 53 6.11 vpn openvpn local_network add ........................................................................... 53 6.12 vpn openvpn local_network edit <row_id> .......................................................... 53 6.13 vpn openvpn local_network delete <row_id>...................................................... 54 6.14 vpn openvpn cert_upload ca <fileName> <ipAddr> .......................................... 54 6.15 vpn openvpn cert_upload server_client_cert <fileName> <ipAddr> ............... 54 6.16 vpn openvpn cert_upload client_key <fileName> <ipAddr> ............................. 54 6.17 vpn openvpn cert_upload dh_Key <fileName> <ipAddr> ................................. 55 6.18 vpn openvpn cert_upload tls_Authkey <fileName> <ipAddr> .......................... 55 6.19 vpn openvpn cert_upload crl_cert <fileName> <ipAddr> .................................. 55 6.20 vpn openvpn cert_upload config <fileName> <ipAddr> .................................... 55 6.21 vpn pptp client configure ........................................................................................ 56 6.22 vpn pptp client_action <action> ............................................................................ 56 6.23 vpn pptp server configure ...................................................................................... 56 6.24 vpn sslvpn portal-layouts add................................................................................ 58 3 6.25 6.26 6.27 6.28 6.29 6.30 6.31 6.32 6.33 6.34 6.35 6.36 6.37 6.38 6.39 6.40 6.41 6.42 6.43 6.44 6.45 6.46 6.47 vpn sslvpn portal-layouts edit <row_id> .............................................................. 59 vpn sslvpn portal-layouts delete <row_id> .......................................................... 60 vpn sslvpn portforwarding appconfig add ............................................................ 60 vpn sslvpn portforwarding appconfig delete <row_id> ...................................... 60 vpn sslvpn portforwarding hostconfig add ........................................................... 60 vpn sslvpn portforwarding hostconfig delete <row_id> ..................................... 61 vpn sslvpn resource add ........................................................................................ 61 vpn sslvpn resource configure add <resource_name> ..................................... 61 vpn sslvpn resource configure delete <row_id> ................................................. 62 vpn sslvpn resource delete <row_id> .................................................................. 62 vpn sslvpn policy add ............................................................................................. 62 vpn sslvpn policy edit <row_id> ............................................................................ 63 vpn sslvpn policy delete <row_id> ........................................................................ 64 vpn sslvpn client ...................................................................................................... 64 vpn sslvpn route add .............................................................................................. 64 vpn sslvpn route delete <row_id> ......................................................................... 65 vpn ipsec policy configure <name> ...................................................................... 65 vpn ipsec dhcp configure ....................................................................................... 74 vpn ipsec policy enable <name> .......................................................................... 74 vpn ipsec policy disable <name>.......................................................................... 74 vpn ipsec policy delete <name> ........................................................................... 74 vpn ipsec policy connect <name> ........................................................................ 75 vpn ipsec policy drop <name> .............................................................................. 75 Chapter 7. Configuration commands under branch DOT11 ............................................................. 76 7.1 dot11 profile add <profile_name> ......................................................................... 76 7.2 dot11 profile edit <profile_name> ......................................................................... 76 7.3 dot11 wmm edit <profile_name> .......................................................................... 77 7.4 dot11 radius configure ............................................................................................ 79 7.5 dot11 profile delete <profile_name>..................................................................... 80 7.6 dot11 accesspoint add <ap_name> ..................................................................... 81 7.7 dot11 accesspoint edit <ap_name> ..................................................................... 81 7.8 dot11 accesspoint delete <ap_name> ................................................................. 82 7.9 dot11 wds enable <radio_no> ............................................................................... 82 7.10 dot11 wds disable <radio_no> .............................................................................. 82 7.11 dot11 wds add_peer <radio_no> <mac_addr> .................................................. 83 7.12 dot11 wds delete_peer <radio_no> <mac_addr> .............................................. 83 7.13 dot11 accesspoint disable <ap_name> ............................................................... 83 7.14 dot11 accesspoint enable <ap_name> ................................................................ 83 7.15 dot11 radio configure <radio_no> ........................................................................ 83 7.16 dot11 radio advanced configure <radio_no> ...................................................... 84 7.17 dot11 accesspoint wps configure ......................................................................... 85 7.18 dot11 accesspoint ACL configure <ap_name> .................................................. 85 7.19 dot11 accesspoint acl delete_mac_address <rowid> ........................................ 86 4 Chapter 8. Configuration commands under branch SYSTEM .......................................................... 87 8.1 System NT-Domain-Settings ................................................................................. 87 8.2 system Active-Directory-Settings .......................................................................... 88 8.3 system LDAP_Settings .......................................................................................... 89 8.4 system POP3_Settings POP3_Server_Configuration ....................................... 90 8.5 system POP3_Settings POP3_Trusted_CA ....................................................... 91 8.6 system logging ipv4 configure ............................................................................... 91 8.7 system logging facility configure <facility> .......................................................... 93 8.8 system logging remote configure .......................................................................... 93 8.9 system logging ipv6 configure ............................................................................... 97 8.10 system Radius-Settings ......................................................................................... 97 8.11 system remote_management https configure .................................................... 98 8.12 system remote_management telnet configure ................................................... 99 8.13 system sessionSettings admin configure .......................................................... 100 8.14 system sessionSettings guest configure ........................................................... 100 8.15 system snmp trap configure <agent_ip> ........................................................... 100 8.16 system snmp trap delete <agent_ip> ................................................................. 101 8.17 system snmp users configure <user> ................................................................ 101 8.18 system snmp sys configure ................................................................................. 102 8.19 system snmp access add .................................................................................... 102 8.20 system snmp access edit <rowid> ..................................................................... 103 8.21 system snmp access delete <rowid> ................................................................. 104 8.22 system switch_settings power_saving configure ............................................. 104 8.23 system switch_settings jumbo_frame configure ............................................... 104 8.24 system admin_setting configure ......................................................................... 105 8.25 system time configure .......................................................................................... 105 8.26 system traffic_meter configure ............................................................................ 106 8.27 system usb usb1 configure .................................................................................. 106 8.28 system usb usb2 configure .................................................................................. 107 8.29 system usb shareport_vlan configure <row_id> ............................................... 107 8.30 system group add ................................................................................................. 108 8.31 system group edit <row_id> ................................................................................ 108 8.32 system group delete <row_id> ............................................................................ 109 8.33 system users add .................................................................................................. 109 8.34 system users edit <row_id> ................................................................................. 110 8.35 system users delete <row_id> ............................................................................ 110 8.36 system group groupaccesscontrol configure <group_id> ............................... 110 8.37 system group access_control_browser add...................................................... 111 8.38 system group access_control_browser delete <row_id> ................................ 111 8.39 system group access_control_ip add................................................................. 111 8.40 system group access_control_ip delete <row_id> ........................................... 112 Chapter 9. Configuration commands under branch UTIL ............................................................... 113 9.1 util system_check ping <ip_address> ................................................................ 113 5 9.2 9.3 9.4 9.5 9.6 9.7 9.8 9.9 9.10 9.11 util system_check dns_lookup <dns> ................................................................ 113 util system_check traceroute <ip_address> ..................................................... 113 util system_check capturePackets start <interface> ....................................... 113 util system_check capturePackets download <fileName> <ipAddr>............. 113 util dbglog_download <fileName> <ipAddr> ..................................................... 113 util usb_test <ipAddr> <fileName> ..................................................................... 114 util firmware_upgrade <IpAddr> <FileName> ................................................... 114 util enable_auto_backup <status> ...................................................................... 114 util enable_config_encryp <status> .................................................................... 114 util watchdog_disable <status> ........................................................................... 114 Chapter 10. Configuration commands under branch LICENSE ....................................................... 115 10.1 license list ............................................................................................................... 115 10.2 license activate <activationKey> ........................................................................ 115 Chapter 11. Configuration commands under branch NET ................................................................ 116 11.1 net ipv6_tunnel six_to_four configure ................................................................ 116 11.2 net bandwidth profile enable <enable> .............................................................. 116 11.3 net bandwidth profile add ..................................................................................... 116 11.4 net bandwidth profile edit <row_id> ................................................................... 117 11.5 net bandwidth profile delete <row_id> ............................................................... 118 11.6 net bandwidth traffic_selector add ...................................................................... 118 11.7 net bandwidth traffic_selector edit <row_id> .................................................... 119 11.8 net bandwidth traffic_selector delete <row_id> ................................................ 119 11.9 net ddns wan1 configure ...................................................................................... 120 11.10 net ddns wan2 configure ...................................................................................... 120 11.11 net lan dhcp reserved_ip configure <mac_address> ...................................... 121 11.12 net lan dhcp reserved_ip delete <mac_address> ............................................ 121 11.13 net dmz dhcp reserved_ip configure <mac_address> .................................... 122 11.14 net dmz dhcp reserved_ip delete <mac_address> .......................................... 122 11.15 net ethernet configure <interface_name> ......................................................... 122 11.16 net lan ipv4 configure ........................................................................................... 123 11.17 net lan ipv6 configure ........................................................................................... 125 11.18 net lan ipv6 pool configure <ipv6PoolStartAddr> ............................................. 126 11.19 net lan ipv6 pool delete <ipv6PoolStartAddr> .................................................. 127 11.20 net igmp configure ................................................................................................ 127 11.21 net intel_Amt server configure ............................................................................ 127 11.22 net intel_Amt_Reflector configure ...................................................................... 128 11.23 net ip_Aliasing server add ................................................................................... 129 11.24 net ip_Aliasing server edit <row_id> .................................................................. 129 11.25 net ip_Aliasing server delete <row_id> .............................................................. 130 11.26 net mode configure ............................................................................................... 130 11.27 net ipv6_tunnel isatap add ................................................................................... 131 11.28 net ipv6_tunnel isatap edit <row_id> ................................................................. 131 6 11.29 11.30 11.31 11.32 11.33 11.34 11.35 11.36 11.37 11.38 11.39 11.40 11.41 11.42 11.43 11.44 11.45 11.46 11.47 11.48 11.49 11.50 11.51 11.52 11.53 11.54 11.55 11.56 11.57 11.58 11.59 11.60 11.61 11.62 11.63 11.64 11.65 11.66 11.67 11.68 11.69 11.70 11.71 11.72 net ipv6_tunnel isatap delete <row_id> ............................................................. 132 net routing mode configure .................................................................................. 132 net wan wan1 ipv4 configure ............................................................................... 133 net wan wan2 ipv4 configure ............................................................................... 145 net wan wan3 threeG configure .......................................................................... 158 net wan mode configure....................................................................................... 159 net wan port_setup configure .............................................................................. 162 net wan vlan_setup configure ............................................................................. 162 net wan vlan_setup vlanId_Add .......................................................................... 162 net wan vlan_setup vlanId_Delete ..................................................................... 163 net wan configurable_port configure .................................................................. 163 net wan wan1 ipv6 configure ............................................................................... 163 net wan wan2 ipv6 configure ............................................................................... 165 net routing ospfv2 configure <interface> ........................................................... 166 net routing ospfv3 configure <interface> ........................................................... 168 16.44 net routing protocol_binding add ............................................................. 169 net routing protocol_binding edit <row_id> ....................................................... 169 net routing protocol_binding enable <row_id>.................................................. 170 net routing protocol_binding disable <row_id> ................................................. 171 net routing protocol_binding delete <row_id> ................................................... 171 net radvd configure ............................................................................................... 172 net radvd pool add ................................................................................................ 173 net radvd pool edit <row_id> ............................................................................... 174 net radvd pool delete <row_id> .......................................................................... 175 net routing dynamic configure ............................................................................. 175 net routing static ipv4 configure <name> .......................................................... 177 net routing static ipv6 configure <name> .......................................................... 178 net routing static ipv4 delete <name> ................................................................ 179 net routing static ipv6 delete <name> ................................................................ 179 net tahi add-default-route <ip_address> ........................................................... 179 net tahi add-route <ip_address> <gw> .............................................................. 179 net tahi del-route <ip_address> <gw> ............................................................... 179 net tahi ipv6-Alias-Add(LAN) <ip6_address>.................................................... 180 net tahi ipv6-Alias-Del(LAN) <ip6_address> ..................................................... 180 net tahi ipv6-Alias-Add(WAN) <ip6_address> .................................................. 180 net tahi ipv6-Alias-Del(WAN) <ip6_address> ................................................... 180 net tahi reachable-time <time> ........................................................................... 181 net tahi ping6 <ip> <size> ................................................................................... 181 net tahi mping6 <mip> .......................................................................................... 181 net tahi bping6 <bip> <psize> ............................................................................. 181 net tahi pmtu-route-add <ipAdd> ........................................................................ 181 net tahi interface-down <interface> .................................................................... 182 net tahi interface-up <interface> ......................................................................... 182 net tahi start-RA-custom <fileName> <ipAddr>................................................ 182 7 11.73 11.74 11.75 11.76 11.77 11.78 11.79 11.80 11.81 11.82 11.83 11.84 net tahi RA-Start .................................................................................................... 182 net ipv6_tunnel teredo configure ........................................................................ 183 net upnp configure ................................................................................................ 184 net port-vlan lan_edit <portnamew>................................................................... 184 net port-vlan wlan_edit <ssidName> .................................................................. 184 net vlan-membership lan_edit <portw> ............................................................. 185 net vlan-membership wlan_edit <ssidName> ................................................... 185 net multiVlan subnet edit <vlanID>..................................................................... 186 net vlan config add <vlan_id> ............................................................................. 187 net vlan config edit <vlan_Id> ............................................................................. 188 net vlan config delete <VlanId> .......................................................................... 188 net dmz configure ................................................................................................. 188 Chapter 12. Configuration commands under branch SECURITY .................................................... 190 12.1 security advanced_network attack_checks configure ..................................... 190 12.2 security advanced_network ips setup ................................................................ 191 12.3 security application_rules add ............................................................................. 191 12.4 security application_rules edit <row_id> ........................................................... 192 12.5 security application_rules delete <row_id> ....................................................... 193 12.6 security firewall custom_service add ................................................................. 193 12.7 security firewall custom_service edit <row_id> ................................................ 194 12.8 security firewall custom_service delete <row_id> ............................................ 194 12.9 security firewall ipv4 configure ............................................................................ 195 12.10 security firewall ipv4 default_outbound_policy <default_outbound_policy>. 196 12.11 security firewall ipv4 edit <row_id>..................................................................... 197 12.12 security firewall ipv4 enable <row_id> ............................................................... 198 12.13 security firewall ipv4 disable <row_id> .............................................................. 199 12.14 security firewall ipv4 delete <row_id> ................................................................ 199 12.15 security firewall ipv4 move <row_id> ................................................................. 199 12.16 security firewall algs ............................................................................................. 199 12.17 security firewall ipv6 configure ............................................................................ 200 12.18 security firewall ipv6 edit <row_id>..................................................................... 201 12.19 security firewall ipv6 enable <row_id> ............................................................... 202 12.20 security firewall ipv6 disable <row_id> .............................................................. 202 12.21 security firewall ipv6 delete <row_id> ................................................................ 202 12.22 security firewall ipv6 move <row_id> ................................................................. 202 12.23 security firewall ipv6 default_outbound_policy <default_outbound_policy>. 203 12.24 security ids configure ............................................................................................ 203 12.25 security session_settings configure ................................................................... 203 12.26 security schedules add......................................................................................... 204 12.27 security schedules edit <row_id> ....................................................................... 205 12.28 security schedules delete <row_id> ................................................................... 207 12.29 security firewall smtpAlg configure ..................................................................... 207 12.30 security firewall smtpAlg approvedMailId add .................................................. 207 8 12.31 12.32 12.33 12.34 12.35 12.36 12.37 12.38 12.39 12.40 12.41 12.42 12.43 12.44 12.45 12.46 12.47 12.48 12.49 12.50 12.51 12.52 12.53 12.54 12.55 12.56 12.57 12.58 12.59 security firewall smtpAlg approvedMailId edit <row_id> ................................. 208 security firewall smtpAlg approvedMailId delete <row_id> ............................. 208 security firewall smtpAlg blockedMailId add ..................................................... 208 security firewall smtpAlg blockedMailId edit <row_id> .................................... 209 security firewall smtpAlg blockedMailId delete <row_id> ................................ 209 security firewall smtpAlg subjectList add ........................................................... 209 security firewall smtpAlg subjectList edit <row_id> .......................................... 210 security firewall smtpAlg subjectList delete <row_id> ..................................... 210 security mac_filter configure................................................................................ 210 security mac_filter source add ............................................................................ 211 security mac_filter source edit <row_id> ........................................................... 211 security mac_filter source delete <row_id> ....................................................... 211 security ip_or_mac_binding add ......................................................................... 212 security ip_or_mac_binding edit <row_id> ........................................................ 212 security ip_or_mac_binding delete <row_id> ................................................... 213 security firewall vpn_passthrough configure ..................................................... 213 security webAccess status <status> .................................................................. 213 security webAccess add ...................................................................................... 213 security webAccess edit <row_id> ..................................................................... 214 security webAccess delete <row_id> ................................................................. 214 security website_filter content_filtering configure ............................................ 215 security website_filter approved_urls add ......................................................... 215 security website_filter approved_urls edit <row_id> ........................................ 215 security website_filter approved_urls delete <row_id> ................................... 216 security website_filter blocked_keywords add.................................................. 216 security website_filter blocked_keywords edit <row_id> ................................ 216 security website_filter blocked_keywords delete <row_id> ............................ 217 security website_filter blocked_keywords enable <row_id> ........................... 217 security website_filter blocked_keywords disable <row_id> .......................... 217 9 Chapter 1. Introduction This document describes the Command Line Interface (CLI) for managing D-Link's DSR-500AC/1000AC router. The CLI user requires advanced knowledge about the configuration of the system, and it should be used only by those users who are familiar with CLI-based configuration. Note that the following features in the DSR Unified Services Router cannot be managed by the CLI: • Firmware Upgrade • Configuration Backup/Restore • Certificate Generate/Upload • Power Savings mode configuration • System Dashboard/Resource Utilization Please access the web browser based UI of the DSR router for managing these features. 1.1 Accessing the CLI The CLI can be accessed by logging in with the same user credentials used to access the web browser based UI. ***************************************************** Welcome to the DSR Command Line Interface **************************************************** D-Link DSR> Note: D-Link DSR> is the CLI prompt. 10 Chapter 2. Basic commands available on the CLI 2.1 Context Sensitive Help [?] - Displays context sensitive help. This is either a list of possible command completions with summaries, or the full syntax of the current command. A subsequent repeat of this key, when a command has been resolved, will display a detailed reference. 2.2 Auto-Completion The following keys both perform auto-completion for the current command line. If the command prefix is not unique a subsequent repeat of the key will display possible completions. • [enter] - Auto-completes, syntax-checks then executes a command. If there is a syntax error then offending part of the command line will be highlighted and explained. • [space] - Auto-completes, or if the command is already resolved, inserts a space. 2.3 Movement Keys • [CTRL-A] - Moves to the start of the line. • [CTRL-E] - Moves to the end of the line. • [up] - Moves to the previous command line held in history. • [down] - Moves to the next command line held in history. • [left] - Moves the insertion point left one character. • [right] - Moves the insertion point right one character. 2.4 Deletion Keys • [CTRL-C] - Deletes the whole line. • [CTRL-D] - Deletes the character to the right on the insertion point. • [CTRL-K] - Deletes all the characters to the right of the insertion point. • [Backspace] - Deletes the character to the left of the insertion point. 11 2.5 Escape Sequences • !! - Substitutes the last command line. • !N - Substitutes the Nth command line (absolute as per 'history' command). • !-N - Substitutes the command line entered N lines before (relative). 12 Chapter 3. Command Hierarchy in CLI 3.1 CLI Commands The CLI commands are divided into 4 categories: • Global commands • Show commands • Utility commands • Configuration commands 3.2 Router Configuration The router configuration is divided into 5 branches: • Net: Network Settings • Security: Security Settings • System: Admin Settings • Dot11: Wireless Settings • Vpn: VPN Settings • Radius: RADIUS Settings 13 Chapter 4. Global commands used in CLI The global commands that are used in CLI are given below: • .exit: Exit this session • .help: Displays an overview of the CLI syntax • .top: Returns to the default mode • .reboot: Reboots the system. • .history: Displays the current session's command line history. Number of commands in history list can be controlled by setting limit argument; by default it is unbounded. 14 Chapter 5. Show commands used in CLI The show commands for all the above mentioned branches are outlined in this section. The command show activeDirectory-serverCheck? at the CLI prompt would give the description of all the show commands in the branch activeDirectory-serverCheck, which is as follows: 1 show activeDirectoryserverCheck Displays status of Active Directory servers. The command show NT-Domain-Settings? at the CLI prompt would give the description of all the show commands in the branch NT-Domain-Settings, which is as follows: 1 show NT-Domain-Settings Displays NT Domain configuration. The command show vpn? at the CLI prompt would give the description of all the show commands in the branch vpn, which is as follows: 1 2 3 show vpn gre_tunnels show vpn l2tp client show vpn l2tp client setup gre tunnels display mode. Shows l2tp client details. Displays l2tp client setup. 4 show vpn l2tp client status Displays l2tp client status. 5 6 7 show vpn l2tp show vpn l2tp server show vpn l2tp server setup show vpn l2tp server connections show vpn openvpn show vpn openvpn config show vpn openvpn remote_network_all show vpn openvpn local_network_all show vpn openvpn cert_upload_status show vpn pptp client show vpn pptp client setup show vpn pptp client_status show vpn pptp client_status setup Shows l2tp server details. Shows l2tp server details. Displays l2tp server setup. 8 9 10 11 12 13 14 15 16 17 Displays l2tp server stats. Displays openvpn commands. Displays openvpn configuration. Displays all openvpn remote network on system. Displays all openvpn local network on system. Displays openvpn certificate status. Shows pptp client details. Displays pptp client setup. Shows pptp client status details. Displays pptp client status setup. 15 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 show vpn pptp Shows pptp server details. show vpn pptp server Shows pptp server details. show vpn pptp server setup Displays pptp server setup. show vpn pptp server Displays pptp server stats. connections show vpn sslvpn Shows sslvpn settings. show vpn sslvpn Shows sslvpn active connections. connections show vpn sslvpn client Shows sslvpn client settings. show vpn sslvpn route Shows route settings. show vpn sslvpn policy Shows sslvpn policy settings. show vpn sslvpn portalShows sslvpn portal-layouts settings. layouts show vpn sslvpn Shows sslvpn portforwarding settings. portforwarding show vpn sslvpn Shows sslvpn portforwarding appconfig portforwarding appconfig settings. show vpn sslvpn Shows sslvpn portforwarding hostconfig portforwarding hostconfig settings. show vpn sslvpn resource Shows sslvpn resource settings. show vpn sslvpn resourceShows sslvpn resource object settings. object <resource_name> show vpn ipsec Shows vpn policy. show vpn ipsec policy Shows vpn policy. show vpn ipsec policy setup Shows vpn policy. show vpn ipsec policy status Shows vpn status. show vpn ipsec policy Shows a list of backup policies. backup_policies show vpn ipsec dhcp Shows vpn ipsec dhcp setup. show vpn ipsec dhcp setup Shows vpn ipsec dhcp setup. The command show LDAP-Settings? at the CLI prompt would give the description of all the show commands in the branch LDAP-Settings, which is as follows: 1 show LDAP-Settings Displays LDAP configuration. The command show dot11? at the CLI prompt would give the description of all the show commands in the branch dot11, which is as follows: 1 show dot11 2 show dot11 accesspoint<ap_name> Displays 802.11 configuration Displays Access Point configuration. This command displays the list of configured Access Points for the device. From this summary list, status and parameters of each AP are available for display. 