Firewall Commands - ZyXEL Communications UAG Series User Manual

Unified access gateway
Hide thumbs Also See for UAG Series:
Table of Contents

Advertisement

Chapter 27 Firewall

27.2 Firewall Commands

The following table identifies the values required for many of these commands. Other input values
are discussed with the corresponding commands.
Table 86 Input Values for General Firewall Commands
LABEL
address_object
profile_name
user_name
zone_object
rule_number
schedule_object
service_name
The following table describes the commands available for the firewall. You must use the
configure terminal
configuration commands.
Table 87 Command Summary: Firewall
COMMAND
[no] firewall asymmetrical-route activate
[no] connlimit max-per-host <1..8192>
firewall rule_number
firewall profile_name {zone_object|Device} rule_number
firewall profile_name {zone_object|Device} append
152
DESCRIPTION
The name of the IP address (or address group) object. You may use 1-31
alphanumeric characters, underscores(
cannot be a number. This value is case-sensitive.
The name of the firewall rule. You may use 1-31 alphanumeric characters,
underscores(_), or dashes (-), but the first character cannot be a number. This value
is case-sensitive.
The name of a user (group). You may use 1-31 alphanumeric characters,
underscores(
), or dashes (-), but the first character cannot be a number. This value
_
is case-sensitive.
The name of the zone. Use up to 31 characters (a-zA-Z0-9_-). The name cannot start
with a number. This value is case-sensitive.
The UAG uses pre-defined zone names like DMZ, LAN1, LAN2, SSL VPN, IPSec VPN,
and WAN.
The priority number of a firewall rule. 1 - X where X is the highest number of rules
the UAG model supports. See the UAG's User's Guide for details.
The name of the schedule. You may use 1-31 alphanumeric characters,
underscores(
), or dashes (-), but the first character cannot be a number. This value
_
is case-sensitive.
The name of the service (group). You may use 1-31 alphanumeric characters,
underscores(
), or dashes (-), but the first character cannot be a number. This value
_
is case-sensitive.
command to enter the configuration mode before you can use the
), or dashes (-), but the first character
_
DESCRIPTION
Allows or disallows asymmetrical route topology.
Sets the highest number of sessions that the UAG will
permit a host to have at one time. The
removes the settings.
Enters the firewall sub-command mode to set a
firewall rule. See
Table 88 on page 154
commands.
Enters the firewall sub-command mode to set a
direction specific through-Device rule or to-Device
rule. See
Table 88 on page 154
commands.
Enters the firewall sub-command mode to add a
direction specific through-Device rule or to-Device
rule to the end of the global rule list. See
page 154
for the sub-commands.
command
no
for the sub-
for the sub-
Table 88 on
UAG CLI Reference Guide

Advertisement

Table of Contents
loading

Table of Contents