Ecn-Disable; Icmp-Disable - IBM WebSphere XS40 Command Reference Manual

Datapower xml security gateway
Table of Contents

Advertisement

Guidelines
By default the appliance will refuse to accept a packet on an interface other than
the one bound to the destination address of the packet. Use the
disable-interface-isolation command to disable that behavior and allow any
interface on the same subnet to accept the packet.
As a security policy, the interface receiving a network packet must also be
configured with the IP address that is the destination address of the packet.
Enabling this option relaxes that restriction.
Related Commands
relax-interface-isolation
Examples
v Allows any interface on the same subnet to accept a packet.

ecn-disable

Turn on or off ECN-capable TCP sessions.
Syntax
ecn-disable {on | off}
Parameters
on
off
Examples
v Stops the networking system from generating ECN-enabled TCP sessions.

icmp-disable

Disables the generation of a specific Internet Control Message Protocol (ICMP)
reply message.
Syntax
icmp-disable {addressmask-reply | echo-reply | info-reply | timestamp-reply}
no icmp-disable
Parameters
addressmask-reply, echo-reply, info-reply, and timestamp-reply
Guidelines
By default, the appliance replies to the corresponding ICMP requests.
# disable-interface-isolation on
#
Stops the generation of ECN-capable TCP sessions.
(Default) Generates ECN-capable TCP sessions.
# ecn-disable on
#
Specifies the target ICMP reply type to disable.
Chapter 50. Network Settings configuration mode
491

Advertisement

Table of Contents
loading

Table of Contents