16 ap_name: This is an AP identifier which uniquely identifies an AP in the list of configured APs. Enabled: An AP can be disabled if not in use and enabled as needed. The AP is disabled if this field has the value 'N' and it is enabled if it has the value 'Y'. Disabling an AP does not delete the configuration, but stops the AP. Enabling the AP creates a wireless network where computers and other devices can join and communicate with the devices connected to the access point or the devices on the Local Area Network (LAN). SSID: The name or Service Set Identifier (SSID) is the name of the wireless network serviced by this AP. Note that since a given wireless profile can be common to multiple APs, the SSID is not unique to an AP. In order for computers or devices to communicate via this wireless network serviced by this AP, all devices must select the same SSID from the list of wireless networks in the area.Broadcast: The field indicates whether SSID is broadcasted or not in the beacon frames transmitted by the AP. If SSID is not broadcasted, the wireless devices will not be able to see the network name (SSID). If this field has the value 'Y', it indicates that the AP's SSID is broadcasted to the public. If it is 'N' it indicates the SSID is not to be broadcasted and a device would have to specify the SSID exactly to connect to this AP. Profile: This field has a brief description of the security, encryption and authentication combination assigned to the AP. A Profile is not necessarily unique to an AP, rather this grouping of wireless settings can be used on more than one AP at the same time. Radio: The physical radio(s) on which this AP is running on. An AP can run on multiple radios at the same time for load-balancing and better throughput. VLAN: The AP can be a part of a logical network defined by the VLAN id. This allows devices connected to the VLAN through this AP to exchange data with one another as in a LAN. If the optional argument ap_name is specified, the following configuration information is displayed for the access point. Beacon Interval: The amount of time in milliseconds between beacon transmissions. DTIM Interval: Interval for delivery of traffic 17 3 indication message. It is related to beacon interval. RTS Threshold: The Request to Send (RTS) threshold is the value the AP checks against its transmitting frames to determine if the RTS/Clear To Send (CTS) handshake is required with the receiving client. Using a small value causes RTS packets to be sent more often, consuming more of the available bandwidth, therefore reducing the apparent throughput of the network packet. The default is 2346, which effectively disables RTS. Frag Threshold: This is the maximum length of the frame, beyond which packets must be broken up (fragmented) into two or more frames. Collisions occur more often for long frames because sending them occupies the channel for a longer time. The default is 2346, which effectively disables Fragmentation. Preamble Mode: 802.11b requires that a preamble be prepended to every frame before it is transmitted to the air. The preamble may be either the traditional long preamble, which requires 192 micro second for transmission, or it may be an optional short preamble that requires only 96 micro second. Long preamble is needed for the compatibility with legacy 802.11 systems operating at 1 and 2 Mbps. The default is 'long'. RTS/CTS Protection: If selected the AP always performs RTS/CTS handshake before transmitting a packet. It is generally used to minimize collisions among hidden stations Transmit Power Gain: Defines the relative amplification (gain) in dbm for transmitted packets which is added to the TX power configured on the physical radio. Retry Limit: The number of retries the AP will use when a frame transmission fails. It is used for both long and short frames, of size less than or equal to the RTS threshold. Supported Rate: The rate or rates (in Mbps) which the AP will advertise in the beacon frames. Displays Profile configuration. If no profile name is specified, this command will display a summary of the details of all the profiles show dot11 configured in the system. If a profile name is profile<profile_name><displ specified, this command will display a detailed ay_qos> configuration of the profile. If the argument 'DisplayQosInfo' is set to 'Y', the profile details will include the QoS details as well. 18 4 5 6 7 8 9 10 11 12 Displays access point and radio statistics. This table shows a cumulative total of relevant wireless statistics for the APs and radios; the counter is reset when the device is rebooted. Radio Statistics: This table displays transmit/receive data for each radio. It has the following fields: Pkt(Tx/Rx): The number of transmitted/received wireless packets. Byte(Tx/Rx): The number of transmitted/received bytes of information. Err(TRx/Rx): The number of transmitted/received packet errors reported to the radio. Drop(Tx/Rx): The number of transmitted/received packet drops between the radio and client. Mcast: The number of multicast packets sent over this radio. Coll: The number show dot11 statistics of packet collisions reported to the radio. AP Statistics: This table displays transmit/receive data for each AP. An AP can have multiple entries if it is running on multiple radios. It has the following fields: Pkt(Tx/Rx): The number of transmitted/received wireless packets Byte(Tx/Rx): The number of transmitted/received bytes of information Err(TRx/Rx): The number of transmitted/received packet errors reported to the AP. Drop(Tx/Rx): The number of transmitted/received packet dropped by the AP. Mcast: The number of multicast packets sent over this AP. Coll: The number of packet collisions reported to the AP Displays access control list information for the show dot11 acl<ap_name> specified access point. show dot11 accesspoint Displays wireless stats. status<ap_name> show dot11 Displays wireless stats. wmm<profile_name> show dot11 radius Displays radius Information. show dot11 wps Displays WPS Information. show dot11 wds<radio_no> Displays WDS Information. show dot11 Displays wireless_statistics Information. wireless_statistics Displays Radio configuration. Available Radios This table shows the list of available radios that an AP may use. It has the following fields: show dot11 radio<radio_no> Radio: The radio number. Card: This field indicates which card the radio is using. Path: This field indicates which path the radio is 19 mapped to. RogueAP Enabled: If this field has value 'Y' it indicates that RogueAP detection is enabled on this radio. If it is 'N' it indicates that RogueAP detection is disabled on this radio. If the optional argument radioNum is given, the following cofiguration information is displayed for the given radio. Radio Settings Radio: The radio number. Card Name: This field indicates which card the radio is using. Path: This field indicates which path the radio is mapped to. Current Channel: The channel used by the radio. RogueAP Enabled: If this field has the value 'Yes', it indicates that RogueAP detection is enabled on this radio. TX Power: Value in dBm is the default transmitted power level for all APs that use this radio. RX Diversity: Enable receive diversity (use multiple antennas to receive packets) List of Access Points for Radio This table shows all the APs that are configured for a particular radio. AP Name: This is the name of the AP. BSSID: The BSSID of the AP SSID: The SSID serviced by AP Profile: This field has a brief description of the security, encryption and authentication combination assigned to the AP. The command show POP3-Settings? at the CLI prompt would give the description of all the show commands in the branch POP3-Settings, which is as follows: 1 show POP3-Settings Displays POP3 configuration. The command show POP3-Trusted-CA? at the CLI prompt would give the description of all the show commands in the branch POP3-Trusted-CA, which is as follows: 1 show POP3-Trusted-CA Displays POP3 Trusted Certificates. The command show system? at the CLI prompt would give the description of all the show commands in the branch system, which is as follows: 1 2 3 4 5 6 show system logging . show system logging remote . show system logging remote Displays remote logging configuration setup show system logging facility . show system logging facility Displays logging facility configuration setup <facility> show system logging ipv4 . 20 7 8 9 show system logging ipv4 setup show system logging ipv6 show system logging ipv6 setup 10 show system log 11 show system log all 12 show system log page 20 show system remote_management show system remote_management setup show system sessionSettings show system snmp <agentIP> show system switch_setting show system switch_setting power_mode show system switch_setting jumbo_frame show system status 21 show system dashboard 22 23 24 show system time show system time setup show system traffic_meter show system traffic_meter setup show system usb-status show system users show system group show system group specific<row_id> show system group all show system users all show system users specific<row_id> 13 14 15 16 17 18 19 25 26 27 28 29 30 31 32 Displays logging configuration . Displays ipv6 logs configuration Displays captured log messages of the router activities Displays all the captured log messages of the router activities from Event Log. The logs displayed on this event viewer can be defined in the Log Configuration commands Displays Page Wise, captured log messages of the router activities from Event Log. The logs displayed on this event viewer can be defined in the Log Configuration commands . Displays remote configuration management over https Displays sessionSettings Configuration Displays SNMP configuration . Displays power mode configuration Displays jumbo frame configuration Displays system status Displays the resources being used in the system currently . Displays Timezone and NTP configuration . Displays traffic meter configuration Displays USB Status System group display mode System user display mode Displays information for given group Displays all groups on system Displays all users on system Displays information for given user 21 33 34 35 36 show system group Displays Group Access Control configuration for groupaccesscontrol <group_ the selected group id> show system group Displays Access Control browsers Policies access_control_browser show system group Displays Access Control ips Policies access_control_ip show system Displays the firmware Version. firmwareVersion The command show ntDomain-serverCheck? at the CLI prompt would give the description of all the show commands in the branch ntDomain-serverCheck, which is as follows: 1 show ntDomainserverCheck Displays status of NT Domain servers. The command show Active-Directory-Settings? at the CLI prompt would give the description of all the show commands in the branch Active-Directory-Settings, which is as follows: 1 show Active-DirectorySettings Displays Active Directory configuration. The command show pop3-serverCheck? at the CLI prompt would give the description of all the show commands in the branch pop3-serverCheck, which is as follows: 1 show pop3-serverCheck Displays status of Pop3 servers. The command show Radius-serverCheck? at the CLI prompt would give the description of all the show commands in the branch Radius-serverCheck, which is as follows: 1 show Radius-serverCheck Displays status of Radius servers. The command show Radius-Settings? at the CLI prompt would give the description of all the show commands in the branch Radius-Settings, which is as follows: 1 show Radius-Settings Displays RADIUS configuration. A RADIUS server maintains a database of user accounts used in larger environments. If a RADIUS server already exists, it can be used for authenticating users that want to connect to the wireless network provided by this device. When multiple RADIUS servers are configured, they are accessed in the same order as in the table. If first RADIUS server is not accessible, then system tries to contact to the next RADIUS server. Configured Radius Servers This table 22 displays the list of all configured RADIUS servers. If the optional argument ServerIP is specified, detailed configuration of the RADIUS server is displayed. Server IP: IP address of RADIUS authentication server Accounting Server IP: IP address of RADIUS accounting server Server Port: RADIUS authentication server port to send the RADIUS messages. Timeout: The time (in seconds) the device waits for a response from the RADIUS server Retries: The number of tries the router will make to the RADIUS server before giving up. Secret: RADIUS server secret. This field is only displayed if the argument ServerIP is specified. The command show net? At the CLI prompt would give the description of all the show commands in the branch net, which is as follows: 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 show net ipv6_tunnel status show net bandwidth show net bandwidth profile show net bandwidth profile setup show net bandwidth traffic_selector show net bandwidth traffic_selector setup show net bandwidth profile interface_list show net bandwidth traffic_selector services show net ddns show net ddns setup show net lan dhcp show net lan dhcp reserved_ip show net lan dhcp reserved_ip setup show net lan dhcp leased_clients show net lan dhcp leased_clients list show net dmz show net dmz setup show net dmz dhcp Displays ipv6 tunnels status . . Displays list of Available Bandwidth Profile(s). . Shows the list of Available Traffic Selector(s). Displays the list of interface for Inbound Bandwidth Profile. It includes Available VLANs Displays a list of available services . Show Dynamic DNS Configuration. . . Shows a list of DHCP Reserved Addresses. . Shows a list of Available DHCP Leased Clients. . Shows DMZ Configuration. . 23 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 show net dmz dhcp reserved_ip show net dmz dhcp reserved_ip setup show net dmz dhcp leased_clients show net dmz dhcp leased_clients list show net ethernet show net lan show net lan ipv4 show net lan ipv4 setup show net lan ipv6 show net lan ipv6 setup show net statistics <interface> show net igmp show net intel_Amt show net intel_Amt server show net intel_Amt Reflector show net intel_Amt server setup show net intel_Amt Reflector setup show net Ip_Alias show net Ip_Alias server show net Ip_Alias server setup show net mode show net mode setup show net ipv6_tunnel show net ipv6_tunnel setup show net routing mode show net routing mode setup show net wan wan1 show net wan wan1 ipv4 show net wan wan1 ipv4 status show net wan wan1 ipv4 setup show net wan wan2 show net wan wan2 ipv4 . Displays a list of DMZ DHCP Reserved Addresses. . Shows a list of Available DMZ DHCP Leased Clients. Displays Ethernet interfaces . . Displays LAN Configuration. . Shows IPv6 LAN Configuration. Shows Interface Statistics Displays igmp configuration Shows IntelAmt details Shows IntelAmt Server Configuration show IntelAmt Reflector Configuration Displays Intel_Amt server configuration. Displays Intel_Amt Reflector setup. Shows Ip Alias configuration details. Shows Ip Alias configuration details. Displays net Intel_Amt server setup. . Displays IP MODE configuration . Displays ipv6 tunnels configuration . Routing Mode between WAN and LAN . . Displays ipv4 wan1 Information. Displays Wan1 Setup Information. . . 24 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 show net wan wan2 ipv4 status show net wan wan2 ipv4 setup show net wan wan3 show net wan wan3 threeG show net wan wan3 threeG setup show net wan wan3 threeG status show net wan show net wan mode show net wan port_setup show net wan vlan_setup show net wan configurable_port show net wan wan1 ipv6 show net wan wan1 ipv6 status show net wan wan1 ipv6 setup show net wan wan2 ipv6 show net wan wan2 ipv6 status show net wan wan2 ipv6 setup show net routing ospfv2 show net routing ospfv3 show net routing ospfv2 setup show net routing ospfv3 setup show net routing protocol_binding show net routing protocol_binding setup show net radvd show net radvd setup show net routing dynamic show net routing dynamic setup show net routing show net routing static show net routing static ipv4 Displays ipv4 wan2 Information. Displays wan2 Setup Information. Displays the wan3 configuration Shows ThreeG information. Displays ThreeG Configuration. Displays wan3 ThreeG status. . Displays wan mode Setup. Displays wan port Setup. Displays vlan port Information for wan. Displays configurable port Information. . Displays ipv6 wan1 Information. Displays Wan1 Setup Information. . Displays ipv6 wan2 Information. Displays Wan2 Setup Information. Shows OSPFv2 Configuration Shows OSPFv3 Configuration Displays OSPFv2 Configuration Displays OSPFv3 Configuration Shows protocol_binding rules Displays protocol Binding Rules . Displays RADVD configuration Shows dynamic routing setup Shows dynamic routing Setup. Displays routing setup Displays Static Routes Info Displays IPv4 Static Routes Info 25 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 show net routing static ipv4 setup show net routing static interface_list show net routing static ipv6 show net routing static ipv6 setup show net upnp show net upnp portmap show net upnp setup show net vlan show net vlan configuration show net multivlan show net multivlan subnet show net multivlan subnet status show net port-vlan show net port-vlan status show net wireless_vlan show net wireless_vlan status Shows all the configured IPV4 routes. Shows all the interfaces on which static route can be configured Displays IPv6 Static Routes Info Shows all the configured IPV6 Static routes. Displays UPnP Information Displays UPnP portmap Table Information. Displays UPnP Setup Information. Displays VLAN Confgiuration. Shows vlan server status Shows vlan server status Displays multi vlan Subnet List. Shows Port vlan status Displays Port vlan status. Shows Port vlan status Displays Port vlan status. The command show ldap-serverCheck? at the CLI prompt would give the description of all the show commands in the branch ldap-serverCheck, which is as follows: 1 show ldap-serverCheck Displays status of Ldap servers. The command show security? at the CLI prompt would give the description of all the show commands in the branch security, which is as follows: 1 2 3 4 5 6 7 show security advanced_network show security advanced_network attack_checks show security advanced_network ips show security application_rules show security application_rules setup show security application_rules status show security firewall custom_service Shows advanced firewall attack checks Displays Security Checks configuration Displays ips configuration . Displays application rules configuration Displays application rules status . 26 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 show security firewall custom_service setup show security firewall show security firewall ipv4 show security firewall ipv4 setup show security firewall algs show security firewall ipv6 show security firewall ipv6 setup show security ids show security ids setup show security session_settings show security schedules show security schedules setup show security firewall smtpAlg show security firewall smtpAlg configure show security firewall smtpAlg configure setup show security firewall smtpAlg approvedMailId show security firewall smtpAlg approvedMailId setup show security firewall smtpAlg blockedMailId show security firewall smtpAlg blockedMailId setup show security firewall smtpAlg subjectList show security firewall smtpAlg subjectList setup show security mac_filter show security mac_filter setup show security ip_or_mac_binding show security ip_or_mac_binding setup Displays a list of available Custom Service configuration Displays Firewall Rules Displays IPv4 Firewall Rules Displays IPv4 Firewall Rules Displays ALGs protocals status Displays IPv6 Firewall Rules Displays IPv6 Firewall Rules . Displays IDS configuration Displays Session Settings configuration . Displays Schedules configuration . . Shows SmtpAlg Status. . Shows a List of Approved Mail_Id. . Shows a List of Blocked Mail_Id. . Shows a List of Subject, corresponding Mail_Id and Action. . Displays Source Mac Filter configuration . Displays IP/MAC Binding configuration 27 33 34 35 36 37 38 39 40 show security firewall vpn_passthrough show security firewall vpn_passthrough setup show security webAccess . Displays VPN passthrough Configuration . Displays security webAccess configuration and show security webAccess rules Displays a list of Allowed IpAdrr/Network Web setup Access show security website_filter . show security website_filter Displays content filtering configuration content_filtering show security website_filter Displays trusted domains configuration approved_urls Displays a list of available Approved URLs show security website_filter Displays blocked keywords configuration blocked_keywords The command vpn? at the CLI prompt would give the description of all the configuration commands in the branch vpn, which is as follows: 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 vpn gre_tunnel vpn gre_tunnel add vpn gre_tunnel edit <row_id> vpn gre_tunnel delete <row_id> vpn l2tp client vpn l2tp client configure vpn l2tp client_action <action> vpn l2tp vpn l2tp server vpn l2tp server configure vpn openvpn vpn openvpn config vpn openvpn remote_network vpn openvpn remote_network add vpn openvpn remote_network edit <row_id> vpn openvpn remote_network delete <row_id> GRE Tunnel. GRE Tunnel add mode GRE Tunnel edit mode GRE Tunnel delete mode Vpn policy mode. l2tp client configuration mode Vpn l2tp client action set. Vpn policy mode. Vpn policy mode. l2tp server configuration mode Displays openvpn configure commands openvpn configuration mode Opens vpn remote networks configuration commands. Adds a new remote network Remote network edit mode. Openvpn remote network delete mode. 28 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 vpn openvpn local_network Opens vpn commands. local networks configuration vpn openvpn local_network Adds a new local network. add vpn openvpn local_network Local network edit mode. edit <row_id> vpn openvpn local_network Openvpn local network delete mode. delete <row_id> vpn openvpn cert_upload Openvpn local network display mode. vpn openvpn cert_upload Uploads the pem formatted CA Certificate. ca <fileName> <ipAddr> vpn openvpn cert_upload Uploads the pem formatted Server / Client server_client_cert <fileNam Certificate. e> <ipAddr> vpn openvpn cert_upload client_key <fileName> <ipA Uploads the pem formatted Server/Client key. ddr> vpn openvpn cert_upload dh_Key <fileName> <ipAddr Uploads the pem formatted Diffie Hellman key. > vpn openvpn cert_upload Uploads the pem formatted Tls Authentication tls_Authkey <fileName> <ip Key. Addr> vpn openvpn cert_upload crl_cert <fileName> <ipAddr Uploads the pem formatted CRL Certificate. > vpn openvpn cert_upload Uploads the pem formatted config file. config <fileName> <ipAddr> vpn pptp client Vpn policy mode. vpn pptp client configure PPTP client configuration mode. vpn pptp Vpn pptp client action set. client_action <action> vpn pptp Vpn policy mode. vpn pptp server Vpn policy mode. vpn pptp server configure pptp server configuration mode vpn sslvpn sslvpn configuration commands vpn sslvpn portal-layouts sslvpn portal layout configuration commands vpn sslvpn portal-layouts Adds sslvpn portal layout. add vpn sslvpn portal-layouts Edits sslvpn portal layout. edit <row_id> vpn sslvpn portal-layouts Deletes sslvpn portal layout. delete <row_id> vpn sslvpn portforwarding Sslvpn portforwarding configuration commands. 29 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 vpn sslvpn portforwarding appconfig vpn sslvpn portforwarding appconfig add vpn sslvpn portforwarding appconfig delete <row_id> vpn sslvpn portforwarding hostconfig vpn sslvpn portforwarding hostconfig add vpn sslvpn portforwarding hostconfig delete <row_id> vpn sslvpn resource vpn sslvpn resource add vpn sslvpn resource configure vpn sslvpn resource configure add <resource_name> vpn sslvpn resource configure delete <row_id> vpn sslvpn resource delete <row_id> vpn sslvpn policy vpn sslvpn policy add vpn sslvpn policy edit <row_id> vpn sslvpn policy delete <row_id> vpn sslvpn client vpn sslvpn route vpn sslvpn route add vpn sslvpn route delete <row_id> vpn ipsec vpn ipsec policy vpn ipsec policy configure <name> vpn ipsec dhcp vpn ipsec dhcp configure vpn ipsec policy enable <name> vpn ipsec policy disable <name> Sslvpn portforwarding application configuration commands. Adds an application configuration rule. Deletes an application configuration rule. Sslvpn portforwarding commands. host configuration Adds a host configuration rule. Deletes a host configuration rule. Sslvpn resource configuration commands. Adds an sslvpn resource. Configures an sslvpn resource. Adds an sslvpn resource object. Deletes an sslvpn resource object. Deletes an sslvpn resource. Sslvpn policy configuration commands. Adds an sslvpn policy. Edits an sslvpn policy. Deletes an sslvpn policy. Sslvpn client configuration commands. Sslvpn route configuration commands. Adds sslvpn client route. Deletes sslvpn client route. Vpn policy mode. Vpn policy mode. Vpn policy configuration mode. Vpn ipsec over dhcp mode. vpn dhcp over ipsec policy configuration mode Enables a vpn policy. Disables a vpn policy. 30 68 69 70 vpn ipsec policy delete <name> vpn ipsec policy connect <name> vpn ipsec policy drop <name> Deletes a vpn policy. Connects a vpn tunnel. Drops a vpn tunnel. The command dot11? at the CLI prompt would give the description of all the configuration commands in the branch dot11, which is as follows: 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 dot11 profile dot11 accesspoint dot11 radio dot11 wds dot11 wmm dot11 radius dot11 profile add <profile_name> dot11 profile edit <profile_name> dot11 wmm edit <profile_name> dot11 radius configure dot11 profile delete <profile_name> dot11 accesspoint add <ap_name> dot11 accesspoint edit <ap_name> dot11 accesspoint delete <ap_name> dot11 wds enable <radio_no> dot11 wds disable <radio_no> dot11 wds add_peer <radio_no> <mac _addr> dot11 wds delete_peer <radio_no> <m ac_addr> dot11 accesspoint disable <ap_name> dot11 accesspoint enable <ap_name> 802.11 profile configuration commands. 802.11 access point configuration commands. 802.11 radio configuration commands. 802.11 wds configuration commands. 802.11 wmm configuration. 802.11 radius configuration mode. 802.11 profile configuration mode. 802.11 profile configuration mode. 802.11 wmm configuration mode. 802.11 radius configuration mode. Deletes an 802.11 profile. 802.11 access point configuration mode 802.11 access point configuration mode Deletes an 802.11 access point. Enables wds. Disables wds. Adds peer mac address wds. Deletes peer mac address wds. Disables an 802.11 access point. Enables an 802.11 access point. 31 21 22 23 24 25 26 27 28 dot11 radio 802.11 radio configuration mode. configure <radio_no> dot11 radio advanced Advanced radio configure dot11 radio advanced 802.11 AP advanced configuration mode. configure <radio_no> dot11 accesspoint wps Advanced AP configure dot11 accesspoint wps 802.11 AP wps configuration mode. configure dot11 accesspoint acl Accesspoint ACL configure commands dot11 accesspoint ACL 802.11 AP ACL configuration mode. configure <ap_name> dot11 accesspoint acl delete_mac_address <rowid Deletes acl mac address entry. > The command system? at the CLI prompt would give the description of all the configuration commands in the branch system, which is as follows: 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 system POP3_Settings System POP3 configuration commands. system NT-Domain-Settings Configures NT-Domain Settings system Active-DirectoryConfigures Active-Directory Settings Settings system LDAP_Settings Configures LDAP Settings system POP3_Settings Configures POP3 Server POP3_Server_Configuration system POP3_Settings Uploads POP3 trusted Certificates POP3_Trusted_CA system logging . system logging ipv4 System logging ipv4 configuration. system logging facility System log Facility configuration. system logging facility System log Facility Options configuration. Options system logging remote System remote Logging configuration. system logging ipv6 System ipv6 logs configuration. system logging ipv4 System logging configuration mode. configure system logging facility System logging facility configuration mode. configure <facility> system logging remote System remote Logging configuration mode. configure system logging ipv6 System ipv6 logs configuration mode. configure system Radius-Settings Configures Radius-Settings. system Remote Mgmt Setup. remote_management 32 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 system remote_management https system remote_management https configure system remote_management telnet configure system sessionSettings system sessionSettings admin system sessionSettings admin configure system sessionSettings guest system sessionSettings guest configure system snmp system snmp trap system snmp sys system snmp access system snmp users system snmp trap configure <agent_ip> system snmp trap delete <agent_ip> system snmp users configure <user> system snmp sys configure system snmp access add system snmp access edit <rowid> system snmp access delete <rowid> system switch_settings system switch_settings power_saving system switch_settings jumbo_frame system switch_settings power_saving configure system switch_settings jumbo_frame configure system admin_setting Remote Mgmt Setup for https. Configures remote management support for https. Configures remote management support for telnet. Session Settings Configuration. Session Settings Configuration. Admin Session Settings Configuration. Session Settings Configuration. Guest Session Settings Configuration. System SNMP configuration System SNMP trap configuration. System SNMP system configuration. System SNMP Access Configuration. System SNMP v3 User Configuration. SNMP trap configuration mode. Deletes a SNMP trap configuration. SNMP v3 User list configuration settings SNMP system configuration mode SNMP access configuration mode SNMP configuration mode SNMP access configuration mode Switch setting setup. Power saving setup. Jumbo frame setup. Power saving configuration mode. Jumbo frame configuration mode. System configuration. 33 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 system admin_setting configure system time system time configure system traffic_meter system traffic_meter configure system usb system usb usb1 system usb usb1 configure system usb safelyRemoveUsb system usb SafelyRemoveUSB usb1 system usb SafelyRemoveUSB usb2 system usb usb2 system usb usb2 configure system usb shareport_vlan system usb shareport_vlan configure <row_id> system usb shareport_vlan show system users system group system group add system group edit <row_id> system group delete <row_id> system users add system users edit <row_id> system users delete <row_id> system group groupaccesscontrol system group groupaccesscontrol configure <group_id> system group access_control_browser system group access_control_browser add System configuration mode. System time configuration mode System time configuration mode Traffic meter Configuration setup. Traffic meter configuration mode. USB Configuration. USB1 Configuration. USB1 Configuration. Safely removing the USB. To unmount usb1 To unmount usb2 USB2 Configuration. USB2 Configuration. USB SharePort settings. SharePort on vlan configuration. Displays SharePort on vlan configuration. System user configuration commands. System group configuration commands. System groups add mode. System groups edit mode. System groups delete mode. System users add mode. System users edit mode. System users delete mode. Group access control. Group access control configuration. List of browsers for which login policies can be applied. Adds a browser to Access Control browsers list 34 73 74 75 76 system group access_control_browser delete <row_id> system group access_control_ip system group access_control_ip add system group access_control_ip delete <row_id> Deletes a browser browsers list. from Access Control List of ip for which login policies can be applied Adds an ip to Access Control ip list. Deletes an ip from Access Control ip list. The command util ? at the CLI prompt would give the description of all the configuration commands in the branch util , which is as follows: 1 2 3 4 5 6 7 8 9 10 11 12 13 14 util restore-factory-defaults Revert to factory default settings. util system_check System check options util system_check Pings an Internet Address. ping <ip_address> util system_check To retrieve the IP address of a Web, FTP, Mail dns_lookup <dns> or any other Server on the Internet util system_check Displays all the routers present between the traceroute <ip_address> destination IP address and this router util system_check Displays IPV4 Routing Table display_IPV4_routingtable util system_check Displays IPV6 Routing Table display_IPV6_routingtable util system_check Allows you to capture all packets that pass capturePackets through the selected interface util system_check capturePackets Starts the packet capture start <interface> util system_check capturePackets Displays available interfaces for packet capture avail_interfaces util system_check Stops the packet capture capturePackets stop util system_check capturePackets Downloads the packet capture to the host download <fileName><ipAd machine dr> util dbglog_download <fileName Downloads Dbglogs to the host machine > <ipAddr> util reboot Reboots the system. 35 15 16 17 18 19 util usb_test <ipAddr> <fileNam e> util firmware_upgrade <IpAddr> <FileName> util enable_auto_backup <statu s> util enable_config_encryp <stat us> util watchdog_disable <status> To test the USB. To upgrade the firmware. Enables/Disables Auto Backup support. Enables/Disables support. Configuration encryption Disables/Enables watchdog timer. The command license? at the CLI prompt would give the description of all the configuration commands in the branch license, which is as follows: 1 2 license list license activate <activationKey> List license on the device. Activates a license on the device. The command net? at the CLI prompt would give the description of all the configuration commands in the branch net, which is as follows: 1 2 4 net ipv6_tunnel net ipv6_tunnel six_to_four net ipv6_tunnel six_to_four configure net bandwidth 5 net bandwidth profile 3 6 7 8 9 10 11 12 net bandwidth profile enable <enable> net bandwidth profile add net bandwidth profile edit <row_id> net bandwidth profile delete <row_id> net bandwidth traffic_selector net bandwidth traffic_selector add net bandwidth traffic_selector edit <row_id> Ipv6 tunnel configuration setup. Six to four tunnel configuration setup. Six To Four Tunnel configuration mode. . It gives options to add/edit/delete a bandwidth profile. It allows to enable/disable bandwidth profiles. It allows to add a bandwidth profile. It allows to edit a bandwidth profile. It allows to delete a bandwidth profile. It gives options to add/edit/delete a traffic selector for a bandwidth profile. It allows to add a traffic selector for a bandwidth profile. It allows to edit a traffic selector for a bandwidth profile. 36 37 net bandwidth traffic_selector delete <row_id> net ddns net ddns wan1 net ddns wan2 net ddns wan1 configure net ddns wan2 configure net lan dhcp net lan dhcp reserved_ip net lan dhcp reserved_ip configure <mac_address> net lan dhcp reserved_ip delete <mac_address> net dmz dhcp net dmz dhcp reserved_ip net dmz dhcp reserved_ip configure <mac_address> net dmz dhcp reserved_ip delete <mac_address> net ethernet net ethernet configure <interface_name> net lan net lan ipv4 net lan ipv4 configure net lan ipv6 net lan ipv6 configure net lan ipv6 pool net lan ipv6 pool configure <ipv6PoolStartAd dr> net lan ipv6 pool delete <ipv6PoolStartAddr> net igmp 38 net igmp configure 39 40 net intel_Amt net intel_Amt server net intel_Amt server configure net intel_Amt_Reflector net intel_Amt_Reflector configure 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 41 42 43 It allows to delete a traffic selector for a bandwidth profile. DDNS setup. DDNS setup. DDNS setup. DDNS configuration mode. DDNS configuration mode. DHCP setup. DHCP Reserved IPs setup. DHCP Reserved IPs add/edit mode. Deletes a specific reserved ip entry. DHCP setup. DHCP Reserved IPs setup. DHCP Reserved IPs add/edit mode. Deletes a specific reserved ip entry. Ethernet configuration. Ethernet configuration mode. LAN setup. . IPv4 LAN configuration mode. . IPv6 LAN configuration mode. . IPv6 LAN configuration add/edit mode. IPv6 LAN configuration delete mode. Igmp configuration commands. Specifies igmp proxy should be enable or disable Net policy mode. Net policy mode. Intel Amt server configuration mode Net policy mode. Intel Amt Reflector configuration mode 37 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 net ip_Aliasing net ip_Aliasing server net ip_Aliasing server add net ip_Aliasing server edit <row_id> net ip_Aliasing server delete <row_id> net mode net mode configure net ipv6_tunnel isatap net ipv6_tunnel isatap add net ipv6_tunnel isatap edit <row_id> net ipv6_tunnel isatap delete <row_id> net routing mode Net policy mode. Net policy mode. Adding Ip Aliasing server configuration Editing Ip Aliasing server configuration. Deleting Ip Aliasing configuration IP Mode Setup IP Mode configuration mode. Isatap tunnel configuration commands. Isatap tunnel configuration add mode. Isatap Tunnel configuration edit mode. Isatap tunnel configuration delete mode. Routing Mode between WAN and LAN setup. Routing Mode between WAN and LAN net routing mode configure configuration mode. net wan wan1 Wan configuration mode. net wan wan1 ipv4 Ipv4 wan configuration mode. net wan wan1 ipv4 configure Ipv4 wan wan1 configuration mode.. net wan wan2 Wan configuration mode. net wan wan2 ipv4 Ipv4 wan configuration mode. net wan wan2 ipv4 configure Ipv4 wan wan2 configuration mode. net wan wan3 Wan3 configuration mode. net wan wan3 threeG Wan3 configuration mode. net wan wan3 threeG ThreeG wan wan3 configuration mode. configure net wan Net wan configuration mode. net wan mode Net wan configuration mode. net wan mode configure Net wan configuration mode. net wan port_setup Displays net wan port configuration. net wan port_setup Displays wan port configuration mode. configure net wan vlan_setup Displays wan vlan setup. net wan vlan_setup Displays wan vlan configuration mode. configure net wan vlan_setup Displays wan vlan Id Add mode. vlanId_Add net wan vlan_setup Displays wan vlan Id delete mode. vlanId_Delete net wan configurable_port Net wan configurable port setup. net wan configurable_port Net wan configurable port setup. configure 38 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 net wan wan1 ipv6 Displays ipv6 wan configuration mode net wan wan1 ipv6 configure Displays ipv6 wan1 configuration mode net wan wan2 ipv6 Displays ipv6 wan2 configuration mode net wan wan2 ipv6 configure Displays ipv6 wan2 configuration mode net routing ospfv2 Displays OSPF Configuration for IPV4 net routing ospfv3 Displays OSPF Configuration for IPV6 net routing ospfv2 Displays ospfv2 configuration mode. configure <interface> net routing ospfv3 Displays ospfv3 configuration mode. configure <interface> Displays protocol_binding configuration net routing protocol_binding commands net routing protocol_binding Protocol_binding rules configuration add mode. add net routing protocol_binding To edit the selected protocol_binding edit <row_id> net routing protocol_binding Protocol_binding rules configuration mode. enable <row_id> net routing protocol_binding Protocol_binding rules configuration mode. disable <row_id> net routing protocol_binding Protocol_binding rules configuration mode. delete <row_id> net radvd RADVD configuration setup. net radvd pool RADVD configuration setup. net radvd configure RADVD configuration mode. net radvd pool add RADVD Pool configuration mode. net radvd pool edit <row_id> RADVD Pool configuration mode. net radvd pool RADVD pool configuration mode. delete <row_id> net routing dynamic Configures the routes dynamically. net routing dynamic Configures the routes dynamically. configure Configures routing mode, static and dynamic net routing route(s). net routing static Configures the routes. net routing static ipv4 Configures the IPv4 routes. net routing static ipv6 Configures the IPV6 routes. net routing static ipv4 Adds new IPv4 static routes. configure <name> net routing static ipv6 Adds new IPV6 static routes. configure <name> net routing static ipv4 Deletes a specific IPv4 route. delete <name> net routing static ipv6 Deletes a specific IPV6 route. delete <name> 39 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 net routing static ipv4 Deletes all the configured IPv4 routes. deleteAll net routing static ipv6 Deletes all the configured IPv6 routes. deleteAll net tahi Settings for tahi test suite. net tahi add-defaultAdds ipv6 default route on lan interface. route <ip_address> net tahi delete-default-route Deletes ipv6 default route on lan interface. net tahi addAdds ipv6 route on lan interface. route <ip_address> <gw> net tahi delAdds ipv6 route on lan interface. route <ip_address> <gw> net tahi stop-RA Stop sending RA. net tahi start-RAStarts sending RA with AdvRetransTimer as AdvRetransTimer(1000) 1000. net tahi start-RAStarts sending RA with AdvRetransTimer as 5000. AdvRetransTimer(5000) net tahi startRAStarts sending RA with AdvReachableTime as Reachable(30000)Retrans(1 30000 and AdvRetransTimer as 1000. 000) net tahi start-RAStarts sending RA with AdvReachableTime as AdvReachableTime(10000) 10000. net tahi start-RAStarts sending RA with AdvReachableTime as AdvReachableTime(30000) 30000. net tahi start-RA(Default) Starts sending RA with default parameters. Starts sending RA with minimum values of net tahi start-RA-MinValues parameters. Starts sending RA with maximum values of net tahi start-RA-MaxValues parameters. net tahi start-RAStarts sending RA with MaxRtrAdvInterval value MaxRtrAdvInterval(10) of 10. net tahi start-RAStarts sending RA with MaxRtrAdvInterval value MaxRtrAdvInterval(40) of 40. net tahi start-RAStarts sending RA with MinRtrAdvInterval value MinRtrAdvInterval(198) of 198. net tahi start-RAStarts sending RA with prefix 8000::/64. prefix(8000::) net tahi start-RAStarts sending RA with prefix fec0::/64. prefix(fec0::) net tahi start-RAStarts sending RA with AdvCurHopLimit value AdvCurHopLimit(0) as 0. net tahi start-RAStarts sending RA with AdvCurHopLimit value AdvCurHopLimit(15) as 15. net tahi start-RA-WAN Starts sending RA on the WAN interface. net tahi ipv6-down Disables the ipv6 stack on the router. 40 132 net tahi ipv6-up 133 net tahi ipv6-global-up 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 net tahi ipv6-AliasAdd(LAN) <ip6_address> net tahi ipv6-AliasDel(LAN) <ip6_address> net tahi ipv6-AliasAdd(WAN) <ip6_address> net tahi ipv6-AliasDel(WAN) <ip6_address> net tahi neigh-cache-del net tahi reachabletime <time> net tahi mcast-start net tahi mcast-stop net tahi ping6 <ip> <size> net tahi mping6 <mip> net tahi bping6 <bip> <psize> net tahi pmtu-routeadd <ipAdd> net tahi disable-ipv6-firewall net tahi show-LAN-ip net tahi interfacedown <interface> net tahi interfaceup <interface> net tahi start-RAcustom <fileName> <ipAddr > net tahi RA-Start net ipv6_tunnel teredo net ipv6_tunnel teredo configure net upnp net upnp configure net port-vlan net port-vlan lan_edit <portnamew> net port-vlan wlan_edit <ssidName> net vlan-membership net vlan-membership lan_edit <portw> Enables the ipv6 stack on the router. Enables the ipv6 stack on the router, and adds global ip. Adds ipv6 address to LAN interface. Deletes an ipv6 address from LAN interface. Adds ipv6 address to WAN interface. Deletes an ipv6 address from WAN interface. Deletes the ipv6 neighbor cache. Sets the reachable time of neighbour cache entries Starts ipv6 multicast. Stops ipv6 multicast. Ping6 on LAN interface with count one. Multicast ping6 on LAN. ping6 Adds ipv6 route on lan interface. Disables ipv6 firewall. Shows ipv6 addresses of LAN interface. Brings selected interface down. Brings selected interface up. Starts RA with configuration file obtained through tftp. Starts RA with custom configuration. Teredo tunnel configuration setup. Teredo Tunnel configuration mode. Upnp configuration mode Upnp configuration mode port vlan Vlan port name range 1-4. SSID to be edited. Use command 'show net wireless_vlan status 'to dislay all SSID's Name Vlan-membership Net vlan membership for the vlan and Wlan port. 41 161 162 163 164 165 166 167 168 169 170 171 172 173 net vlan-membership wlan_edit <ssidName> net multivlan net multivlan subnet net multiVlan subnet edit <vlanID> net vlan net vlan config net vlan config add <vlan_id> net vlan config edit <vlan_Id> net vlan config delete <VlanId> net vlan config enable net vlan config disable net dmz net dmz configure SSID to be edited. Use command 'show net wireless_vlan status 'to dislay all SSID's Name Multivlan server configure Multivlan Server configure Multivlan server edit mode Displays vlan Configuration Settings. Displays vlan configuration. Adds a vlan. Edits a configured vlan. Deletes a vlan. Enables vlan configuration. Disables vlan configuration. Dmz configuration mode. Dmz configuration mode. The command security? at the CLI prompt would give the description of all the configuration commands in the branch security, which is as follows: 1 2 3 4 5 6 7 8 9 10 11 12 security advanced_network security advanced_network attack_checks security advanced_network attack_checks configure security advanced_network ips security advanced_network ips setup security application_rules security application_rules add security application_rules edit <row_id> security application_rules delete <row_id> security firewall custom_service security firewall custom_service add security firewall custom_service edit <row_id> Security advanced setup. Firewall Security Checks setup. Security Checks configuration mode. Security ips setup. Displays ips configuration mode. Application Rules Configuration setup. To add an application rule. To edit the selected application rule. To delete the selected application rule. Custom Services Configuration setup. Custom services configuration add mode. Custom services configuration edit mode. 42 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 security firewall custom_service delete <row_id> security firewall security firewall ipv4 security firewall ipv4 configure security firewall ipv4 default_outbound_policy <d efault_outbound_policy> security firewall ipv4 edit <row_id> security firewall ipv4 enable <row_id> security firewall ipv4 disable <row_id> security firewall ipv4 delete <row_id> security firewall ipv4 move <row_id> security firewall algs security firewall ipv6 security firewall ipv6 configure security firewall ipv6 edit <row_id> security firewall ipv6 enable <row_id> security firewall ipv6 disable <row_id> security firewall ipv6 delete <row_id> security firewall ipv6 move <row_id> security firewall ipv6 default_outbound_policy <d efault_outbound_policy> security ids security ids configure security session_settings security session_settings configure security schedules security schedules add Custom services configuration delete mode. Firewall rules setup. Firewall IPv4 rules setup. Firewall IPV4 rules configuration mode. Firewall Settings, Default Outbound Policy configuration mode. To edit the selected Firewall IPV4. To Enable Firewall IPV4 rules configuration mode. To Disable Firewall IPV4 Rules configuration mode. To delete the selected Firewall IPV4 Rule. Firewall IPV4 Rule reordering mode. Firewall ALGs configuration mode. Firewall IPv6 rules setup. Firewall IPV6 rules configuration mode. To edit the selected Firewall IPV6 rule. To enable Firewall IPV6 rules configuration mode. To disable Firewall IPV6 Rules configuration mode. To delete the selected Firewall IPV6 Rule Firewall IPV6 Rule reordering mode. Firewall Settings, IPv6 Default Outbound Policy configuration mode. IDS Configuration setup. IDS configuration mode. Session Settings Configuration setup. Session Settings configuration mode. Schedules Configuration setup. To add new Schedule. 43 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 security schedules edit <row_id> security schedules delete <row_id> security firewall smtpAlg security firewall smtpAlg approvedMailId security firewall smtpAlg blockedMailId security firewall smtpAlg subjectList security firewall smtpAlg configure security firewall smtpAlg approvedMailId add security firewall smtpAlg approvedMailId edit <row_id> security firewall smtpAlg approvedMailId delete <row_id> security firewall smtpAlg blockedMailId add security firewall smtpAlg blockedMailId edit <row_id> security firewall smtpAlg blockedMailId delete <row_id> security firewall smtpAlg subjectList add security firewall smtpAlg subjectList edit <row_id> security firewall smtpAlg subjectList delete <row_id> security mac_filter security ip_or_mac_binding security mac_filter configure security mac_filter source security mac_filter source add security mac_filter source edit <row_id> security mac_filter source delete <row_id> security ip_or_mac_binding add To edit the selected Schedule. To delete the selected schedule. SmtpAlg configuration setup. To list the MailId approved by the user. Lists the blockedMailIds. To list all the subjects and Mail ids. SmtpAlg configuration mode. It allows Configuration of the approved MailId. It allows to edit an approved MailId. It allows to delete an approved MailId. It allows to Configure a blocked MailId. It allows to edit a blocked MailId. It allows to delete a blocked MailId. It allows to add subject with MailId and action. It allows to edit subject with MailId and action. It allows to delete the configuration. Source mac filter configuration mode. Ip mac binding configuration mode. Source mac filter configuration mode. . To add a new mac address. To edit the selected mac address from the list. To delete the selected mac address. To link to the ip/mac binding configuration mode. 44 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 security ip_or_mac_binding To edit the selected rule in the ip/mac binding configuration page. edit <row_id> security ip_or_mac_binding To delete the selected rule/rules. delete <row_id> security firewall VPN Passthrough setup. vpn_passthrough security firewall VPN Passthrough configuration mode. vpn_passthrough configure security webAccess Web Access Filter Configuration setup. security webAccess Displays security webAccess status status <status> security webAccess add Security webAccess add. security webAccess Security webAccess edit. edit <row_id> security webAccess Security webAccess delete. delete <row_id> security website_filter Website filtering configuration setup. security website_filter Content filtering configuration setup. content_filtering security website_filter Trusted domains configuration setup. approved_urls security website_filter Blocked keywords configuration setup. blocked_keywords security website_filter Content filtering configuration mode. content_filtering configure security website_filter To add the approved URL configuration page approved_urls add security website_filter To edit the selected URL configuration. approved_urls edit <row_id> security website_filter approved_urls To delete the selected URL configuration. delete <row_id> security website_filter Blocked Keyword configuration mode. blocked_keywords add security website_filter To edit the selected Blocked Keywords blocked_keywords configuration mode. edit <row_id> security website_filter To delete the selected blocked Keywords blocked_keywords configuration mode. delete <row_id> security website_filter To enable the blocked Keywords configuration blocked_keywords mode. enable <row_id> security website_filter To disable the blocked Keywords configuration blocked_keywords mode. disable <row_id> 45 Chapter 6. Configuration commands under branch VPN 6.1 vpn gre_tunnel add S.No Command Name Description Type and Description Saves system user configuration settings. Saves system user configuration settings and exit current mode. To revert to the previous system user configuration settings. Enter the Tunnel Name here. 1 save 2 exit 3 cancel 4 tunnelname 5 ipaddress 6 subnet_mask 7 interface 8 remote_ip 9 ddp_broadcast 10 route_network 11 route_netmask Enter the subnet mask of destination network here. 12 gateway Enter the gateway of the destination network here. String IP address Enter the tunnel IP Address AAA.BBB.CCC.DDD where here. each part is in the range 0-255 IP address Enter the tunnel Subnet AAA.BBB.CCC.DDD where Mask here. each part is in the range 0-255 Enter the Interface on which the tunnel is established on. Enter the Remote IP to which the tunnel is being established here. Select enable/disable DDP packet forwarding on the tunnel here. Enter the destination network of GRE tunnel here. 46 WAN interface type IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Boolean choice IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 6.2 vpn gre_tunnel edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit 4 cancel 5 tunnelname 6 ipaddress 7 subnet_mask 8 interface 9 remote_ip 10 ddp_broadcast 11 route_network 12 route_netmask 13 gateway Type and Description GRE Tunnel configuration Unsigned integer mode Saves system user configuration settings. Saves system user configuration settings and exit current mode. To revert to the previous settings. Enter the Tunnel Name String here. IP address Enter the tunnel IP Address AAA.BBB.CCC.DDD where here. each part is in the range 0-255 IP address Enter the tunnel Subnet AAA.BBB.CCC.DDD where Mask here. each part is in the range 0-255 Enter the Interface on which the tunnel is WAN interface type established on. Enter the Remote IP to IP address which the tunnel is being AAA.BBB.CCC.DDD where established here. each part is in the range 0-255 Select enable/disable DDP packet forwarding on the Boolean choice tunnel here. Enter the destination IP address network of GRE tunnel AAA.BBB.CCC.DDD where here. each part is in the range 0-255 IP address Enter the subnet mask of AAA.BBB.CCC.DDD where destination network here. each part is in the range 0-255 IP address Enter the gateway of the AAA.BBB.CCC.DDD where destination network here. each part is in the range 0-255 6.3 vpn gre_tunnel delete <row_id> S.No Command Name Description Type and Description 1 Unsigned integer <row_id> GRE Tunnel delete mode 47 6.4 vpn l2tp client configure S.No Command Name Description 1 save 2 cancel 3 exit 4 enable 5 server_address 6 remote_network 7 remote_subnet 8 username 9 password 10 11 mppe_enable reconnect_mode 12 time_out Type and Description Saves l2tp client configuration settings. To revert to the previous settings. Saves l2tp client configuration settings, and exit current mode. Enables/disables L2TP Boolean choice client. IP address L2TP server IP address. AAA.BBB.CCC.DDD where each part is in the range 0-255 Network Address of remote IP address network which is local to AAA.BBB.CCC.DDD where L2TP Server. each part is in the range 0-255 Remote Network Subnet number in range of 1 to 32 Mask. Username allocated to L2TP client to connect to String L2TP server. Password allocated to String client. Enables mppe encryption. Boolean choice Selects reconnect mode. Reconnect Mode type If there is no traffic from a user for more than the Radius client authentication specified time out, the timeout Type. connection is disconnected. 6.5 vpn l2tp client_action <action> S.No Command Name Description Type and Description <action> 1 Vpn l2tp client action set. Reconnect Mode type 6.6 vpn l2tp server configure S.No Command Name Description 1 save Type and Description Saves l2tp server configuration settings. 48 S.No Command Name Description 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 Type and Description To revert to the previous cancel settings. Saves l2tp server exit configuration settings, and exits current mode. Enables/disables L2TP enable_v4 Boolean choice server in IPv4 mode only. Enables/disables L2TP enable_v6 Boolean choice server in IPv4/IPv6 mode. Routing_mode Select L2TP routing mode. Select Route Mode IP address L2TP server starting IP start_address AAA.BBB.CCC.DDD where address. each part is in the range 0-255 IP address L2TP server ending IP end_address AAA.BBB.CCC.DDD where address. each part is in the range 0-255 ipv6_prefix L2TP server IPv6 Prefix. String L2TP server IPv6 Prefix ipv6_prefix_length Unsigned integer length. Selects the type of Authentication type Authentication_type Authentication required. Enables PAP EnablePap Boolean choice authentication. Enables CHAP EnableChap Boolean choice authentication. Enables MS-CHAP EnableMSChap Boolean choice authentication. Enables MS-CHAPv2 EnableMSChapv2 Boolean choice authentication. Enables/Disables support l2tpSecretKeyEnabl for Secret Key, and enters Boolean choice e Secret Key if support is enabled. Enter L2TP secret Key if secretKey String Secret Key is enabled. If there is no traffic from a user for more than the Radius client authentication timeout specified time out, the timeout Type. connection is disconnected. 49 6.7 vpn openvpn config S.No Command Name Description 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 Type and Description Saves openvpn configuration settings. To revert to previous cancel settings openvpn configuration settings Saves openvpn exit configuration settings, and exit current mode. Enables/disables openvpn enable Boolean choice client/server. OpenVPN daemon mode. It can run in server mode, mode OpenVPN daemon mode. client mode or access server client mode server_identifier_typ OpenVPN server identifier OpenVPN server identifier type e type. OpenVPN server IP server_ip address/FQDN to which the client connect. OpenVPN server IP IPV4 or IPv6 address server_ip address to which the client depending upon protocol ip_address connect. selected IPV4 or IPV6 OpenVPN server FQDN to server_ip fqdn String which the client connect. IP address Address of the Virtual vpn_network AAA.BBB.CCC.DDD where Network. each part is in the range 0-255 IP address Netmask of the Virtual vpn_netmask AAA.BBB.CCC.DDD where Network. each part is in the range 0-255 The port number on which port openvpn server (or Access Port number Server) runs. The protocol used to The protocol used to communicate with the tunnel_protocol communicate with the remote remote host. E.g.TCP, host UDP. UDP is the default. The cipher with which the packets are encrypted. E.g. The cipher with which the encription_algorithm BF-CBC, AES-128, AESpackets are encrypted 192 and AES-256. BF-CBC is the default Message digest algorithm Message digest algorithm used hash_algorithm used to to authenticate packets. save 50 S.No Command Name Description Type and Description authenticate.packets. E.g.: SHA1, SHA256 and SHA512. SHA1 is the default. Selects Full Tunnel to redirect all the traffic through the tunnel. Select Split Tunnel to redirect traffic to only specified type of tunnel resources (added from openVpnClient Routes) through the tunnel. Full Tunnel is the default. 16 tunnel_type 17 Enables this to allow openvpn clients to allow_client_to_clien communicate with each t other in split tunnel case. Disabled by default. 18 19 20 21 Enables this to select the Set of certificates and keys select_primaryCert the server uses. Enable this for first time configuration. Enables this to select Set select_secondaryCe of certificates and keys rt newly uploaded. Enabling this adds Tls authentication which adds an additional layer of enable_tls_authkey authentication. Can be checked only when the tls key is uploaded. Disabled by default. Enabling this blocks invalid client certificates based on the CRL certificate block_invalid_client_ uploaded. Can be checked certificates only when the CRL certificate is uploaded. Disabled by default. 51 Boolean choice Boolean choice Boolean choice Boolean choice Boolean choice 6.8 vpn openvpn remote_network add S.No Command Name Description 1 save 2 cancel 3 exit 4 common_name 5 remote_network 6 remote_netmask Type and Description Saves Remote network Configuration settings. To revert to previous settings. Saves Remote network configuration settings, and exits current mode. Common Name of the String OpenVPN client certificate IP address Network address of the AAA.BBB.CCC.DDD where remote resource. each part is in the range 0-255 IP address Netmask of the remote AAA.BBB.CCC.DDD where resource. each part is in the range 0-255 6.9 vpn openvpn remote_network edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 cancel 4 exit 5 common_name 6 remote_network 7 remote_netmask Type and Description Remote network edit mode. Unsigned integer Saves Remote network Configuration settings. To revert to previous Remote network Configuration settings. Saves Remote network configuration settings and exit current mode. Common Name of the String OpenVPN client certificate. IP address Network address of the AAA.BBB.CCC.DDD where remote resource. each part is in the range 0-255 IP address Netmask of the remote AAA.BBB.CCC.DDD where resource. each part is in the range 0-255 52 6.10 vpn openvpn remote_network delete <row_id> S.No Command Name Description Type and Description Openvpn remote network <row_id> 1 Unsigned integer delete mode. 6.11 vpn openvpn local_network add S.No Command Name Description Type and Description Save local network settings. To revert to previous local network settings. Save local network configuration settings and exit current mode. 1 save 2 cancel 3 exit 4 local_network Network address of the local resource. 5 local_netmask Netmask of the local resource. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 6.12 vpn openvpn local_network edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 cancel 4 exit 5 6 local_network local_netmask Type and Description Local network edit mode. Unsigned integer Saves local network settings. To revert to previous local network settings. Saves local network configuration settings, and exits current mode. IP address Network address of the AAA.BBB.CCC.DDD where local resource. each part is in the range 0-255 IP address Netmask of the local AAA.BBB.CCC.DDD where resource. each part is in the range 0-255 53 6.13 vpn openvpn local_network delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Deletes the selected openvpn Local network. Unsigned integer 6.14 vpn openvpn cert_upload ca <fileName> <ipAddr> S.No Command Name Description 1 Type and Description Browse and upload the <fileName> <ipAddr pem formatted CA > Certificate. String IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 6.15 vpn openvpn cert_upload server_client_cert <fileName> <ipAddr> S.No Command Name Description 1 Type and Description Browse and upload the <fileName> <ipAddr pem formatted Server / > Client Certificate. String IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 6.16 vpn openvpn cert_upload client_key <fileName> <ipAddr> S.No Command Name Description 1 Type and Description String <fileName> <ipAddr Uploads the pem formatted IP address > Server/Client key. AAA.BBB.CCC.DDD where each part is in the range 0-255 54 6.17 vpn openvpn cert_upload dh_Key <fileName> <ipAddr> S.No Command Name Description 1 Type and Description String <fileName> <ipAddr Uploads the pem formatted IP address > Diffie Hellman key. AAA.BBB.CCC.DDD where each part is in the range 0-255 6.18 vpn openvpn cert_upload tls_Authkey <fileName> <ipAddr> S.No Command Name Description 1 Type and Description String <fileName> <ipAddr Uploads the pem formatted IP address > Tls Authentication Key. AAA.BBB.CCC.DDD where each part is in the range 0-255 6.19 vpn openvpn cert_upload crl_cert <fileName> <ipAddr> S.No Command Name Description 1 Type and Description String <fileName> <ipAddr Uploads the pem formatted IP address CRL Certificate. AAA.BBB.CCC.DDD where > each part is in the range 0-255 6.20 vpn openvpn cert_upload config <fileName> <ipAddr> S.No Command Name Description 1 Type and Description String <fileName> <ipAddr Uploads the pem formatted IP address AAA.BBB.CCC.DDD where > config file. each part is in the range 0-255 55 6.21 vpn pptp client configure S.No Command Name Description 1 save 2 cancel 3 exit 4 enable 5 server_address 6 remote_network 7 remote_subnet 8 username 9 password 10 mppe_enable 11 time_out Type and Description Saves pptp client configuration settings. To revert to previous PPTP Client configuration settings. Saves pptp client configuration settings, and exits current mode. Enables/disables PPTP Boolean choice client. IP address PPTP server IP address. AAA.BBB.CCC.DDD where each part is in the range 0-255 Network Address of remote IP address network which is local to AAA.BBB.CCC.DDD where each part is in the range 0-255 PPTP Server. Remote Network Subnet Number in range of 1 to 32. Mask. Username allocated to client to connect to PPTP String Server. Password allocated to client to connect to PPTP String Server. Enables mppe encryption. Boolean choice Specified time after which the connection is Unsigned integer disconnected. 6.22 vpn pptp client_action <action> S.No Command Name Description Type and Description 1 Boolean choice <action> vpn pptp client action set. 6.23 vpn pptp server configure S.No Command Name Description 1 save 2 cancel Type and Description Saves pptp server configuration settings. To revert to the previous pptp server configuration settings. 56 S.No Command Name Description 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 Type and Description Saves pptp server exit configuration settings, and exits current mode. Enables/disables PPTP enable_v4 Boolean choice server in IPv4 mode only. Enables/disables PPTP enable_v6 Boolean choice server in IPv4/IPv6 mode. Routing_Mode Selects Routing mode. Select Route Mode IP address PPTP server starting IP start_address AAA.BBB.CCC.DDD where address. each part is in the range 0-255 IP address PPTP server ending IP end_address AAA.BBB.CCC.DDD where address. each part is in the range 0-255 ipv6_prefix PPTP server IPv6 Prefix. String PPTP server IPv6 Prefix ipv6_prefix_length Unsigned integer length. Selects the type of Authentication_type Authentication type authentication required. Enables support for PAP pap_enable Boolean choice authentication method. Enables support for CHAP chap_enable Boolean choice authentication method. Enables support for MSmschap_enable CHAP authentication Boolean choice method. Enables support for MSmschapv2_enable CHAPv2 authentication Boolean choice method. Enables Mppe 40 bit Mppe40Enable Boolean choice encryption Enables Mppe 128 bit Mppe128Enable Boolean choice encryption Enables Stateful Mppe MppeStatefulEnable Boolean choice encryption The specified time after Radius client authentication UserTimeOut which the connection is timeout Type. disconnected. Enables/Disables the Enable_Netbios Boolean choice Netbios functionality. IP address Primary_Wins_Serv Enter primary Windows AAA.BBB.CCC.DDD where er server ip Address here. each part is in the range 0-255. 57 S.No Command Name Description 22 Type and Description IP address Secondary_Wins_S Enter Secondary Windows AAA.BBB.CCC.DDD where erver server ip address. each part is in the range 0-255. 6.24 vpn sslvpn portal-layouts add S.No Command Name Description 1 save 2 exit 3 cancel 4 5 6 7 8 9 10 11 12 13 14 15 Type and Description Saves portal settings. Saves portal settings, and exits current mode. To revert to previous portal settings. String, Max 32 characters and no ' or empty space or " String, Max of 32 alpha profile_name Specifies the profile name numeric characters Specifies the web browser String, Max 64 characters and portal_title window title for the portal. no ' or empty space or " Specifies the banner title to String, MAX 64 characters, ' is banner_title Displays to users before not supported; logging into the portal. Specifies the banner message that would be String, 'character is not banner_message displaysed along with the supported; banner title. Specifies whether the banner message and display_banner Boolean choice banner title should be displayed. Specifies whether the http enable_httpmetatag meta tags should be Boolean choice s enabled. Specifies whether the enable_activexwebc activex web cache cleaner Boolean choice achecleaner should be enabled. Specifies whether the vpn enable_vpntunnel Boolean choice tunnel should be enabled Specifies whether the port enable_portforwardi forwarding should be Boolean choice ng enabled. Selects the authentication sslAuthType Supported authentication type type for the portal. Selects a group name for String, Max 32 characters and SSL_GROUP the portal (only for local no ' or empty space or " authentication). portal_name Specifies the portal name 58 6.25 vpn sslvpn portal-layouts edit <row_id> S.No Command Name Description Type and Description 1 2 <row_id> save Unsigned integer 3 exit 4 cancel 5 profile_name Specifies the profile name 6 portal_title Specifies the portal title 7 8 9 10 11 12 13 14 Edits sslvpn portal layout Saves portal settings Saves portal settings and exit current mode To revert to previous settingsTo revert to the previous settings Specifies the banner title to Displays to users before logging into the portal. Specifies the banner message that would be banner_message displayed along with the banner title. Specifies whether the banner message and display_banner banner title should be displayed. Specifies whether the http enable_httpmetatag meta tags should be s enabled. Specifies whether the enable_activexwebc activex web cache cleaner achecleaner should be enabled. Specifies whether the vpn enable_vpntunnel tunnel should be enabled Specifies whether the port enable_portforwardi forwarding should be ng enabled. Selects a group name for SSL_GROUP the portal (only for local authentication). banner_title 59 String, Max 32 characters and no ' or empty space or " String, Max 64 characters and no ' or empty space or " String, MAX 64 characters, ' is not supported; String, ' character is not supported; Boolean choice Boolean choice Boolean choice Boolean choice Boolean choice String, Max 32 characters and no ' or empty space or " 6.26 vpn sslvpn portal-layouts delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Deletes sslvpn portal layout. Unsigned integer 6.27 vpn sslvpn portforwarding appconfig add S.No Command Name Description Type and Description Saves portforwarding Apps settings Saves portforwarding Apps settings and exit current mode To revert to the previous portforwarding Apps settings. 1 save 2 exit 3 cancel 4 serverip Server ip address 5 port Server port IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Port number 6.28 vpn sslvpn portforwarding appconfig delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Deletes an application configuration rule Unsigned integer 6.29 vpn sslvpn portforwarding hostconfig add S.No Command Name Description 1 save 2 exit 3 cancel Type and Description Saves portforwarding Host settings Saves portforwarding Host settings and exit current mode To revert to the previous portforwarding Host settings. 60 S.No Command Name Description Type and Description 4 serverip server ip address 5 domain_name domain name IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 String, Max 128 characters and no ' or empty space or " 6.30 vpn sslvpn portforwarding hostconfig delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Deletes a host configuration rule. Unsigned integer 6.31 vpn sslvpn resource add S.No Command Name Description Type and Description Saves sslvpn resource settings Saves sslvpn resource settings and exit current mode To revert to previous sslvpn resource settings. 1 save 2 exit 3 cancel 4 resource_name resource name 5 service_type service type String, MAX 128 characters, ' is not supported; Sslvpn resource. 6.32 vpn sslvpn resource configure add <resource_name> S.No Command Name Description 1 <resource_name> 2 save 3 exit 4 cancel Type and Description Adds an sslvpn resource String, MAX 128 characters, ' object. is not supported; Saves sslvpn resource object settings Saves sslvpn resource settings, and exit current mode. To revert to previous sslvpn resource settings. 61 S.No Command Name Description Type and Description 5 object_type object type Sslvpn resource object type. 6 object_address The object address of the resource object. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 7 mask_length 8 9 start_port end_port 10 icmp The mask length of the network. start port end port Enables this option to include ICMP traffic. number in range of 1 to 32 Port number Port number Source address type for users’ ip policy. 6.33 vpn sslvpn resource configure delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Deletes an sslvpn resource Unsigned integer. object 6.34 vpn sslvpn resource delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Deletes an sslvpn resource Unsigned integer 6.35 vpn sslvpn policy add S.No Command Name Description Type and Description Saves sslvpn policy settings Saves sslvpn policy settings and exit current mode To revert to previous sslvpn policy settings. Shows policy type. Sslvpn policy type. Shows policy owner String 1 save 2 exit 3 cancel 4 5 policy_type policy_owner destination_objectty destination object type pe 6 7 policy_name Sslvpn policy destination type. String, character is not supported; policy name 62 S.No Command Name Description Type and Description 8 policy_address policy address 9 10 11 12 policy_masklength start_port end_port service_type policy masklength start port end port service type 13 resource_name resource name 14 policy_permission 15 icmp IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 number in range of 1 to 32 Port number Port number sslvpn resource String, MAX 128 characters, ' is not supported; This can be either Permit or sslvpn policy type Deny. Enables this option to source address type for users include ICMP traffic. ip policy 6.36 vpn sslvpn policy edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit 4 cancel 5 policy_address 6 policy_masklength 7 8 start_port end_port 9 resource_name 10 policy_permission 11 icmp Type and Description Edits an sslvpn policy Unsigned integer Saves sslvpn policy settings Saves sslvpn policy settings, and exit current mode To revert to previous sslvpn policy settings. Enter the IP Address to IP address which the SSL VPN Policy AAA.BBB.CCC.DDD where needs to be applied. each part is in the range 0-255 Enter the subnet mask for number in range of 1 to 32 the above IP address. Start port. Port number End port. Port number String, MAX 128 characters, ' resource name is not supported. Chooses either Permit or Sslvpn policy type. Deny for this policy. Enables this option to Source address type for users include ICMP traffic. ip policy. 63 6.37 vpn sslvpn policy delete <row_id> S.No Command Name Description Type and Description 1 Unsigned integer. <row_id> Deletes an sslvpn policy 6.38 vpn sslvpn client S.No Command Name Description 1 2 3 4 5 6 7 8 9 10 Type and Description save Saves sslvpn client settings Saves sslvpn client settings exit and exit current mode To revert to previous sslvpn cancel client settings. enable_fulltunnel Enables full tunnel. Boolean choice Sets the DNS Suffix for this dns_suffix String client. IP address Sets the primary DNS primary_dns AAA.BBB.CCC.DDD where Server for this client. each part is in the range 0-255. IP address Sets the secondary DNS secondary_dns AAA.BBB.CCC.DDD where Server for this client. each part is in the range 0-255 IP address Sets the first IP address of begin_clientaddress AAA.BBB.CCC.DDD where the IP address range. each part is in the range 0-255. IP address Sets the last IP address of end_clientaddress AAA.BBB.CCC.DDD where the IP address range. each part is in the range 0-255. This setting is to determine the wait time for a SSL lcp_timeout Unsigned integer VPN tunnel negotiation attempts. 6.39 vpn sslvpn route add S.No Command Name Description 1 save 2 exit 3 cancel Type and Description Saves sslvpn route settings Saves sslvpn route settings, and exits current mode. To revert to previous sslvpn route settings. 64 S.No Command Name Description Type and Description 4 destination_network destination network 5 subnet_mask subnet mask IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. 6.40 vpn sslvpn route delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Deletes sslvpn client route Unsigned integer 6.41 vpn ipsec policy configure <name> S.No Command Name Description 1 2 3 4 5 6 7 8 9 10 11 Type and Description vpn policy configuration String mode Saves vpn policy save configuration settings. To revert to previous vpn cancel policy configuration settings. Saves vpn policy exit configuration settings, and exits current mode. Setting policy manual or general_policy_type Vpn policy type. auto. Setting version ikev1 or general_ike_version IPsec VPN IKE Version. ikev2. general_ip_protocol Setting protocol version Vpn protocol version. _version ipv4 or ipv6 general_select_local Setting local gateway for VPN gateway. _gateway the vpn policy. Sets mode to IP address or general_remote_end Internet Name/FQDN of the Vpn remote end point type. _point_type remote gateway or client PC. The IP address or Internet general_remote_end Name/FQDN of the remote _point gateway or client PC. The IP address of the IPV4 or IPv6 address general_remote_end remote gateway or client depending upon protocol _point ip_address PC. selected IPV4 or IPV6. <name> 65 S.No Command Name Description 12 13 14 15 16 17 18 19 20 21 22 23 24 25 Type and Description The IP address or Internet general_remote_end Name/FQDN of the remote String. _point fqdn gateway or client PC. Enables/disables mode config which is similar to general_enable_mo DHCP and is used to Boolean choice. de_config assign IP addresses to remote VPN clients. Enables/disables this to general_enable_net allow NetBIOS broadcasts Boolean choice. bios to travel over the VPN tunnel. Enables this to allow the VPN to rollover when WAN general_enable_roll Mode is set to Auto Boolean choice over Rollover on the WAN Mode page. general_protocol Setting protocol esp or ah. IPsec VPN Protocol general_enable_dhc Enables/disables dhcp. Boolean choice p general_redundant_ Enables/disables Boolean choice vpn_gateway Redundant vpn gateway. general_backup_poli Backup policy name. String cy_name general_failback_tim Failback time to switch Unsigned integer e from back-up to primary. Selects the IP addresses on the local side that will be part of the tunnel. This can be either a single IP general_local_netwo address, several IP Vpn network type rk_type addresses in a range, an entire subnet, or any IP address that wants to connect. IPV4 or IPv6 address general_local_start_ IP address from where the depending upon protocol address range needs to begin. selected IPV4 or IPV6 IPV4 or IPv6 address general_local_end_ IP address where the range depending upon protocol needs to end. address selected IPV4 or IPV6 IP address general_local_subne Enter the Subnet Mask of AAA.BBB.CCC.DDD where t_mask the network. each part is in the range 0-255 general_local_prefix Prefix length of the ipv6 IPv6 Prefix length _length subnet used. 66 S.No Command Name Description 26 27 28 29 30 31 32 33 34 35 36 37 Type and Description Selects the IP addresses on the remote side that will be part of the tunnel. This can be either a single IP general_remote_net address, several IP Vpn network type. work_type addresses in a range, an entire subnet, or any IP address that wants to connect. IPV4 or IPv6 address general_remote_star IP address from where the depending upon protocol t_address range needs to begin. selected IPV4 or IPV6. IPV4 or IPv6 address general_remote_end IP address where the range depending upon protocol _address needs to end. selected IPV4 or IPV6. IP address general_remote_sub Subnet mask of the subnet AAA.BBB.CCC.DDD where net_mask used. each part is in the range 0-255. general_remote_pre Prefix length of the ipv6 IPv6 Prefix length. fix_length subnet used. general_enable_kee Enables/disables keepalive Boolean choice. palive IPV4 or IPv6 address general_keepalive_s keepalive sourceip depending upon protocol ourceip selected IPV4 or IPV6. IPV4 or IPv6 address general_keepalive_d keepalive destinationip depending upon protocol estinationip selected IPV4 or IPV6. Router sends ping packets general_keepalive_d periodically at regular Keepalive detection period in etection_period intervals of time which is seconds. specified by the user. Keepalive failure count of the specified number of general_keepalive_f consecutive packets for Keepalive failure count. ailure_count which the acknowledgement is not received. Setting l2tp mode as general_l2tp_mode None(0) or Client(1) or IPsec L2tp Mode. Gateway(2). Takes a hexadecimal value Takes a hexadecimal value manual_spi_in between 3 and 8 between 3 and 8 characters. characters. 67 S.No Command Name Description 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 Type and Description Takes a hexadecimal value Takes a hexadecimal value manual_spi_out between 3 and 8 between 3 and 8 characters. characters. manual_encryption_ The algorithm used to Vpn encryption algorithm. algorithm encrypt the data. The key length for the manual_key_length Unsigned integer. algorithm. Encryption key of the manual_encryption_ inbound policy. The length String key_in of the key depends on the algorithm chosen Encryption key of the manual_encryption_ outbound policy. The length String key_out of the key depends on the algorithm chosen. manual_authenticati Algorithm used to verify the Vpn authentication algorithm. integrity of the data. on_algorithm This is the integrity key (for ESP with Integrity-mode) manual_authenticati for the inbound policy and String on_key_in depends on the algorithm chosen. This is the integrity key (for ESP with Integrity-mode) manual_authenticati for the outbound policy and String on_key_out depends on the algorithm chosen. auto_phase1_excha Setting IKE exchange VPN Exchange Mode nge_mode Mode. auto_phase1_enabl Enabling/Disabling Nat Boolean choice e_nat_traversal traversal. auto_phase1_nat_k Setting IKE nat alive Unsigned integer eepalive_frequecy frequency. auto_phase1_local_i Setting IKE local identifier IPsec VPN IKE local identifier denttype type. type. auto_phase1_directi Setting IKE direction type. IPsec VPN IKE direction Mode. on_type auto_phase1_local_i Setting IKE local identifier. String dentifier auto_phase1_remot Setting IKE remote IPsec VPN IKE local identifier e_identtype identifier. type. auto_phase1_remot Setting IKE remote String e_identifier identifier. auto_phase1_encry Setting IKE encryption ption_algorithm algorithm. 68 S.No Command Name Description 55 56 57 58 59 60 61 62 63 64 65 66 67 Type and Description auto_phase1_encry Setting IKE encryption ption_algorithm DES algorithm. auto_phase1_encry Enables DES encryption ption_algorithm DES algorithm. enable_DES auto_phase1_encry Setting IKE encryption ption_algorithm algorithm. 3DES auto_phase1_encry ption_algorithm Enables 3DES encryption 3DES algorithm. enable_3DES <3des > auto_phase1_encry Setting IKE encryption ption_algorithm algorithm. AES-128 auto_phase1_encry ption_algorithm Enables AES-128 AES-128 encryption algorithm. enable_AES-128 auto_phase1_encry Setting IKE encryption ption_algorithm algorithm. AES-192 auto_phase1_encry ption_algorithm Enables AES-192 AES-192 encryption algorithm. enable_AES-192 auto_phase1_encry Setting IKE encryption ption_algorithm algorithm. AES-256 auto_phase1_encry ption_algorithm Enables AES-256 AES-256 encryption algorithm enable_AES-256 auto_phase1_encry Setting IKE encryption ption_algorithm algorithm. BLOWFISH auto_phase1_encry ption_algorithm Enables BLOWFISH BLOWFISH encryption algorithm. enable_BLOWFISH auto_phase1_encry ption_algorithm Enter BLOWFISH BLOWFISH keylength. keylength 69 Boolean choice Boolean choice Boolean choice Boolean choice Boolean choice Boolean choice Unsigned integer S.No Command Name Description 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 Type and Description auto_phase1_encry Setting IKE encryption ption_algorithm algorithm. CAST128 auto_phase1_encry ption_algorithm Enables CAST128 Boolean choice CAST128 encryption algorithm. enable_CAST128 auto_phase1_encry ption_algorithm Enter CAST128 keylength. Unsigned integer CAST128 keylength auto_phase1_auth_ Setting IKE authentication algorithm algorithm. auto_phase1_auth_ Setting IKE authentication algorithm MD5 algorithm. auto_phase1_auth_ Enables MD5 algorithm MD5 Boolean choice authentication algorithm. enable_MD5 auto_phase1_auth_ Setting IKE authentication algorithm SHA1 algorithm. auto_phase1_auth_ Enables SHA1 algorithm SHA1 Boolean choice authentication algorithm. enable_SHA1 auto_phase1_auth_ Setting IKE authentication algorithm SHA2-256 algorithm. auto_phase1_auth_ Enables SHA2-256 algorithm SHA2-256 Boolean choice authentication algorithm. enable_SHA2-256 auto_phase1_auth_ Setting IKE authentication algorithm SHA2-384 algorithm. auto_phase1_auth_ Enables SHA2-384 algorithm SHA2-384 Boolean choice authentication algorithm. enable_SHA2-384 auto_phase1_auth_ Setting IKE authentication algorithm SHA2-512 algorithm. auto_phase1_auth_ Enables SHA2-512 algorithm SHA2-512 Boolean choice authentication algorithm. enable_SHA2-512 auto_phase1_auth_ Setting IKE authentication IPsec VPN IKE authentication method algorithm method. algorithm method. auto_phase1_dh_gr Setting IKE Diffie-Hellman IPsec VPN IKE Diffie-Hellman oup (DH) Group. (DH) Group type. auto_phase1_sa_life Setting IKE SA lifetime in Unsigned integer. time seconds. auto_phase1_pre_s Setting IKE pre shared key. String hared_key 70 S.No Command Name Description 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 Type and Description auto_phase1_enabl Enabling/Disabling dead e_dead_peer_detect Boolean choice peer detection. ion auto_phase1_detect Setting dead peer detection Unsigned integer ion_period time period. auto_phase1_recon Setting dead peer detection Unsigned integer nect_failure_count failure count. auto_phase1_exten Setting extended IPsec VPN IKE extended ded_authentication authentication method. authentication method. auto_phase1_authe Setting extended IPsec VPN IKE extended ntication_type authentication type. authentication method. auto_phase1_xauth Username for extended String _username authentication. auto_phase1_xauth Password for extended String _password authentication. auto_phase2_sa_life Vpn auto policy phase2 time configure. auto_phase2_sa_life Setting IKE SA lifetime in Unsigned integer time seconds seconds. auto_phase2_sa_life Setting IKE SA lifetime in Unsigned integer time bytes bytes. auto_phase2_encry Setting IKE encryption ption_algorithm algorithm. auto_phase2_encry Setting IKE encryption ption_algorithm DES algorithm. auto_phase2_encry Enables DES encryption ption_algorithm DES Boolean choice algorithm. enable_DES auto_phase2_encry Setting IKE encryption ption_algorithm algorithm. 3DES auto_phase2_encry ption_algorithm Enables 3DES encryption 3DES Boolean choice algorithm. enable_3DES <3des > auto_phase2_encry Setting IKE encryption ption_algorithm algorithm. AES-128 auto_phase2_encry ption_algorithm Enables AES-128 Boolean choice AES-128 encryption algorithm. enable_AES-128 71 S.No Command Name Description 103 104 105 106 107 108 109 110 111 112 113 114 auto_phase2_encry ption_algorithm AES-192 auto_phase2_encry ption_algorithm AES-192 enable_AES-192 auto_phase2_encry ption_algorithm AES-256 auto_phase2_encry ption_algorithm AES-256 enable_AES-256 auto_phase2_encry ption_algorithm TWOFISH-128 auto_phase2_encry ption_algorithm TWOFISH-128 enable_TWOFISH128 auto_phase2_encry ption_algorithm TWOFISH-192 auto_phase2_encry ption_algorithm TWOFISH-192 enable_TWOFISH192 auto_phase2_encry ption_algorithm TWOFISH-256 auto_phase2_encry ption_algorithm TWOFISH-256 enable_TWOFISH256 auto_phase2_encry ption_algorithm BLOWFISH auto_phase2_encry ption_algorithm BLOWFISH enable_BLOWFISH Type and Description Setting IKE encryption algorithm. Enables AES-192 encryption algorithm. Boolean choice Setting IKE encryption algorithm. Enables AES-256 encryption algorithm. Boolean choice Setting IKE encryption algorithm. Enables TWOFISH-128 encryption algorithm. Boolean choice Setting IKE encryption algorithm. Enables TWOFISH-192 encryption algorithm. Boolean choice Setting IKE encryption algorithm. Enables TWOFISH-256 encryption algorithm. Boolean choice Setting IKE encryption algorithm. Enables BLOWFISH encryption algorithm. 72 Boolean choice S.No Command Name Description 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 auto_phase2_encry ption_algorithm BLOWFISH keylength auto_phase2_encry ption_algorithm CAST128 auto_phase2_encry ption_algorithm CAST128 enable_CAST128 auto_phase2_encry ption_algorithm CAST128 keylength auto_phase2_auth_ algorithm auto_phase2_auth_ algorithm MD5 auto_phase2_auth_ algorithm MD5 enable_MD5 auto_phase2_auth_ algorithm SHA1 auto_phase2_auth_ algorithm SHA1 enable_SHA1 auto_phase2_auth_ algorithm SHA2-256 auto_phase2_auth_ algorithm SHA2-256 enable_SHA2-256 auto_phase2_auth_ algorithm SHA2-384 auto_phase2_auth_ algorithm SHA2-384 enable_SHA2-384 auto_phase2_auth_ algorithm SHA2-224 auto_phase2_auth_ algorithm SHA2-224 enable_SHA2-224 auto_phase2_auth_ algorithm SHA2-512 auto_phase2_auth_ algorithm SHA2-512 enable_SHA2-512 Type and Description Enters BLOWFISH keylength. Unsigned integer Setting IKE encryption algorithm. Enables CAST128 encryption algorithm. Boolean choice Enter CAST128 keylength. Unsigned integer Setting IKE authentication algorithm. Setting IKE authentication algorithm. Enables MD5 authentication algorithm. Boolean choice Setting IKE authentication algorithm. Enables SHA1 authentication algorithm. Boolean choice Setting IKE authentication algorithm. Enables SHA2-256 authentication algorithm. Boolean choice Setting IKE authentication algorithm. Enables SHA2-384 authentication algorithm. Boolean choice Setting IKE authentication algorithm. Enables SHA2-224 authentication algorithm. Boolean choice Setting IKE authentication algorithm. Enables SHA2-512 authentication algorithm. 73 Boolean choice S.No Command Name Description 132 133 auto_phase2_enabl e_pfskeygroup auto_phase2_dh_gr oup Type and Description Enables/DIsables PFS key Boolean choice group. Setting IKE Diffie-Hellman IPsec VPN IKE Diffie-Hellman (DH) Group. (DH) Group type 6.42 vpn ipsec dhcp configure S.No Command Name Description 1 save 2 cancel 3 exit 4 start_address 5 end_address 6 subnet_mask Type and Description Saves vpn ipsec dhcp configuration settings. To revert to the previous vpn ipsec dhcp configuration settings. Saves vpn ipsec dhcp configuration settings and exits current mode. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address Setting ipsec dhcp end AAA.BBB.CCC.DDD where address. each part is in the range 0-255 IP address Setting ipsec dhcp subnet AAA.BBB.CCC.DDD where mask. each part is in the range 0-255 Setting ipsec dhcp start address. 6.43 vpn ipsec policy enable <name> S.No Command Name Description Type and Description 1 String <name> Enables a vpn policy 6.44 vpn ipsec policy disable <name> S.No Command Name Description Type and Description 1 String <name> Disables a vpn policy 6.45 vpn ipsec policy delete <name> S.No Command Name Description Type and Description 1 String <name> Deletes a vpn policy 74 6.46 vpn ipsec policy connect <name> S.No Command Name Description Type and Description 1 String <name> Connects a vpn tunnel 6.47 vpn ipsec policy drop <name> S.No Command Name Description 1 <name> Type and Description Drops/Disconnects a vpn tunnel 75 String Chapter 7. Configuration commands under branch DOT11 7.1 dot11 profile add <profile_name> S.No Command Name Description 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 Type and Description 802.11 profile configuration String mode. Saves profile configuration save settings. Saves profile configuration exit settings and exit current mode. Sets the 802.11 profile ssid String SSID. Enables or Disables SSID broadcast-ssid Boolean choice broadcast. Sets the profile security security_type 802.11 Security Types type. radio_mode Sets the profile radio mode. Dot11 Radio band wep Sets profile WEP options. Sets WEP authentication wep authentication WEP Authentication Types type. wep encryption Sets WEP encryption type. WEP Encryption Types Sets WEP key. Not WEP key index type (1-4) wep key required if passphrase is String set. Sets WEP passphrase to WEP key index type (1-4) wep passphrase generate WEP key from. String wpa Sets the WPA options. Sets WPA authentication wpa authentication WPA Authentication Types type. wpa encryption Sets WPA encryption type. WPA Encryption Types WPA Password. Needed wpa wpa-password only if authentication is String PSK <profile_name> 7.2 dot11 profile edit <profile_name> S.No Command Name Description 1 <profile_name> Type and Description 802.11 profile configuration String mode. 76 S.No Command Name Description 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 Type and Description Saves profile configuration save settings. Saves profile configuration exit settings, and exit current mode. Sets the 802.11 profile ssid String SSID. Enables or DisablesSSID broadcast-ssid Boolean choice broadcast. Sets the profile security security_type 802.11 Security Types type. radio_mode Sets the profile radio mode. Dot11 Radio band Sets the profile WEP wep options. Sets the WEP wep authentication WEP Authentication Types authentication type. Sets the WEP encryption wep encryption WEP Encryption Types type. Sets the WEP key. Not WEP key index type (1-4) wep key required if passphrase is String set. Sets the WEP passphrase WEP key index type (1-4) wep passphrase to generate WEP key from. String wpa Sets the WPA options. Sets the WPA wpa authentication WPA Authentication Types authentication type. Sets the WPA encryption wpa encryption WPA Encryption Types type. WPA Password. Needed wpa wpa-password only if authentication is String PSK 7.3 dot11 wmm edit <profile_name> S.No Command Name Description 1 <profile_name> 2 save Type and Description The name of the profile to which service is being added will be displayed String here. 802.11 wmm configuration mode. Saves wmm configuration settings. 77 S.No Command Name Description 3 exit 4 enable 5 default_class 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 dscp_0 dscp_1 dscp_2 dscp_3 dscp_4 dscp_5 dscp_6 dscp_7 dscp_8 dscp_9 dscp_10 dscp_11 dscp_12 dscp_13 dscp_14 dscp_15 dscp_16 dscp_17 dscp_18 dscp_19 dscp_20 dscp_21 dscp_22 dscp_23 dscp_24 dscp_25 dscp_26 dscp_27 dscp_28 Type and Description Saves wmm configuration settings, and exit current mode. Enables/Disables the Boolean choice 802.11 profile wmm. Choose among "Background", "Best Effort", "video", "Voice". This class of service is used for the traffic for whose IP Dot11 WMM class DSCP/TOS value is set to "Default" in IP TOS/DiffServ Mapping table. Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class Selects class of ip dscp. Dot11 WMM class 78 S.No Command Name Description Type and Description 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class Dot11 WMM class dscp_29 dscp_30 dscp_31 dscp_32 dscp_33 dscp_34 dscp_35 dscp_36 dscp_37 dscp_38 dscp_39 dscp_40 dscp_41 dscp_42 dscp_43 dscp_44 dscp_45 dscp_46 dscp_47 dscp_48 dscp_49 dscp_50 dscp_51 dscp_52 dscp_53 dscp_54 dscp_55 dscp_56 dscp_57 dscp_58 dscp_59 dscp_60 dscp_61 dscp_62 dscp_63 Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. Selects class of ip dscp. . 7.4 dot11 radius configure S.No Command Name Description 1 save Type and Description Saves radius configuration settings. 79 S.No Command Name Description 2 cancel 3 exit 4 primary_server 5 secondary_server 6 7 port secret 8 timeout 9 retries Type and Description To revert to the previous radius configuration settings Saves ACL configuration settings and exit current mode. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address Sets Radius Seconadry AAA.BBB.CCC.DDD where authentication Server. each part is in the range 0-255 Sets port number. number in range of 0 to 65535 Sets secret key for radius. String Sets timeout for radius Radius client authentication client. timeout Type. Authentication retries limit Radius client authentication to radius server. timeout Type. Sets Radius Primary authentication Server. 7.5 dot11 profile delete <profile_name> S.No Command Name Description Type and Description 1 String <profile_name> Deletes an 802.11 profile. 80 7.6 dot11 accesspoint add <ap_name> S.No Command Name Description Type and Description 9 10 11 12 802.11 access point configuration mode. Saves AP configuration save settings. To revert to the previous cancel AP configuration settings. Saves AP configuration exit settings, and exit current mode. Sets the 802.11 profile the profile AP will use. Enables or Disables wlan_partition wlan_partition. enable_active_time Setting time. enable_schedule_co Enables/disables Schedule ntrol Control. start Setting the time limits. stop Setting the time limits. start hour Setting the time limits. stop hour Setting the time limits. 13 start minute Setting the time limits. 14 stop minute Setting the time limits. 15 16 start meridian stop meridian Setting the time limits. Setting the time limits. 1 2 3 4 5 6 7 8 <ap_name> String String Boolean choice Boolean choice Boolean choice H(1-12) using 12 hour clock H(1-12) using 12 hour clock minute in the format MM(0059) minute in the format MM(0059) Schedule Meridiem Types. Schedule Meridiem Types. 7.7 dot11 accesspoint edit <ap_name> S.No Command Name Description 1 <ap_name> 2 save 3 cancel 4 exit 5 profile Type and Description 802.11 access point String configuration mode Saves AP configuration settings. To revert to the previous AP configuration settings Saves AP configuration settings, and exits current mode. Sets the 802.11 profile the String AP will use. 81 S.No Command Name Description Type and Description 9 10 11 12 Enables or Disables wlan_partition wlan_partition. enable_active_time Setting time. enable_schedule_co Enables/disables Schedule ntrol Control. start Setting the time limits. stop Setting the time limits. start hour Setting the time limits. stop hour Setting the time limits. 13 start minute Setting the time limits. 14 stop minute Setting the time limits. 15 16 start meridian stop meridian Setting the time limits. Setting the time limits. 6 7 8 Boolean choice Boolean choice Boolean choice H(1-12) using 12 hour clock H(1-12) using 12 hour clock minute in the format MM(0059) minute in the format MM(0059) Schedule Meridiem Types. Schedule Meridiem Types. 7.8 dot11 accesspoint delete <ap_name> S.No Command Name Description 1 <ap_name> Type and Description Deletes an 802.11 access String point. 7.9 dot11 wds enable <radio_no> S.No Command Name Description Type and Description 1 Unsigned integer <radio_no> Enables wds. 7.10 dot11 wds disable <radio_no> S.No Command Name Description Type and Description 1 Unsigned integer <radio_no> Disables wds. 82 7.11 dot11 wds add_peer <radio_no> <mac_addr> S.No Command Name Description 1 Type and Description <radio_no> <mac_a Adds peer mac address ddr> wds. Unsigned integer MAC address AA:BB:CC:DD:EE:FF where each part is in the range 00-FF 7.12 dot11 wds delete_peer <radio_no> <mac_addr> S.No Command Name Description 1 Type and Description Unsigned integer <radio_no> <mac_a Deletes peer mac address MAC address ddr> wds. AA:BB:CC:DD:EE:FF where each part is in the range 00-FF 7.13 dot11 accesspoint disable <ap_name> S.No Command Name Description 1 <ap_name> Type and Description Disables an 802.11 access String point. 7.14 dot11 accesspoint enable <ap_name> S.No Command Name Description 1 <ap_name> Type and Description Enables an 802.11 access String point. 7.15 dot11 radio configure <radio_no> S.No Command Name Description 1 <radio_no> 2 save 3 cancel Type and Description 802.11 radio configuration Unsigned integer mode. Saves radio configuration settings. To revert to the previous radio configuration settings. 83 S.No Command Name Description 4 5 6 7 8 9 10 11 12 Type and Description Saves radio configuration exit settings, and exit current mode. Sets the channel used by channel Dot11 Radio Channels. radio. Sets the default transmit default-transmitDot11 Radio default transmit power for APs using this power power. radio. Sets the dot11 radio Dot11 Radio operating operating_freqency operating frequency. frequency band 2.4mode Sets the dot11 radio mode. Dot11 Radio Mode 5mode Sets the dot11 radio mode. Dot11 Radio Mode Sets the Transmission Rate Dot11 Radio Transmission transmission_rate for the radio. Rate Sets the channel spacing channel_spacing Radio Channel Spacing. for the radio. Sets the contol band for control_side_band Dot11 Radio control band radio. 7.16 dot11 radio advanced configure <radio_no> S.No Command Name Description 1 2 3 4 5 6 7 8 Type and Description 802.11 AP advanced configuration mode. Saves advanced AP save configuration settings. To revert to the previous cancel advanced AP configuration settings. Saves advanced AP exit configuration settings and exit current mode. Sets the time between beacon_interval beacon transmissions (in milliseconds). Sets the interval between dtim_interval delivery traffic indication messages. Sets the Request to Send rts_threshold (RTS) threshold. fragmentation_thres Sets the maximum length hold of the frame. <radio_no> 84 Unsigned integer Dot11 BEACON Interval. Dot11 Dtim Interval. Dot11 Rts thresold Interval. Dot11 Fragmentation Interval. S.No Command Name Description 9 10 11 12 13 14 15 16 Type and Description Sets the 802.11b preamble preamble_mode type to be prepended to 802.11b Preamble Types. every frame Enables/disables RTS/CTS protection_mode handshake before packet RTSCTS Protection mode. transmission. Sets the retry limit for frame short_retry_limit retransmission on 802.11 Retry Limit. transmission failure. Sets the retry limit for frame long_retry_limit retransmission on 802.11 Retry Limit. transmission failure. Enables/Disables power power_save_enable Boolean choice. save mode. Sets the no of transmit tx_antennas Dot11 Antenna No. antennas to use. Sets the no of receive rx_antennas Dot11 Antenna No. antennas to use. ampdu_enable Enables/Disables ampdu. Boolean choice. 7.17 dot11 accesspoint wps configure S.No Command Name Description 1 save 2 cancel 3 exit 4 5 6 7 access_point wps_status configure_via_pin configure_via_pbc 8 station_pin Type and Description Saves WPS configuration settings. To revert to the previous WPS configuration settings Saves WPS configuration settings, and exit current mode. Access point. WPS status. Configures WPS via PIN. Configures WPS via PBC. Sets the PIN for WPS config. String. WPS status. Boolean choice. Boolean choice. String. 7.18 dot11 accesspoint ACL configure <ap_name> S.No Command Name Description 1 <ap_name> Type and Description 802.11 AP ACL configuration mode. 85 String S.No Command Name Description 2 save 3 cancel 4 exit 5 acl_policy 6 mac_address Type and Description Saves AP ACL configuration settings. To revert to the previous AP ACL configuration settings. Saves the AP ACL configuration settings, and exit current mode. Sets the accesspoint ACL Accesspoint ACL Policy type. Policy. MAC address Sets the accesspoint mac AA:BB:CC:DD:EE:FF where address. each part is in the range 00FF. 7.19 dot11 accesspoint acl delete_mac_address <rowid> S.No Command Name Description 1 <rowid> Type and Description Deletes acl mac address entry. 86 Unsigned integer. Chapter 8. Configuration commands under branch SYSTEM 8.1 System NT-Domain-Settings S.No Command Name Description save 2 exit 3 cancel 4 5 6 7 8 9 10 11 12 13 14 15 16 Type and Description Saves NT Domain configuration settings. Saves the NT Domain configuration settings and exit. To revert to the previous configuration settings. IP address Authentication_Serv Sets the primary server IP AAA.BBB.CCC.DDD where er_1 address. each part is in the range 0-255 IP address Authentication_Serv Sets the Second alternative AAA.BBB.CCC.DDD where er_2 server IP address. each part is in the range 0-255 IP address Authentication_Serv Sets the third alternative AAA.BBB.CCC.DDD where er_3 server IP address. each part is in the range 0-255 Sets the NT Domain workgroup String Workgroup. Sets the second alternative second_workgroup String Workgroup. Sets the Third alternative third_workgroup String Workgroup. Sets the NT Domain server Unsigned integer timeout connection timeout. Sets the NT Domain server retries Unsigned integer connection retry attempts. Sets the NT Domain first first_admin_name String server admin name. Sets the NT Domain first first_admin_passwd String server admin password. first_admin_hostna Sets the NT Domain first String me server admin hostname. Sets the NT Domain second_admin_nam second server admin String e name. Sets the NT Domain second_admin_pass second server admin String wd password. 87 S.No Command Name Description 17 18 19 20 21 Type and Description Sets the NT Domain second_admin_host second server admin name hostname. Sets the NT Domain third third_admin_name server admin name. Sets the NT Domain third third_admin_passwd server admin password. third_admin_hostna Sets the NT Domain third me server admin hostname. Checks the reachability of serverCheck configured servers. String String String String 8.2 system Active-Directory-Settings S.No Command Name Description 1 save 2 exit 3 cancel 4 5 6 7 8 9 10 11 12 Type and Description Saves Active Directory Configuration settings. Saves Active Directory configuration settings and exit. To revert to the previous configuration settings. IP address Authentication_Serv Sets the primary server IP AAA.BBB.CCC.DDD where er_1 address. each part is in the range 0-255. IP address Authentication_Serv Sets the second alternative AAA.BBB.CCC.DDD where er_2 server IP address. each part is in the range 0-255. IP address Authentication_Serv Sets the third alternative AAA.BBB.CCC.DDD where er_3 server IP address. each part is in the range 0-255. Active_Directory_Do Sets the Active Directory String main Domain. Sets the Second Second_Active_Dire Alternative Active Directory String ctory_Domain Domain. Third_Active_Direct Sets the Third Alternative String ory_Domain Active Directory Domain. Sets the Active Directory timeout Unsigned integer domain connection timeout. Sets the Active Directory retries Unsigned integer connection retry attempts. Sets the Active Directory first_admin_name String first server admin name. 88 S.No Command Name Description 13 14 15 16 17 18 19 20 21 Type and Description Sets the Active Directory first_admin_passwd first server admin password. Sets the Active Directory first_admin_hostna first server admin me hostname. Sets the Active Directory second_admin_nam second server admin e name. Sets the Active Directory second_admin_pass second server admin wd password. Sets the Active Directory second_admin_host second server admin name hostname. Sets the Active Directory third_admin_name third server admin name. Sets the Active Directory third_admin_passwd third server admin password. Sets the Active Directory third_admin_hostna third server admin me hostname. Checks the reachability of serverCheck configured servers. String String String String String String String String 8.3 system LDAP_Settings S.No Command Name Description 1 save 2 exit 3 cancel 4 5 6 Type and Description Saves LDAP configuration settings. Saves LDAP configuration settings and exit. To revert to the previous configuration settings. IP address Authentication_Serv Sets the primary server IP AAA.BBB.CCC.DDD where er_1 address. each part is in the range 0-255. IP address Authentication_Serv Sets the second alternative AAA.BBB.CCC.DDD where er_2 server IP address. each part is in the range 0-255. IP address Authentication_Serv Sets the third alternative AAA.BBB.CCC.DDD where er_3 server IP address. each part is in the range 0-255. 89 S.No Command Name Description 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 Type and Description LDAP_Base_DN Second_LDAP_Bas e_DN Third_LDAP_Base_ DN LDAPAttribute1 LDAPAttribute2 LDAPAttribute3 LDAPAttribute4 Sets the LDAP Base DN. String Sets the second alternative String LDAP Base DN. Sets the Third alternative String LDAP Base DN. Sets the LDAP Attribute 1. String Sets the LDAP Attribute 2. String Sets the LDAP Attribute 3. String Sets the LDAP Attribute 4. String Sets the LDAP server timeout Unsigned integer connection timeout. Sets the LDAP server retries Unsigned integer connection retry attempts. Sets the LDAP first server first_admin_name String admin name. Sets the LDAP first server String first_admin_passwd admin password. second_admin_nam Sets the LDAP second String e server admin name. second_admin_pass Sets the LDAP second String wd server admin password. Sets the LDAP third server third_admin_name String admin name. Sets the LDAP third server third_admin_passwd String admin password. Checks the reachability of serverCheck configured servers. 8.4 system POP3_Settings POP3_Server_Configuration S.No Command Name Description 1 save 2 exit 3 cancel 4 5 Type and Description Saves POP3 configuration settings. Saves POP3 configuration settings and exit. To revert to the previous configuration settings. Authentication_Serv Sets the primary server. String er_1 Authentication_Serv Sets the secondary server. String er_2 90 S.No Command Name Description 6 7 8 9 Authentication_Serv er_3 Authentication_Port _1 Authentication_Port _2 Authentication_Port _3 10 SSL_Enable_1 11 SSL_Enable_2 12 SSL_Enable_3 13 CA_File_1 14 CA_File_2 15 CA_File_3 16 serverCheck Type and Description Sets the optional server. Sets the port for primary server. Sets the port for secondary server. Sets the port for optional server. Enables the SSL for primary server. Enables the SSL for secondary server. Enables the SSL for optional server. CAFILE for primary server. CAFILE for secondary server. CAFILE for optional server. Checks the reachability of configured servers. String Port number Port number Port number Boolean choice Boolean choice Boolean choice String String String 8.5 system POP3_Settings POP3_Trusted_CA S.No Command Name Description 1 exit Type and Description Exits the POP3_Trusted_CA. 2 add Adds a certificate. 3 delete Deletes a certificate. String IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 String 8.6 system logging ipv4 configure S.No Command Name Description 1 save 2 exit 3 cancel Type and Description Saves logging configuration settings. Saves logging configuration settings and exit current mode. To revert to the previous logging configuration settings. 91 S.No Command Name Description 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 Type and Description lan_wan_accept_pa cket_logs lan_wan_drop_pack et_logs wan_lan_accept_pa cket_logs wan_lan_drop_pack et_logs wan_dmz_accept_p acket_logs wan_dmz_drop_pac ket_logs dmz_wan_accept_p acket_logs dmz_wan_drop_pac ket_logs dmz_lan_accept_pa cket_logs dmz_lan_drop_pack et_logs lan_dmz_accept_pa cket_logs lan_dmz_drop_pack et_logs LAN to wan accepted Pkts Boolean choice Enable/Disable. LAN to wan dropped Pkts Boolean choice Enable/Disable. Wan to lan accepted Pkts Boolean choice logs Enable/Disable. Wan to lan dropped Pkts Boolean choice logs Enable/Disable. Wan to dmz accepted Pkts Boolean choice logs Enable/Disable. Wan to dmz dropped Pkts Boolean choice logs Enable/Disable. DMZ to wan accepted Pkts Boolean choice logs Enable/Disable. DMZ to wan dropped Pkts Boolean choice logs Enable/Disable. DMZ to lan accepted Pkts Boolean choice logs Enable/Disable. DMZ to lan dropped Pkts Boolean choice logs Enable/Disable. LAN to dmz accepted Pkts Boolean choice logs Enable/Disable. LAN to dmz dropped Pkts Boolean choice logs Enable/Disable. All Unicast Traffic logs unicast_traffic_logs Boolean choice Enable/Disable. broadcast_or_multic All Broadcast/Multicast Boolean choice ast_traffic_logs Traffic logs Enable/Disable. source_mac_filter_lo Source mac filter logs Boolean choice gs Enable/Disable. bandwidth_limit_log Bandwidth Limit logs Boolean choice s Enable/Disable. ftp_logs FTP logs Enable/Disable. Boolean choice Invalid ICMP Packets logs icmp_invalid_logs Boolean choice Enable/Disable. Redirected ICMP Packets icmp_redirect_logs Boolean choice logs Enable/Disable. Log invalid packet log_invalid_packet Boolean choice Enable/Disable. 92 8.7 system logging facility configure <facility> S.No Command Name Description 1 <facility> 2 save 3 exit 4 cancel 5 level_options_set Type and Description System logging facility configuration mode. Saves log Facility configuration settings. Saves log facility configuration settings and exit current mode. To revert to the previous log Facility configuration settings. Sets level options. This command can run multiple times in this view to set different level options. Logging Facility Type. Logging Facility Type. Logging Level Options Type. Boolean choice. 8.8 system logging remote configure S.No Command Name Description 1 2 3 4 5 6 7 8 9 10 Type and Description Saves remote Logging configuration settings. Saves remote logging exit configuration settings and exit current mode. To revert to the previous cancel remote logging configuration settings. Sets the log identifier log_identifier prefixed to both, e-mail and Syslog messages. Sets whether or not system email_logs_enable emails scheduled logs. Sets options for emailing of email_server logs. The SMTP port of the esmtp_port mail server. return_email_addres Sets email address SMTP s server replies are sent. send_to_email_addr Sets email address where ess logs and alerts will be sent. send_to_email_addr Sets email address where ess2 logs and alerts will be sent. save 93 String Boolean choice String Port number String String String S.No Command Name Description 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 Type and Description send_to_email_addr Sets email address where ess3 logs and alerts will be sent. Sets SMTP authentication smtp_auth details. Sets SMTP authentication smtp_auth type types. Sets SMTP authentication smtp_auth username (for plain and username CRAM-MD5 auth). Sets SMTP authentication smtp_auth password password (for plain and CRAM-MD5 auth). Enables Tls support (for Tls_Enable plain and CRAM-MD5 auth). identd_from_smtp_s Enables/Diables to identd erver_enable from smtp server. Sets schedule for sending schedule log by email. schedule unit Sets schedule unit. schedule day Sets schedule day. schedule time Sets schedule time. schedule meridiem Sets schedule meridiem. syslog_server syslog syslog_server server1 server_name1 syslog_server server2 server_name2 syslog_server server3 server_name3 syslog_server server4 server_name4 syslog_server server5 server_name5 syslog_server server6 server_name6 syslog_server server7 server_name7 syslog_server server8 server_name8 syslog_server server_name1 Boolean Choice Y/N enable 94 String SMTP Authentication Types. String String Boolean choice Boolean choice Schedule Unit Types. Schedule Day Types. Schedule Time Units Types. Schedule Meridiem Types. Boolean choice S.No Command Name Description 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 Type and Description syslog_server Sets Syslog server. server_name1 name syslog_server server_name1 severity syslog_server server_name1 facility syslog_server server_name2 enable Sets Syslog severity. Syslog server severity types. Sets Syslog facility. Syslog server facility ID types Boolean Choice Y/N. Boolean choice syslog_server Sets Syslog server. server_name2 name syslog_server server_name2 severity syslog_server server_name2 facility syslog_server server_name3 enable Syslog server severity types. Sets Syslog facility. Syslog server facility ID types. Boolean Choice Y/N. Boolean choice IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Sets Syslog severity. Syslog server severity types. Sets Syslog facility. Syslog server facility ID types. Boolean Choice Y/N Boolean choice syslog_server Sets Syslog server. server_name4 name syslog_server server_name4 severity syslog_server server_name4 facility IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Sets Syslog severity. syslog_server Sets Syslog server. server_name3 name syslog_server server_name3 severity syslog_server server_name3 facility syslog_server server_name4 enable IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Sets Syslog severity. Syslog server severity types. Sets Syslog facility. Syslog server facility ID types. 95 S.No Command Name Description Type and Description 48 syslog_server server_name5 enable 49 syslog_server Sets Syslog server. server_name5 name 50 51 52 53 54 55 56 57 58 59 60 syslog_server server_name5 severity syslog_server server_name5 facility syslog_server server_name6 enable Boolean Choice Y/N. Syslog server severity types. Sets Syslog facility. Syslog server facility ID types. Boolean Choice Y/N. Boolean choice IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Sets Syslog severity. Syslog server severity types. Sets Syslog facility. Syslog server facility ID types. Boolean Choice Y/N. Boolean choice syslog_server Sets Syslog server. server_name7 name syslog_server server_name7 severity syslog_server server_name7 facility syslog_server server_name8 enable IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Sets Syslog severity. syslog_server Sets Syslog server. server_name6 name syslog_server server_name6 severity syslog_server server_name6 facility syslog_server server_name7 enable Boolean choice IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. Sets Syslog severity. Syslog server severity types. Sets Syslog facility. Syslog server facility ID types. Boolean Choice Y/N. Boolean choice. 61 syslog_server Sets Syslog server. server_name8 name IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. 62 syslog_server server_name8 severity Syslog server severity types. Sets Syslog severity. 96 S.No Command Name Description 63 syslog_server server_name8 facility Type and Description Sets Syslog facility. Syslog server facility ID types. 8.9 system logging ipv6 configure S.No Command Name Description 1 2 3 4 5 6 7 Type and Description Saves ipv6 logging configuration settings. Saves ipv6 logging exit configuration settings, and exits current mode. To revert to the previous cancel ipv6 logging configuration settings. Enasbles/Disables logging lan_wan_accept_en for the LAN to WAN Accept able packets. Enables/Disables logging lan_wan_drop_enab for the LAN to WAN le Dropped packets. Enables/Disables logging wan_lan_accept_en for the WAN to LAN Accept able packets. Enables/Disables logging wan_lan_drop_enab for the WAN to LAN le Dropped packets. save Boolean choice Boolean choice Boolean choice Boolean choice 8.10 system Radius-Settings S.No Command Name Description Type and Description Saves RADIUS configuration settings. Saves RADIUS configuration settings and exit current mode. To revert to the previous configuration settings 1 save 2 exit 3 cancel 4 primary-radiusserver Sets Primary RADIUS server IP address. 5 secondary-radiusserver Sets Secondary RADIUS server IP address. 97 IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 S.No Command Name Description 6 7 8 9 10 11 12 13 14 15 16 17 18 19 Type and Description optional-radiusserver Sets Optional RADIUS server IP address. primary-serverauthentication-port secondary-serverauthentication-port optional-serverauthentication-port primary-serversecret secondary-serversecret optional-serversecret primary-servertimeout secondary-servertimeout optional-servertimeout primary-serverretries secondary-serverretries optional-serverretries Sets Primary RADIUS server port. Sets Secondary RADIUS server port. Sets Optional RADIUS server port. Sets Primary RADIUS server secret. Sets Secondary RADIUS server secret. Sets Optional RADIUS server secret. Sets primary server connection timeout. Sets secondary server connection timeout. Sets optional server connection timeout. Sets primary server connection retry attempts. Sets secondary server connection retry attempts. Sets optional server connection retry attempts. Checks the reachability of configured servers. serverCheck IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Port number Port number Port number String String String Radius server connection timeout in seconds Radius server connection timeout in seconds Radius server connection timeout in seconds Radius server retries attempts. Radius server retries attempts. Radius server retries attempts. 8.11 system remote_management https configure S.No Command Name 1 save 2 exit 3 cancel 4 enable Description Type and Description Saves access Management settings for https. Saves access Management settings for https and exit current mode. To revert to the previous Remote Mgmt settings. Enables/disables remote Boolean choice mgmt over https. 98 S.No Command Name 5 type 6 from_address 7 end_address 8 9 10 Description Enables/disables remote mgmt over https. Sets the starting IP in case of range, and the IP to be allowed access in case of granting access to a particular machine Type and Description Unsigned integer IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address Sets the Ending IP in case AAA.BBB.CCC.DDD where of range. each part is in the range 0-255 Sets the port you want to port Unsigned integer use for HTTP. enable_remote_sn Enables/disables remote Boolean choice mp snmp. enable_remote_ss Enables/disables remote Boolean choice h ssh. 8.12 system remote_management telnet configure S.No Command Name 1 save 2 exit 3 cancel 4 enable 5 type 6 from_address 7 to_address Description Type and Description Saves access Management settings for telnet. Saves access Management settings for telnet and exit current mode. To revert to the previous Remote Mgmt settings. Enables/disables remote Boolean choice mgmt over telnet. The kind of access you Unsigned integer want to allow. Sets the starting IP in case of range, and the IP to be IP address allowed access in case of AAA.BBB.CCC.DDD where granting access to a each part is in the range 0-255 particular machine. IP address Sets the Ending IP in case AAA.BBB.CCC.DDD where of range. each part is in the range 0-255 99 8.13 system sessionSettings admin configure S.No Command Name 1 save 2 exit 3 cancel 4 SessionTimeout Description Type and Description Saves Configurable WAN settings. Saves configurable settings and exit current mode. To revert to the previous Configurable Session settings settings. Enters the Session timeout Idle timeout value for user. for the admin group. 8.14 system sessionSettings guest configure S.No Command Name Description 1 save 2 exit 3 cancel 4 SessionTimeout Type and Description Saves Configurable settings. Saves configurable settings and exit current mode. To revert to the previous Configurable Session settings. Enters the Session timeout Idle timeout value for user. for the guest group. 8.15 system snmp trap configure <agent_ip> S.No Command Name Description Type and Description SNMP trap configuration mode. 1 <agent_ip> 2 save 3 exit 4 cancel 5 agent The IP address of the SNMP agent. 6 snmp_version Snmp Version v1/v2/v3 IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. Saves SNMP trap configuration settings. Saves SNMP trap configuration settings, and exit current mode. To revert to the previous snmp configuration settings. 100 IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. String S.No Command Name Description 7 port 8 community Type and Description SNMP trap port the trap Port number messages will be sent to. The community string to which the agent belongs. Most agents are configured String to listen for traps in the Public community. 8.16 system snmp trap delete <agent_ip> S.No Command Name Description 1 <agent_ip> Type and Description Deletes an SNMP trap configuration. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. 8.17 system snmp users configure <user> S.No Command Name Description 1 2 3 4 5 6 7 8 9 Type and Description SNMP v3 User list snmpv3uers list user type configuration settings Saves SNMP trap save configuration settings. Saves SNMP v3 Users exit configuration settings and exit current mode. To revert to the previous cancel SNMP v3 Users configuration settings. Authentication and privacy Snmp security level type for security_level settings. snmpv3users list. Selects either MD5 or SHA Snmpv3uers list authentication authentication_algo authentication. algorithm type. DES-56 privacy is available Snmpv3uers list privacy privacy_algorithm for the authentication algorithm type. negotiation. Shared authentication authentication_pass password with the SNMPv3 String word user. Shared privacy password privacy_password String with the SNMPv3 user. <user> 101 8.18 system snmp sys configure S.No Command Name Description 1 save 2 cancel 3 exit 4 sys-contact 5 sys-location 6 sys-name Type and Description Saves SNMP system configuration settings. To revert to the previous snmp configuration settings. Saves SNMP system configuration settings and exit current mode. Sets system contact information. Sets system location information. Sets system name information. String, Max 32 characters and no ' or empty space or”. String, Max 32 characters and no ' or empty space or”. String, Max 32 characters and no ' or empty space or ". 8.19 system snmp access add S.No Command Name Description 1 save 2 exit 3 cancel 4 agent 5 subnet_mask 6 accessType Type and Description Saves SNMP access control configuration settings. Saves SNMP access configuration settings and exit current mode. To revert to the previous snmp configuration settings. The IP address of the SNMP agent. The network mask used to determine the list of allowed SNMP managers. To allow any IP on the network to manager the device enter 255.255.255.0. For a specific host, enter 255.255.255.255. To allow global access, enter 0.0.0.0. SNMP trap port the trap messages will be sent to. 102 IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. String S.No Command Name Description 7 community Type and Description The community string to which the agent belongs. Most agents are configured String to listen for traps in the Public community 8.20 system snmp access edit <rowid> S.No Command Name Description Type and Description 1 <rowid> Unsigned integer 2 save 3 exit 4 cancel 5 agent 6 subnet_mask 7 accessType 8 community snmp configuration mode Saves SNMP access control configuration settings. Saves SNMP access configuration settings and exit current mode. To revert to the previous snmp configuration settings. The IP address of the SNMP agent. The network mask used to determine the list of allowed SNMP managers. To allow any IP on the network to manager the device enter 255.255.255.0. For a specific host, enter 255.255.255.255. To allow global access, enter 0.0.0.0. SNMP trap port the trap messages will be sent to. The community string to which the agent belongs. Most agents are configured to listen for traps in the Public community. 103 IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 String String 8.21 system snmp access delete <rowid> S.No Command Name Description 1 <rowid> Type and Description SNMP access configuration Unsigned integer mode. 8.22 system switch_settings power_saving configure S.No Command Name Description 1 save 2 exit 3 cancel 4 link_status 5 cable_length Type and Description Saves powerMode configuration settings. Saves power mode configuration settings, and exit current mode. To revert to the previous content Filtering ower mode configuration settings. Enables/Disables Link Boolean choice status Enables/Disables Cable Boolean choice Length 8.23 system switch_settings jumbo_frame configure S.No Command Name Description 1 save 2 exit 3 cancel 4 jumbo_frame Type and Description Saves jumbo frame configuration settings. Saves jumbo frame configuration settings and exit current mode. To revert to the previous jumbo frame configuration settings. Enables/Disables jumbo Boolean choice frame. 104 8.24 system admin_setting configure S.No Command Name Description 1 save 2 exit 3 cancel 4 System_name Type and Description Saves system admin settings. Saves configuration settings, and exit current mode. To revert to the previous admin configuration settings. String 8.25 system time configure S.No Command Name Description 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 Type and Description Saves time configuration settings. Saves time configuration exit settings, and exits current mode. To revert to the previous cancel time configuration settings. time_zone Specifies timezone Timezones enable_daylight_sav Specifies whether you want Boolean choice ing to enable daylight saving. Specifies whether to use configure_ntp_serve ntpp servers or user will set Boolean choice rs date and time. Specifies whether to use use_default_servers system default NTP servers Boolean choice or custom NTP servers. primary_ntp_server Sets Primary NTP server. String secondary_ntp_serv Sets Secondary NTP String er server. ntp_year Sets year for the date. Year ntp_month Sets month for the date. Month in the format MM(01-12) ntp_day Sets Day for the date. Day in the format DD(01-31) ntp_hour Sets hour for the date. HH(00-23) using 24 hour clock Minute in the format MM(00ntp_minutes Sets minutes for the date. 59) Second in the format SS(00ntp_seconds Sets seconds for the date. 59) Sets sync interval (in ntp_sync_interval Unsigned integer minutes). save 105 8.26 system traffic_meter configure S.No Command Name Description 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 Type and Description Saves traffic meter configuration settings. Saves traffic meter exit configuration settings and exit current mode. To revert to the previous cancel traffic meter configuration settings. Enables/Disables the traffic enable Boolean choice meter status. Sets traffic Limit Type 0(No limit_type limit), 1(Download only), traffic meter types 2(Both Directions). Sets the monthly limit value monthly_limit Unsigned integer of the traffic meter. Enables/Disables status of increase_limit_enabl increase limit of the traffic Boolean choice e meter option. Sets the value to increase increase_limit_by Unsigned integer limit of the traffic meter. Sets traffic counter as counter either specific time or traffic counter type restart counter now. time_hour Sets hours for restart time. HH(00-23) using 24 hour clock Sets minutes for restart Minute in the format MM(00time_minute time. 59) day_of_month Sets day of month. Calendar day of month Enables/Disables send send_email_report Boolean choice email report. Sets block Traffic type block_type 0(block all traffic) 1(block Block traffic type. all traffic except email). Enables/Disables send send_email_alert Boolean choice email alert. save 8.27 system usb usb1 configure S.No Command Name Description 1 save Type and Description Saves Configurable WAN settings. 106 S.No Command Name Description 2 exit 3 cancel 4 5 6 enable printer_enable Storage_enable 7 usb_type Type and Description Saves configurable WAN settings and exit current mode. To revert to the previous Configurable WAN settings settings. Enables USB1 Boolean choice Enables printer usb Boolean choice Enables Storage USB Boolean choice Selects the USB type 3G_USB_ADAPTOR/USB_ usb device type Disc 8.28 system usb usb2 configure S.No Command Name Description 1 save 2 exit 3 cancel 4 5 6 enable printer_enable Storage_enable 7 usb_type Type and Description Saves USB1 Settings settings. Saves USB2 settings and exit current mode. To revert to the previous Configurable WAN settings settings. Enables USB2. Boolean choice Enables printer. Boolean choice Enables USB2. Boolean choice Selects the USB type 3G_USB_ADAPTOR/USB_ usb device type Disc. 8.29 system usb shareport_vlan configure <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit Type and Description SharePort on vlan configuration. Saves SharePort on vlan settings. Saves shareport on vlan settings and exit current mode. 107 Unsigned integer S.No Command Name Description 4 cancel 5 6 printer_sharing storage_sharing Type and Description To revert to the previous shareport on vlan settings. Enables printer Boolean choice Enables USB2 Boolean choice 8.30 system group add S.No Command Name Description 1 save 2 exit 3 cancel 4 groupname 5 description 6 Privilege_Type 7 8 9 10 11 12 13 14 Privilege_Type Admin Privilege_Type sslvpn Privilege_Type L2TP Privilege_Type PPTP Privilege_Type Xauth Privilege_Type Guest Privilege_Type Captive_Portal grouptimeOut Type and Description Saves system group configuration settings. Saves system group configuration settings and exit current mode. To revert to the previous system group configuration settings. Enter the Group Name String here Enter a brief description of String the group here Selects the privilege type for the group. Adds ADMIN privilege to Boolean choice the group. Adds sslvpn privilege to the Boolean choice group. Adds L2TP privilege to the Boolean choice group. Adds PPTP privilege to the Boolean choice group. Adds Xauth privilege to the Boolean choice group. Adds Guest privilege to the Boolean choice group. Adds captive portal Boolean choice privilege to the group. Enter the time out for the Idle timeout value for user. group. 8.31 system group edit <row_id> S.No Command Name Description 1 <row_id> Type and Description System groups edit mode. Unsigned integer 108 S.No Command Name Description 2 save 3 exit 4 cancel 5 description 6 grouptimeOut Type and Description Saves system group configuration settings. Saves system group configuration settings and exit current mode. To revert to the previous system group configuration settings. Enter a brief description of String the group here. Enter the new time out for Idle timeout value for user. the group. 8.32 system group delete <row_id> S.No Command Name Description 1 <row_id> Type and Description System groups delete mode. Unsigned integer 8.33 system users add S.No Command Name Description 1 2 3 4 5 6 7 8 9 10 Type and Description Saves system user save configuration settings. Saves system user exit configuration settings and exit current mode. To revert to the previous cancel system user configuration settings. username Enter the username here. Enter the user's first name FirstName here. Enter the user's last name LastName here. password Enter the password here. Re-Enter the password password_confirm here. groupname Enter the groupname here. Enables/Disables change enable_change_pas password for captive portal sword user. 109 String String String String String String Boolean choice 8.34 system users edit <row_id> S.No Command Name Description 1 2 3 4 5 6 7 8 Type and Description System users edit mode. Unsigned integer Saves system user save configuration settings. Saves system user exit configuration settings and exit current mode. To revert to the previous cancel system user configuration settings. Enter the user's first name FirstName String here. Enter the user's last name LastName String here. String change_password Change user's password. String String Enables/Disables change enable_change_pas password for captive portal Boolean choice sword user. <row_id> 8.35 system users delete <row_id> S.No Command Name Description 1 <row_id> Type and Description System users delete mode. Unsigned integer 8.36 system group groupaccesscontrol configure <group_id> S.No Command Name Description 1 <group_id> 2 save 3 exit 4 cancel 5 6 deny_login deny_login_wan Type and Description group access control Unsigned integer configuration. Saves group access control configuration settings. Saves group access control configuration settings and exit current mode. To revert to the previous group access control configuration settings. Denies login. Boolean choice Denies login wan. Boolean choice 110 S.No Command Name Description 7 8 Type and Description allow_login_from_de Login from ip. fined_ips allow_login_from_de Login from browser. fined_browsers Boolean choice Boolean choice 8.37 system group access_control_browser add S.No Command Name Description 1 save 2 exit 3 cancel 4 5 group_id browser_name Type and Description Saves group access control browser configuration settings. Saves group access control browser configuration settings and exit current mode. To revert to the previous group access control browser configuration settings. group id Unsigned integer browser name Supported browsers 8.38 system group access_control_browser delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Deletes a browser from Access Control browsers list. Unsigned integer 8.39 system group access_control_ip add S.No Command Name Description 1 save 2 exit Type and Description Saves group access control ip configuration settings. Saves group access control ip configuration settings and exit current mode. 111 S.No Command Name Description Type and Description 3 cancel 4 group_id To revert to the previous group access control ip configuration settings. group id 5 address_type address type 6 source_address Sets the source address. 7 mask_length Sets the source network mask length. Unsigned integer source address type for users ip policy IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 number in range of 1 to 32 8.40 system group access_control_ip delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Deletes an ip from Access Unsigned integer Control ips list. 112 Chapter 9. Configuration commands under branch UTIL 9.1 util system_check ping <ip_address> S.No Command Name Description 1 <ip_address> Type and Description Pings an Internet Address. String 9.2 util system_check dns_lookup <dns> S.No Command Name Description 1 <dns> Type and Description To retrieve the IP address of a Web, FTP, Mail or any String other Server on the Internet 9.3 util system_check traceroute <ip_address> S.No Command Name Description 1 <ip_address> Type and Description Displays all the routers present between the String destination IP address and this router. 9.4 util system_check capturePackets start <interface> S.No Command Name Description Type and Description 1 String <interface> Starts the packet capture. 9.5 util system_check capturePackets download <fileName> <ipAddr> S.No Command Name Description 1 Type and Description Downloads the packet <fileName> <ipAddr capture to the host > machine. FileName string IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. 9.6 util dbglog_download <fileName> <ipAddr> S.No Command Name Description 1 Type and Description <fileName> <ipAddr Downloads Dbglogs to the FileName string > host machine IP address 113 S.No Command Name Description Type and Description AAA.BBB.CCC.DDD where each part is in the range 0-255 9.7 util usb_test <ipAddr> <fileName> S.No Command Name Description 1 Type and Description <ipAddr> <fileName To test the USB. > String FileName string 9.8 util firmware_upgrade <IpAddr> <FileName> S.No Command Name Description 1 Type and Description <IpAddr> <FileNam To upgrade the firmware. e> IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 String. 9.9 util enable_auto_backup <status> S.No Command Name Description 1 <status> Type and Description Enables/Disables Auto Backup support. Boolean choice. 9.10 util enable_config_encryp <status> S.No Command Name Description 1 <status> Type and Description Enables/Disables Configuration encryption support. Boolean choice 9.11 util watchdog_disable <status> S.No Command Name Description 1 <status> Type and Description Disables/Enables watchdog Boolean choice timer. 114 Chapter 10. Configuration commands under branch LICENSE 10.1 license list S.No Command Name Description 1 list 2 activate Type and Description Lists all licenses configured on the device. Activates a license on the device. 10.2 license activate <activationKey> S.No Command Name Description 1 <activationKey> 2 list 3 activate Type and Description Activates a license on the device. Lists all licenses configured on the device. Activates a license on the device. 115 Takes a string value that has only AtoZ, atoz and 0to9 characters only Chapter 11. Configuration commands under branch NET 11.1 net ipv6_tunnel six_to_four configure S.No Command Name Description 1 2 3 4 Type and Description Saves sixToFour Tunnel configuration settings. Saves sixToFour Tunnel exit configuration settings, and exits current mode. To revert to the previous cancel sixToFourTunnel configuration settings. Enables/disables automatic tunneling which will allow traffic from a LAN IPv6 automatic_tunneling network to be tunneled Boolean choice _enable through a WAN IPv4 network to reach an IPV6 network. save 11.2 net bandwidth profile enable <enable> S.No Command Name Description 1 <enable> Type and Description It allows to enable/disable Boolean choice bandwidth profiles. 11.3 net bandwidth profile add S.No Command Name Description 1 save 2 exit 3 cancel 4 name 5 policytype Type and Description Saves bandwidth profile configuration settings. Saves bandwidth Profile configuration settings and exit current mode. To revert to the previous bandwidth Profile configuration settings. Unique Profile Name. String Policy Type, either Inbound Bandwidth policy type. or Outbound. 116 S.No Command Name Description 6 type 7 priority 8 minimum_rate 9 maximum_rate 10 Interface Type and Description Profile Type, either Priority Bandwidth profile type. or Rate. Priority. Bandwidth priority type. Minimum Bandwidth Minimum bandwidth rate 0provided by user. Max bandwidth Kbps. Maximum Bandwidth Maximum bandwidth rate 100provided by user. 100000 Kbps. Enter WAN interface (WAN1/WAN2) for Outbund Policy and LAN/VLAN (Use show net bandwidth profile String interface_list command to see list) interface for Inbound Bandwidth Profile. 11.4 net bandwidth profile edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit 4 cancel 5 name 6 policytype 7 type 8 priority 9 minimum_rate 10 maximum_rate Type and Description It allows to edit a bandwidth Unsigned integer profile. Saves bandwidth profile configuration settings. Saves bandwidth Profile configuration settings and exit current mode. To revert to the previous bandwidth Profile configuration settings. Unique Profile Name. String Policy Type, either Inbound Bandwidth policy type. or Outbound. Profile Type, either Priority Bandwidth profile type. or Rate. Select from Low, Medium or High if the profile type is Bandwidth priority type. priority. Minimum Bandwidth Minimum bandwidth rate 0provided by user. Max bandwidth Kbps. Maximum Bandwidth Maximum bandwidth rate 100provided by user. 100000 Kbps. 117 S.No Command Name Description 11 Interface Type and Description Enter WAN interface (WAN1/WAN2) for Outbound Policy and LAN/VLAN (Use show net String bandwidth profile interface_list command to see list)interface for Inbound Bandwidth Profile. 11.5 net bandwidth profile delete <row_id> S.No Command Name Description It allows to delete a <row_id> 1 bandwidth profile. Type and Description Unsigned integer 11.6 net bandwidth traffic_selector add S.No Command Name Description 1 save 2 exit 3 cancel 4 profile_name 5 service_name 6 match_type 7 ip_address 8 subnet_mask 9 mac_address 10 11 12 port_name vlan_id access_point Type and Description Saves Traffic Selector configuration settings. Saves Traffic Selector configuration settings and exit current mode. To revert to the previous Traffic Selector configuration settings. Profile Name. To see available services list by show command. The match type can be IP or MAC Address. String String Traffic selector match type. IP address IP Address. AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address Subnet Mask. AAA.BBB.CCC.DDD where each part is in the range 0-255. MAC address AA:BB:CC:DD:EE:FF where MAC Address each part is in the range 00FF. Port Name Traffic selectors Port types. Vlan ID Unsigned integer. Virtual Access Point Name String. 118 11.7 net bandwidth traffic_selector edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit 4 cancel 5 profile_name 6 service_name 7 match_type 8 ip_address 9 subnet_mask 10 mac_address 11 12 13 port_name vlan_id access_point Type and Description It allows to edit a traffic selector for a bandwidth profile. Saves Traffic Selector configuration settings. Saves Traffic Selector configuration settings and exit current mode. To revert to the previous Traffic Selector configuration settings. Profile Name. Sees available services list by show command IP /MAC Address Unsigned integer String String Traffic selector match type. IP address IP Address. AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address Subnet Mask. AAA.BBB.CCC.DDD where each part is in the range 0-255. MAC address AA:BB:CC:DD:EE:FF where MAC Address each part is in the range 00FF. Port Name Traffic selectors Port types. Vlan ID Unsigned integer. Virtual Access Point Name String 11.8 net bandwidth traffic_selector delete <row_id> S.No Command Name Description 1 <row_id> Type and Description It allows to delete a traffic selector for a bandwidth profile. 119 Unsigned integer 11.9 net ddns wan1 configure S.No Command Name Description 1 2 3 4 5 6 7 8 9 Type and Description Saves DDNS configuration settings. Saves DDNS configuration exit settings and exit current mode. To revert to the previous cancel DDNS configuration settings. Enables or Disables ddns_service Dyndns to provide Dynamic Select the Ddns Service type. DNS service String, Max 64 characters and hostname Sets Hostname. no ' or empty space or " String, Max 64 characters and username Sets username. no ' or empty space or " String, Max 64 characters and password Sets Password. no ' or empty space or " Sets Timeperiod as 30 time_update_enable Boolean choice days. Enables/Disables using wild_flag_enable Boolean choice wild cards. save 11.10 net ddns wan2 configure S.No Command Name Description 1 save 2 exit 3 cancel 4 ddns_service 5 hostname 6 username 7 password Type and Description Saves DDNS configuration settings. Saves DDNS configuration settings and exit current mode. To revert to the previous DDNS configuration settings. Enables or Disables Dyndns to provide Dynamic Select the Ddns Service type. DNS service String, Max 64 characters and Sets Hostname. no ' or empty space or " String, Max 64 characters and Sets username. no ' or empty space or " String, Max 64 characters and Sets Password. no ' or empty space or " 120 S.No Command Name Description 8 9 Type and Description Sets Timeperiod as 30 time_update_enable days. Enables/Disables using wild_flag_enable wild cards. Boolean choice Boolean choice 11.11 net lan dhcp reserved_ip configure <mac_address> S.No Command Name Description 1 <mac_address> 2 save 3 exit 4 cancel 5 ip_address 6 computer_name 7 8 Type and Description DHCP Reserved IPs add/edit mode. MAC address AA:BB:CC:DD:EE:FF where each part is in the range 00-FF Saves DHCP Reserved IPs configuration settings. Saves DHCP Reserved IPs configuration settings, and exit current mode. To revert to the previous DHCP Reserved IPs configuration settings. Sets IP Address to be reserved. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 String Specifies a unique name. Selects to Associate with IP Association Boolean choice / MAC Binding. log_dropped_packet Specifies logging option for Boolean choice s this rule. 11.12 net lan dhcp reserved_ip delete <mac_address> S.No Command Name Description 1 <mac_address> Type and Description MAC address Deletes a specific reserved AA:BB:CC:DD:EE:FF where ip entry. each part is in the range 00-FF 121 11.13 net dmz dhcp reserved_ip configure <mac_address> S.No Command Name Description 1 <mac_address> 2 save 3 exit 4 cancel 5 ip_address Type and Description DHCP Reserved IPs add/edit mode. MAC address AA:BB:CC:DD:EE:FF where each part is in the range 00-FF Saves DHCP Reserved IPs configuration settings. Saves DHCP Reserved IPs configuration settings and exit current mode. To revert to the previous DHCP Reserved IPs configuration settings. Sets IP Address to be reserved. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 11.14 net dmz dhcp reserved_ip delete <mac_address> S.No Command Name Description 1 <mac_address> Type and Description MAC address Deletes a specific reserved AA:BB:CC:DD:EE:FF where ip entry. each part is in the range 00-FF 11.15 net ethernet configure <interface_name> S.No Command Name Description 1 <interface_name> 2 save 3 exit 4 cancel 5 vlan-enable Type and Description Ethernet configuration String mode. Saves ethernet configuration settings. Saves ethernet configuration settings, and exits current mode. To revert to the previous configuration settings. Enables/Disables VLAN for Boolean choice this interface. 122 S.No Command Name Description 6 native-vlan 7 vlanid 11.16 Type and Description Enables/Disables native VLAN status. Sets VLAN Id. Type and Description Saves LAN configuration settings. Saves LAN configuration settings and exit current mode. To revert to the previous LAN configuration settings. Configures LAN Settings. 1 save 2 exit 3 cancel 4 static 5 static address Sets system LAN IP address. 6 static subnet_mask Sets system LAN subnet mask. 7 8 dhcp dhcp mode 10 11 12 13 14 15 Unsigned integer net lan ipv4 configure S.No Command Name Description 9 Boolean choice IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Configures DHCP Settings. Sets dhcp mode. dhcpv4 modes IP address Sets dhcp servers start dhcp start_address AAA.BBB.CCC.DDD where address. each part is in the range 0-255 IP address Sets dhcp servers end dhcp end_address AAA.BBB.CCC.DDD where address. each part is in the range 0-255 IP address dhcp default_gw Sets dhcp default gateway. AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address dhcp primary_dns Sets primary dns server. AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address dhcp secondary_dns Sets secondary dns server. AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address dhcp wins_server Sets Wins Server address. AAA.BBB.CCC.DDD where each part is in the range 0-255 Number in range of 1 to dhcp lease_time Sets system Lease Time. 262800. 123 S.No Command Name Description Type and Description 16 dhcp domain_name Sets dhcp domain name. 17 dhcp relay_gateway 18 19 dns dns host_name dns host_name mapping dns host_name mapping 1 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 dns host_name mapping 2 dns host_name mapping 3 dns host_name mapping 4 dns host_name mapping 5 dns host_name mapping 6 dns host_name mapping 7 dns host_name mapping 8 dns host_name mapping 1 host_name dns host_name mapping 1 ipaddress dns host_name mapping 2 host_name dns host_name mapping 2 ipaddress dns host_name mapping 3 host_name dns host_name mapping 3 ipaddress Sets dhcp relays gateway address. String, Max 256 characters and no ' or empty space or " IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Configures DNS Settings. Configures DNS Settings. Configures DNS Host NameMapping. Configures DNS Host NameMapping for 1st row. Configures DNS Host NameMapping for 2nd Row. Configures DNS Host NameMapping for 3rd row. Configures DNS Host NameMapping for 4th row. Configures DNS Host NameMapping for 5th row. Configures DNS Host NameMapping for 6th row. Configures DNS Host NameMapping for 7th row. Configures DNS Host NameMapping for 8th row. Sets Host Name. String Sets Host Name. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Sets Host Name. String Sets Host Name. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Sets Host Name. String Sets Host Name. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 124 S.No Command Name Description 35 36 37 38 39 40 41 42 43 44 dns host_name mapping 4 host_name dns host_name mapping 4 ipaddress dns host_name mapping 5 host_name dns host_name mapping 5 ipaddress dns host_name mapping 6 host_name dns host_name mapping 6 ipaddress dns host_name mapping 7 host_name dns host_name mapping 7 ipaddress dns host_name mapping 8 host_name dns host_name mapping 8 ipaddress 45 proxy 46 proxy dns_enable 11.17 Type and Description Sets Host Name. String Sets Host Name. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Sets Host Name. String Sets Host Name. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Sets Host Name. String Sets Host Name. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Sets Host Name. String Sets Host Name. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Sets Host Name. String Sets Host Name. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Configures the LAN Proxies. Enables/Disables dns proxy. net lan ipv6 configure S.No Command Name Description 1 save 2 exit 3 cancel Boolean choice Type and Description Saves LAN configuration settings. Saves LAN configuration settings and exit current mode. To revert to the previous LAN configuration settings. 125 S.No Command Name Description 4 Type and Description static Sets system LAN Settings. 5 static address Sets system LAN IP address. 6 7 8 9 static prefix_value dhcp dhcp server_enable dhcp mode 10 11 12 13 14 15 IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] Unsigned integer Prefix length Sets system LAN Settings. Sets dhcpv6 server status. Boolean choice DHCPv6 Mode dhcpv6 modes String, Max 256 characters dhcp domain_name DHCP server domain name and no ' or empty space or " dhcp Server preference number. Unsigned integer server_preference dhcp dns_type Dns server type. dhcpv6 dns server types IP address abcd:abcd:abcd:abcd:abcd:abc dhcp primary_dns Enter primary dns server. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] IP address Enter secondary dns abcd:abcd:abcd:abcd:abcd:abc dhcp secondary_dns server. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] number in range of 0 to dhcp rebind_time Rebind time. 604800 11.18 net lan ipv6 pool configure <ipv6PoolStartAddr> S.No Command Name Description 1 <ipv6PoolStartAddr> 2 save 3 exit 4 cancel 5 start_address Type and Description IPv6 LAN configuration add/edit mode. IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] Saves LAN configuration settings. Saves LAN configuration settings and exit current mode. To revert to the previous LAN configuration settings. Sets dhcpv6 start IP address. 126 IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] S.No Command Name Description Type and Description 6 end_address Sets dhcpv6 end IP address. 7 prefix_value Prefix length IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] Unsigned integer 11.19 net lan ipv6 pool delete <ipv6PoolStartAddr> S.No Command Name Description 1 <ipv6PoolStartAddr> 11.20 Type and Description IPv6 LAN configuration delete. net igmp configure S.No Command Name Description 1 2 3 4 5 6 IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] Type and Description save Saves igmp settings. Saves igmp settings and exit exit current mode. To revert to the previous cancel igmp settings settings. Specifies the igmp proxy Enable should enable or disable. This command is used to UpStreamInterface_ select WAN upstream WAN1 interface for WAN1. This command is used to UpStreamInterface_ select WAN upstream WAN2 interface for WAN2. 11.21 save 2 cancel 3 exit WAN interface type WANDHCP/WAN-PPTP/WANL2TP. WAN interface type WANDHCP/WAN-PPTP/WANL2TP. net intel_Amt server configure S.No Command Name Description 1 Boolean choice Type and Description Saves InterlAmt server configuration settings. To revert to the previous IntelAmt server configuration settings. Saves IntelAmt server configuration settings and exit current mode. 127 S.No Command Name Description 4 5 6 7 Type and Description Enables/disables Intel Amt enable_Intel_Amt Boolean choice. Ports. Wan_hosts IntelAmt Wan Host Type. Intel Amt Wan Host type. IntelAmt Wan Host Wan_host_Address String. Address. IP address Internal_Address IntelAmt internal Address. AAA.BBB.CCC.DDD where each part is in the range 0-255. 11.22 net intel_Amt_Reflector configure S.No Command Name Description 1 save 2 cancel 3 exit 4 enable 5 6 7 8 9 10 11 12 enable Intel_Amt_Reflector enable Intel_Amt_Reflector _destport enable Intel_Amt_Reflector _destport 16992 enable Intel_Amt_Reflector _destport 16993 enable Intel_Amt_Reflector _destport 16994 enable Intel_Amt_Reflector _destport 16995 enable Intel_Amt_Reflector _destport 9971 Intel_Amt_Reflector _srcport Type and Description Saves InterlAmt Reflector configuration settings. To revert to the previous IntelAmt server configuration settings. Saves IntelAmt server configuration settings and exit current mode. Enables intelAmt reflectors on port. Enables/disables Ports. Boolean choice Enables intelamt reflectors on different ports. Enables/disables Ports. Boolean choice Enables/disables Ports. Boolean choice Enables/disables Ports. Boolean choice Enables/disables Ports. Boolean choice Enables/disables Ports. Boolean choice Sets port number for different ports. 128 S.No Command Name Description 13 14 15 16 17 Intel_Amt_Reflector _srcport 16992 Intel_Amt_Reflector _srcport 16993 Intel_Amt_Reflector _srcport 16994 Intel_Amt_Reflector _srcport 16995 Intel_Amt_Reflector _srcport 9971 11.23 Type and Description Enter source port value for 16992. Enter source port value for 16993. Enter source port value for 16994. Enter source port value for 16995. Enter source port value for 9971. Port number Port number Port number Port number net ip_Aliasing server add S.No Command Name Description 1 save 2 cancel 3 exit 4 Interface 5 Ip_Address 6 Subnet_Mask 11.24 Port number Type and Description Saves Ip Alias server configuration settings. To revert to the previous Ip Alias server configuration settings. Saves Ip Aias server configuration settings and exit current mode. Selects the Interface for the WAN interface type. Ip Aliasing IP address Ip Address for ip Aliasing. AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address Subnet mask for ip AAA.BBB.CCC.DDD where Aliasing. each part is in the range 0-255. net ip_Aliasing server edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 cancel 4 exit Type and Description Editing Ip Aliasing server Unsigned integer configuration. Saves Ip Alias server configuration settings. To revert to the previous Ip Alias server configuration settings. Saves Ip Aias server configuration settings and exit current mode. 129 S.No Command Name Description 5 Interface 6 Ip_Address 7 Subnet_Mask 11.25 Type and Description Select the Interface for the WAN interface type Ip Aliasing IP address Ip Address for ip Aliasing. AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address Subnet mask for ip AAA.BBB.CCC.DDD where Aliasing. each part is in the range 0-255. net ip_Aliasing server delete <row_id> S.No Command Name Description 1 <row_id> 2 save 3 cancel 4 exit 5 Interface 6 Ip_Address 7 Subnet_Mask 11.26 Type and Description Deletes Ip Aliasing Unsigned integer configuration. Saves Ip Alias server configuration settings. To revert to the previous Ip Alias server configuration settings. Saves Ip Aias server configuration settings and exit current mode. Selects the Interface for the WAN interface type Ip Aliasing. IP address Ip Address for ip Aliasing. AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address Subnet mask for ip AAA.BBB.CCC.DDD where Aliasing. each part is in the range 0-255 net mode configure S.No Command Name Description 1 save 2 exit 3 cancel 4 ip_type Type and Description Saves IP Mode configuration settings. Saves IP Mode configuration settings and exit current mode. To revert to the previous IP Mode configuration settings. Selects IPv4 only or Select the ip address type. IPv4/IPv6 mode. 130 11.27 net ipv6_tunnel isatap add S.No Command Name Description 1 save 2 exit 3 cancel 4 subnet_prefix 5 end_point_type 6 ipv4_address 11.28 Type and Description Saves isatap tunnel configuration settings. Saves isaptap tunnel configuration settings, and exit current mode. To revert to the previous isatap tunnel configuration settings. This is the 64-bit subnet prefix that is assigned to String the logical ISATAP subnet for this intranet. This is the endpoint address for the tunnel that starts with this router. The endpoint can be the LAN Select the local end point address type. interface (assuming the LAN is an IPv4 network), or a specific LAN IPv4 address. The local end point address IP address if not the LAN IPv4 AAA.BBB.CCC.DDD where address. each part is in the range 0-255. net ipv6_tunnel isatap edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit 4 cancel 5 subnet_prefix Type and Description Isatap Tunnel configuration Unsigned integer mode. Saves isatap tunnel configuration settings. Saves isaptap tunnel configuration settings and exit current mode. To revert to the previous isatap tunnel configuration settings. This is the 64-bit subnet prefix that is assigned to String the logical ISATAP subnet for this intranet. 131 S.No Command Name Description 6 end_point_type 7 ipv4_address 11.29 Type and Description This is the endpoint address for the tunnel that starts with this router. The endpoint can be the LAN Select the local end point interface (assuming the address type. LAN is an IPv4 network), or a specific LAN IPv4 address. The local end point address IP address if not the LAN IPv4 AAA.BBB.CCC.DDD where address. each part is in the range 0-255 net ipv6_tunnel isatap delete <row_id> S.No Command Name Description 1 <row_id> 11.30 Type and Description Deletes a specified isatap Unsigned integer tunnel configuration mode. net routing mode configure S.No Command Name Description 1 save 2 exit 3 cancel 4 type 5 bridgeModeSetup 6 bridgeModeSetup bridge_interfaceIp 7 bridgeModeSetup dmz_interfaceIp 8 bridgeModeSetup subnetMask Type and Description Saves NAT configuration settings. Saves NAT configuration settings and exit current mode. To revert to the previous Basic Security Level configuration settings. Selects NAT or Transparent or Bridge Routing mode type. mode. Sets IP Addresses for Bridge and DMZ interfaces in same subnet. IP address Gives bridge Interface ip AAA.BBB.CCC.DDD where Address. each part is in the range 0-255. IP address Gives DMZ Interface ip AAA.BBB.CCC.DDD where Address. each part is in the range 0-255. IP address Gives subnet for the DMZ AAA.BBB.CCC.DDD where and Bridge Interfaces. each part is in the range 0-255. 132 S.No Command Name Description 9 nat_wanInterface 11.31 Type and Description Selects WAN interfaces for Select WAN interface. which NAT is to be enabled net wan wan1 ipv4 configure S.No Command Name Description 1 2 3 4 5 6 7 8 9 10 Type and Description Saves ipv4 wan configuration settings. To revert to the previous cancel ipv4 wan configuration settings. Exits from the current exit configuration. Selects among the options: STATIC, DHCP Client, PPPoE, PPTP, L2TP, isp_connection_type Russian PPTP, Russian ISP Types. L2TP, Japanese Multiple PPPoE, Dual Access PPPoE If ISP Type selected is DHCPC, this field gives you dhcpc options to configure DHCPC credentials Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically dhcpc assign a DNS address to Boolean choice. get_dns_from_isp the router using DHCP network protocol. Otherwise Enter No and give valid static dns addresses IP address Valid primary DNS Server dhcpc primary_dns AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. IP address dhcpc Valid secondary DNS AAA.BBB.CCC.DDD where secondary_dns Server IP Address. each part is in the range 0-255. Selects the Mac Address dhcpc mac_type Types of mac address source. Source. MAC address dhcpc mac_address Valid MAC address. AA:BB:CC:DD:EE:FF where save 133 S.No Command Name Description Type and Description 11 each part is in the range 00FF. String 12 13 14 15 16 17 18 19 20 21 22 23 24 dhcpc hostname Enter the hostname. If ISP Type selected is STATIC, this field gives you static options to configure STATIC credentials. If your ISP has assigned a fixed (static or permanent) IP address, fill this fields IP address static ip_address with Static IP address AAA.BBB.CCC.DDD where assigned to you. This will each part is in the range 0-255. identify the router to your ISP. IPv4 Subnet Mask. This is IP address usually provided by the ISP AAA.BBB.CCC.DDD where static subnet_mask or your network each part is in the range 0-255. administrator. IP address of the ISP’s IP address static gateway. This is usually AAA.BBB.CCC.DDD where provided by the ISP or your gateway_address each part is in the range 0-255. network administrator. IP address Valid primary DNS Server static primary_dns AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. IP address static Valid secondary DNS AAA.BBB.CCC.DDD where secondary_dns Server IP Address. each part is in the range 0-255. Selects the Mac Address static mac_type Types of mac address source Source. MAC address AA:BB:CC:DD:EE:FF where static mac_address Enter Valid MAC address. each part is in the range 00FF. If ISP Type selected is PPPoE, this field gives you pppoe options to configure PPPoE credentials. Enter the username to String, Max 64 characters and pppoe username authenticate. no ' or empty space or ". Enter the password to String, Max 16 characters and pppoe password authenticate. no ' or empty space or ". Enter the password to pppoe service String. authenticate. Enter the Auth Option to pppoe authOpt PPPOE Authentication Types. authenticate. 134 S.No Command Name Description 25 26 27 28 29 30 31 32 33 34 35 pppoe connectivity_type pppoe idletime Type and Description Enter the connectivity type. ISP Connectivity Types. Enter the idle time. Idle timeout value type. Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically pppoe assign a DNS address to Boolean choice. get_dns_from_isp the router using PPPOE network protocol. Otherwise Enter No and give valid static dns addresses. IP address Valid primary DNS Server pppoe primary_dns AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. IP address pppoe Valid secondary DNS AAA.BBB.CCC.DDD where secondary_dns Server IP Address. each part is in the range 0-255. Enter Yes to get IP dynamically from ISP if you have not been assigned any static IP address. The pppoe ISP will automatically Boolean choice get_ip_from_isp assign an IP address to the router using PPPOE network protocol. Otherwise Enter No and give valid static IP address. IP address pppoe static_ip Enter valid IP Address. AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address pppoe subnet_mask Enter valid subnet mask. AAA.BBB.CCC.DDD where each part is in the range 0-255. Selects the Mac Address pppoe mac_type Types of mac address source Source. MAC address AA:BB:CC:DD:EE:FF where pppoe mac_address Enter valid MAC address. each part is in the range 00FF. If ISP Type selected is PPTP, this field gives you pptp options to configure PPTP credentials. 135 S.No Command Name Description Type and Description Enter the username to log in. Enter the password to log in. 36 pptp username 37 pptp password 38 pptp ip_address If Address Mode is Static, give static ip. 39 pptp subnet_mask If Address Mode is Static, give subnet mask. 40 pptp get_ip_from_isp 42 pptp mmpe_encryption pptp split_tunnel 43 pptp gateway 44 pptp server_address 41 45 46 47 48 49 pptp connectivity_type pptp idle_time Enter Yes to get IP dynamically from ISP if you have not been assigned any static IP address. Otherwise Enter No and give valid static IP address. Enter the MMPE Encryption. Selects the split_tunnel. Gateway assigned by the ISP to make a connection with the ISP server. IP address of the PPTP server (if applicable). Sets ISP Type. String, Max 64 characters and no ' or empty space or " String, Max 16 characters and no ' or empty space or " IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. Boolean choice Boolean choice Boolean choice IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. ISP Connectivity Types. Sets ISP Type. Idle timeout value type. Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically pptp assign a DNS address to Boolean choice get_dns_from_isp the router using PPTP network protocol. Otherwise Enter No and give valid static dns addresses. IP address Enter valid primary DNS pptp primary_dns AAA.BBB.CCC.DDD where Server IP Address. each part is in the range 0-255. IP address Enter valid secondary DNS pptp secondary_dns AAA.BBB.CCC.DDD where Server IP Address. each part is in the range 0-255. 136 S.No Command Name Description 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 pptp mac_type Type and Description Selects the Mac Address Source. Types of mac address source. MAC address AA:BB:CC:DD:EE:FF where pptp mac_address Enter Valid MAC address. each part is in the range 00FF. If ISP Type selected is Russian dual access russ_pptp PPTP, this field gives you options to configure credentials. Enter the username to log String, Max 64 characters and russ_pptp username in. no ' or empty space or " Enter the password to log String, Max 16 characters and russ_pptp password in. no ' or empty space or " russ_pptp Enter the MMPE Boolean choice mmpe_encryption Encryption. russ_pptp Selects the split_tunnel. Boolean choice split_tunnel IP address russ_pptp IP address of the PPTP AAA.BBB.CCC.DDD where server_address server (if applicable). each part is in the range 0-255. russ_pptp Sets the ISP Type. ISP Connectivity Types. connectivity_type russ_pptp idle_time Sets the ISP Type. Idle timeout value type. IP address russ_pptp If Address Mode is Static, AAA.BBB.CCC.DDD where ip_address give static ip. each part is in the range 0-255. IP address russ_pptp If Address Mode is Static, AAA.BBB.CCC.DDD where subnet_mask give subnet mask. each part is in the range 0-255. Gateway assigned by the IP address russ_pptp gateway ISP to make a connection AAA.BBB.CCC.DDD where with the ISP server. each part is in the range 0-255. Enter Yes to get IP dynamically from ISP if you russ_pptp have not been assigned Boolean choice any static IP address. get_ip_from_isp Otherwise Enter No and give valid static IP address. Enter Yes to get dns dynamically from ISP if you russ_pptp have not been assigned Boolean choice get_dns_from_isp any static IP address. The ISP will automatically assign a DNS address to 137 S.No Command Name Description Type and Description the router using PPTP network protocol. Otherwise Enter No and give valid static dns addresses. 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 IP address Enter a valid primary DNS AAA.BBB.CCC.DDD where Server IP Address each part is in the range 0-255. IP address russ_pptp Enter a alid secondary AAA.BBB.CCC.DDD where secondary_dns DNS Server IP Address each part is in the range 0-255. Selects the Mac Address russ_pptp mac_type Types of mac address source. Source MAC address russ_pptp AA:BB:CC:DD:EE:FF where Enter Valid MAC address mac_address each part is in the range 00FF. If ISP Type selected is L2TP, this field gives you l2tp options to configure L2TP credentials. Enter the username to log String, Max 64 characters and l2tp username in. no ' or empty space or " Enter the password to log String, Max 16 characters and l2tp password in. no ' or empty space or " l2tp secret Enter the secret to log in. String l2tp split_tunnel Select the split_tunnel. Boolean choice Gateway assigned by the IP address l2tp gateway ISP to make a connection AAA.BBB.CCC.DDD where each part is in the range 0-255. with the ISP server. IP address IP address of the L2TP l2tp server_address AAA.BBB.CCC.DDD where server (if applicable). each part is in the range 0-255. l2tp Sets ISP Type. ISP Connectivity Types. connectivity_type l2tp idle_time Sets ISP Type. Idle timeout value type. IP address If Address Mode is Static, l2tp ip_address AAA.BBB.CCC.DDD where give static ip. each part is in the range 0-255. IP address If Address Mode is Static, l2tp subnet_mask AAA.BBB.CCC.DDD where give subnet mask. each part is in the range 0-255. Enter Yes to get IP dynamically from ISP if you l2tp get_ip_from_isp Boolean choice have not been assigned any static IP address. russ_pptp primary_dns 138 S.No Command Name Description 81 82 83 84 85 86 87 88 89 90 91 92 93 94 Type and Description Otherwise Enter No and give valid static IP address. Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically l2tp assign a DNS address to Boolean choice get_dns_from_isp the router using L2TP network protocol. Otherwise Enter No and give valid static dns addresses. IP address Valid primary DNS Server l2tp primary_dns AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. IP address Valid secondary DNS l2tp secondary_dns AAA.BBB.CCC.DDD where Server IP Address. each part is in the range 0-255. Selects the Mac Address l2tp mac_type Types of mac address source. Source. MAC address AA:BB:CC:DD:EE:FF where l2tp mac_address Enter Valid MAC address. each part is in the range 00FF. If ISP Type selected is Russian Dual Access russ_l2tp L2TP, this field gives you options to configure Russian L2TP credentials. Enter the username to log String, Max 64 characters and russ_l2tp username in. no ' or empty space or " Enter the password to log String, Max 16 characters and russ_l2tp password in. no ' or empty space or " russ_l2tp secret Enter the secret to log in. String russ_l2tp Select the split_tunnel. Boolean choice split_tunnel IP address russ_l2tp IP address of the L2TP AAA.BBB.CCC.DDD where server_address server (if applicable). each part is in the range 0-255. russ_l2tp Sets ISP Type. ISP Connectivity Types. connectivity_type russ_l2tp idle_time Sets ISP Type. Idle timeout value type. IP address If Address Mode is Static, russ_l2tp ip_address AAA.BBB.CCC.DDD where give static ip. each part is in the range 0-255. 139 S.No Command Name Description Type and Description 95 russ_l2tp gateway Gateway assigned by the ISP to make a connection with the ISP server 96 russ_l2tp subnet_mask If Address Mode is Static, give subnet mask. 97 98 99 100 101 102 103 104 105 106 IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. Enter Yes to get IP dynamically from ISP if you russ_l2tp have not been assigned Boolean choice get_ip_from_isp any static IP address. Otherwise Enter No and give valid static IP address Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically russ_l2tp assign a DNS address to Boolean choice get_dns_from_isp the router using L2TP network protocol. Otherwise Enter No and give valid static dns addresses. IP address russ_l2tp Valid primary DNS Server AAA.BBB.CCC.DDD where primary_dns IP Address. each part is in the range 0-255. IP address russ_l2tp Valid secondary DNS AAA.BBB.CCC.DDD where secondary_dns Server IP Address. each part is in the range 0-255. Selects the Mac Address russ_l2tp mac_type Types of mac address source. Source. MAC address russ_l2tp AA:BB:CC:DD:EE:FF where Enter Valid MAC address. mac_address each part is in the range 00FF. If ISP Type selected is japanese multiple pppoe, japanese_pppoe this field gives you options to configure credentials. japanese_pppoe configure the primary primary_profile pppoe profile japanese_pppoe Enter the username to String, Max 64 characters and primary_profile authenticate. no ' or empty space or " username japanese_pppoe Enter the password to String, Max 16 characters and primary_profile authenticate. no ' or empty space or " password 140 S.No Command Name Description 107 108 109 110 111 112 113 114 115 116 117 japanese_pppoe primary_profile service japanese_pppoe primary_profile authOpt japanese_pppoe primary_profile connectivity_type japanese_pppoe primary_profile idletime japanese_pppoe primary_profile get_dns_from_isp japanese_pppoe primary_profile primary_dns japanese_pppoe primary_profile secondary_dns japanese_pppoe primary_profile get_ip_from_isp japanese_pppoe primary_profile static_ip japanese_pppoe primary_profile subnet_mask japanese_pppoe secondary_profile Type and Description Enter the password to authenticate. String Enter the Auth Option to authenticate. PPPOE Authentication Types. Enter the connectivity type. ISP Connectivity Types. Enter the idle time. Idle timeout value type. Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically assign a DNS address to Boolean choice. the router using PPPOE network protocol. Otherwise Enter No and give valid static dns addresses. IP address Valid primary DNS Server AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. IP address Valid secondary DNS AAA.BBB.CCC.DDD where Server IP Address. each part is in the range 0-255. Enter Yes to get IP dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically Boolean choice assign an IP address to the router using PPPOE network protocol. Otherwise Enter No and give valid static IP address. IP address Valid IP Address. AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address Valid subnet mask. AAA.BBB.CCC.DDD where each part is in the range 0-255. Configures the secondary pppoe profile. 141 S.No Command Name Description 118 119 120 121 122 123 124 125 126 127 japanese_pppoe secondary_profile username japanese_pppoe secondary_profile password japanese_pppoe secondary_profile service japanese_pppoe secondary_profile authOpt japanese_pppoe secondary_profile connectivity_type japanese_pppoe secondary_profile idletime japanese_pppoe secondary_profile get_dns_from_isp japanese_pppoe secondary_profile primary_dns japanese_pppoe secondary_profile secondary_dns japanese_pppoe secondary_profile get_ip_from_isp Type and Description Enter the username to authenticate. String, Max 64 characters and no ' or empty space or " Enter the password to authenticate. String, Max 16 characters and no ' or empty space or " Enter the password to authenticate. String Enter the Auth Option to authenticate. PPPOE Authentication Types. Enter the connectivity type. ISP Connectivity Types. Enter the idle time. Idle timeout value type. Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically assign a DNS address to Boolean choice the router using PPPOE network protocol. Otherwise Enter No and give valid static dns addresses. IP address Valid primary DNS Server AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. IP address Valid secondary DNS AAA.BBB.CCC.DDD where Server IP Address. each part is in the range 0-255. Enter Yes to get IP dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically Boolean choice assign an IP address to the router using PPPOE network protocol. Otherwise Enter No and give valid static IP address. 142 S.No Command Name Description 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 japanese_pppoe secondary_profile static_ip japanese_pppoe secondary_profile subnet_mask japanese_pppoe mac_type Type and Description Valid IP Address. Valid subnet mask. Select the Mac Address Source. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. Types of mac address source MAC address japanese_pppoe AA:BB:CC:DD:EE:FF where Enter Valid MAC address. mac_address each part is in the range 00FF. If ISP Type selected is Dual PPPoE, this field gives you dual_pppoe options to configure Dual Access PPPoE credentials. dual_pppoe Enter the username to String, Max 64 characters and username authenticate. no ' or empty space or " dual_pppoe Enter the password to String, Max 16 characters and password authenticate. no ' or empty space or " Enter the service to dual_pppoe service String authenticate. Enter the Auth Option to dual_pppoe authOpt PPPOE Authentication Types. authenticate. dual_pppoe Enter the connectivity type. ISP Connectivity Types. connectivity_type dual_pppoe idletime Enter the idle time. Idle timeout value type. Enter Yes to get dns dynamically from ISP if you have not been assigned any static Dns address. The ISP will automatically dual_pppoe assign an DNS address to Boolean choice get_dns_from_isp the router using PPPOE network protocol. Otherwise Enter No and give valid static dns addresses. IP address dual_pppoe Valid primary DNS Server AAA.BBB.CCC.DDD where primary_dns IP Address. each part is in the range 0-255. IP address dual_pppoe Valid secondary DNS AAA.BBB.CCC.DDD where secondary_dns Server IP Address. each part is in the range 0-255. dual_pppoe Enter Yes to get IP Boolean choice get_ip_from_isp dynamically from ISP if you 143 S.No Command Name Description Type and Description have not been assigned any static IP address. The ISP will automatically assign an IP address to the router using PPPOE network protocol. Otherwise Enter No and give valid static IP address. 143 dual_pppoe static_ip Valid IP Address. 144 dual_pppoe subnet_mask Valid subnet mask. 145 dual_pppoe mac_type Select the Mac Address Source. 146 dual_pppoe mac_address 147 148 149 150 151 IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. Types of mac address source MAC address AA:BB:CC:DD:EE:FF where Enter Valid MAC address. each part is in the range 00FF. Enter Yes to get ip on physical interface from dhcp server in the internal dual_pppoe isp network. Otherwise Boolean choice get_ip_from_phy Enter No and give valid static IP address, subnet mask and gateway. IP address dual_pppoe Valid IP Address of AAA.BBB.CCC.DDD where static_ip_phy physical interface. each part is in the range 0-255. IP address dual_pppoe Valid subnet mask of AAA.BBB.CCC.DDD where subnet_mask_phy physical network. each part is in the range 0-255. IP address dual_pppoe Valid gateway of physcial AAA.BBB.CCC.DDD where gateway_phy network. each part is in the range 0-255. Enter Yes to get dns dynamically from interal ISP if you have not been assigned any static Dns dual_pppoe address. The internal ISP get_dns_from_isp_p will automatically assign an Boolean choice hy DNS address to the router using Dhcp network protocol. Otherwise Enter No and give valid static dns addresses. 144 S.No Command Name Description 152 153 154 155 Type and Description Valid primary DNS Server IP address dual_pppoe IP Address of physical AAA.BBB.CCC.DDD where primary_dns_phy network. each part is in the range 0-255. IP address Valid secondary DNS dual_pppoe AAA.BBB.CCC.DDD where secondary_dns_phy Server IP Address. each part is in the range 0-255. enable_vlan_tag Enables vlan on wan1. Boolean choice vlan_Id Enter Vlan Id. Unsigned integer 11.32 net wan wan2 ipv4 configure S.No Command Name Description 1 2 3 4 5 6 7 Type and Description Saves ipv4 wan configuration settings. To revert to the previous cancel ipv4 wan configuration settings. Exit from the current exit configuration. Select among the options: STATIC, DHCP Client, PPPoE, PPTP, L2TP, isp_connection_type Russian PPTP, Russian WAN2 ISP Types. L2TP, Japanese Multiple PPPoE, Dual Access Pppoe, ThreeG If ISP Type selected is DHCPC, this field gives you dhcpc options to configure DHCPC credentials Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically dhcpc assign a DNS address to Boolean choice get_dns_from_isp the router using DHCP network protocol. Otherwise Enter No and give valid static dns addresses IP address Valid primary DNS Server dhcpc primary_dns AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. save 145 S.No Command Name Description Type and Description 8 dhcpc secondary_dns Valid secondary DNS Server IP Address. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. 9 dhcpc mac_type Select Mac Address source. Types of mac address source. 10 dhcpc mac_address Valid MAC address. 11 dhcpc hostname 12 static 13 static ip_address 14 15 16 17 18 19 20 21 22 Enter the hostname. If ISP Type selected is STATIC, this field gives you options to configure STATIC credentials. If Address Mode is Static, give static ip. IPv4 Subnet Mask. This is usually provided by the ISP static subnet_mask or your network administrator. IP address of the ISP’s static gateway. This is usually provided by the ISP or your gateway_address network administrator. MAC address AA:BB:CC:DD:EE:FF where each part is in the range 00FF. String IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address Valid primary DNS Server AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. IP address static Valid secondary DNS AAA.BBB.CCC.DDD where secondary_dns Server IP Address. each part is in the range 0-255. Select the Mac Address static mac_type Types of mac address source. Source. MAC address AA:BB:CC:DD:EE:FF where static mac_address Enter Valid MAC address. each part is in the range 00FF. If ISP Type selected is PPPoE, this field gives you pppoe options to configure PPPoE credentials. Enter the username to String, Max 64 characters and pppoe username authenticate. no ' or empty space or " Enter the password to String, Max 16 characters and pppoe password authenticate. no ' or empty space or " static primary_dns 146 S.No Command Name Description 23 pppoe service 24 pppoe authOpt 25 26 27 28 29 30 31 32 33 34 35 36 pppoe connectivity_type pppoe idletime Type and Description Enter the password to authenticate. Enter the Auth Option to authenticate. String PPPOE Authentication Types. Enter the connectivity type. ISP Connectivity Types. Enter the idle time. Idle timeout value type. Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically pppoe assign a DNS address to Boolean choice get_dns_from_isp the router using PPPOE network protocol. Otherwise Enter No and give valid static dns addresses. IP address Valid primary DNS Server pppoe primary_dns AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. IP address pppoe Valid secondary DNS AAA.BBB.CCC.DDD where secondary_dns Server IP Address. each part is in the range 0-255. enable_vlan_tag Enables vlan on wan2. Boolean choice vlan_Id Enter Vlan Id. Unsigned integer Enter Yes to get IP dynamically from ISP if you have not been assigned any static IP address. The pppoe ISP will automatically Boolean choice get_ip_from_isp assign an IP address to the router using PPPOE network protocol. Otherwise Enter No and give valid static IP address. IP address pppoe static_ip Valid IP Address. AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address pppoe subnet_mask Valid subnet mask. AAA.BBB.CCC.DDD where each part is in the range 0-255. Select the Mac Address pppoe mac_type Types of mac address source. Source. MAC address pppoe mac_address Enter Valid MAC address. AA:BB:CC:DD:EE:FF where 147 S.No Command Name Description Type and Description each part is in the range 00FF. 37 pptp 38 pptp username 39 pptp password 41 pptp mmpe_encryption pptp split_tunnel 42 pptp gateway 43 pptp server_address 40 If ISP Type selected is PPTP, this field gives you options to configure PPTP credentials. Enter the username to log in. Enter the password to log in. Enter the MMPE Encryption. Selects the split_tunnel. Gateway assigned by the ISP to make a connection with the ISP server. IP address of the PPTP server (if applicable). 45 pptp connectivity_type pptp idle_time 46 pptp ip_address If Address Mode is Static, give static ip. 47 pptp subnet_mask If Address Mode is Static, give subnet mask. 44 48 pptp get_ip_from_isp 49 pptp get_dns_from_isp String, Max 64 characters and no ' or empty space or " String, Max 16 characters and no ' or empty space or " Boolean choice. Boolean choice. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. Sets the ISP Type. ISP Connectivity Types. Sets the ISP Type. Idle timeout value type. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. Enter Yes to get IP dynamically from ISP if you have not been assigned Boolean choice any static IP address. Otherwise Enter No and give valid static IP address. Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically assign a DNS address to Boolean choice the router using PPTP network protocol. Otherwise Enter No and give valid static dns addresses. 148 S.No Command Name Description 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 Type and Description IP address Valid primary DNS Server pptp primary_dns AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. IP address Valid secondary DNS AAA.BBB.CCC.DDD where pptp secondary_dns Server IP Address. each part is in the range 0-255. Select the Mac Address pptp mac_type Types of mac address source. Source. MAC address AA:BB:CC:DD:EE:FF where pptp mac_address Enter Valid MAC address. each part is in the range 00FF. If ISP Type selected is Russian dual access russ_pptp PPTP, this field gives you options to configure credentials. Enter the username to log String, Max 64 characters and russ_pptp username in. no ' or empty space or " Enter the password to log String, Max 16 characters and russ_pptp password in. no ' or empty space or " russ_pptp Enter the MMPE Boolean choice mmpe_encryption Encryption. russ_pptp Selects the split_tunnel. Boolean choice split_tunnel IP address russ_pptp IP address of the PPTP AAA.BBB.CCC.DDD where server_address server (if applicable). each part is in the range 0-255. russ_pptp Sets the ISP Type. ISP Connectivity Types. connectivity_type russ_pptp idle_time Sets the ISP Type. Idle timeout value type. IP address russ_pptp If Address Mode is Static, AAA.BBB.CCC.DDD where ip_address give static ip. each part is in the range 0-255. IP address russ_pptp If Address Mode is Static, AAA.BBB.CCC.DDD where subnet_mask give subnet mask. each part is in the range 0-255. Gateway assigned by the IP address russ_pptp gateway ISP to make a connection AAA.BBB.CCC.DDD where with the ISP server. each part is in the range 0-255. Enter Yes to get IP dynamically from ISP if you russ_pptp have not been assigned Boolean choice get_ip_from_isp any static IP address. Otherwise Enter No and give valid static IP address. 149 S.No Command Name Description 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 Type and Description Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically russ_pptp assign a DNS address to Boolean choice get_dns_from_isp the router using PPTP network protocol. Otherwise Enter No and give valid static dns addresses. IP address russ_pptp Valid primary DNS Server AAA.BBB.CCC.DDD where primary_dns IP Address. each part is in the range 0-255. IP address russ_pptp Valid secondary DNS AAA.BBB.CCC.DDD where secondary_dns Server IP Address. each part is in the range 0-255. Selects the Mac Address russ_pptp mac_type Types of mac address source. Source. MAC address russ_pptp AA:BB:CC:DD:EE:FF where Enter Valid MAC address. mac_address each part is in the range 00FF. If ISP Type selected is L2TP, this field gives you l2tp options to configure L2TP credentials. Enter the username to log String, Max 64 characters and l2tp username in. no ' or empty space or " Enter the password to log String, Max 16 characters and l2tp password in. no ' or empty space or " l2tp secret Enter the secret to log in. String l2tp split_tunnel Selects the split_tunnel. Boolean choice IP address assigned by the IP address l2tp gateway ISP to make a connection AAA.BBB.CCC.DDD where with the ISP server. each part is in the range 0-255. IP address IP address of the L2TP l2tp server_address AAA.BBB.CCC.DDD where server (if applicable). each part is in the range 0-255. l2tp Sets the ISP Type. ISP Connectivity Types. connectivity_type l2tp idle_time Sets the ISP Type. Idle timeout value type. IP address If Address Mode is Static, l2tp ip_address AAA.BBB.CCC.DDD where give static ip. each part is in the range 0-255. 150 S.No Command Name Description 81 82 83 84 85 86 87 88 89 90 91 92 l2tp subnet_mask Type and Description If Address Mode is Static, give subnet mask. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. Enter Yes to get IP dynamically from ISP if you have not been assigned l2tp get_ip_from_isp Boolean choice any static IP address. Otherwise Enter No and give valid static IP address. Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically l2tp assign a DNS address to Boolean choice get_dns_from_isp the router using L2TP network protocol. Otherwise Enter No and give valid static dns addresses. IP address Valid primary DNS Server l2tp primary_dns AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. IP address Valid secondary DNS l2tp secondary_dns AAA.BBB.CCC.DDD where Server IP Address. each part is in the range 0-255. Selects the Mac Address l2tp mac_type Types of mac address source. Source. MAC address AA:BB:CC:DD:EE:FF where l2tp mac_address Enter Valid MAC address. each part is in the range 00FF. If ISP Type selected is Russian DualAccessL2TP, russ_l2tp this field gives you options to configure L2TP credentials. Enter the username to log String, Max 64 characters and russ_l2tp username in. no ' or empty space or " Enter the password to log String, Max 16 characters and russ_l2tp password in. no ' or empty space or " russ_l2tp secret Enter the secret to log in. String russ_l2tp Select the split_tunnel. Boolean choice split_tunnel 151 S.No Command Name Description 93 russ_l2tp server_address Type and Description IP address of the L2TP server (if applicable). IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. Set ISP Type. ISP Connectivity Types. Set ISP Type. Idle timeout value type. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. 95 russ_l2tp connectivity_type russ_l2tp idle_time 96 russ_l2tp ip_address If Address Mode is Static, give static ip. 97 russ_l2tp subnet_mask If Address Mode is Static, give subnet mask. 94 98 99 100 101 102 103 104 105 Gateway assigned by the ISP to make a connection with the ISP server. Enter Yes to get IP dynamically from ISP if you russ_l2tp have not been assigned Boolean choice. get_ip_from_isp any static IP address. Otherwise Enter No and give valid static IP address. Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically russ_l2tp assign a DNS address to Boolean choice. get_dns_from_isp the router using L2TP network protocol. Otherwise Enter No and give valid static dns addresses. IP address russ_l2tp Valid primary DNS Server AAA.BBB.CCC.DDD where primary_dns IP Address. each part is in the range 0-255. IP address russ_l2tp Valid secondary DNS AAA.BBB.CCC.DDD where secondary_dns Server IP Address. each part is in the range 0-255. Selects the Mac Address russ_l2tp mac_type Types of mac address source. Source. MAC address russ_l2tp AA:BB:CC:DD:EE:FF where Enter Valid MAC address. mac_address each part is in the range 00FF. If ISP Type selected is japanese_pppoe japanese multiple pppoe, russ_l2tp gateway 152 S.No Command Name Description 106 107 108 109 110 111 112 113 114 115 116 japanese_pppoe primary_profile japanese_pppoe primary_profile username japanese_pppoe primary_profile password japanese_pppoe primary_profile service japanese_pppoe primary_profile authOpt japanese_pppoe primary_profile connectivity_type japanese_pppoe primary_profile idletime japanese_pppoe primary_profile get_dns_from_isp japanese_pppoe primary_profile primary_dns japanese_pppoe primary_profile secondary_dns japanese_pppoe primary_profile get_ip_from_isp Type and Description this field gives you options to configure credentials. Configure the primary pppoe profile. Enter the username to authenticate. String, Max 64 characters and no ' or empty space or " Enter the password to authenticate. String, Max 16 characters and no ' or empty space or " Enter the password to authenticate. String Enter the Auth Option to authenticate. PPPOE Authentication Types. Enter the connectivity type. ISP Connectivity Types. Enter the idle time. Idle timeout value type. Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically assign a DNS address to Boolean choice the router using PPPOE network protocol. Otherwise Enter No and give valid static dns addresses. IP address Valid primary DNS Server AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. IP address Valid secondary DNS AAA.BBB.CCC.DDD where Server IP Address. each part is in the range 0-255. Enter Yes to get IP dynamically from ISP if you have not been assigned any static IP address. The Boolean choice ISP will automatically assign an IP address to the router using PPPOE network protocol. 153 S.No Command Name Description Type and Description Otherwise Enter No and give valid static IP address. 117 118 119 120 121 122 123 124 125 126 127 128 japanese_pppoe primary_profile static_ip japanese_pppoe primary_profile subnet_mask japanese_pppoe secondary_profile japanese_pppoe secondary_profile username japanese_pppoe secondary_profile password japanese_pppoe secondary_profile service japanese_pppoe secondary_profile authOpt japanese_pppoe secondary_profile connectivity_type japanese_pppoe secondary_profile idletime japanese_pppoe secondary_profile get_dns_from_isp japanese_pppoe secondary_profile primary_dns japanese_pppoe secondary_profile secondary_dns Valid IP Address. Valid subnet mask. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. Configures the secondary pppoe profile. Enter the username to authenticate. String, Max 64 characters and no ' or empty space or " Enter the password to authenticate. String, Max 16 characters and no ' or empty space or " Enter the password to authenticate. String Enter the Auth Option to authenticate. PPPOE Authentication Types. Enter the connectivity type. ISP Connectivity Types. Enter the idle time. Idle timeout value type. Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically assign a DNS address to Boolean choice. the router using PPPOE network protocol. Otherwise Enter No and give valid static dns addresses. IP address Valid primary DNS Server AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. IP address Valid secondary DNS AAA.BBB.CCC.DDD where Server IP Address. each part is in the range 0-255. 154 S.No Command Name Description 129 130 131 132 133 134 135 136 137 138 139 140 141 Type and Description Enter Yes to get IP dynamically from ISP if you have not been assigned any static IP address. The japanese_pppoe ISP will automatically Boolean choice secondary_profile assign an IP address to the get_ip_from_isp router using PPPOE network protocol. Otherwise Enter No and give valid static IP address. japanese_pppoe IP address secondary_profile Valid IP Address. AAA.BBB.CCC.DDD where static_ip each part is in the range 0-255. japanese_pppoe IP address secondary_profile Valid subnet mask. AAA.BBB.CCC.DDD where subnet_mask each part is in the range 0-255. japanese_pppoe Select the Mac Address Types of mac address source. mac_type Source. MAC address AA:BB:CC:DD:EE:FF where japanese_pppoe Enter Valid MAC address. mac_address each part is in the range 00FF. If ISP Type selected is Dual PPPoE, this field gives you dual_pppoe options to configure Dual Access PPPoE credentials. dual_pppoe Enter the username to String, Max 64 characters and username authenticate. no ' or empty space or " dual_pppoe Enter the password to String, Max 16 characters and password authenticate. no ' or empty space or " Enter the service to dual_pppoe service String authenticate. Enter the Auth Option to dual_pppoe authOpt PPPOE Authentication Types. authenticate. dual_pppoe Enter the connectivity type. ISP Connectivity Types. connectivity_type dual_pppoe idletime Enter the idle time. Idle timeout value type. Enter Yes to get dns dynamically from ISP if you have not been assigned any static Dns address. dual_pppoe The ISP will automatically Boolean choice get_dns_from_isp assign a DNS address to the router using PPPOE network protocol. Otherwise Enter No and 155 S.No Command Name Description Type and Description give valid static dns addresses. 142 143 144 145 146 147 148 149 150 151 152 IP address Valid primary DNS Server AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. IP address dual_pppoe Valid secondary DNS AAA.BBB.CCC.DDD where secondary_dns Server IP Address. each part is in the range 0-255. Enter Yes to get IP dynamically from ISP if you have not been assigned any static IP address. The dual_pppoe ISP will automatically Boolean choice get_ip_from_isp assign an IP address to the router using PPPOE network protocol. Otherwise Enter No and give valid static IP address. IP address dual_pppoe static_ip Valid IP Address. AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address dual_pppoe Valid subnet mask. AAA.BBB.CCC.DDD where subnet_mask each part is in the range 0-255. dual_pppoe Select the Mac Address Types of mac address source. mac_type Source. MAC address dual_pppoe AA:BB:CC:DD:EE:FF where Enter Valid MAC address. mac_address each part is in the range 00FF. Enter Yes to get ip on physical interface from dhcp server in the internal dual_pppoe isp network. Otherwise Boolean choice. get_ip_from_phy Enter No and give valid static IP address, subnet mask and gateway. IP address dual_pppoe Valid IP Address of AAA.BBB.CCC.DDD where static_ip_phy physical interface. each part is in the range 0-255. IP address dual_pppoe Valid subnet mask of AAA.BBB.CCC.DDD where subnet_mask_phy physical network each part is in the range 0-255. IP address dual_pppoe Valid gateway of physcial AAA.BBB.CCC.DDD where gateway_phy network. each part is in the range 0-255. dual_pppoe primary_dns 156 S.No Command Name Description 153 154 155 156 157 158 159 160 161 162 163 164 Type and Description Enter Yes to get dns dynamically from interal ISP if you have not been assigned any static Dns dual_pppoe address. The internal ISP get_dns_from_isp_p will automatically assign a Boolean choice. hy DNS address to the router using Dhcp network protocol. Otherwise Enter No and give valid static dns addresses. Valid primary DNS Server IP address dual_pppoe IP Address of physical AAA.BBB.CCC.DDD where primary_dns_phy network. each part is in the range 0-255. IP address dual_pppoe Valid secondary DNS AAA.BBB.CCC.DDD where secondary_dns_phy Server IP Address. each part is in the range 0-255. If ISP Type selected is THREEG, this field gives threeg you options to configure THREEG credentials. Enter the username to String, Max 256 characters and threeg username authenticate. no ' or empty space or " Enter the password to String, Max 256 characters and threeg password authenticate. no ' or empty space or " Enter the dail number to threeg dial_number String connect. Enter the auth type to THREEG Authentication threeg authMethod connect. Types. threeg apn Enter the apn to connect. String threeg Sets the ISP Type. ISP Connectivity Types. connectivity_type threeg idle_time Sets the ISP Type. Idle timeout value type. Enter Yes to get dns dynamically from ISP if you have not been assigned any static IP address. The ISP will automatically threeg assign a DNS address to Boolean choice get_dns_from_isp the router using THREEG network protocol. Otherwise Enter No and give valid static dns addresses. 157 S.No Command Name Description 165 166 Type and Description IP address Valid primary DNS Server threeg primary_dns AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. IP address threeg Valid secondary DNS AAA.BBB.CCC.DDD where secondary_dns Server IP Address. each part is in the range 0-255. 11.33 net wan wan3 threeG configure S.No Command Name Description 1 save 2 cancel 3 exit 4 Username 5 Password 6 Dial_number 7 AuthMethod 8 Apn 9 Reconnect_mode 10 Idle_time 11 Get_dns_from_isp Type and Description Saves wan3 threeG configuration settings. To revert to the previous wan3 threeG configuration settings. Saves wan3 threeG configuration settings and current mode. Enter the username required to log in to the ISP. Enter the password required to login to the ISP. Enter the number to dial to the ISP. Selects one of None, PAP or CHAP Authentication Protocols to connect to the ISP. Enter the APN (Access Point Name) provided by the ISP. Selects Always On: The connection is always on OR On Demand: The connection will close after time specified in Idle_time field. The connection is automatically ended if it is idle for a specified number of minutes. Enter Yes to get dns dynamically from ISP if you have not been assigned 158 String, Max 256 characters and no ' or empty space or " String, Max 256 characters and no ' or empty space or " String THREEG Authentication Types. String ISP Connectivity Types. Idle timeout value type. Boolean choice S.No Command Name Description Type and Description any static IP address. The ISP will automatically assign a DNS address to the router using THREEG network protocol. Otherwise Enter No and give valid static dns addresses. 12 Primary_dns 13 Secondary_dns 11.34 IP address Valid primary DNS Server AAA.BBB.CCC.DDD where IP Address. each part is in the range 0-255. IP address Valid secondary DNS AAA.BBB.CCC.DDD where Server IP Address. each part is in the range 0-255. net wan mode configure S.No Command Name Description 1 save 2 cancel 3 exit 4 wan_mode_type 5 loadbalancing 6 loadbalancing algo 7 8 9 loadbalancing failover_method loadbalancing spillover loadbalancing spillover load_tolerance Type and Description Saves wan mode configuration settings. To revert to the previous ipv4 wan configuration settings. Saves wan mode configuration settings and current mode. Select among the options: SINGLE_WAN, Types of WAN modes. LOAD_BALANCING, AUTO_ROLLOVER If Mode Type selected is LOAD_BALANCING, this field gives you options to configure LOAD_BALANCING credentials Enter the type of Types of Loadbalancing LoadBalancing Algo algorithms. Selects the Fail Over detection method Spill Over Configuration Parameters Percentage of max bandwidth after which the 159 Unsigned integer. S.No Command Name Description 10 11 12 13 14 15 16 17 18 19 20 Type and Description router switches to secondary WAN Sets the maximum bandwidth tolerable by the Primary WAN. If the loadbalancing bandwidth goes below the spillover load tolerance value of max_bandwidth configured Max Bandwidth, the router switches to secondary WAN. Sets the maximum bandwidth unit tolerable by the Primary WAN. If the loadbalancing bandwidth goes below the spillover load tolerance value of max_bandwidth_unit configured Max Bandwidth, the router switches to secondary WAN. loadbalancing Select the Fail Over failover_method detection method type loadbalancing failover_method dns loadbalancing failover_method dns ipaddr_wan1 loadbalancing failover_method dns ipaddr_wan2 loadbalancing failover_method dns ipaddr_wan3 loadbalancing failover_method ping loadbalancing failover_method ping ipaddr_wan1 loadbalancing failover_method ping ipaddr_wan2 loadbalancing failover_method ping ipaddr_wan3 160 Unsigned integer. Types of max bandwidth unit. Types of Faillover Detection methods. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. S.No Command Name Description 23 loadbalancing failover_method retry_interval loadbalancing failover_method retry_attempts rollover 24 rollover wan_port 21 22 25 26 27 28 29 30 31 32 33 34 35 36 37 Type and Description Idle timeout value type. Number in range of 2 to 999. Wan Mode in Auto Rollover Selects the Auto rollover WAN interface type WAN port Select the Auto rollover WAN interface type WAN port Selects the Fail Over detection method rollover wan_port_Sec rollover failover_method rollover Selects the Fail Over failover_method detection method type rollover failover_method dns rollover failover_method dns ipaddr_wan1 rollover failover_method dns ipaddr_wan2 rollover failover_method dns ipaddr_wan3 rollover failover_method ping rollover failover_method ping ipaddr_wan1 rollover failover_method ping ipaddr_wan2 rollover failover_method ping ipaddr_wan3 rollover failover_method retry_interval rollover failover_method retry_attempts 161 Types of Faillover Detection methods. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. Idle timeout value type. Number in range of 2 to 999. S.No Command Name Description Type and Description 38 39 WAN interface type. singleport singleport wan_port 11.35 net wan port_setup configure S.No Command Name Description 1 save 2 exit 3 cancel 4 respond_ping 5 6 7 wan1 wan1 mtu_type wan1 mtu_size 8 wan1 port_speed 9 10 11 wan2 wan2 mtu_type wan2 mtu_size 12 wan2 port_speed 11.36 Type and Description Saves WAN port settings. Saves WAN port settings and exit current mode. To revert to the previous WAN port settings settings. Disables or Enables ping on WAN side WAN1 port settings Enter MTU type. Enter MTU size for WAN1. Enter the type of port speed for WAN1. WAN2 port settings. Enter MTU type. Enter MTU size for WAN2. Enter the type of port speed for WAN2. 2 3 4 5 Port Speed types. Mtu type. Mtu size. Port Speed types. Type and Description Saves WAN port vlan settings. Saves WAN vlan settings exit and exit current mode. To revert to the previous cancel WAN vlan settings settings. Disables or Enables Trunk trunk_mode Boolean choice Mode Vlan. Disables or Enables Force force_recegotiation Boolean choice renegotiation on WAN. save 11.37 net wan vlan_setup vlanId_Add S.No Command Name Description 1 Mtu type. Mtu size. net wan vlan_setup configure S.No Command Name Description 1 Boolean choice. save Type and Description Saves WAN port vlan Add settings. 162 S.No Command Name Description 2 exit 3 cancel 4 vlan_Id 11.38 Type and Description Saves WAN vlan Add settings and exit current mode. To revert to the previous WAN vlan settings settings. Enter Vlan Id. Unsigned integer net wan vlan_setup vlanId_Delete S.No Command Name Description 1 save 2 exit 3 cancel 4 vlan_Id 11.39 Type and Description Saves WAN port vlan Delete settings. Saves WAN vlan Delete settings and exit current mode. To revert to the previous WAN vlan settings settings. Enter Vlan Id. Unsigned integer net wan configurable_port configure S.No Command Name Description 1 save 2 exit 3 cancel 4 port_name 11.40 Type and Description Saves Configurable WAN settings. Saves configurable WAN settings and exit current mode. To revert to the previous Configurable WAN settings settings. Selects the configurable WAN interface type port type. net wan wan1 ipv6 configure S.No Command Name Description 1 save 2 cancel Type and Description Saves ipv6 wan1 configuration settings. To revert to the previous ipv6 wan configuration settings. 163 S.No Command Name Description 3 exit 4 isp_type 5 dhcpc 6 7 8 9 10 11 12 13 14 15 16 17 18 19 Type and Description Saves ipv6 wan1 configuration settings and current mode. Sets the ISP Type. Sets the DHCPC Configurations. ISP Types. dhcpc stateless_mode_ena Sets the Stateless Mode. Stateless mode configuration. ble dhcpc prefix_delegation_e Enables prefix delegation. Boolean choice nable static Sets ipv6 address. IP address abcd:abcd:abcd:abcd:abcd:abc static ip_address Sets ipv6 address. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] static prefix Sets the prefix length. Unsigned integer IP address static Sets the ipv6 gateway abcd:abcd:abcd:abcd:abcd:abc gateway_address address. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] IP address Sets the ipv6 primary dns abcd:abcd:abcd:abcd:abcd:abc static primary_dns address. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] IP address static Sets the ipv6 secondary abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is secondary_dns dns address. in the range [0-9A-Fa-f:] PPPoE over ipv6 pppoe configuration parameters. Enter the username to pppoe username String authenticate. Enter the password to pppoe password String authenticate. Enter the Auth Option to pppoe authOpt PPPOE Authentication Types. authenticate. Enter the dhcpv6 option for pppoe dhcpv6_opt configuring additional WAN interface type parameters. IP address Valid primary DNS Server abcd:abcd:abcd:abcd:abcd:abc pppoe primary_dns IP Address. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] 164 S.No Command Name Description 20 pppoe secondary_dns 11.41 Type and Description Valid secondary DNS Server IP Address. net wan wan2 ipv6 configure S.No Command Name Description 1 save 2 cancel 3 exit 4 isp_type 5 dhcpc 6 7 8 9 10 11 12 13 14 IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] Type and Description Saves ipv6 wan2 configuration settings. To revert to the previous ipv6 wan2 configuration settings. Saves ipv6 wan2 configuration settings and current mode. Sets the ISP Type. Sets the DHCPC Configurations. ISP Types. dhcpc stateless_mode_ena Sets the Stateless Mode. Stateless mode configuration. ble dhcpc prefix_delegation_e Enables prefix delegation. Boolean choice nable static Sets the ipv6 address. IP address abcd:abcd:abcd:abcd:abcd:abc static ip_address Sets the ipv6 address. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] static prefix Sets the prefix length. Unsigned integer IP address static Sets the ipv6 gateway abcd:abcd:abcd:abcd:abcd:abc gateway_address address. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] IP address Sets the ipv6 primary dns abcd:abcd:abcd:abcd:abcd:abc static primary_dns address. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] IP address static Sets the ipv6 secondary abcd:abcd:abcd:abcd:abcd:abc secondary_dns dns address. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] PPPoE over ipv6 pppoe configuration parameters. 165 S.No Command Name Description Type and Description 15 pppoe username Enter the username to authenticate. 16 pppoe password Enter the password to authenticate. 17 pppoe authOpt 18 19 20 String String Enter the Auth Option to PPPOE Authentication Types. authenticate. Enter the dhcpv6 option for pppoe dhcpv6_opt configuring additional WAN interface type parameters. IP address Valid primary DNS Server abcd:abcd:abcd:abcd:abcd:abc pppoe primary_dns IP Address. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] IP address pppoe Valid secondary DNS abcd:abcd:abcd:abcd:abcd:abc secondary_dns Server IP Address. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] 11.42 net routing ospfv2 configure <interface> S.No Command Name Description 1 <interface> 2 save 3 exit 4 cancel 5 enable 6 area 7 priority Type and Description Ospfv2 configuration mode. OSPF Interfaces type Saves OSPFv2 configuration settings. Saves OSPFv2 configuration settings and exit current mode. To revert to the previous configuration settings. Enables/Disables OSPFv2 Boolean choice for a particular interface. Gives the area to which the Unsigned integer interface belongs. Helps to determine the OSPFv2 designated router for a network. The router with the highest priority will be more eligible to become Unsigned integer Designated Router. Setting the value to 0, makes the router ineligible to be come Designated Router. The default value is 1. 166 S.No Command Name Description 8 hello_interval 9 dead_interval 10 cost 11 auth_type 12 auth_key 13 14 md5_key_id md5_auth_key Type and Description The number of seconds for HelloInterval timervalue. Setting this value, Hello packet will be sent every timer value seconds on the specified interface. This value must be the same for all routers attached to a common network. The default value is 10 seconds. The number of seconds that a device’s hello packets must not have been seen before its neighbors declare the OSPF router down. This value must be the same for all routers attached to a common network. The default value is 40 seconds. The cost of sending a packet on an OSPFv2 interface. Gives the authentication type used for OSPFv2. If Authentication type is none, the interface does not authenticate ospf packets. If Authentication Type is Simple, ospf packets are authenticated using simple text key. If Authentication Type is MD5, the interface authenticates ospf packets with MD5 authentication. Text Key for Simple Authentication type. Gives the MD5 Key id. Gives the MD5 text key. 167 Unsigned integer Unsigned integer Unsigned integer OSPF Authentication type String Unsigned integer String 11.43 net routing ospfv3 configure <interface> S.No Command Name Description Type and Description 1 <interface> Ospfv3 configuration mode. OSPF Interfaces type 2 save Saves OSPFv3 configuration settings. 3 exit 4 cancel 5 enable 6 priority 7 hello_interval 8 dead_interval Saves OSPFv3 configuration settings and exit current mode. To revert to the previous configuration settings. Enables/Disables OSPFv3 for a particular interface. Helps to determine the OSPFv3 designated router for a network.The router with the highest priority will be more eligible to become Designated Router. Setting the value to 0, makes the router ineligible to beco me Designated Router. The default value is 1. The number of seconds for HelloInterval timer value.Setting this value, Hello packet will be sent every timer value seconds on the specified interface. This value must be the same for all routers attached to a common network. The default value is 10 seconds. The number of seconds that a device’s hello packets must not have been seen before its neighbors declare the OSPF router down. This value must be the same for all routers attached to a common network. The defaul t value is 40 seconds. 168 Boolean choice Unsigned integer Unsigned integer Unsigned integer S.No Command Name Description 9 cost 11.44 Type and Description The cost of sending a packet on an OSPFv3 interface. 16.44 net routing protocol_binding add S.No Command Name Description Type and Description Saves Protocol-Binding rules configuration settings. Saves Protocol Binding rules configuration settings and exit current mode. To revert to the previous configuration settings. Available Service. service type Local gateway type. WAN interface type Source network type. Firewall rule address type. 1 save 2 exit 3 cancel 4 5 6 Service Local_Gateway Source_Network Destination_Networ Destination network type. k 7 Unsigned integer 8 source_address_sta Starting IP of the Source rt Network. 9 source_address_en Ending IP of the Source d user. 10 destination_address Sets the start IP of the _start Destination user range. 11 destination_address Sets the last IP of the _end Destiation use range. Firewall rule address type. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. 11.45 net routing protocol_binding edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit Type and Description Protocol_binding rules Unsigned integer configuration mode. Saves Protocol-Binding rules configuration settings. Saves Protocol Binding rules configuration settings and exit current mode. 169 S.No Command Name Description 4 5 6 7 8 Type and Description To revert to the previous cancel configuration settings. Service Available Service. Local_Gateway Local gateway type. Source_Network Source network type. Destination_Network Destination network type. 9 source_address_sta rt 10 source_address_en d 11 destination_address _start 12 destination_address _end service type WAN interface type firewall rule address type firewall rule address type IP address Starting IP of the Source AAA.BBB.CCC.DDD where Network. each part is in the range 0-255 IP address Ending IP of the Source AAA.BBB.CCC.DDD where user. each part is in the range 0-255 IP address Start IP of the Destination AAA.BBB.CCC.DDD where user. each part is in the range 0-255 IP address Ending IP of the Destiation AAA.BBB.CCC.DDD where user. each part is in the range 0-255 11.46 net routing protocol_binding enable <row_id> S.No Command Name Description 1 2 3 4 5 6 7 8 9 10 Type and Description Protocol_binding rules Unsigned integer configuration mode. Saves Protocol-Binding save rules configuration settings. Saves Protocol Binding exit rules configuration settings and exit current mode. To revert to the previous cancel configuration settings. Service Available Service Service type. Local_Gateway Local gateway type. WAN interface type. Source_Network Source network type. Firewall rule address type. Destination_Network Destination network type. Firewall rule address type. IP address source_address_sta Starting IP of the Source AAA.BBB.CCC.DDD where rt Network. each part is in the range 0-255. IP address source_address_en Ending IP of the Source AAA.BBB.CCC.DDD where d user. each part is in the range 0-255. <row_id> 170 S.No Command Name Description Type and Description 11 destination_address First IP of the Destination _start user address range. 12 destination_address Last IP of the Destiation _end user address range. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address AAA.BBB.CCC.DDD where each part is in the range 0-255. 11.47 net routing protocol_binding disable <row_id> S.No Command Name Description 1 2 3 4 5 6 7 8 9 10 11 12 Type and Description Protocol_binding rules Unsigned integer. configuration mode. Saves Protocol-Binding save rules configuration settings. Saves Protocol Binding exit rules configuration settings and exit current mode. To revert to the previous cancel configuration settings. Service Available Service. Service type. Local_Gateway Local gateway type. WAN interface type. Source_Network Source network type. Firewall rule address type. Destination_Network Destination network type. Firewall rule address type. IP address source_address_sta First IP of the Source AAA.BBB.CCC.DDD where rt Network. each part is in the range 0-255. IP address source_address_en Last IP of the Source user. AAA.BBB.CCC.DDD where d each part is in the range 0-255. IP address destination_address First IP of the Destination AAA.BBB.CCC.DDD where _start user. each part is in the range 0-255. IP address destination_address Last IP of the Destiation AAA.BBB.CCC.DDD where _end user. each part is in the range 0-255. <row_id> 11.48 net routing protocol_binding delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Protocol_binding rules configuration mode. 171 Unsigned integer. S.No Command Name Description 2 3 4 5 6 7 8 9 10 11 12 Type and Description Saves Protocol-Binding save rules configuration settings. Save Protocol Binding rules exit configuration settings and exit current mode. To revert to the previous cancel configuration settings. Service Available Service Service type. Local_Gateway Local gateway type. WAN interface type. Source_Network Source network type. Firewall rule address type. Destination_Network Destination network type. Firewall rule address type. IP address source_address_sta First IP address of the AAA.BBB.CCC.DDD where rt Source Network. each part is in the range 0-255. IP address source_address_en Last IP of the Source user. AAA.BBB.CCC.DDD where d each part is in the range 0-255. IP address destination_address First IP of the Destination AAA.BBB.CCC.DDD where _start user. each part is in the range 0-255. IP address destination_address Last IP of the Destiation AAA.BBB.CCC.DDD where _end user. each part is in the range 0-255. 11.49 net radvd configure S.No Command Name Description 1 save 2 exit 3 cancel 4 enable 5 mode 6 interval Type and Description Saves radvd configuration settings. Saves radvd configuration settings and exit current mode. To revert to the previous radvd configuration settings. Enables the RADVD process here to allow Boolean choice stateless auto configuration of the IPv6 LAN network. Selects N to send router Radvd advertizement mode advertisements (RA’s) to all type. interfaces, else Y. The time in seconds PPPOE idle timeout Type. between sending 172 S.No Command Name Description 7 flags 8 flags managed_enable 9 flags other_enable 10 preference 11 mtu 12 life_time 11.50 Type and Description unsolicited multicast RA’s. The default is 30 seconds. RA Flags Selects Managed to use the administered /stateful Boolean choice protocol for address auto configuration. The Other flag is selected the host uses administered/stateful Boolean choice protocol of other (i.e. nonaddress) information auto configuration. Selects low/medium/high for the preference Radvd preference type. associated with this router’s RADVD process. This is used in RA’s to ensure all nodes on the network use the same MTU Mtu size. value in the cases where the LAN MTU is not well known. The default is 1500. The lifetime in seconds of the route. The default is Unsigned integer. 3600 seconds. net radvd pool add S.No Command Name Description 1 save 2 exit 3 cancel 4 prefix_type 5 sla_id Type and Description Saves radvd Pool configuration settings. Saves radvd Pool configuration settings and exit current mode. To revert to the previous radvd Pool configuration settings. Option whether to select the prefix type as 6to4 or Ipv6 prefix type. Global/Local/ISATAP. The SLA ID (Site-Level Aggregation Identifier) in Unsigned integer. the 6to4 address prefix is set to the interface ID of the 173 S.No Command Name Description 6 prefix_address 7 prefix_length 8 prefix_life_time 11.51 Type and Description interface on which the advertisements are sent. It specifies the IPv6 String network address. The prefix length variable is a decimal value that indicates the number of contiguous, higher order Unsigned integer bits of the address that make up the network portion of the address. The length of time over which the requesting router Unsigned integer is allowed to use the prefix. net radvd pool edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit 4 cancel 5 prefix_type 6 sla_id 7 prefix_address 8 prefix_length Type and Description Radvd Pool configuration Unsigned integer. mode. Saves radvd Pool configuration settings. Saves radvd Pool configuration settings and exit current mode. To revert to the previous radvd Pool configuration settings. Option whether to select the prefix type as 6to4 or Ipv6 prefix type. Global/Local/ISATAP. The SLA ID (Site-Level Aggregation Identifier) in the 6to4 address prefix is Unsigned integer. set to the interface ID of the interface on which the advertisements are sent. It specifies the IPv6 String. network address. The prefix length variable is a decimal value that indicates the number of Unsigned integer. contiguous, higher order bits of the address that 174 S.No Command Name Description 9 prefix_life_time 11.52 Type and Description make up the network portion of the address. The length of time over which the requesting router Unsigned integer is allowed to use the prefix. net radvd pool delete <row_id> S.No Command Name Description 1 <row_id> 11.53 Type and Description Radvd pool configuration delete mode. net routing dynamic configure S.No Command Name Description 1 2 3 4 5 6 7 8 9 10 11 12 13 save Unsigned integer Type and Description Saves dynamic route settings. Saves dynamic routes settings and exit current mode. To revert to the previous rip cancel configuration settings. Rip direction can be None, direction Rip direction. In only, Out only, Both. version Rip version. Rip version. Enables/Disables authentication_enabl Authentication for RIPBoolean choice. e 2B/2M. first_key First MD5 key. first_key id_number First MD5 Key Id. Unsigned integer first_key First MD5 Authentication String authentication_id Key. First MD5 Key Not Valid first_key valid_from Before entered date. Month in which md5 first_key valid_from authentication key validity Month in the format MM(01-12) month starts. Day in which md5 first_key valid_from authentication key validity Day in the format DD(01-31) day starts. Year in which md5 first_key valid_from authentication key validity Year year starts. exit 175 S.No Command Name Description 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 Type and Description Hour in which md5 first_key valid_from authentication key validity hour starts. Minute in which md5 first_key valid_from authentication key validity minute starts. Second in which md5 first_key valid_from authentication key validity second starts. First MD5 Key is Not Valid first_key valid_to After entered date. Month in which md5 first_key valid_to authentication key validity month ends. Day in which md5 first_key valid_to authentication key validity day ends. Year in which md5 first_key valid_to authentication key validity year ends. Hour in which md5 first_key valid_to authentication key validity hour ends. Minute in which md5 first_key valid_to authentication key validity minute ends. Second in which md5 first_key valid_to authentication key validity second ends. Second MD5 Key second_key Parameters. second_key Second MD5 Key Id. id_number second_key Second MD5 authentication_id Authentication Key. second_key Second MD5 Key Not Valid valid_from Before Entered date. Second MD5 Key Not Valid second_key valid_to After entered date. Month in which md5 second_key authentication key validity valid_from month starts. Day in which md5 second_key authentication key validity valid_from day starts. 176 HH(00-23) using 24 hour clock Minute in the format MM(0059.) Second in the format SS(0059). Month in the format MM(01-12) Day in the format DD(01-31) Year HH(00-23) using 24 hour clock Minute in the format MM(0059). Second in the format SS(0059) Unsigned integer String Month in the format MM(01-12) Day in the format DD(01-31) S.No Command Name Description 31 second_key valid_from year 32 second_key valid_from hour 33 second_key valid_from minute 34 second_key valid_from second 35 second_key valid_to month 36 second_key valid_to day 37 second_key valid_to year 38 second_key valid_to hour 39 second_key valid_to minute 40 second_key valid_to second Type and Description Year in which md5 authentication key validity starts. Hour in which md5 authentication key validity starts. Minute in which md5 authentication key validity starts. Second in which md5 authentication key validity starts. Month in which md5 authentication key validity ends. Day in which md5 authentication key validity ends. Year in which md5 authentication key validity ends. Hour in which md5 authentication key validity ends. Minute in which md5 authentication key validity ends. Second in which md5 authentication key validity ends. Year HH(00-23) using 24 hour clock Minute in the format MM(0059). Second in the format SS(0059) Month in the format MM(01-12) Day in the format DD(01-31) Year HH(00-23) using 24 hour clock Minute in the format MM (0059). Second in the format SS(0059) 11.54 net routing static ipv4 configure <name> S.No Command Name Description 1 2 3 4 5 Type and Description Adds new static routes. String Saves static route settings. Saves static routes settings exit and exit current mode. To revert to the previous cancel route configuration settings. IP address destination_address Sets the destination IP. AAA.BBB.CCC.DDD where each part is in the range 0-255 <name> save 177 S.No Command Name Description 6 subnet_mask 7 gateway_address 8 interface 9 metric 10 private_flag 11 active_flag Type and Description IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address Sets the gateway IP. AAA.BBB.CCC.DDD where each part is in the range 0-255 Use show net routing static Sets the interface for which interface_list to see list of the rule applies. interface Sets the metric for this Unsigned integer route. Defines whether the route can be shared with other Boolean choice gateways when RIP is enabled. Defines whether it’s an Boolean choice active route. Sets the subnet for this rule. 11.55 net routing static ipv6 configure <name> S.No Command Name Description Type and Description Adds new IPV6 static routes. Saves IPV6 static route settings. Saves IPV6 static routes settings and exit current mode. To revert to the previous IPV6 route configuration settings. 1 <name> 2 save 3 exit 4 cancel 5 Sets the IPV6 destination destination_address IP. 6 prefix String IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] Sets the prefix length for this rule. Unsigned integer IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] 7 gateway_address Sets the gateway IPV6. 8 interface Sets the interface for which select the ipv6 interface type the rule applies. 178 S.No Command Name Description 9 metric 10 active_flag 11.56 Type and Description Sets the metric for this route. Defines whether its an active IPV6 route <name> 11.57 Type and Description Deletes a specific IPv4 route. <name> 11.58 Type and Description Deletes a specific IPV6 route. <ip_address> 11.59 Type and Description IP address Adds ipv6 default route on abcd:abcd:abcd:abcd:abcd:abc lan interface. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] net tahi add-route <ip_address> <gw> S.No Command Name Description 1 <ip_address> <gw> 11.60 Type and Description Adds ipv6 route on lan interface. IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] net tahi del-route <ip_address> <gw> S.No Command Name Description 1 String net tahi add-default-route <ip_address> S.No Command Name Description 1 String net routing static ipv6 delete <name> S.No Command Name Description 1 Boolean choice net routing static ipv4 delete <name> S.No Command Name Description 1 Unsigned integer <ip_address> <gw> Type and Description Adds ipv6 route on lan interface. 179 IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is S.No Command Name Description Type and Description in the range [0-9A-Fa-f:] IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] 11.61 net tahi ipv6-AliasAdd(LAN) <ip6_address> S.No Command Name Description 1 <ip6_address> Type and Description IP address Adds ipv6 address to LAN abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is interface. in the range [0-9A-Fa-f:] 11.62 net tahi ipv6-AliasDel(LAN) <ip6_address> S.No Command Name Description 1 <ip6_address> Type and Description Deletes an ipv6 address from LAN interface. IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] 11.63 net tahi ipv6-AliasAdd(WAN) <ip6_address> S.No Command Name Description 1 <ip6_address> Type and Description IP address Adds ipv6 address to WAN abcd:abcd:abcd:abcd:abcd:abc interface. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] 11.64 net tahi ipv6-AliasDel(WAN) <ip6_address> S.No Command Name Description 1 <ip6_address> Type and Description Deletes an ipv6 address from WAN interface. 180 IP address abcd:abcd:abcd:abcd:abcd:abc S.No Command Name Description Type and Description d:abcd:abcd where each part is in the range [0-9A-Fa-f:] 11.65 net tahi reachable-time <time> S.No Command Name Description 1 Sets the reachable time of number in range of 30 to 150 neighbour cache entries <time> 11.66 Type and Description net tahi ping6 <ip> <size> S.No Command Name Description 1 <ip> <size> 11.67 Type and Description Ping6 on LAN interface with count one. IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] number in range of 1 to 1500 net tahi mping6 <mip> S.No Command Name Description Type and Description 1 IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] Multicast ping6 on LAN. <mip> 11.68 net tahi bping6 <bip> <psize> S.No Command Name Description Type and Description 1 IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] number in range of 1 to 1500 <bip> <psize> 11.69 Ping6. net tahi pmtu-route-add <ipAdd> S.No Command Name Description 1 <ipAdd> Type and Description Adds ipv6 route on lan interface. 181 IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] 11.70 net tahi interface-down <interface> S.No Command Name Description 1 <interface> 11.71 Type and Description Brings selected interface down. net tahi interface-up <interface> S.No Command Name Description 1 Interfaces type <interface> Type and Description Brings selected interface up. Interfaces type 11.72 net tahi start-RAcustom <fileName> <ipAddr> S.No Command Name Description 1 Type and Description Starts RA with <fileName> <ipAddr configuration file obtained > through tftp. 11.73 String IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 net tahi RA-Start S.No Command Name Description 1 save 2 exit 3 cancel 4 Interface 5 AdvSendAdvert 6 MaxRtrAdvInterval 7 MinRtrAdvInterval 8 AdvCurHopLimit 9 AdvManagedFlag Type and Description Saves RA configuration settings. Starts RA, and exits current mode. To revert to the previous RA configuration settings. Interface on which RA Interfaces type should be sent. Sets AdvSendAdvert value. Boolean choice Sets MaxRtrAdvInterval MaxRtrAdvInterval range value. Sets MinRtrAdvInterval MinRtrAdvInterval range value. Sets AdvCurHopLimit AdvCurHopLimit range value. Sets AdvManagedFlag Boolean choice value. 182 S.No Command Name Description Type and Description 14 Sets AdvOtherConfigFlag AdvOtherConfigFlag value. Sets AdvDefaultLifetime AdvDefaultLifetime value. Sets AdvReachableTime AdvReachableTime value. Sets AdvRetransTimer AdvRetransTimer value. AdvLinkMTU Sets AdvLinkMTU value. 15 prefix 16 17 prefixLength AdvOnLink 10 11 12 13 18 19 20 Prefix to be advertised. 3 4 5 6 AdvReachableTime range AdvRetransTimer range AdvLinkMTU range IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:] IPv6 Prefix length Boolean choice net ipv6_tunnel teredo configure S.No Command Name Description 2 AdvDefaultLifetime range Sets prefix length value. Sets AdvOnLink value. Sets AdvAutonomous AdvAutonomous Boolean choice value. Sets AdvValidLifetime AdvValidLifetime AdvValidLifetime range value. AdvPreferredLifetim Sets AdvPreferredLifetime AdvPreferredLifetime range e value. 11.74 1 Boolean choice Type and Description Saves teredo Tunnel configuration settings. Saves teredo Tunnel exit configurationsettings and exit current mode. To revert to the previous cancel teredoTunnel configuration settings. Enables/disables teredo tunneling which will allow traffic from a LAN IPv6 teredo_tunneling_en network to be tunneled Boolean choice able through a WAN IPv4 network to reach an IPV6 network. primary_teredo_serv Primary teredo server. String er secondary_teredo_s Secondary teredo server. String erver save 183 11.75 net upnp configure S.No Command Name Description 1 save 2 cancel 3 exit 4 enable 5 Interface 6 advertisement 7 8 9 advertisement period advertisement time_to_live avail_vlan 11.76 Type and Description Saves upnp configuration settings. To revert to the previous upnp configuration settings. Saves upnp configuration settings and current mode. Enables/Disables UPNP. Boolean choice Selects the interface from String LAN/VLAN. Sets upnp advertisement parameters. Sets Advertisement Period UPnP Advertisement Period (in seconds). Type. Sets Advertisement Time UPnP Advertisement Time To To Live (in seconds). Live Type. Displays available vlan. net port-vlan lan_edit <portnamew> S.No Command Name Description 1 <portnamew> 2 save 3 exit 4 cancel 5 6 mode pvid 11.77 Type and Description Vlan port name range 1-4. port ID Saves vlan configuration settings. Saves vlan settings and exit current mode. To revert to the previous configuration settings. Port Vlan mode. Captive Portal Profile ID Port Vlan ID. vlan id possible values net port-vlan wlan_edit <ssidName> S.No Command Name Description 1 <ssidName> 2 save 3 exit Type and Description SSID to be edited.Use command 'show net wireless_vlan status 'to dislay all SSID's Name Saves vlan configuration settings. Saves vlan settings and exit current mode. 184 String S.No Command Name Description 4 cancel 5 6 mode pvid 11.78 Type and Description To revert to the previous configuration settings. Port Vlan mode. Port Vlan ID net vlan-membership lan_edit <portw> S.No Command Name Description 1 2 3 4 5 6 7 Captive Portal Profile ID vlan id possible values Type and Description Net vlan membership for port ID the vlan and Wlan port. Saves Vlan Membership save configuration settings. To revert to the previous cancel vlan membership configuration settings. Saves vlan membership exit configuration. Settings and exit current mode. Vlan membership.Give membership comma seperated VLAN ID values. Vlan membership.Give membership add comma seperated VLAN ID String values. Vlan membership.Give membership remove comma seperated VLAN ID String values. <portw> 11.79 net vlan-membership wlan_edit <ssidName> S.No Command Name Description 1 <ssidName> 2 save 3 cancel Type and Description SSID to be edited.Use command 'show net wireless_vlan status 'to dislay all SSID's Name Saves Vlan Membership configuration settings. To revert to the previous vlan membership configuration settings. 185 String S.No Command Name Description 4 5 6 7 Type and Description Saves vlan membership exit configuration settings and exit current mode. Vlan membership.Give membership comma seperated VLAN ID values. Vlan membership.Give membership add comma seperated VLAN ID String values. Vlan membership.Give membership remove comma seperated VLAN ID String values. 11.80 net multiVlan subnet edit <vlanID> S.No Command Name Description 1 <vlanID> 2 save 3 cancel 4 exit 5 ip-address 6 subnet-mask 7 dhcp-mode 8 domain-name 9 start-ip 10 end-ip 11 primary-dns Type and Description Multivlan server edit mode vlan id possible values Saves Multi Vlan server configuration settings. To revert to the previous Multi Vlan server configuration settings. Saves Multivlan server configuration settings and exit current mode. IP address IP of given MultiVlan AAA.BBB.CCC.DDD where subnetVlan. each part is in the range 0-255 IP address Adds subnet mask for AAA.BBB.CCC.DDD where Multivlan. each part is in the range 0-255 Selects the DHCP Mode. dhcpv4 modes String, Max 256 characters and Domain name for vlan. no ' or empty space or " IP address Starting ip address of the AAA.BBB.CCC.DDD where dhcp mode. each part is in the range 0-255 IP address Ending ip of the Valn. AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address Primary dns for the vlan. AAA.BBB.CCC.DDD where each part is in the range 0-255 186 S.No Command Name Description 12 secondary-dns 13 default_gw 14 lease-time 15 relay-gateway 16 enable-dns-proxy 11.81 Type and Description IP address Secondary dns for the vlan. AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address Sets default gateway. AAA.BBB.CCC.DDD where each part is in the range 0-255 Lease time for the vlan. number in range of 1 to 24 IP address Relay gateway for the vlan. AAA.BBB.CCC.DDD where each part is in the range 0-255 Relay gateway for the vlan. Boolean choice net vlan config add <vlan_id> S.No Command Name Description 1 <vlan_id> 2 save 3 exit 4 cancel 5 vlan-name 6 inter-vlan-routing 7 showCP-profiles 8 captive-portalenable 9 captive-portal-user 10 11 12 13 captive-portal-user auth-mode captive-portal-user auth-type captive-portal-user CP-profile captive-portal-user Redirect-Type Type and Description Adds a vlan. vlan id possible values Saves vlan configuration settings. Saves vlan settings and exit current mode. To revert to the previous configuration settings. Name for vlan. String Enables/Disables interVlan Boolean choice Routing. Available captive portal profiles. Enables captive portal. AccessType is Permanent User. Authentication-server for user. Authentication-type for user. Captive portal profile for user. Captive portal profile for user. 187 Boolean choice Authentication Type for Captive Portal user Radius Authentication type Captive Portal Profile ID network redirect mode 11.82 net vlan config edit <vlan_Id> S.No Command Name Description Type and Description 1 <vlan_Id> 2 save 3 exit 4 cancel 5 vlan-name 6 inter-vlan-routing 7 showCP-profiles 8 captive-portalenable Enables captive portal 9 captive-portal-user AccessType is Permanent User. captive-portal-user auth-mode captive-portal-user auth-type captive-portal-user CP-profile captive-portal-user Redirect-Type Authentication-server for user. Authentication-type for user. Captive portal profile for user. Captive portal profile for user. 10 11 12 13 11.83 Edits a configured vlan. vlan id possible values Saves vlan configuration settings. Saves vlan settings and exit current mode. To revert to the previous configuration settings. Name for vlan. String Enables/Disables interVlan Boolean choice Routing. Available captive portal profiles Boolean choice Authentication Type for Captive Portal user. Radius Authentication type. Captive Portal Profile ID. Network redirect mode. net vlan config delete <VlanId> S.No Command Name Description Type and Description 1 Vlan id possible values. <VlanId> 11.84 Deletes a vlan. net dmz configure S.No Command Name Description 1 save 2 cancel 3 exit 4 enable_dmz Type and Description Saves van configuration mode. To revert to the previous dmz configuration settings. Saves dmz configuration settings and current mode. Enables/Disables DMZ. Enables/disables dmz. 188 S.No Command Name Description 5 ip_address 6 subnet_mask 7 dhcp_mode 8 domain_name 9 starting_ip_address 10 ending_ip_address 11 primary_dns_server 12 secondary_dns_ser ver 13 default_gw 14 wins_server 15 lease_time 16 relay_gateway 17 dns_proxy_enable 18 enable_ldap Type and Description IP address Static IP address. AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address Subnet Mask. AAA.BBB.CCC.DDD where each part is in the range 0-255. Sets the DHCP mode. dhcpv4 modes String, Max 256 characters and DHCP Domain Name. no ' or empty space or " IP address DHCP Starting IP address. AAA.BBB.CCC.DDD where each part is in the range 0-255. IP address DHCP ending IP address. AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address Primary DNS address. AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address Secondary DNS server AAA.BBB.CCC.DDD where address. each part is in the range 0-255 IP address Setup default gateway. AAA.BBB.CCC.DDD where each part is in the range 0-255 IP address Sets the DHCP WINS AAA.BBB.CCC.DDD where server. each part is in the range 0-255 Sets the DHCP lease time. Unsigned integer IP address Sets the DHCP Relay AAA.BBB.CCC.DDD where gateway server. each part is in the range 0-255 Sets the DNS proxy Boolean choice Enable/Disable. IP address Enables/Disables LDAP AAA.BBB.CCC.DDD where Server Info. each part is in the range 0-255 189 Chapter 12. Configuration commands under branch SECURITY 12.1 security advanced_network attack_checks configure S.No Command Name Description 1 2 3 4 5 6 7 8 9 10 11 12 13 14 Type and Description Saves Security Checks configuration settings. Saves Security Checks exit configuration settings and exit current mode. To revert to the previous cancel Security Checks configuration settings. enable_stealth_mod Enables or Disables Stealth Boolean choice Mode. e Enables or DisablesTCP block_tcp_flood Boolean choice Flood on WAN port. Enables or DisablesUDP block_udp_flood Boolean choice Flood on LAN port. Range of simultaneous active udp_connection_limi Connection limit of UDP on UDP connections to be t LAN port. accepted from a single computer on the LAN. Enables or Disables ICMP allow_lan_icmp Boolean choice Notification on LAN port. block_spoofed_pack Allows/Blocks spoofed Boolean choice ets packets. Allows/Blocks Tcp Filter Tcp_Filter_Check Boolean choice Check. Enables or Disables ICMP block_icmp_notificati notifications on Internet Boolean choice on Ports. Enables or Disables block_fragmented_p Fragmented Packets on Boolean choice ackets Internet Ports. Enables or Disables block_multicast_pac Multicast packets on Boolean choice kets Internet Ports. synflood_dectect_rat Configures the Syn flood Range of packets sent per e Detect Rate. second in dos attack types. save 190 S.No Command Name Description 15 16 17 18 Type and Description Enables or Disables block_spoofed_tcp_r blocking of spoofed tcp st RST packets. Enables or Disables block_ftp_bounce_at blocking of FTP Bounce tack Attack packets. echostorm_flood_rat Configures the Echo Storm e Flood Rate Configures the ICMP flood icmp_flood_rate Rate Boolean choice Boolean choice Range of packets sent per second in dos attack types. Range of packets sent per second in dos attack types. 12.2 security advanced_network ips setup S.No Command Name Description 1 2 3 4 5 6 7 8 Type and Description Saves ips configuration save settings. Saves ips configuration exit settings and exit current mode. To revert to the previous cancel ips configuration settings. enable_intrusion_pr Enables or Disables Boolean choice evention Intrusion Prevention. enable_intrusion_de Enables or Disables Boolean choice tection Intrusion Detection. Enables or Disables IPS ips_check_active checks. Enables or Disables ips ips_check_active checks active between LAN Boolean choice lan-wan and WAN. Enables or Disables ips ips_check_active checks active between Boolean choice dmz-wan DMZ and WAN. 12.3 security application_rules add S.No Command Name Description 1 save 2 exit Type and Description Saves application rules configuration settings. Saves application rules rules configuration settings, and exits current mode. 191 S.No Command Name Description 3 cancel 4 name 5 enable_rule 6 7 8 9 10 11 Type and Description To revert to the previous application rules configuration settings. Name of the rule. String Specifies whether to Boolean choice Enable or Disable the rule. Specifies whether the port uses the TCP or UDP protocol. Displays interface name on interface which port triggering rule is configured. Start port number of the outgoing_start_port outgoing traffic. Last port of the outgoing outgoing_end_port traffic. Start port number of the incoming_start_port incoming traffic. Last port number of the incoming_end_port incoming traffic. protocol Type of protocol to be selected for a application rules. interface type Port number Port number Port number Port number 12.4 security application_rules edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit 4 cancel 5 name 6 enable_rule 7 protocol 8 interface Type and Description Application rules configuration mode to edit Unsigned integer the selected rule. Saves application rules configuration settings. Saves application rules rules configuration settings, and exits current mode. To revert to the previous application rules configuration settings. Name of the rule. String Specifies whether to Boolean choice Enable or Disable the rule. Specifies whether the port Type of protocol to be selected uses the TCP or UDP for an application rules. protocol. Displays interface name on which port triggering rule is Interface type. configured. 192 S.No Command Name Description 9 10 11 12 Type and Description First port number of the outgoing_start_port outgoing traffic. Last port of the outgoing outgoing_end_port traffic. Start port number of the incoming_start_port incoming traffic. End port number of the incoming_end_port incoming traffic. Port number Port number Port number Port number 12.5 security application_rules delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Deletes the selected rule or Unsigned integer rules. 12.6 security firewall custom_service add S.No Command Name Description 1 save 2 exit 3 cancel 4 name 5 protocol 6 type 7 start_port 8 icmp_type 9 finish_port 10 multiple_port Type and Description Saves custom services configuration settings. Saves custom services configuration settings and exit current mode. To revert to the previous custom services configuration settings. Name of the service for String which a rule is to be added. Type of protocol to be selected Protocol for a custom service. Port type can be Port Range/Multiple Ports. The layer 3 Protocol that the Type to be selected for a service uses. Can be TCP, custom service. UDP, BOTH, ICMP or ICMPv6 Port number of the Port number Destination user. Port number of the number in range of 0-40(icmp) Destination user. or 1-255(icmpv6) Port of the Destiation user. Port number Muliple Port of the Destiation user.Seperate String Ports by Comma. 193 12.7 security firewall custom_service edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit 4 cancel 5 name 6 protocol 7 type 8 start_port 9 icmp_type 10 finish_port 11 multiple_port Type and Description Opens the Custom Services Configuration Unsigned integer page, to edit the selected custom Service. Saves custom services configuration settings. Saves custom services configuration settings and exit current mode. To revert to the previous custom services configuration settings. Name of the service for String which a rule is to be added. Type of protocol to be selected Protocol. for a custom service. Port type can be Port Type to be selected for a Range/Multiple Ports. custom service. Port number of the Port number Destination user. Port number of the Number in range of 0-40(icmp) Destination user. or 1-255(icmpv6). Port of the Destiation user. Port number Muliple Port of the Destiation user. Seperate String Ports by Comma. 12.8 security firewall custom_service delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Deletes the selected custom service or custom services. 194 Unsigned integer. 12.9 security firewall ipv4 configure S.No Command Name Description 1 save 2 exit 3 cancel 4 from_zone 5 from_zone_vlan 6 to_zone 7 to_zone_vlan 8 service 9 service service_custom 10 service service_normal 11 action 12 schedule 13 14 15 16 17 18 source_address_typ e destination_address _type snat_address_type Type and Description Saves Firewall IPV4 rules configuration settings. Saves Firewall IPV4 rules configuration settings and exit current mode. To revert to the previous IPV4 rules configuration settings. Sets from Zone security firewall rule type type. Sets From Zone VLAN using corresponding VLAN String name. Sets to Zone security type Firewall rule type. Sets To Zone VLAN using String corresponding VLAN name . Name of the custom service for which a rule is to be added. Custom name String should already be added into custom service Name of the service for Service type. which a rule is to be added. Action to be taken by the Firewall rule action type. rule. Name of schedule for String. which the rule is applicable. Type of the source user. Firewall rule address type. Type of the destination Firewall rule address type. user. Type of the SNAT address. Firewall rule snat address type. Firewall rule log log Log Always or Never enable/disable. IP address source_address_sta IP of the Source user. AAA.BBB.CCC.DDD where rt each part is in the range 0-255. IP address source_address_en IP of the Source user. AAA.BBB.CCC.DDD where d each part is in the range 0-255. 195 S.No Command Name Description 19 20 21 22 23 24 25 26 27 28 29 Type and Description IP address destination_address IP of the Destination user. AAA.BBB.CCC.DDD where _start each part is in the range 0-255. IP address destination_address IP of the Destination user. AAA.BBB.CCC.DDD where _end each part is in the range 0-255 qos_priority Firewall type of service. firewall type of service WAN interface for Source wan_interface WAN interface type NAT settings. IP address snat_address IP of the SNAT Address. AAA.BBB.CCC.DDD where each part is in the range 0-255 Set Ip to use alias as IP address alias_SNAT_ipaddre Internal_Interface for AAA.BBB.CCC.DDD where ss firewall. each part is in the range 0-255 The port number to use for dnat_port DNAT, required if port Port number forwarding is enabled. Enables/disables port port_forwarding_ena forwarding based on this Boolean choice ble firewall rule configuration settings. Sends to Local Server (DNAT IP), Specifies an IP IP address address and port number of internal_ip_address AAA.BBB.CCC.DDD where a machine on the Local each part is in the range 0-255 Network which is hosting the server. Sets it as dnat_ipaddress Dedicated/configured WAN interface type WAN/3G WAN. Sets Ip to use alias as IP address alias_DNAT_ipaddre External_Interface for AAA.BBB.CCC.DDD where ss firewall. each part is in the range 0-255 12.10 security firewall ipv4 default_outbound_policy <default_outbound _policy> S.No Command Name Description 1 Type and Description Firewall Settings, Default <default_outbound_ Outbound Policy policy> configuration mode. 196 Boolean choice 12.11 security firewall ipv4 edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit 4 cancel 5 from_zone 6 from_zone_vlan 7 to_zone 8 to_zone_vlan 9 service 10 service service_custom 11 service service_normal 12 action 13 schedule 14 15 16 17 18 19 source_address_typ e destination_address _type snat_address_type Type and Description Firewall IPV4 rules Unsigned integer configuration mode. Saves Firewall IPV4 rules configuration settings. Saves Firewall IPV4 rules configuration settings and exit current mode. To revert to the previous IPV4 rules configuration settings. Sets from Zone security Firewall rule type. type. Sets From Zone VLAN using corresponding VLAN String name. Sets to Zone security type. Firewall rule type. Sets To Zone VLAN using String corresponding VLAN name. . Name of the custom service for which a rule is to be added. Custom name String should already be added into custom service. Name of the service for Service type. which a rule is to be added. Action to be taken by the Firewall rule action type. rule. Name of schedule for String which the rule is applicable. Type of the source user. Firewall rule address type. Type of the destination Firewall rule address type. user. Type of the SNAT address. Firewall rule snat address type. Firewall rule log log Log Always or Never. enable/disable. IP address source_address_sta IP of the Source user. AAA.BBB.CCC.DDD where rt each part is in the range 0-255. IP address source_address_en IP of the Source user. AAA.BBB.CCC.DDD where d each part is in the range 0-255. 197 S.No Command Name Description 20 21 22 23 24 25 26 27 28 29 30 Type and Description IP address destination_address IP of the Destination user. AAA.BBB.CCC.DDD where _start each part is in the range 0-255. IP address destination_address IP of the Destiation user. AAA.BBB.CCC.DDD where _end each part is in the range 0-255. qos_priority Firewall type of service. Firewall type of service. WAN interface for Source wan_interface WAN interface type. NAT settings. IP address snat_address IP of the SNAT Address. AAA.BBB.CCC.DDD where each part is in the range 0-255. Sets Ip to use alias as IP address alias_SNAT_ipaddre Internal_Interface for AAA.BBB.CCC.DDD where ss firewall. each part is in the range 0-255. The port number to use for dnat_port DNAT, required if port Port number. forwarding is enabled. Enables/disables port port_forwarding_ena forwarding based on this Boolean choice. ble firewall rule configuration settings. Send to Local Server (DNAT IP), Specifies an IP IP address address and port number of internal_ip_address AAA.BBB.CCC.DDD where a machine on the Local each part is in the range 0-255. Network which is hosting the server. Sets it as dnat_ipaddress Dedicated/configured WAN interface type. WAN/3G WAN. Sets Ip to use alias as IP address alias_DNAT_ipaddr External_Interface for AAA.BBB.CCC.DDD where ess firewall. each part is in the range 0-255. 12.12 security firewall ipv4 enable <row_id> S.No Command Name Description 1 <row_id> Type and Description Enables Firewall IPv4 rules Unsigned integer configuration mode. 198 12.13 security firewall ipv4 disable <row_id> S.No Command Name Description 1 <row_id> 12.14 Type and Description Disables Firewall IPv4 Unsigned integer Rules configuration mode. security firewall ipv4 delete <row_id> S.No Command Name Description 1 <row_id> 12.15 Type and Description Deletes a specified Firewall Unsigned integer IPV4 Rule. security firewall ipv4 move <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit 4 cancel 5 position 12.16 Type and Description Firewall IPV4 Rule reordering mode. Saves Firewall IPV4 rule reordering settings. Saves Firewall IPV4 rule reordering settings and exit current mode. To revert to the previous IPV4 rule reordering settings. New position for the rule Unsigned integer security firewall algs S.No Command Name Description 1 save 2 exit 3 cancel 4 Rtsp 5 Sip 6 H323 Row id(s) a,b,c where each part is a valid rowid in the range [0-9] Type and Description Saves Firewall algs settings. Saves Firewall algs settings and exit current mode. Roll Firewall algs settings. Protocal to be enabled at Boolean choice ALGs. Protocal to be enabled at Boolean choice ALGs. Protocal to be enabled at Boolean choice ALGs. 199 S.No Command Name Description 7 Tftp 12.17 Type and Description Protocal to be enabled at ALGs. security firewall ipv6 configure S.No Command Name Description 1 save 2 exit 3 cancel 4 5 rule_type service 6 service service_custom 7 service service_normal 8 action 9 schedule 10 11 Boolean choice Type and Description Saves Firewall IPV6 rules configuration settings. Saves Firewall IPV6 rules configuration settings and exit current mode. To revert to the previous IPV6 rules configuration settings. Type of rule to be added. Firewall rule type. . Name of the custom service for which a rule is to be added; custom name String should already be added into custom service. Name of the service for Service type. which a rule is to be added. Action to be taken by the Firewall rule action type. rule. Schedule for which the rule String is applicable. source_address_typ Type of the source user. e destination_address Type of the destination _type user. Log Always or Never. Firewall rule address type. Firewall rule address type. Firewall rule log enable/disable. IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:]. IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:]. 12 log 13 source_start_addres Start IP address of the s Source user. 14 source_end_addres End IP address of the s Source user. 15 source_address_pre Prefix length of the Source String fix user. 200 S.No Command Name Description Type and Description 16 destination_start_ad Start IP address of the dress Destination user. 17 destination_end_ad End IP address of the dress Destiation user. 18 destination_address Prefix Length of the _prefix Destination user. 12.18 1 <row_id> 2 save 3 exit 4 cancel 5 6 rule_type service 7 service service_custom 8 service service_normal 9 action 10 schedule 12 13 14 String security firewall ipv6 edit <row_id> S.No Command Name Description 11 IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:]. IP address abcd:abcd:abcd:abcd:abcd:abc d:abcd:abcd where each part is in the range [0-9A-Fa-f:]. Type and Description Firewall IPV6 rules Unsigned integer configuration mode. Saves Firewall IPV6 rules configuration settings. Saves Firewall IPV6 rules configuration settings and exit current mode. To revert to the previous IPV6 rules configuration settings. Type of rule to be added. firewall rule type . Name of the custom service for which a rule is to be added custom name String should already be added into custom service. Name of the service for Service type. which a rule is to be added. Action to be taken by the Firewall rule action type. rule. Schedule for which the rule String is applicable. source_address_typ Type of the source user. e destination_address Type of the destination _type user. Firewall rule address type. Firewall rule address type. Firewall rule log enable/disable. source_start_addres IP address Start IP of the Source user. s abcd:abcd:abcd:abcd:abcd:abc log Log Always or Never. 201 S.No Command Name Description 15 16 17 18 19 Type and Description d:abcd:abcd where each part is in the range [0-9A-Fa-f:] IP address source_end_addres abcd:abcd:abcd:abcd:abcd:abc End IP of the Source user. s d:abcd:abcd where each part is in the range [0-9A-Fa-f:] source_address_pre Prefix length of the Source String. fix user. IP address destination_start_ad Start IP of the Destination abcd:abcd:abcd:abcd:abcd:abc dress user. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] IP address destination_end_ad End IP of the Destiation abcd:abcd:abcd:abcd:abcd:abc dress user. d:abcd:abcd where each part is in the range [0-9A-Fa-f:] destination_address Prefix Length of the String _prefix Destination user. 12.19 security firewall ipv6 enable <row_id> S.No Command Name Description 1 <row_id> 12.20 Type and Description Enables selected Firewall IPV6 rule. security firewall ipv6 disable <row_id> S.No Command Name Description 1 <row_id> 12.21 Type and Description Disables selected Firewall Unsigned integer IPV6 Rule. security firewall ipv6 delete <row_id> S.No Command Name Description 1 <row_id> 12.22 Type and Description Deletes selected Firewall IPV6 Rule. Unsigned integer security firewall ipv6 move <row_id> S.No Command Name Description 1 Unsigned integer <row_id> Type and Description Firewall IPV6 Rule reordering mode. 202 Row id(s) a,b,c where each part is a valid rowid in the range [0-9] S.No Command Name Description 2 save 3 exit 4 cancel 5 position Type and Description Saves Firewall IPV6 rule reordering settings. Saves Firewall IPV6 rule reordering settings and exit current mode. To revert to the previous IPV6 rule reordering settings. New position for the rule. Unsigned integer 12.23 security firewall ipv6 default_outbound_policy <default_outbound _policy> S.No Command Name Description 1 Type and Description Firewall Settings, IPv6 <default_outbound_ Default Outbound Policy policy> configuration mode. 12.24 security ids configure S.No Command Name Description 1 2 3 4 5 Type and Description Saves IDS configuration settings. Saves IDS configuration exit settings and exit current mode. To revert to the previous cancel IDS configuration settings. Enables Intrusion detection enable Boolean choice system. intrusion_log_enabl Enables/Disables intrusion Boolean choice e logs. save 12.25 security session_settings configure S.No Command Name Description 1 Boolean choice save Type and Description Saves security session settings configuration settings. 203 S.No Command Name Description 2 3 4 5 6 7 8 9 Type and Description Saves session settings exit configuration settings and exit current mode. To revert to the previous cancel session settings configuration settings. max_unidentified_se Maximum Unidentified ssions Sessions. max_half_open_ses Maximum Half Open sions Sessions. TCP Session Timeout tcp_session_timeout Duration. udp_session_timeou UDP Session Timeout t Duration. other_session_time Other Session Timeout out Duration. tcp_session_cleanu TCP Session Cleanup p_latency Latency. 12.26 Unsigned integer Unsigned integer Unsigned integer Unsigned integer Unsigned integer Unsigned integer security schedules add S.No Command Name Description 1 save 2 exit 3 cancel 4 name 5 days 6 days all 7 days monday 8 days tuesday Type and Description Saves schedules configuration settings. Saves schedules configuration settings and exit current mode. To revert to the previous schedules configuration settings. Name of the schedule for String which a rule is to be added. The days when the schedule is active. The schedule applies to all days. This option is the Boolean choice default selection. Checks the box for each day to include in this Boolean choice schedule. Checks the box for each day to include in this Boolean choice schedule. 204 S.No Command Name Description 9 days wednesday 10 days thursday 11 days friday 12 days saturday 13 days sunday 14 time_of_day 15 time_of_day all_enable 16 time_of_day start 17 18 19 20 21 22 23 time_of_day start mins time_of_day start hours time_of_day start meridiem time_of_day end time_of_day end mins time_of_day end hours time_of_day end meridiem 12.27 Type and Description Checks the box for each day to include in this schedule. Checks the box for each day to include in this schedule. Checks the box for each day to include in this schedule. Checks the box for each day to include in this schedule. Checks the box for each day to include in this schedule. Scheduled time of day. Selects type of schedule activation for time of the day. The start time for the schedule. Boolean choice Boolean choice Boolean choice Boolean choice Boolean choice Boolean choice Minutes Minute in the format MM(0059) Hours Schedule time unit type. meridiem Schedule Meridiem Types. The end time for the schedule. Minutes Minute in the format MM(0059) Hours Schedule time unit type. meridiem Schedule Meridiem Types. security schedules edit <row_id> S.No Command Name Description 1 <row_id> 2 save Type and Description Schedules configuration mode. Saves schedules configuration settings. 205 Unsigned integer S.No Command Name Description 3 exit 4 cancel 5 name 6 days 7 days all 8 days monday 9 days tuesday 10 days wednesday 11 days thursday 12 days friday 13 days saturday 14 days sunday 15 time_of_day 16 time_of_day all_enable 17 time_of_day start 18 19 time_of_day start mins time_of_day start hours Type and Description Saves schedules configuration settings and exit current mode. To revert to the previous schedules configuration settings. Name of the schedule for which a rule is to be added The days when the schedule is active. The schedule applies to all days. This option is the default selection. Checks the box for each day to include in this schedule. Checks the box for each day to include in this schedule. Checks the box for each day to include in this schedule. Checks the box for each day to include in this schedule. Checks the box for each day to include in this schedule. Checks the box for each day to include in this schedule. Checks the box for each day to include in this schedule. Scheduled time of day. Selects the type of schedule activation for time of the day. The start time for the schedule. String Boolean choice Boolean choice Boolean choice Boolean choice Boolean choice Boolean choice Boolean choice Boolean choice Boolean choice Minutes Minute in the format MM(0059). Hours Schedule time unit type. 206 S.No Command Name Description Type and Description 20 time_of_day start meridiem meridiem 21 time_of_day end The end time for the schedule 22 23 24 time_of_day end mins time_of_day end hours time_of_day end meridiem 12.28 Schedule Meridiem Types. minutes Minute in the format MM (0059). hours Schedule time unit type. meridiem Schedule Meridiem Types. security schedules delete <row_id> S.No Command Name Description 1 <row_id> 12.29 Type and Description Deletes the selected schedule or schedules. Unsigned integer security firewall smtpAlg configure S.No Command Name Description 1 Save 2 Exit 3 cancel 4 smtp_Alg_Status 5 port Type and Description Saves SmtpAlg configuration settings. Saves SmtpAlg configuration settings and exit current mode. To revert to the previous SmtpAlg configuration settings. Enables/disables SmtpAlg Boolean choice status. Sets the port you want to Unsigned integer use for Smtp Alg. 12.30 security firewall smtpAlg approvedMailId add S.No Command Name Description 1 save 2 exit Type and Description Saves ApprovedMailId configuration settings. Saves ApprovedMailId configuration settings and exit current mode. 207 S.No Command Name Description 3 cancel 4 approved_Mail_Id Type and Description To revert to the previous ApprovedMailId configuration settings. Approved Mail_Id String 12.31 security firewall smtpAlg approvedMailId edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit 4 cancel 5 approved_Mail_Id Type and Description It allows to edit an approved MailId. Saves ApprovedMailId configuration settings. Saves ApprovedMailId configuration settings and exit current mode. To revert to the previous ApprovedMailId configuration settings. Approved Mail_Id Unsigned integer String 12.32 security firewall smtpAlg approvedMailId delete <row_id> S.No Command Name Description 1 <row_id> Type and Description It allows to delete an approved MailId. Unsigned integer 12.33 security firewall smtpAlg blockedMailId add S.No Command Name Description 1 save 2 exit 3 cancel 4 blocked_Mail_Id Type and Description Saves BlockedMailId configuration settings. Saves BlockedMailId configuration settings and exit current mode. To revert to the previous BlockedMailId configuration settings. Blocked Mail_Id String 208 12.34 security firewall smtpAlg blockedMailId edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit 4 cancel 5 blocked_Mail_Id Type and Description It allows to edit a blocked Unsigned integer MailId. Saves BlockedMailId configuration settings. Saves BlockedMailId configuration settings and exit current mode. To revert to the previous BlockedMailId configuration settings. Blocked Mail_Id String 12.35 security firewall smtpAlg blockedMailId delete <row_id> S.No Command Name Description 1 <row_id> Type and Description It allows to delete a blocked Unsigned integer MailId. 12.36 security firewall smtpAlg subjectList add S.No Command Name Description 1 save 2 exit 3 cancel 4 5 6 subject mail_Id action Type and Description Saves subjectList configuration settings. Saves subjectList configuration settings and exit current mode. To revert to the previous subjectList configuration settings. Subject in the Mail_Id. Enter the Mail_Id. Action Allow/Block. 209 String String Boolean choice 12.37 security firewall smtpAlg subjectList edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit 4 cancel 5 6 7 subject mail_Id action Type and Description It allows to edit subject with MailId and action. Saves subjectList configuration settings. Saves subjectList configuration settings and exit current mode. To revert to the previous subjectList configuration settings. Subject in the Mail_Id. Enter the Mail_Id. Action Allow/Block. Unsigned integer String String Boolean choice 12.38 security firewall smtpAlg subjectList delete <row_id> S.No Command Name Description 1 <row_id> 12.39 Type and Description It allows to delete the configuration. security mac_filter configure S.No Command Name Description 1 save 2 exit 3 cancel 4 enable 5 policy Unsigned integer Type and Description Saves mac filter configuration settings. Saves mac filter configuration settings and exit current mode. To revert to the previous mac filter configuration settings. Enables/Disables the mac Boolean choice filter status. Sets the mac address Policy type for mac addresses. policy. 210 12.40 security mac_filter source add S.No Command Name Description 1 save 2 exit 3 cancel 4 address Type and Description Saves source mac filter configuration settings. Saves source mac filter configuration settings and exit current mode. To revert to the previous source mac filter configuration settings. Enter mac address to which the policies will be applied. MAC address AA:BB:CC:DD:EE:FF where each part is in the range 00-FF 12.41 security mac_filter source edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit 4 cancel 5 address Type and Description Source Mac Filter configuration mode. Saves source mac filter configuration settings. Saves source mac filter configuration settings and exit current mode. To revert to the previous source mac filter configuration settings. Enter mac address to which policies will be applied. Unsigned integer MAC address AA:BB:CC:DD:EE:FF where each part is in the range 00-FF 12.42 security mac_filter source delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Deletes the selected Source Mac Filter configuration. 211 Unsigned integer 12.43 security ip_or_mac_binding add S.No Command Name 1 save 2 exit 3 cancel 4 computer_name 5 mac_address 6 7 Description Saves ip mac binding configuration settings. Saves ip mac binding configuration settings and exit current mode. To revert to the previous ip mac binding configuration settings. Specifies a unique name for this rule. Enter mac address to which policies will be applied. Type and Description String MAC address AA:BB:CC:DD:EE:FF where each part is in the range 00-FF IP address Enter ip address to which ip_address AAA.BBB.CCC.DDD where policies will be applied. each part is in the range 0-255 Specifies logging option log_dropped_packets Boolean choice for this rule. 12.44 security ip_or_mac_binding edit <row_id> S.No Command Name Description Type and Description 1 <row_id> Ip/mac binding configuration mode. 2 save Saves ip mac binding configuration settings. 3 exit 4 cancel 5 computer_name 6 mac_address 7 ip_address Saves ip mac binding configuration settings and exit current mode. To revert to the previous ip mac binding configuration settings. Specifies a unique name for this rule. Enter mac address to which policies will be applied. Enter ip address to which policies will be applied. 212 Unsigned integer String MAC address AA:BB:CC:DD:EE:FF where each part is in the range 00-FF IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 S.No Command Name Description 8 Type and Description log_dropped_packet Specifies logging option for Boolean choice s this rule. 12.45 security ip_or_mac_binding delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Deletes the selected ip/mac Unsigned integer binding configuration. 12.46 security firewall vpn_passthrough configure S.No Command Name Description 1 save 2 exit 3 cancel 4 ipsec_enable 5 pptp_enable 6 l2tp_enable 12.47 Type and Description Saves VPN Passthrough configuration settings. Saves VPN Passthrough configuration settings and exit current mode. To revert to the previous VPN Passthrough configuration settings. Enables or DisablesIPSEC Boolean choice Passthrough. Enables or DisablesPPTP Boolean choice Passthrough. Enables or DisablesL2TP Boolean choice Passthrough. security webAccess status <status> S.No Command Name Description 1 <status> 12.48 Type and Description Security webAccess status. WPS status security webAccess add S.No Command Name Description 1 save Type and Description Security webAccess configuration. 213 S.No Command Name Description Type and Description 2 exit 3 cancel 4 name Saves webAccess rules configuration settings and exit current mode. To revert to the previous webAccess rules configuration settings. Name 5 accessType AcessType 6 ipAddr IpAddr 7 vlanId VlanId 12.49 String Access Type for web access filter IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Number in the range 1-4095 security webAccess edit <row_id> S.No Command Name Description Type and Description 1 <row_id> Unsigned integer 2 save 3 exit 4 cancel 5 name Security webAccess edit Security webAccess configuration. Saves webAccess rules configuration settings and exit current mode. To revert to the previous webAccess rules configuration settings. Name 6 accessType AcessType 7 ipAddr IpAddr 8 vlanId VlanId 12.50 security webAccess delete <row_id> S.No Command Name Description 1 String Access Type for web access filter IP address AAA.BBB.CCC.DDD where each part is in the range 0-255 Number in the range 1-4095 <row_id> Type and Description Security webAccess delete Unsigned integer 214 12.51 security website_filter content_filtering configure S.No Command Name Description 1 save 2 exit 3 cancel 4 content_filtering 5 6 7 8 proxy_enable java_enable activex_enable cookies_enable Type and Description Saves contentFiltering configuration settings. Saves content Filtering configuration settings and exit current mode. To revert to the previous content filtering configuration settings. Enables/Disables content Filtering. Enables/Disables proxy. Enables/Disables java. Enables/Disables activex. Enables/Disables cookies. Boolean choice Boolean choice Boolean choice Boolean choice Boolean choice 12.52 security website_filter approved_urls add S.No Command Name Description 1 save 2 exit 3 cancel 4 url Type and Description Saves trusted domains configuration settings. Saves trusted domains configuration settings and exit current mode. To revert to the previous trusted domains configuration settings. Trusted domain name. String 12.53 security website_filter approved_urls edit <row_id> S.No Command Name Description Type and Description 1 <row_id> Trusted domains configuration mode. 2 save Saves trusted domains configuration settings. 215 Unsigned integer S.No Command Name Description 3 exit 4 cancel 5 url Type and Description Saves trusted domains configuration settings and exit current mode. To revert to the previous trusted domains configuration settings. Trusted domain name. String 12.54 security website_filter approved_urls delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Trusted Domains configuration mode. Unsigned integer 12.55 security website_filter blocked_keywords add S.No Command Name Description 1 save 2 exit 3 cancel 4 blocked_keyword Type and Description Saves blocked keywords configuration settings. Saves blocked keywords configuration settings and exit current mode. To revert to the previous blocked keywords configuration settings. Enter keyword to be blocked. String 12.56 security website_filter blocked_keywords edit <row_id> S.No Command Name Description 1 <row_id> 2 save 3 exit Type and Description Blocked Keywords configuration mode. Saves blocked keywords configuration settings. Saves blocked keywords configuration settings and exit current mode. 216 Unsigned integer S.No Command Name Description 4 cancel 5 blocked_keyword Type and Description To revert to the previous blocked keywords configuration settings. Enter keyword to be blocked. String 12.57 security website_filter blocked_keywords delete <row_id> S.No Command Name Description 1 <row_id> Type and Description Deletes the selected Blocked Keywords. Unsigned integer 12.58 security website_filter blocked_keywords enable <row_id> S.No Command Name Description 1 <row_id> Type and Description Enables the selected Blocked Keywords. Unsigned integer 12.59 security website_filter blocked_keywords disable <row_id> S.No Command Name Description 1 <row_id> Type and Description Disables the selected Blocked Keywords. 217 Unsigned integer
advertisement
Key Features
- Unified Services Router
- CLI Configuration
- Network Settings
- Security Settings
- Admin Settings
- Wireless Settings
- VPN Settings
- RADIUS Settings
Related manuals
Frequently Answers and Questions
How to access the CLI?
You can access the CLI by logging in with the same user credentials used to access the web browser based UI.
What are the categories of CLI commands?
The CLI commands are divided into 4 categories: Global commands, Show commands, Utility commands and Configuration commands.
What are the branches of router configuration?
The router configuration is divided into 5 branches: Net: Network Settings, Security: Security Settings, System: Admin Settings, Dot11: Wireless Settings, Vpn: VPN Settings and Radius: RADIUS Settings.